Skill 审计报告
crowdstrike-api 审计报告.
CrowdStrike Falcon Intelligence (Intel API) reference. OAuth2 auth, Falcon Query Language, indicator (IOC) lookups, threat-actor entities, intel reports, MITRE ATT&CK mappings, malware families, vulnerabilities, rule sets.
OpenAgentSkill 信任评分
OpenAgentSkill 信任评分
Trust Score 帮助 Agent 在安装前判断一个 Skill 是否足以进入候选清单。
GitHub 采用度
失败30
24 个 GitHub Stars
Star/Fork 活跃度
失败32
24 个 Star,8 个 Fork; 当前元数据中没有议题活跃度信息
近期维护
通过100
距上次推送 11 天
许可证清晰度
通过86
MIT
README/SKILL.md 完整度
通过86
元数据包含足够的用法与工作流上下文
依赖与运行时风险
警告46
command execution surface, credential or environment access
安装可用性
通过92
npx skills add Liberty91LTD/cti-skills --skill crowdstrike-api
安装命令安全性
通过92
标准软件包或运行时安装路径
权限范围
失败22
secrets or environment access, shell or command execution
仓库证据
通过86
https://github.com/Liberty91LTD/cti-skills/tree/main/skills/crowdstrike-api
审查状态
信息66
可用 AI 审查数据
Agent 验证结果
信息54
暂未有 Agent 结果数据
检查项
安装与采用审查
安装路径
92
npx skills add Liberty91LTD/cti-skills --skill crowdstrike-api
仓库
88
https://github.com/Liberty91LTD/cti-skills/tree/main/skills/crowdstrike-api
许可证
86
MIT
维护
100
距上次推送 11 天
AI 审查
55
The SKILL.md references a separate lookup skill and CLI (tools/clis/crowdstrike.py) that are not included in this submission, making it incomplete as a standalone skill.
README/SKILL.md 完整度
86
Usable description available
依赖风险
46
command execution surface, credential or environment access
安装命令安全性
92
标准软件包或运行时安装路径
权限范围
22
secrets or environment access, shell or command execution
Star/Fork 活跃度
32
24 个 Star,8 个 Fork; 当前元数据中没有议题活跃度信息
采用度
42
24 个 GitHub Stars
Financial decision safety
58
Research-only use: do not treat output as financial advice or execute a position without human approval.
警告
- Dependency or permission surface needs review
- Permission surface may require sandboxing
- Financial research output is not financial advice; require human review before any live investment decision
- The SKILL.md references a separate lookup skill and CLI (tools/clis/crowdstrike.py) that are not included in this submission, making it incomplete as a standalone skill.
- The phrase 'bold-path subset' in the capability map is not actually bolded in the markdown, which may cause confusion about which endpoints are wrapped by the CLI.
- Low GitHub adoption signal
- Financial research output is not financial advice; require human review before any live investment decision.
- Quality score needs review
- Permission surface needs review: secrets or environment access, shell or command execution
- GitHub adoption: 24 GitHub stars
- Stars/forks activity: 24 stars, 8 forks; issue activity unavailable in current metadata
- Dependency/runtime risk: command execution surface, credential or environment access
方法
本报告综合公开元数据、AI 审查输出、仓库活跃度、安装就绪度、OpenAgentSkill 事件、质量评分、信任检查和 Agent 安全门槛;它不是完整的源代码安全审计。
对比相近选项
下一步可审计的相关 Skill
Wazuh
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
16K Stars · 审计报告
Maigret
🕵️♂️ Collect a dossier on a person by username from 3000+ sites
33K Stars · 审计报告
Nuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
29K Stars · 审计报告