Pre-install eval
Stylus eval report.
A machine-readable install decision for agents: task fit, Trust Score, Audit Score, install safety, permission surface, and a concrete validation plan before this skill touches a workspace.
manual review
Review the audit page, then allow agent install in a sandboxed workflow.
Required gates
Checks an agent must pass before install
Task fit
84
Task wording matches this skill metadata.
- Evaluate Stylus before installing it in an agent workflow
- legal-compliance
- Legal and compliance workflows; Claude Code teams; teams that value GitHub adoption signals
Install path
92
Install handoff is available.
- npx skills add openstyles/stylus
Install command safety
92
standard package or runtime install path
- npx skills add openstyles/stylus
Trust score
92
Strong OpenAgentSkill Trust Score across adoption, recent maintenance, license clarity, documentation, dependency/runtime risk, install safety, permission surface, and install availability.
- Production candidate
- 6.7K GitHub stars
- GPL-3.0
Audit score
95
Safe to try
- Documentation summary is thin
Agent safety gate
79
Good audit and safety signals with no high-risk permission hints in public metadata.
- Review the audit page, then allow agent install in a sandboxed workflow.
- Safe-to-try audit
License clarity
86
GPL-3.0
- GPL-3.0
Permission surface
86
filesystem or document access
- Network access: medium
- Filesystem access: medium
Validation plan
What the agent should do next
- 1Inspect repository, README/SKILL.md, license, and recent commits before production use.
- 2Install in an isolated workspace or sandbox with no production secrets available.
- 3Run the smallest representative task and record files touched, commands run, network access, and outputs.
- 4Compare the selected skill against at least one alternative when the eval status is review or failed.
- 5Promote only after the agent reports a successful verification result and unresolved warnings are accepted.
Do not use when
Conditions that require another skill
- teams that need a vendor-supported SLA
- high-compliance environments without internal security review
- No major risk signals from current metadata
- Documentation summary is thin
- Production credentials, payments, or irreversible account changes without explicit human review
- Sensitive private data before reviewing repository code, license, and permission surface
Supporting checks
Trust signals behind the decision
README/SKILL.md completeness
warn74
Public metadata needs stronger README/SKILL.md context
Recent maintenance
pass100
2d since push
Alternatives available
pass82
Alternative skills are available for comparison.