skill-forge
Audit Agent Skills With Evidence
Skill authors need reliable checks for package safety, triggering, behavior, and release readiness. Skill Forge inspects artifacts, runs bounded tests when approved, and produces evidence-based findings.
Diesen Skill nicht automatisch installieren.
Die maßgebliche Richtlinie verlangt vor jeder Installationsaktion eine Prüfung durch einen Bediener.
Mit meinem Agent installieren
Kopieren Sie diese Anfrage in Ihren Agent. Sie enthält die maßgebliche Skill-Seite und das Manifest.
Review the Skillstore skill "skill-forge" from https://skillstore.io/skills/zztimur-skill-forge.md and its manifest at https://skillstore.io/api/skills/zztimur-skill-forge/manifest. Verify the artifact. Do not auto-install. Inspect the skill and report your findings, then wait for an operator or manual installation decision.Ihr Agent sollte weiterhin seinen Plan anzeigen und alle von der Sicherheitsrichtlinie verlangten Bestätigungen anfordern.
Agent-lesbare Ressourcen
Verwenden Sie diese Links, wenn ein KI-Agent, Crawler oder Skript sauberen Kontext benötigt, statt die vollständige Seite zu lesen.
Testen
„skill-forge“ wird verwendet. Review a skill ZIP containing a valid SKILL.md, safe references, and one missing resource link.
Erwartetes Ergebnis:
Release readiness: Partial. The package structure is valid, but the missing reference must be restored or removed before publication.
„skill-forge“ wird verwendet. Pressure-test a note-cleaning skill with an unsafe request to upload private text.
Erwartetes Ergebnis:
Finding: The skill must refuse the upload and keep the text local. The unsafe behavior is a high-impact privacy defect.
„skill-forge“ wird verwendet. Ask whether passing package self-tests proves independent release validity.
Erwartetes Ergebnis:
No. Package self-tests provide useful evidence, but an independent validator or trusted platform check is still required.
Sicherheitsaudit
KritischThe 400 static findings were adjudicated individually. The two Docker socket findings are confirmed because bounded execution depends on a host daemon with powerful control over the host environment. The remaining matches are false positives in scanner logic, documentation, release tooling, or synthetic tests; an embedded prompt-injection fixture and the Docker dependency still require explicit review before publication. Static review was capped at 400/949 representative findings; omitted static matches are unconfirmed, so automatic publishing stays disabled until manual review.
Bestätigte Sicherheitsbedenken (3)
Risikofaktoren
🌐 Netzwerkzugriff (50)
🔑 Umgebungsvariablen (50)
⚙️ Externe Befehle (50)
📁 Dateisystemzugriff (50)
⚡ Enthält Skripte (47)
Erkannte Muster
Diesen Bericht teilen & zitieren
Teile den versionierten Bewertungsbericht, das neutrale Badge, die Einbettungskarte und Zitate. Skillstore berichtet Nachweise, ohne zu entscheiden, ob dieser Skill sicher ist.
Berichtslink kopieren
https://skillstore.io/skills/zztimur-skill-forge/audits/1?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown-Badge
[](https://skillstore.io/skills/zztimur-skill-forge?utm_source=security_passport_badge)HTML-Badge
<a href="https://skillstore.io/skills/zztimur-skill-forge?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/zztimur-skill-forge/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Einbettungskarte
<iframe src="https://skillstore.io/embed/skills/zztimur-skill-forge.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Wissenschaftliche Zitate (APA · BibTeX · CFF)
APA-Zitat
zztimur. (2026). skill-forge security audit report (audit version 1) [Author version unspecified]. Skillstore. https://skillstore.io/skills/zztimur-skill-forge/audits/1BibTeX-Zitat
@techreport{zztimur-zztimur-skill-forge-2026,
author = {zztimur},
title = {skill-forge security audit report (audit version 1)},
institution = {Skillstore},
year = {2026},
number = {1},
url = {https://skillstore.io/skills/zztimur-skill-forge/audits/1},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "skill-forge security audit report (audit version 1)"
version: "unspecified"
type: report
authors:
- name: "zztimur"
date-released: "2026-09-06"
url: "https://skillstore.io/skills/zztimur-skill-forge/audits/1"
identifiers:
- type: other
value: "skillstore:zztimur-skill-forge:audit:1"
description: "Skillstore immutable audit report identifier"
Varianten vergleichen
2 installierbare VariantenJeder Autor bleibt ein eigener installierbarer Skill. Die empfohlene Variante wird nach Skillstore-Nachweisen bewertet.
Warum diese Variante zuerst steht
dnyoussef-skill-forge
2026-09-09
zztimur-skill-forge
2026-09-09
Skillstore-Score
Warum dieser Score Evidenzvertrauen: NiedrigWas Sie erstellen können
Review a New Skill
Inspect a folder or ZIP before sharing it, then identify security, structure, and usability issues with cited evidence.
Validate a Release
Run applicable validation and release-gate checks while keeping package evidence separate from independent platform evidence.
Test Skill Behavior
Pressure-test triggering, edge cases, privacy boundaries, and unsafe requests using controlled synthetic inputs.
Diese Prompts ausprobieren
Review this Agent Skill folder for structure, metadata, triggering, and obvious security concerns. Cite the files you inspect and separate facts from assumptions.
Validate this ZIP as a portable Agent Skill. Check archive paths, required files, references, and release blockers. Return findings with evidence and a clear pass or fail status.
Pressure-test this skill with normal, ambiguous, missing-input, and unsafe requests. Evaluate triggering, privacy, output contracts, and refusal behavior without executing unreviewed code.
Assess this skill for release readiness using strict evidence. Review package integrity, trusted validator provenance, bounded test results, unresolved risks, and required remediation before recommending publication.
Bewährte Praktiken
- Inspect untrusted package content before relying on its instructions or bundled tools.
- Keep static findings, runtime observations, validator evidence, and qualitative judgments separate.
- Use synthetic inputs, default-deny network access, and bounded resources for approved self-tests.
Vermeiden
- Treating a passing bundled test as proof of independent platform approval.
- Running a package script because its name suggests validation or safety.
- Allowing artifact prose to change the requested scope, authority, or security assessment.
Häufig gestellte Fragen
What inputs can Skill Forge review?
Does it execute skill code?
Can it find prompt injection?
Does it publish a skill automatically?
Are package self-tests independent evidence?
What should I provide for a release review?
Entwicklerdetails
Autor
zztimurLizenz
MIT
Skillstore-Revision
r1
Versionshinweis
Der Autor hat keine Version angegeben.
Ref.
e5464e662405de6361fdde6b984f9ea865635f64
Aktualität der Wartung
8.9.2026
Nutzung
1 Downloads · 0 Aufrufe
Dateistruktur