安装前评估

Devdocs 评估报告.

为 Agent 提供机器可读的安装决策:任务匹配、Trust Score、Audit Score、安装安全、权限范围,以及在 Skill 进入工作区前的具体验证计划。

需审查中风险审查 策略
87
评估报告
88
信任
91
审计
71
Agent 安全

人工审查

在真实工作区安装前需要人工批准。

必要关卡

Agent 安装前必须通过的检查

打开 JSON

任务匹配度

84

通过

任务描述与此 Skill 的元数据匹配。

  • Evaluate Devdocs before installing it in an agent workflow
  • 编程 Agent
  • Coding agents workflows; Claude Code teams; teams that value GitHub adoption signals

安装路径

92

通过

可用安装交接信息。

  • npx skills add freeCodeCamp/devdocs

安装命令安全性

92

通过

标准软件包或运行时安装路径

  • npx skills add freeCodeCamp/devdocs

信任评分

88

通过

Strong OpenAgentSkill Trust Score across adoption, recent maintenance, license clarity, documentation, dependency/runtime risk, install safety, permission surface, and install availability.

  • 生产候选
  • 39K 个 GitHub Stars
  • MPL-2.0

审计评分

91

警告

需审查

  • Financial research output is not financial advice; require human review before any live investment decision

Agent 安全门槛

71

警告

可用候选,但 Agent 在安装前应展示权限与审计说明。

  • 在真实工作区安装前需要人工批准。
  • Financial research output is not financial advice; require human review before any live investment decision

许可证清晰度

86

通过

MPL-2.0

  • MPL-2.0

权限范围

72

警告

filesystem or document access, network or browser access

  • Browser automation: medium
  • Network access: medium
  • Filesystem access: medium

验证计划

Agent 接下来应执行什么

  1. 1在生产使用前检查仓库、README/SKILL.md、许可证与最近提交。
  2. 2在没有生产密钥的隔离工作区或沙盒中安装。
  3. 3运行最小代表性任务,并记录访问的文件、执行的命令、网络访问和输出。
  4. 4当评估状态为“审查”或“失败”时,至少与一个替代 Skill 比较。
  5. 5只有在 Agent 报告验证成功且已接受未解决警告后,才提升到更高环境。

不适用场景

需要改用其他 Skill 的情况

  • 需要厂商支持 SLA 的团队
  • 没有内部安全审查的高合规环境
  • 当前元数据中未发现重大风险信号
  • Financial research output is not financial advice; require human review before any live investment decision
  • Financial research output is not financial advice; require human review before any live investment decision.
  • 文档摘要较少

辅助检查

支撑该决策的信任信号

README/SKILL.md 完整度

警告

74

公开元数据需要更完整的 README/SKILL.md 上下文

近期维护

通过

88

距上次推送 2 个月

可用替代方案

通过

82

有可用于比较的替代 Skill。