Skill-Audit-Bericht

Chanzi Audit-Bericht.

"chanzi" is a simple and user-friendly JAVA SAST tool that utilizes taint analysis technology, includes built-in common vulnerability rules, supports decompile, custom rule, and is compatible with the technology stacks of Servlet&filter, Spring,struts,Dubbo,Thrift, jax-rs,jax-ws,JFinal,Netty,MyBatis,and JSP.

Experimentell · PrüfenPrüfung nötigErstellt 23. Aug. 2026Heuristisches Metadaten-Audit
72
Audit
74
Vertrauen
61
Qualität
81
Sicherheit
62
Maintain
92
Installieren

OpenAgentSkill Trust Score

74
Starke Shortlist

OpenAgentSkill Trust Score

The Trust Score helps an agent decide whether a skill is safe enough to shortlist before installation.

GitHub-Akzeptanz

Info

62

491 GitHub-Stars

Star-/Fork-Aktivität

Warnung

57

491 Stars und 15 Forks; Issue-Aktivität ist in den aktuellen Metadaten nicht verfügbar

Aktuelle Wartung

Info

62

7 Monate seit dem letzten Push

Lizenzklarheit

Warnung

42

Unbekannt

README/SKILL.md-Vollständigkeit

Bestanden

90

Metadaten enthalten ausreichend Nutzungs- und Workflow-Kontext

Abhängigkeits-/Laufzeitrisiko

Bestanden

90

Keine wesentlichen Abhängigkeitsrisikohinweise in öffentlichen Metadaten

Installationsverfügbarkeit

Bestanden

92

npx skills add Chanzi-keji/chanzi

Sicherheit des Installationsbefehls

Bestanden

92

Standard-Paket- oder Laufzeit-Installationspfad

Berechtigungsumfang

Bestanden

86

Dateisystem- oder Dokumentzugriff

Repository-Nachweis

Bestanden

86

https://github.com/Chanzi-keji/chanzi

Prüfstatus

Bestanden

88

KI-Prüfdaten verfügbar

Agent-validierte Ergebnisse

Info

54

Noch keine Agent-Ergebnisdaten

Prüfungen

Installations- und Adoptionsprüfung

7 Bestanden · 10 Prüfung nötig

Installationspfad

92

Bestanden

npx skills add Chanzi-keji/chanzi

Repository

88

Bestanden

https://github.com/Chanzi-keji/chanzi

Lizenz

45

Prüfen

Unbekannt

Wartung

62

Prüfen

7 Monate seit dem letzten Push

KI-Prüfung

88

Bestanden

Approved with no listed issues

README/SKILL.md-Vollständigkeit

90

Bestanden

Usable description available

Abhängigkeitsrisiko

90

Bestanden

Keine wesentlichen Abhängigkeitsrisikohinweise in öffentlichen Metadaten

Sicherheit des Installationsbefehls

92

Bestanden

Standard-Paket- oder Laufzeit-Installationspfad

Berechtigungsumfang

86

Bestanden

Dateisystem- oder Dokumentzugriff

Star-/Fork-Aktivität

57

Beheben

491 Stars und 15 Forks; Issue-Aktivität ist in den aktuellen Metadaten nicht verfügbar

Akzeptanz

68

Info

491 GitHub-Stars

Financial decision safety

58

Prüfen

Research-only use: do not treat output as financial advice or execute a position without human approval.

Warnungen

  • Lizenz ist unklar
  • Financial research output is not financial advice; require human review before any live investment decision
  • Financial research output is not financial advice; require human review before any live investment decision.
  • Quality score needs review
  • Stars/forks activity: 491 stars, 15 forks; issue activity unavailable in current metadata
  • License clarity: Unknown

Methode

This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.

Nahe Optionen vergleichen

Ähnliche Skills als Nächstes prüfen