Skill-Audit-Bericht

context-fundamentals Audit-Bericht.

>-

Experimentell · PrüfenPrüfung nötigErstellt 24. Aug. 2026Heuristisches Metadaten-Audit
69
Audit
59
Vertrauen
57
Qualität
67
Sicherheit
100
Maintain
92
Installieren

OpenAgentSkill Trust Score

59
Manuelle Prüfung

OpenAgentSkill Trust Score

The Trust Score helps an agent decide whether a skill is safe enough to shortlist before installation.

GitHub-Akzeptanz

Warnung

48

33 GitHub-Stars

Star-/Fork-Aktivität

Warnung

43

33 Stars und 3 Forks; Issue-Aktivität ist in den aktuellen Metadaten nicht verfügbar

Aktuelle Wartung

Bestanden

100

3 Tage seit dem letzten Push

Lizenzklarheit

Warnung

42

Unbekannt

README/SKILL.md-Vollständigkeit

Info

70

Öffentliche Metadaten benötigen mehr README/SKILL.md-Kontext

Abhängigkeits-/Laufzeitrisiko

Info

64

credential or environment access, network or browser surface

Installationsverfügbarkeit

Bestanden

92

npx skills add shipshitdev/skills --skill context-fundamentals

Sicherheit des Installationsbefehls

Bestanden

92

Standard-Paket- oder Laufzeit-Installationspfad

Berechtigungsumfang

Warnung

46

secrets or environment access, filesystem or document access

Repository-Nachweis

Bestanden

86

https://github.com/shipshitdev/skills/tree/master/bundles/ai-agents/skills/context-fundamentals

Prüfstatus

Info

66

KI-Prüfdaten verfügbar

Agent-validierte Ergebnisse

Info

54

Noch keine Agent-Ergebnisdaten

Prüfungen

Installations- und Adoptionsprüfung

5 Bestanden · 18 Prüfung nötig

Installationspfad

92

Bestanden

npx skills add shipshitdev/skills --skill context-fundamentals

Repository

88

Bestanden

https://github.com/shipshitdev/skills/tree/master/bundles/ai-agents/skills/context-fundamentals

Lizenz

45

Prüfen

Unbekannt

Wartung

100

Bestanden

3 Tage seit dem letzten Push

KI-Prüfung

55

Prüfen

Repository license is listed as 'Unknown' in GitHub, but skill metadata and README explicitly state MIT and reference the upstream MIT license. This is a minor compliance ambiguity that should be resolved by confirming/updating the repository license.

README/SKILL.md-Vollständigkeit

84

Bestanden

Usable description available

Abhängigkeitsrisiko

64

Prüfen

credential or environment access, network or browser surface

Sicherheit des Installationsbefehls

92

Bestanden

Standard-Paket- oder Laufzeit-Installationspfad

Berechtigungsumfang

46

Beheben

secrets or environment access, filesystem or document access

Star-/Fork-Aktivität

43

Beheben

33 Stars und 3 Forks; Issue-Aktivität ist in den aktuellen Metadaten nicht verfügbar

Akzeptanz

42

Prüfen

33 GitHub-Stars

Warnungen

  • Lizenz ist unklar
  • Permission surface may require sandboxing
  • Repository license is listed as 'Unknown' in GitHub, but skill metadata and README explicitly state MIT and reference the upstream MIT license. This is a minor compliance ambiguity that should be resolved by confirming/updating the repository license.
  • SKILL.md contains cross-references to non-vendored skills (context-degradation, context-optimization) that are not present in this bundle. The README notes these were intentionally removed from routing, but the references in the body remain and could confuse an agent.
  • The included Python script (context_manager.py) is a utility with token estimation heuristics; it is not production-grade and may be used by an agent without proper validation. This is not a security risk but could lead to inaccurate context handling if used in operational settings.
  • Low GitHub adoption signal
  • Quality score needs review
  • Permission surface needs review: secrets or environment access, filesystem or document access
  • GitHub adoption: 33 GitHub stars
  • Stars/forks activity: 33 stars, 3 forks; issue activity unavailable in current metadata
  • License clarity: Unknown
  • Permission surface: secrets or environment access, filesystem or document access

Methode

This report combines public metadata, AI review output, repository freshness, install readiness, OpenAgentSkill events, quality scoring, trust checks, and the agent safety gate. It is not a full source-code security review.

Nahe Optionen vergleichen

Ähnliche Skills als Nächstes prüfen