Evaluasi sebelum pemasangan

cost-optimization-auditor Laporan evaluasi.

Keputusan pemasangan yang dapat dibaca mesin untuk Agent: kecocokan tugas, Trust Score, Audit Score, keamanan pemasangan, cakupan izin, dan rencana validasi konkret sebelum skill menyentuh workspace.

Perlu ditinjauRisiko sedangTinjau Kebijakan
68
Laporan evaluasi
67
Kepercayaan
75
Audit
59
Keamanan Agent

Tinjauan manual

Memerlukan persetujuan manusia sebelum memasang ke workspace nyata.

Gerbang wajib

Pemeriksaan yang harus dilalui Agent sebelum memasang

Buka JSON

Kecocokan tugas

84

Lulus

Task wording matches this skill metadata.

  • Evaluate cost-optimization-auditor before installing it in an agent workflow
  • Keamanan
  • Browser automation workflows; Claude Code teams; builders willing to evaluate younger projects

Jalur pemasangan

92

Lulus

Install handoff is available.

  • npx skills add codebygarv/Ai-skills --skill cost-optimization-auditor

Keamanan perintah pemasangan

92

Lulus

Jalur pemasangan paket atau runtime standar

  • npx skills add codebygarv/Ai-skills --skill cost-optimization-auditor

Skor kepercayaan

67

Peringatan

Potentially useful, but at least one trust signal needs human inspection.

  • Tinjauan manual
  • 21 star GitHub
  • MIT

Skor audit

75

Peringatan

Perlu ditinjau

  • SKILL.md does not explicitly state that the skill only performs analysis and does not execute any commands or modify infrastructure, which could be clarified for safety.

Gerbang keamanan Agent

59

Peringatan

Kandidat yang dapat digunakan, tetapi Agent harus menampilkan catatan izin dan audit sebelum memasang.

  • Memerlukan persetujuan manusia sebelum memasang ke workspace nyata.
  • SKILL.md does not explicitly state that the skill only performs analysis and does not execute any commands or modify infrastructure, which could be clarified for safety.

Kejelasan lisensi

86

Lulus

MIT

  • MIT

Cakupan izin

88

Lulus

Akses database

  • Network access: medium
  • Database access: medium

Rencana validasi

Langkah Agent berikutnya

  1. 1Inspect repository, README/SKILL.md, license, and recent commits before production use.
  2. 2Install in an isolated workspace or sandbox with no production secrets available.
  3. 3Run the smallest representative task and record files touched, commands run, network access, and outputs.
  4. 4Compare the selected skill against at least one alternative when the eval status is review or failed.
  5. 5Promote only after the agent reports a successful verification result and unresolved warnings are accepted.

Jangan gunakan ketika

Kondisi yang membutuhkan skill lain

  • Tim yang membutuhkan SLA dengan dukungan vendor
  • production agents without a repository review
  • Low GitHub adoption signal
  • SKILL.md does not explicitly state that the skill only performs analysis and does not execute any commands or modify infrastructure, which could be clarified for safety.
  • The skill lacks a 'Limitations' section to define boundaries (e.g., it does not handle on-premises or multi-cloud cost allocation).
  • Quality score needs review

Pemeriksaan pendukung

Sinyal kepercayaan di balik keputusan

Kelengkapan README/SKILL.md

Peringatan

76

Metadata publik memerlukan konteks README/SKILL.md yang lebih kuat

Pemeliharaan terbaru

Lulus

100

3 hari sejak push

Alternatif tersedia

Lulus

82

Alternative skills are available for comparison.