Skill audit report
Mist Audit report.
A distributed, tag-based pub-sub service for modern web applications and container-driven cloud.
OpenAgentSkill Trust Score
OpenAgentSkill Trust Score
The Trust Score helps an agent decide whether a skill is safe enough to shortlist before installation.
GitHub adoption
INFO76
663 GitHub stars
Stars/forks activity
INFO65
663 stars, 45 forks; issue activity unavailable in current metadata
Recent maintenance
FAIL22
3y since push
License clarity
PASS86
MIT
README/SKILL.md completeness
PASS90
Metadata includes enough usage and workflow context
Dependency/runtime risk
INFO80
external package install surface
Install availability
PASS92
npx skills add nanopack/mist
Install command safety
PASS92
standard package or runtime install path
Permission surface
PASS86
filesystem or document access
Repository evidence
PASS86
https://github.com/nanopack/mist
Review status
PASS88
AI review data available
Agent Proven outcomes
INFO54
No agent outcome data yet
Checks
Install and adoption review
Install path
92
npx skills add nanopack/mist
Repository
88
https://github.com/nanopack/mist
License
86
MIT
Maintenance
20
3y since push
AI review
88
Approved with no listed issues
README/SKILL.md completeness
90
Usable description available
Dependency risk
80
external package install surface
Install command safety
92
standard package or runtime install path
Permission surface
86
filesystem or document access
Stars/forks activity
65
663 stars, 45 forks; issue activity unavailable in current metadata
Adoption
88
663 GitHub stars
Financial decision safety
58
Research-only use: do not treat output as financial advice or execute a position without human approval.
Warnings
- Repository appears stale
- Financial research output is not financial advice; require human review before any live investment decision
- Repository looks stale
- Financial research output is not financial advice; require human review before any live investment decision.
- Quality score needs review
- Recent maintenance: 3y since push
Method
This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.