Skill audit report

incident-response Audit report.

agent 环境安全事件响应:分类→控制蔓延→取证留痕→恢复→复盘的分步处置流程,覆盖密钥泄露、提示注入触发、依赖投毒、未授权操作四类事件,每条处置附命令证据。DSH/agent 环境出现疑似安全事件需要按流程处置与复盘时用;日常开发与例行维护不用。

EXPERIMENTAL · REVIEWNeeds reviewGenerated Oct 11, 2026Heuristic metadata audit
73
Audit
71
Trust
54
Quality
76
Security
100
Maintain
92
Install

OpenAgentSkill Trust Score

71
Manual review

OpenAgentSkill Trust Score

The Trust Score helps an agent decide whether a skill is safe enough to shortlist before installation.

GitHub adoption

FAIL

30

20 GitHub stars

Stars/forks activity

FAIL

32

20 stars, 1 forks; issue activity unavailable in current metadata

Recent maintenance

PASS

100

2d since push

License clarity

PASS

86

Apache-2.0

README/SKILL.md completeness

PASS

86

Metadata includes enough usage and workflow context

Dependency/runtime risk

INFO

72

credential or environment access

Install availability

PASS

92

npx skills add PerryLink/dsh-skill-pack-security --skill incident-response

Install command safety

PASS

92

standard package or runtime install path

Permission surface

WARN

60

secrets or environment access, filesystem or document access

Repository evidence

PASS

86

https://github.com/PerryLink/dsh-skill-pack-security/tree/main/skills/incident-response

Review status

WARN

46

AI review approval is missing

Agent Proven outcomes

INFO

54

No agent outcome data yet

Checks

Install and adoption review

6 Passed · 14 Needs review

Install path

92

PASS

npx skills add PerryLink/dsh-skill-pack-security --skill incident-response

Repository

88

PASS

https://github.com/PerryLink/dsh-skill-pack-security/tree/main/skills/incident-response

License

86

PASS

Apache-2.0

Maintenance

100

PASS

2d since push

AI review

55

CHECK

Review approval is missing

README/SKILL.md completeness

86

PASS

Usable description available

Dependency risk

72

CHECK

credential or environment access

Install command safety

92

PASS

standard package or runtime install path

Permission surface

60

CHECK

secrets or environment access, filesystem or document access

Stars/forks activity

32

FIX

20 stars, 1 forks; issue activity unavailable in current metadata

Adoption

42

CHECK

20 GitHub stars

Warnings

  • Permission surface may require sandboxing
  • Low GitHub adoption signal
  • AI review approval is missing
  • Quality score needs review
  • Permission surface needs review: secrets or environment access, filesystem or document access
  • GitHub adoption: 20 GitHub stars
  • Stars/forks activity: 20 stars, 1 forks; issue activity unavailable in current metadata
  • Permission surface: secrets or environment access, filesystem or document access
  • Review status: AI review approval is missing

Method

This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.

Compare nearby options

Related skills to audit next