Laporan audit skill

officecli Laporan audit.

Use when the task involves Office document or standalone image handling such as creating, modifying, or converting PPTX, DOCX, XLSX, Report, or IMG files, and the agent should first check whether officecli supports that workflow before choosing the execution path.

Diblokir · BlokirPerlu ditinjauDihasilkan 11 Okt 2026Audit metadata heuristik
71
Audit
63
Kepercayaan
63
Kualitas
69
Keamanan
88
Maintain
92
Pasang

Trust Score OpenAgentSkill

63
Tinjauan manual

Trust Score OpenAgentSkill

The Trust Score helps an agent decide whether a skill is safe enough to shortlist before installation.

Adopsi GitHub

Info

62

101 star GitHub

Aktivitas star/fork

Peringatan

51

101 star dan 8 fork; aktivitas issue tidak tersedia dalam metadata saat ini

Pemeliharaan terbaru

Lulus

88

2 bulan sejak push

Kejelasan lisensi

Lulus

86

MIT

Kelengkapan README/SKILL.md

Lulus

86

Metadata memuat konteks penggunaan dan alur kerja yang cukup

Risiko dependensi/runtime

Gagal

36

command execution surface, credential or environment access

Ketersediaan pemasangan

Lulus

92

npx skills add officecli/officecli --skill officecli

Keamanan perintah pemasangan

Lulus

92

Jalur pemasangan paket atau runtime standar

Cakupan izin

Gagal

22

secrets or environment access, shell or command execution

Bukti repositori

Lulus

86

https://github.com/officecli/officecli/tree/main/plugins/officecli/skills/officecli

Status peninjauan

Info

66

Data tinjauan AI tersedia

Hasil terbukti Agent

Info

54

Belum ada data hasil Agent

Pemeriksaan

Tinjauan pemasangan dan adopsi

6 Lulus · 13 Perlu ditinjau

Jalur pemasangan

92

Lulus

npx skills add officecli/officecli --skill officecli

Repositori

88

Lulus

https://github.com/officecli/officecli/tree/main/plugins/officecli/skills/officecli

Lisensi

86

Lulus

MIT

Pemeliharaan

88

Lulus

2 bulan sejak push

Tinjauan AI

55

Periksa

The skill includes shell scripts that download and install a binary from external sources, which inherently carries supply-chain risk. The scripts are transparent and use official URLs, but agents should verify integrity if possible.

Kelengkapan README/SKILL.md

86

Lulus

Usable description available

Risiko dependensi

36

Perbaiki

command execution surface, credential or environment access

Keamanan perintah pemasangan

92

Lulus

Jalur pemasangan paket atau runtime standar

Cakupan izin

22

Perbaiki

secrets or environment access, shell or command execution

Aktivitas star/fork

51

Perbaiki

101 star dan 8 fork; aktivitas issue tidak tersedia dalam metadata saat ini

Adopsi

68

Info

101 star GitHub

Peringatan

  • Dependency or permission surface needs review
  • Permission surface may require sandboxing
  • The skill includes shell scripts that download and install a binary from external sources, which inherently carries supply-chain risk. The scripts are transparent and use official URLs, but agents should verify integrity if possible.
  • SKILL.md does not explicitly list limitations or failure modes beyond image generation fallback; it could be more explicit about unsupported edge cases.
  • Quality score needs review
  • Permission surface needs review: secrets or environment access, shell or command execution
  • Stars/forks activity: 101 stars, 8 forks; issue activity unavailable in current metadata
  • Dependency/runtime risk: command execution surface, credential or environment access
  • Permission surface: secrets or environment access, shell or command execution

Metode

This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.

Bandingkan opsi sekitar

Skill terkait untuk diaudit berikutnya