スキル監査レポート

gza-code-review-interactive 監査レポート.

Review changes on current branch and output a structured review. Optionally post to PR with --pr flag, or apply non-blocking follow-ups inline with --apply-followups.

実験的 · レビュー要レビュー生成日 2026年8月23日ヒューリスティックなメタデータ監査
73
監査
68
信頼
57
品質
75
セキュリティ
100
保守
92
インストール

OpenAgentSkill Trust Score

68
手動レビュー

OpenAgentSkill Trust Score

Trust Score は、インストール前に候補に入れる安全性を Agent が判断する助けになります。

GitHub 採用度

失敗

30

GitHub スター 11

スター/フォーク活動

失敗

32

スター 11、フォーク 1; 現在のメタデータでは Issue 活動を利用できません

最近のメンテナンス

合格

100

最終プッシュから 1 日

ライセンスの明確さ

合格

86

MIT

README/SKILL.md の完全性

合格

86

メタデータには十分な利用・ワークフロー文脈があります

依存関係/ランタイムのリスク

情報

72

コマンド実行範囲

インストール可否

合格

92

npx skills add mhawthorne/gza --skill gza-code-review-interactive

インストールコマンドの安全性

合格

92

標準パッケージまたはランタイムのインストールパス

権限範囲

警告

50

shell or command execution, filesystem or document access

リポジトリ根拠

合格

86

https://github.com/mhawthorne/gza/tree/main/src/gza/skills/gza-code-review-interactive

レビュー状況

情報

66

AI レビューデータを利用できます

Agent 検証結果

情報

54

Agent の成果データはまだありません

チェック

インストールと採用のレビュー

6 合格 · 13 要レビュー

インストール経路

92

合格

npx skills add mhawthorne/gza --skill gza-code-review-interactive

リポジトリ

88

合格

https://github.com/mhawthorne/gza/tree/main/src/gza/skills/gza-code-review-interactive

ライセンス

86

合格

MIT

メンテナンス

100

合格

最終プッシュから 1 日

AI レビュー

55

確認

The skill reads AGENTS.md, REVIEW.md, and project docs as context for the review subagent without explicitly stating that these files should be treated as untrusted data. A malicious repo could inject instructions into these files to influence the subagent's behavior (prompt injection).

README/SKILL.md の完全性

86

合格

Usable description available

依存関係リスク

72

確認

コマンド実行範囲

インストールコマンドの安全性

92

合格

標準パッケージまたはランタイムのインストールパス

権限範囲

50

修正

shell or command execution, filesystem or document access

スター/フォーク活動

32

修正

スター 11、フォーク 1; 現在のメタデータでは Issue 活動を利用できません

採用度

42

確認

GitHub スター 11

警告

  • Permission surface may require sandboxing
  • The skill reads AGENTS.md, REVIEW.md, and project docs as context for the review subagent without explicitly stating that these files should be treated as untrusted data. A malicious repo could inject instructions into these files to influence the subagent's behavior (prompt injection).
  • Low GitHub adoption signal
  • Quality score needs review
  • Permission surface needs review: shell or command execution, filesystem or document access
  • GitHub adoption: 11 GitHub stars
  • Stars/forks activity: 11 stars, 1 forks; issue activity unavailable in current metadata
  • Permission surface: shell or command execution, filesystem or document access

方法

このレポートは公開メタデータ、AI レビュー、リポジトリの鮮度、インストール準備、OpenAgentSkill イベント、品質スコア、信頼チェック、Agent セーフティゲートを統合します。完全なソースコード監査ではありません。

近い選択肢を比較

次に監査する関連スキル