Informe de auditoría del skill
review Informe de auditoría.
코드 변경사항 전체 리뷰. code-reviewer 에이전트 + security-audit 에이전트를 순차 실행하는 래퍼 스킬. PR/MR 생성 전 또는 리뷰 요청 시 사용.
Trust Score de OpenAgentSkill
Trust Score de OpenAgentSkill
The Trust Score helps an agent decide whether a skill is safe enough to shortlist before installation.
Adopción en GitHub
Fallido30
20 estrellas de GitHub
Actividad de stars/forks
Fallido32
20 estrellas y 3 forks; la actividad de issues no está disponible en los metadatos actuales
Mantenimiento reciente
Aprobado100
Actualizado hoy
Claridad de licencia
Aprobado86
MIT
Completitud de README/SKILL.md
Info76
Los metadatos públicos necesitan más contexto de README/SKILL.md
Riesgo de dependencias/runtime
Info64
command execution surface, database surface
Disponibilidad de instalación
Aprobado92
npx skills add LeeYudok/agents-scaffold --skill review
Seguridad del comando de instalación
Aprobado92
Ruta estándar de paquete o instalación en tiempo de ejecución
Superficie de permisos
Info64
Ejecución de shell o comandos, acceso a base de datos
Evidencia del repositorio
Aprobado86
https://github.com/LeeYudok/agents-scaffold/tree/main/.claude/skills/review
Estado de revisión
Info66
Hay datos de revisión por IA disponibles
Resultados comprobados por Agent
Info54
Aún no hay datos de resultados del Agent
Comprobaciones
Revisión de instalación y adopción
Ruta de instalación
92
npx skills add LeeYudok/agents-scaffold --skill review
Repositorio
88
https://github.com/LeeYudok/agents-scaffold/tree/main/.claude/skills/review
Licencia
86
MIT
Mantenimiento
100
Actualizado hoy
Revisión por IA
55
Skill relies on external agents (code-reviewer, security-audit) that are not defined within the skill itself; no fallback or explanation if they are missing.
Completitud de README/SKILL.md
84
Usable description available
Riesgo de dependencias
64
command execution surface, database surface
Seguridad del comando de instalación
92
Ruta estándar de paquete o instalación en tiempo de ejecución
Superficie de permisos
64
Ejecución de shell o comandos, acceso a base de datos
Actividad de stars/forks
32
20 estrellas y 3 forks; la actividad de issues no está disponible en los metadatos actuales
Adopción
42
20 estrellas de GitHub
Advertencias
- Skill relies on external agents (code-reviewer, security-audit) that are not defined within the skill itself; no fallback or explanation if they are missing.
- No explicit limitations or prerequisites are stated, such as requiring a git repository or the presence of the named agents.
- The security audit checklist is vague ('P0 보안 12개 항목 grep 스캔') without specifying which 12 items are covered.
- Low GitHub adoption signal
- Quality score needs review
- GitHub adoption: 20 GitHub stars
- Stars/forks activity: 20 stars, 3 forks; issue activity unavailable in current metadata
Método
This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.
Comparar opciones cercanas
Skills relacionados para auditar después
Wazuh
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
16K Estrellas · Informe de auditoría
Maigret
🕵️♂️ Collect a dossier on a person by username from 3000+ sites
33K Estrellas · Informe de auditoría
Nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
29K Estrellas · Informe de auditoría