Informe de auditoría del skill
gza-code-review-interactive Informe de auditoría.
Review changes on current branch and output a structured review. Optionally post to PR with --pr flag, or apply non-blocking follow-ups inline with --apply-followups.
Trust Score de OpenAgentSkill
Trust Score de OpenAgentSkill
The Trust Score helps an agent decide whether a skill is safe enough to shortlist before installation.
Adopción en GitHub
Fallido30
11 estrellas de GitHub
Actividad de stars/forks
Fallido32
11 estrellas y 1 forks; la actividad de issues no está disponible en los metadatos actuales
Mantenimiento reciente
Aprobado100
1 días desde el último push
Claridad de licencia
Aprobado86
MIT
Completitud de README/SKILL.md
Aprobado86
Los metadatos incluyen suficiente contexto de uso y flujo de trabajo
Riesgo de dependencias/runtime
Info72
Superficie de ejecución de comandos
Disponibilidad de instalación
Aprobado92
npx skills add mhawthorne/gza --skill gza-code-review-interactive
Seguridad del comando de instalación
Aprobado92
Ruta estándar de paquete o instalación en tiempo de ejecución
Superficie de permisos
Advertencia50
shell or command execution, filesystem or document access
Evidencia del repositorio
Aprobado86
https://github.com/mhawthorne/gza/tree/main/src/gza/skills/gza-code-review-interactive
Estado de revisión
Info66
Hay datos de revisión por IA disponibles
Resultados comprobados por Agent
Info54
Aún no hay datos de resultados del Agent
Comprobaciones
Revisión de instalación y adopción
Ruta de instalación
92
npx skills add mhawthorne/gza --skill gza-code-review-interactive
Repositorio
88
https://github.com/mhawthorne/gza/tree/main/src/gza/skills/gza-code-review-interactive
Licencia
86
MIT
Mantenimiento
100
1 días desde el último push
Revisión por IA
55
The skill reads AGENTS.md, REVIEW.md, and project docs as context for the review subagent without explicitly stating that these files should be treated as untrusted data. A malicious repo could inject instructions into these files to influence the subagent's behavior (prompt injection).
Completitud de README/SKILL.md
86
Usable description available
Riesgo de dependencias
72
Superficie de ejecución de comandos
Seguridad del comando de instalación
92
Ruta estándar de paquete o instalación en tiempo de ejecución
Superficie de permisos
50
shell or command execution, filesystem or document access
Actividad de stars/forks
32
11 estrellas y 1 forks; la actividad de issues no está disponible en los metadatos actuales
Adopción
42
11 estrellas de GitHub
Advertencias
- Permission surface may require sandboxing
- The skill reads AGENTS.md, REVIEW.md, and project docs as context for the review subagent without explicitly stating that these files should be treated as untrusted data. A malicious repo could inject instructions into these files to influence the subagent's behavior (prompt injection).
- Low GitHub adoption signal
- Quality score needs review
- Permission surface needs review: shell or command execution, filesystem or document access
- GitHub adoption: 11 GitHub stars
- Stars/forks activity: 11 stars, 1 forks; issue activity unavailable in current metadata
- Permission surface: shell or command execution, filesystem or document access
Método
This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.
Comparar opciones cercanas
Skills relacionados para auditar después
Code Review
Review a branch or diff against repository standards and the originating spec in two independent analysis passes.
169K Estrellas · Informe de auditoría
Grill With Docs
A relentless interview that pressure-tests a plan against the codebase, sharpens domain language, and updates CONTEXT.md and ADRs when decisions become durable.
165K Estrellas · Informe de auditoría
To Spec
Turn the current conversation and codebase context into a structured implementation spec, then publish it to the configured project issue tracker.
165K Estrellas · Informe de auditoría