Skill 审计报告
agent-decision-receipts 审计报告.
Mint a tamper-evident, post-quantum-signed receipt for a consequential agent action (deploy, delete, pay, grant-access, model decision) so it can be verified later from the certificate alone. Use when an autonomous agent takes a side-effecting action that may need to be proven later, or when satisfying EU AI Act Article 12 record-keeping. Three decisions: whether an action needs a receipt, minting it, verifying it. Signing is delegated to the open-source OpenAgentOntology package. Not after-the-fact log analysis; not a hosted notary; not a legal opinion.
OpenAgentSkill 信任评分
OpenAgentSkill 信任评分
Trust Score 帮助 Agent 在安装前判断一个 Skill 是否足以进入候选清单。
GitHub 采用度
通过100
25K 个 GitHub Stars
Star/Fork 活跃度
通过97
25K 个 Star,3.5K 个 Fork; 当前元数据中没有议题活跃度信息
近期维护
通过100
今天有推送
许可证清晰度
通过86
MIT
README/SKILL.md 完整度
通过86
元数据包含足够的用法与工作流上下文
依赖与运行时风险
失败28
command execution surface, credential or environment access
安装可用性
通过92
npx skills add alirezarezvani/claude-skills --skill agent-decision-receipts
安装命令安全性
通过92
标准软件包或运行时安装路径
权限范围
失败18
secrets or environment access, shell or command execution
仓库证据
通过86
https://github.com/alirezarezvani/claude-skills/tree/main/.gemini/skills/agent-decision-receipts
审查状态
信息66
可用 AI 审查数据
Agent 验证结果
信息54
暂未有 Agent 结果数据
检查项
安装与采用审查
安装路径
92
npx skills add alirezarezvani/claude-skills --skill agent-decision-receipts
仓库
88
https://github.com/alirezarezvani/claude-skills/tree/main/.gemini/skills/agent-decision-receipts
许可证
86
MIT
维护
100
今天有推送
AI 审查
55
The skill relies on an external package (openagentontology) for cryptographic operations; while this is clearly documented, the package's security posture is not independently verified by this review.
README/SKILL.md 完整度
86
Usable description available
依赖风险
28
command execution surface, credential or environment access
安装命令安全性
92
标准软件包或运行时安装路径
权限范围
18
secrets or environment access, shell or command execution
Star/Fork 活跃度
97
25K 个 Star,3.5K 个 Fork; 当前元数据中没有议题活跃度信息
采用度
88
25K 个 GitHub Stars
Financial decision safety
58
Research-only use: do not treat output as financial advice or execute a position without human approval.
警告
- Dependency or permission surface needs review
- Permission surface may require sandboxing
- Financial research output is not financial advice; require human review before any live investment decision
- The skill relies on an external package (openagentontology) for cryptographic operations; while this is clearly documented, the package's security posture is not independently verified by this review.
- Financial research output is not financial advice; require human review before any live investment decision.
- Quality score needs review
- Permission surface needs review: secrets or environment access, shell or command execution
- Dependency/runtime risk: command execution surface, credential or environment access
- Permission surface: secrets or environment access, shell or command execution
方法
本报告综合公开元数据、AI 审查输出、仓库活跃度、安装就绪度、OpenAgentSkill 事件、质量评分、信任检查和 Agent 安全门槛;它不是完整的源代码安全审计。
对比相近选项
下一步可审计的相关 Skill
Last30days Skill
Research the last 30 days across Reddit, X, YouTube, Hacker News, Polymarket, GitHub, and the web, then synthesize a grounded brief for an AI agent.
54K Stars · 审计报告
Academic Research Skills
Academic Research Skills for Claude Code: research → write → review → revise → finalize
38K Stars · 审计报告
GPT Researcher
Run autonomous deep research over web and local sources
28K Stars · 审计报告