スキル監査レポート
firebase-security-rules-auditor 監査レポート.
Audits Firebase (Firestore, Cloud Storage) security rules for vulnerabilities, privilege escalation, role bypasses, create vs update inconsistencies, resource exhaustion, type safety, size limits, and hasOnly ownership checks. Use when auditing/reviewing rules, running red-team rule assessments, or scoring against auditor checklists. Don't use for Firebase CLI (login, deploy), Auth, Crashlytics, Remote Config, or database queries.
OpenAgentSkill Trust Score
OpenAgentSkill Trust Score
Trust Score は、インストール前に候補に入れる安全性を Agent が判断する助けになります。
GitHub 採用度
情報62
GitHub スター 434
スター/フォーク活動
情報62
スター 434、フォーク 89; 現在のメタデータでは Issue 活動を利用できません
最近のメンテナンス
合格88
最終プッシュから 1 か月
ライセンスの明確さ
合格86
Apache-2.0
README/SKILL.md の完全性
合格86
メタデータには十分な利用・ワークフロー文脈があります
依存関係/ランタイムのリスク
警告46
command execution surface, credential or environment access
インストール可否
合格92
npx skills add firebase/agent-skills --skill firebase-security-rules-auditor
インストールコマンドの安全性
合格92
標準パッケージまたはランタイムのインストールパス
権限範囲
失敗24
secrets or environment access, shell or command execution
リポジトリ根拠
合格86
https://github.com/firebase/agent-skills/tree/main/skills/firebase-security-rules-auditor
レビュー状況
合格88
AI レビューデータを利用できます
Agent 検証結果
情報54
Agent の成果データはまだありません
チェック
インストールと採用のレビュー
インストール経路
92
npx skills add firebase/agent-skills --skill firebase-security-rules-auditor
リポジトリ
88
https://github.com/firebase/agent-skills/tree/main/skills/firebase-security-rules-auditor
ライセンス
86
Apache-2.0
メンテナンス
88
最終プッシュから 1 か月
AI レビュー
88
Approved with no listed issues
README/SKILL.md の完全性
86
Usable description available
依存関係リスク
46
command execution surface, credential or environment access
インストールコマンドの安全性
92
標準パッケージまたはランタイムのインストールパス
権限範囲
24
secrets or environment access, shell or command execution
スター/フォーク活動
62
スター 434、フォーク 89; 現在のメタデータでは Issue 活動を利用できません
採用度
68
GitHub スター 434
警告
- Dependency or permission surface needs review
- Permission surface may require sandboxing
- Quality score needs review
- Permission surface needs review: secrets or environment access, shell or command execution
- Dependency/runtime risk: command execution surface, credential or environment access
- Permission surface: secrets or environment access, shell or command execution
方法
このレポートは公開メタデータ、AI レビュー、リポジトリの鮮度、インストール準備、OpenAgentSkill イベント、品質スコア、信頼チェック、Agent セーフティゲートを統合します。完全なソースコード監査ではありません。
近い選択肢を比較
次に監査する関連スキル
Wazuh
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
16K スター · 監査レポート
Maigret
🕵️♂️ Collect a dossier on a person by username from 3000+ sites
33K スター · 監査レポート
Nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
29K スター · 監査レポート