Evaluaci贸n previa a la instalaci贸n
Widgets Informe de evaluaci贸n.
Una decisi贸n de instalaci贸n legible por m谩quina para Agents: afinidad con la tarea, Trust Score, Audit Score, seguridad de instalaci贸n, superficie de permisos y un plan de validaci贸n concreto antes de tocar el espacio de trabajo.
do not auto install
Audit score: Risky
Controles obligatorios
Comprobaciones que un Agent debe superar antes de instalar
Ajuste de tarea
94
Task wording matches this skill metadata.
- Evaluate Widgets before installing it in an agent workflow
- web3-analytics
- Workflow automation workflows; Claude Code teams; builders willing to evaluate younger projects
Ruta de instalaci贸n
92
Install handoff is available.
- npx skills add DePayFi/widgets
Seguridad del comando de instalaci贸n
92
Ruta est谩ndar de paquete o instalaci贸n en tiempo de ejecuci贸n
- npx skills add DePayFi/widgets
Puntuaci贸n de confianza
75
Good trust signals with a few areas worth checking before rollout.
- Lista s贸lida
- 129 estrellas de GitHub
- MIT
Puntuaci贸n de auditor铆a
76
Riesgoso
- Permission surface may require sandboxing
Control de seguridad de Agent
48
This skill should not be selected by an agent without explicit human security review.
- Do not auto-install. Inspect the source, dependencies, and permission surface first.
- Audit risk exceeds the requested agent policy
Claridad de licencia
86
MIT
- MIT
Superficie de permisos
60
secrets or environment access, filesystem or document access
- Network access: medium
- Filesystem access: medium
- Secrets or environment access: high
Plan de validaci贸n
Qu茅 debe hacer el Agent despu茅s
- 1Inspect repository, README/SKILL.md, license, and recent commits before production use.
- 2Install in an isolated workspace or sandbox with no production secrets available.
- 3Run the smallest representative task and record files touched, commands run, network access, and outputs.
- 4Compare the selected skill against at least one alternative when the eval status is review or failed.
- 5Promote only after the agent reports a successful verification result and unresolved warnings are accepted.
No usar cuando
Condiciones que requieren otra skill
- Equipos que necesitan un SLA con soporte del proveedor
- Entornos de alta conformidad sin revisi贸n interna de seguridad
- No major risk signals from current metadata
- Audit risk risky exceeds max_risk=medium
- Indicios de permisos de alto riesgo: Secrets or environment access
- Permission surface may require sandboxing
Comprobaciones de apoyo
Se帽ales de confianza detr谩s de la decisi贸n
Completitud de README/SKILL.md
Aprobado90
Los metadatos incluyen suficiente contexto de uso y flujo de trabajo
Mantenimiento reciente
Advertencia76
5 meses desde el 煤ltimo push
Alternativas disponibles
Aprobado82
Alternative skills are available for comparison.