Incident Response & Digital Forensics Audit report.
IR playbook execution, evidence collection, forensic timeline analysis, memory forensics, and post-incident reporting following NIST SP 800-61 and SANS PICERL methodology
Incident Response & Digital Forensics Audit report.
IR playbook execution, evidence collection, forensic timeline analysis, memory forensics, and post-incident reporting following NIST SP 800-61 and SANS PICERL methodology
Incident Response & Digital Forensics Audit report.
IR playbook execution, evidence collection, forensic timeline analysis, memory forensics, and post-incident reporting following NIST SP 800-61 and SANS PICERL methodology
Incident Response & Digital Forensics Audit report.
IR playbook execution, evidence collection, forensic timeline analysis, memory forensics, and post-incident reporting following NIST SP 800-61 and SANS PICERL methodology
evidence_collector.py truncates at ~400 lines, likely incomplete implementation
README/SKILL.md completeness
94
PASS
Usable description available
Dependency risk
44
FIX
command execution surface, credential or environment access
Install command safety
92
PASS
standard package or runtime install path
Permission surface
22
FIX
secrets or environment access, shell or command execution
Stars/forks activity
62
CHECK
397 stars, 75 forks; issue activity unavailable in current metadata
Adoption
68
INFO
397 GitHub stars
Warnings
Dependency or permission surface needs review
Permission surface may require sandboxing
Potential broker, wallet, exchange, or real-money execution surface; sandbox and explicit approval are required
evidence_collector.py truncates at ~400 lines, likely incomplete implementation
timeline_builder.py also appears truncated, missing full implementation
SKILL.md mentions 'Frameworks' metadata field but none are declared in frontmatter
This skill may touch real-money trading, broker, wallet, or exchange operations; use only in a sandbox with explicit approval.
Quality score needs review
Permission surface needs review: secrets or environment access, shell or command execution
Dependency/runtime risk: command execution surface, credential or environment access
Permission surface: secrets or environment access, shell or command execution
Method
This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.
evidence_collector.py truncates at ~400 lines, likely incomplete implementation
README/SKILL.md completeness
94
PASS
Usable description available
Dependency risk
44
FIX
command execution surface, credential or environment access
Install command safety
92
PASS
standard package or runtime install path
Permission surface
22
FIX
secrets or environment access, shell or command execution
Stars/forks activity
62
CHECK
397 stars, 75 forks; issue activity unavailable in current metadata
Adoption
68
INFO
397 GitHub stars
Warnings
Dependency or permission surface needs review
Permission surface may require sandboxing
Potential broker, wallet, exchange, or real-money execution surface; sandbox and explicit approval are required
evidence_collector.py truncates at ~400 lines, likely incomplete implementation
timeline_builder.py also appears truncated, missing full implementation
SKILL.md mentions 'Frameworks' metadata field but none are declared in frontmatter
This skill may touch real-money trading, broker, wallet, or exchange operations; use only in a sandbox with explicit approval.
Quality score needs review
Permission surface needs review: secrets or environment access, shell or command execution
Dependency/runtime risk: command execution surface, credential or environment access
Permission surface: secrets or environment access, shell or command execution
Method
This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.
evidence_collector.py truncates at ~400 lines, likely incomplete implementation
README/SKILL.md completeness
94
PASS
Usable description available
Dependency risk
44
FIX
command execution surface, credential or environment access
Install command safety
92
PASS
standard package or runtime install path
Permission surface
22
FIX
secrets or environment access, shell or command execution
Stars/forks activity
62
CHECK
397 stars, 75 forks; issue activity unavailable in current metadata
Adoption
68
INFO
397 GitHub stars
Warnings
Dependency or permission surface needs review
Permission surface may require sandboxing
Potential broker, wallet, exchange, or real-money execution surface; sandbox and explicit approval are required
evidence_collector.py truncates at ~400 lines, likely incomplete implementation
timeline_builder.py also appears truncated, missing full implementation
SKILL.md mentions 'Frameworks' metadata field but none are declared in frontmatter
This skill may touch real-money trading, broker, wallet, or exchange operations; use only in a sandbox with explicit approval.
Quality score needs review
Permission surface needs review: secrets or environment access, shell or command execution
Dependency/runtime risk: command execution surface, credential or environment access
Permission surface: secrets or environment access, shell or command execution
Method
This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.
evidence_collector.py truncates at ~400 lines, likely incomplete implementation
README/SKILL.md completeness
94
PASS
Usable description available
Dependency risk
44
FIX
command execution surface, credential or environment access
Install command safety
92
PASS
standard package or runtime install path
Permission surface
22
FIX
secrets or environment access, shell or command execution
Stars/forks activity
62
CHECK
397 stars, 75 forks; issue activity unavailable in current metadata
Adoption
68
INFO
397 GitHub stars
Warnings
Dependency or permission surface needs review
Permission surface may require sandboxing
Potential broker, wallet, exchange, or real-money execution surface; sandbox and explicit approval are required
evidence_collector.py truncates at ~400 lines, likely incomplete implementation
timeline_builder.py also appears truncated, missing full implementation
SKILL.md mentions 'Frameworks' metadata field but none are declared in frontmatter
This skill may touch real-money trading, broker, wallet, or exchange operations; use only in a sandbox with explicit approval.
Quality score needs review
Permission surface needs review: secrets or environment access, shell or command execution
Dependency/runtime risk: command execution surface, credential or environment access
Permission surface: secrets or environment access, shell or command execution
Method
This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.