安装前评估

Dragonfire 评估报告.

为 Agent 提供机器可读的安装决策:任务匹配、Trust Score、Audit Score、安装安全、权限范围,以及在 Skill 进入工作区前的具体验证计划。

需审查中风险审查 策略
71
评估报告
79
信任
72
审计
56
Agent 安全

人工审查

Test manually in an isolated workspace and compare against safer alternatives.

必要关卡

Agent 安装前必须通过的检查

打开 JSON

任务匹配度

84

通过

任务描述与此 Skill 的元数据匹配。

  • Evaluate Dragonfire before installing it in an agent workflow
  • support-automation
  • GitHub automation workflows; Claude Code teams; teams that value GitHub adoption signals

安装路径

92

通过

可用安装交接信息。

  • npx skills add DragonComputer/Dragonfire

安装命令安全性

92

通过

标准软件包或运行时安装路径

  • npx skills add DragonComputer/Dragonfire

信任评分

79

警告

Good trust signals with a few areas worth checking before rollout.

  • 强候选
  • 1.4K 个 GitHub Stars
  • MIT

审计评分

72

警告

需审查

  • Repository appears stale

Agent 安全门槛

56

警告

Sparse or mixed signals. Useful for discovery, but not for autonomous installation.

  • Test manually in an isolated workspace and compare against safer alternatives.
  • Repository appears stale

许可证清晰度

86

通过

MIT

  • MIT

权限范围

86

通过

文件系统或文档访问

  • Network access: medium
  • Filesystem access: medium

验证计划

Agent 接下来应执行什么

  1. 1在生产使用前检查仓库、README/SKILL.md、许可证与最近提交。
  2. 2在没有生产密钥的隔离工作区或沙盒中安装。
  3. 3运行最小代表性任务,并记录访问的文件、执行的命令、网络访问和输出。
  4. 4当评估状态为“审查”或“失败”时,至少与一个替代 Skill 比较。
  5. 5只有在 Agent 报告验证成功且已接受未解决警告后,才提升到更高环境。

不适用场景

需要改用其他 Skill 的情况

  • teams that require actively maintained dependencies
  • production agents without a repository review
  • Repository looks stale
  • Repository appears stale
  • Financial research output is not financial advice; require human review before any live investment decision
  • Financial research output is not financial advice; require human review before any live investment decision.

辅助检查

支撑该决策的信任信号

README/SKILL.md 完整度

警告

74

公开元数据需要更完整的 README/SKILL.md 上下文

近期维护

失败

22

距上次推送 4 年

可用替代方案

通过

82

有可用于比较的替代 Skill。