Evaluasi sebelum pemasangan

Code Index Laporan evaluasi.

Keputusan pemasangan yang dapat dibaca mesin untuk Agent: kecocokan tugas, Trust Score, Audit Score, keamanan pemasangan, cakupan izin, dan rencana validasi konkret sebelum skill menyentuh workspace.

GagalRisiko tinggiBlokir Kebijakan
66
Laporan evaluasi
70
Kepercayaan
75
Audit
39
Keamanan Agent

do not auto install

Install path: No install command or repository handoff is available.

Gerbang wajib

Pemeriksaan yang harus dilalui Agent sebelum memasang

Buka JSON

Kecocokan tugas

94

Lulus

Task wording matches this skill metadata.

  • Evaluate Code Index before installing it in an agent workflow
  • Alat umum
  • RAG and knowledge workflows; Claude Code teams; builders willing to evaluate younger projects

Jalur pemasangan

20

Gagal

No install command or repository handoff is available.

Keamanan perintah pemasangan

92

Lulus

Jalur pemasangan paket atau runtime standar

Skor kepercayaan

70

Peringatan

Potentially useful, but at least one trust signal needs human inspection.

  • Tinjauan manual
  • 27 star GitHub
  • MIT

Skor audit

75

Peringatan

Perlu ditinjau

  • Dependency or permission surface needs review

Gerbang keamanan Agent

39

Peringatan

Sparse or mixed signals. Useful for discovery, but not for autonomous installation.

  • Skill source structure is not confirmed in the registry. Inspect the source and identify valid skill instructions before proposing an installation. A repository URL or GitHub stars do not prove installability.

Kejelasan lisensi

86

Lulus

MIT

  • MIT

Cakupan izin

36

Gagal

shell or command execution, filesystem or document access

  • Shell or command execution: high
  • Browser automation: medium
  • Network access: medium

Rencana validasi

Langkah Agent berikutnya

  1. 1Inspect repository, README/SKILL.md, license, and recent commits before production use.
  2. 2Install in an isolated workspace or sandbox with no production secrets available.
  3. 3Run the smallest representative task and record files touched, commands run, network access, and outputs.
  4. 4Compare the selected skill against at least one alternative when the eval status is review or failed.
  5. 5Promote only after the agent reports a successful verification result and unresolved warnings are accepted.

Jangan gunakan ketika

Kondisi yang membutuhkan skill lain

  • Tim yang membutuhkan SLA dengan dukungan vendor
  • production agents without a repository review
  • Low GitHub adoption signal
  • Petunjuk izin berisiko tinggi: eksekusi shell atau perintah
  • Dependency or permission surface needs review
  • Skill source structure is not confirmed in the registry. Inspect the source and identify valid skill instructions before proposing an installation. A repository URL or GitHub stars do not prove installability.

Pemeriksaan pendukung

Sinyal kepercayaan di balik keputusan

Kelengkapan README/SKILL.md

Lulus

90

Metadata memuat konteks penggunaan dan alur kerja yang cukup

Pemeliharaan terbaru

Lulus

88

2 bulan sejak push

Alternatif tersedia

Lulus

82

Alternative skills are available for comparison.