Skill-Audit-Bericht

skills-manager Audit-Bericht.

搜索、安装和协调创建 Claude Code Agent Skills。当用户想要搜索技能、安装工具、创建自定义 Skill,或者说"find a skill"、"搜索技能"、"帮我做个 skill"、"create a skill"时触发。也适用于用户说"有没有做 X 的工具"、"我想扩展 Agent 能力",或当前能力不足需要先查找可复用方案的场景。

Experimentell · PrüfenSicher zu testenErstellt 22. Aug. 2026Heuristisches Metadaten-Audit
87
Audit
78
Vertrauen
93
Qualität
78
Sicherheit
100
Maintain
92
Installieren

OpenAgentSkill Trust Score

78
Starke Shortlist

OpenAgentSkill Trust Score

The Trust Score helps an agent decide whether a skill is safe enough to shortlist before installation.

GitHub-Akzeptanz

Bestanden

100

51K GitHub-Stars

Star-/Fork-Aktivität

Bestanden

97

51K Stars und 4.8K Forks; Issue-Aktivität ist in den aktuellen Metadaten nicht verfügbar

Aktuelle Wartung

Bestanden

100

1 Tage seit dem letzten Push

Lizenzklarheit

Bestanden

86

AGPL-3.0

README/SKILL.md-Vollständigkeit

Bestanden

86

Metadaten enthalten ausreichend Nutzungs- und Workflow-Kontext

Abhängigkeits-/Laufzeitrisiko

Info

72

Befehlsausführungsfläche

Installationsverfügbarkeit

Bestanden

92

npx skills add CherryHQ/cherry-studio --skill skills-manager

Sicherheit des Installationsbefehls

Bestanden

92

Standard-Paket- oder Laufzeit-Installationspfad

Berechtigungsumfang

Info

62

shell or command execution, filesystem or document access

Repository-Nachweis

Bestanden

86

https://github.com/CherryHQ/cherry-studio/tree/main/resources/builtin-agents/cherry-assistant/.claude/skills/skills-manager

Prüfstatus

Info

66

KI-Prüfdaten verfügbar

Agent-validierte Ergebnisse

Info

54

Noch keine Agent-Ergebnisdaten

Prüfungen

Installations- und Adoptionsprüfung

8 Bestanden · 5 Prüfung nötig

Installationspfad

92

Bestanden

npx skills add CherryHQ/cherry-studio --skill skills-manager

Repository

88

Bestanden

https://github.com/CherryHQ/cherry-studio/tree/main/resources/builtin-agents/cherry-assistant/.claude/skills/skills-manager

Lizenz

86

Bestanden

AGPL-3.0

Wartung

100

Bestanden

1 Tage seit dem letzten Push

KI-Prüfung

55

Prüfen

The skill relies on executing third-party code via `npx skills` and installing external skills, which inherently carries supply-chain risks. However, it mitigates this by requiring user confirmation and displaying security warnings before installation.

README/SKILL.md-Vollständigkeit

86

Bestanden

Usable description available

Abhängigkeitsrisiko

72

Prüfen

Befehlsausführungsfläche

Sicherheit des Installationsbefehls

92

Bestanden

Standard-Paket- oder Laufzeit-Installationspfad

Berechtigungsumfang

62

Prüfen

shell or command execution, filesystem or document access

Star-/Fork-Aktivität

97

Bestanden

51K Stars und 4.8K Forks; Issue-Aktivität ist in den aktuellen Metadaten nicht verfügbar

Akzeptanz

88

Bestanden

51K GitHub-Stars

Warnungen

  • The skill relies on executing third-party code via `npx skills` and installing external skills, which inherently carries supply-chain risks. However, it mitigates this by requiring user confirmation and displaying security warnings before installation.
  • The skill references other skills (`find-skills`, `skill-creator`) that may not be available in all environments, but it provides fallback instructions for when they are missing.

Methode

This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.

Nahe Optionen vergleichen

Ähnliche Skills als Nächstes prüfen