Skill audit report
Add one new capability to an existing ALBA setup - skill, hook, rule, slash command or MCP integration - interactively, then wire it into CLAUDE.md and settings.json. Use when user says "add a skill", "add a hook", "I want a rule for X", "connect Trello/Gmail/Linear", "extend my agent", "can ALBA also do X". Do NOT use for first-time setup (use /setup). If the user already knows they want a skill, /create-skill goes straight to writing SKILL.md - /extend is the router for when the component type is still open.
OpenAgentSkill Trust Score
The Trust Score helps an agent decide whether a skill is safe enough to shortlist before installation.
GitHub adoption
FAIL30
20 GitHub stars
Stars/forks activity
FAIL32
20 stars, 5 forks; issue activity unavailable in current metadata
Recent maintenance
PASS88
2mo since push
License clarity
PASS86
MIT
README/SKILL.md completeness
PASS86
Metadata includes enough usage and workflow context
Dependency/runtime risk
INFO72
command execution surface
Install availability
PASS92
npx skills add onurpolat05/ALBA --skill extend
Install command safety
PASS92
standard package or runtime install path
Permission surface
INFO76
shell or command execution
Repository evidence
PASS86
https://github.com/onurpolat05/ALBA/tree/main/.claude/skills/extend
Review status
WARN46
AI review approval is missing
Agent Proven outcomes
INFO54
No agent outcome data yet
Checks
Install path
92
npx skills add onurpolat05/ALBA --skill extend
Repository
88
https://github.com/onurpolat05/ALBA/tree/main/.claude/skills/extend
License
86
MIT
Maintenance
88
2mo since push
AI review
55
Review approval is missing
README/SKILL.md completeness
86
Usable description available
Dependency risk
72
command execution surface
Install command safety
92
standard package or runtime install path
Permission surface
76
shell or command execution
Stars/forks activity
32
20 stars, 5 forks; issue activity unavailable in current metadata
Adoption
42
20 GitHub stars
Warnings
Method
This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.
Compare nearby options