Evaluasi sebelum pemasangan

can Laporan evaluasi.

Keputusan pemasangan yang dapat dibaca mesin untuk Agent: kecocokan tugas, Trust Score, Audit Score, keamanan pemasangan, cakupan izin, dan rencana validasi konkret sebelum skill menyentuh workspace.

GagalRisiko tinggiBlokir Kebijakan
66
Laporan evaluasi
71
Kepercayaan
77
Audit
49
Keamanan Agent

do not auto install

Task fit: Task fit is weak; compare alternatives before selecting.

Gerbang wajib

Pemeriksaan yang harus dilalui Agent sebelum memasang

Buka JSON

Kecocokan tugas

58

Gagal

Task fit is weak; compare alternatives before selecting.

  • Evaluate can before installing it in an agent workflow
  • automation
  • RAG and knowledge workflows; Claude Code teams; teams that value GitHub adoption signals

Jalur pemasangan

92

Lulus

Install handoff is available.

  • npx skills add zhinkgit/embeddedskills --skill can

Keamanan perintah pemasangan

92

Lulus

Jalur pemasangan paket atau runtime standar

  • npx skills add zhinkgit/embeddedskills --skill can

Skor kepercayaan

71

Peringatan

Potentially useful, but at least one trust signal needs human inspection.

  • Tinjauan manual
  • 625 star GitHub
  • MIT

Skor audit

77

Peringatan

Perlu ditinjau

  • The SKILL.md description in the frontmatter is very long and includes trigger conditions, which is acceptable but could be more concise.

Gerbang keamanan Agent

49

Peringatan

Sparse or mixed signals. Useful for discovery, but not for autonomous installation.

  • Test manually in an isolated workspace and compare against safer alternatives.
  • Petunjuk izin berisiko tinggi: eksekusi shell atau perintah

Kejelasan lisensi

86

Lulus

MIT

  • MIT

Cakupan izin

62

Peringatan

shell or command execution, filesystem or document access

  • Shell or command execution: high
  • Network access: medium
  • Filesystem access: medium

Rencana validasi

Langkah Agent berikutnya

  1. 1Inspect repository, README/SKILL.md, license, and recent commits before production use.
  2. 2Install in an isolated workspace or sandbox with no production secrets available.
  3. 3Run the smallest representative task and record files touched, commands run, network access, and outputs.
  4. 4Compare the selected skill against at least one alternative when the eval status is review or failed.
  5. 5Promote only after the agent reports a successful verification result and unresolved warnings are accepted.

Jangan gunakan ketika

Kondisi yang membutuhkan skill lain

  • Tim yang membutuhkan SLA dengan dukungan vendor
  • production agents without a repository review
  • The SKILL.md description in the frontmatter is very long and includes trigger conditions, which is acceptable but could be more concise.
  • Petunjuk izin berisiko tinggi: eksekusi shell atau perintah
  • The skill automatically writes to project config files after successful execution, which might be unexpected for some users but is documented.
  • Quality score needs review

Pemeriksaan pendukung

Sinyal kepercayaan di balik keputusan

Kelengkapan README/SKILL.md

Lulus

86

Metadata memuat konteks penggunaan dan alur kerja yang cukup

Pemeliharaan terbaru

Lulus

88

1 bulan sejak push

Alternatif tersedia

Lulus

82

Alternative skills are available for comparison.