Laporan audit skill

modlens Laporan audit.

Plug-in vision for text-only models. Hard rule: when a file path or URL with an image extension (.png, .jpg, .jpeg, .webp, .gif, .heic, .heif) appears anywhere in the conversation (typed by the user, injected as a `[Image: source: <path>]` line, or inside a tag) and you cannot see that image's content, run this skill on it before any other approach: no self-built OCR, no PIL, no tesseract. Also triggers on pasted-image placeholders such as `[Image #1]` and `[Unsupported Image]`. If you can actually see the image, do not use this skill. When unsure, run `modlens guard` before the first read of a session: a deny verdict means the active model has native vision and must read the image itself. Runs the modlens CLI to convert the image into structured JSON evidence: every word transcribed, layout regions, semantics, visual clues. Also use when the user asks how to install, configure, or switch modlens providers (Gemini API key, OpenAI-compatible endpoints, Claude API or Claude Code CLI).

Diblokir · BlokirPerlu ditinjauDihasilkan 22 Agu 2026Audit metadata heuristik
80
Audit
70
Kepercayaan
82
Kualitas
71
Keamanan
100
Maintain
92
Pasang

Trust Score OpenAgentSkill

70
Tinjauan manual

Trust Score OpenAgentSkill

The Trust Score helps an agent decide whether a skill is safe enough to shortlist before installation.

Adopsi GitHub

Lulus

86

3.3K star GitHub

Aktivitas star/fork

Info

77

3.3K star dan 89 fork; aktivitas issue tidak tersedia dalam metadata saat ini

Pemeliharaan terbaru

Lulus

100

2 hari sejak push

Kejelasan lisensi

Lulus

86

MIT

Kelengkapan README/SKILL.md

Lulus

86

Metadata memuat konteks penggunaan dan alur kerja yang cukup

Risiko dependensi/runtime

Peringatan

46

command execution surface, credential or environment access

Ketersediaan pemasangan

Lulus

92

npx skills add liustack/modlens --skill modlens

Keamanan perintah pemasangan

Lulus

92

Jalur pemasangan paket atau runtime standar

Cakupan izin

Gagal

18

secrets or environment access, shell or command execution

Bukti repositori

Lulus

86

https://github.com/liustack/modlens/tree/main/skills/modlens

Status peninjauan

Info

66

Data tinjauan AI tersedia

Hasil terbukti Agent

Info

54

Belum ada data hasil Agent

Pemeriksaan

Tinjauan pemasangan dan adopsi

7 Lulus · 12 Perlu ditinjau

Jalur pemasangan

92

Lulus

npx skills add liustack/modlens --skill modlens

Repositori

88

Lulus

https://github.com/liustack/modlens/tree/main/skills/modlens

Lisensi

86

Lulus

MIT

Pemeliharaan

100

Lulus

2 hari sejak push

Tinjauan AI

55

Periksa

The SKILL.md excerpt appears truncated mid-sentence in the 'Failures' section; ensure the full file is complete and not malformed.

Kelengkapan README/SKILL.md

86

Lulus

Usable description available

Risiko dependensi

46

Perbaiki

command execution surface, credential or environment access

Keamanan perintah pemasangan

92

Lulus

Jalur pemasangan paket atau runtime standar

Cakupan izin

18

Perbaiki

secrets or environment access, shell or command execution

Aktivitas star/fork

77

Periksa

3.3K star dan 89 fork; aktivitas issue tidak tersedia dalam metadata saat ini

Adopsi

88

Lulus

3.3K star GitHub

Peringatan

  • Dependency or permission surface needs review
  • Permission surface may require sandboxing
  • The SKILL.md excerpt appears truncated mid-sentence in the 'Failures' section; ensure the full file is complete and not malformed.
  • The skill relies on external network calls and third-party providers, which may raise privacy concerns; this is disclosed but should be emphasized to users.
  • Quality score needs review
  • Permission surface needs review: secrets or environment access, shell or command execution
  • Dependency/runtime risk: command execution surface, credential or environment access
  • Permission surface: secrets or environment access, shell or command execution

Metode

This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.

Bandingkan opsi sekitar

Skill terkait untuk diaudit berikutnya