スキル ghe-report
📦

ghe-report

コンテンツリビジョン r1 高リスク ⚙️ 外部コマンド📁 ファイルシステムへのアクセス

GitHub Elements ワークフローレポートを生成する

GitHub Elements チームには、ワークフローの健全性、指標、エピックの進捗に関する構造化された可視性が必要です。このスキルは、指標、コンプライアンス、エピック分析のための詳細なレポートを作成します。

対応: Claude Codex Code(CC)
⚠️ 38 不十分

自分のエージェントでインストール

このリクエストをエージェントにコピーしてください。正規の Skill ページとマニフェストが含まれています。

エージェントリクエスト
Review the Skillstore skill "ghe-report" from https://skillstore.io/skills/emasoft-ghe-report.md and its manifest at https://skillstore.io/api/skills/emasoft-ghe-report/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.

エージェントは引き続き計画を提示し、セキュリティポリシーで必要な確認を求める必要があります。

エージェントが読めるリソース

AI エージェント、クローラー、スクリプトがページ全体ではなく整理されたコンテキストを必要とする場合は、これらのリンクを使ってください。

テストする

「ghe-report」を使用しています。 リクエスト: 現在のプロジェクトの指標レポートを作成する。

期待される結果:

  • スループット件数と前週比トレンドを含む指標レポート。
  • DEV、TEST、REVIEW フェーズ別のサイクルタイム概要。
  • レビュー合格率と差し戻し率を含む品質セクション。

「ghe-report」を使用しています。 リクエスト: アクティブなリポジトリのワークフロー健全性を確認する。

期待される結果:

  • 主要な GitHub Elements ルールのコンプライアンス概要。
  • 経過時間とステータスコンテキストを含む古いスレッド一覧。
  • 最近の違反とメモを含む全体的な健全性評価。

「ghe-report」を使用しています。 リクエスト: オンボーディングエピックについてレポートする。

期待される結果:

  • 現在のフェーズと issue 履歴を含むエピックステータス。
  • 過去のスレッド活動から収集した主要な技術的決定。
  • 未解決リスクを含む残作業の見積もり。

セキュリティ監査

高リスク

Most external-command and network-reconnaissance flags are false positives caused by Markdown examples and report text. The audit confirms a real filesystem risk from permission to write to ~/.claude and identifies an unsafe prompt-injection style instruction hierarchy.

1
スキャンされたファイル
177
解析済み行数
2
レビュー項目
0
誤検知を無視

確認済みのセキュリティ上の懸念 (1)

高
Prompt Injection Attempt Detected
SKILL.md states "THIS LAW IS ABSOLUTE AND ADMITS NO EXCEPTIONS" and instructs the model to follow every user request verbatim. This can conflict with higher-priority safety and security instructions.
The section uses absolute authority language and tells the model that every user statement is a specification. That is a clear instruction-hierarchy risk in an AI skill.
機能レビュー項目 (2)

これらは、このスキルに期待される可能性のある実際のローカル機能であるため、レビューが必要ですが、確認済みの悪意ある動作としてはカウントされません。

高
Hidden file in home directory
- ~/.claude (for plugin/settings fixes)
The skill explicitly permits background agents to write to ~/.claude, a hidden home configuration directory. Changes there can persist and alter assistant or plugin behavior beyond the project.
高
Hidden file access
- ~/.claude (for plugin/settings fixes)
The instruction allows access to a hidden Claude settings directory without naming exact allowed files. This creates a real risk of persistent configuration modification.
監査者: codex 監査履歴を表示 →
このレポートを共有・引用

バージョン付き評価レポート、中立的なバッジ、埋め込みカード、引用を共有できます。Skillstore は証拠を報告しますが、この Skill が安全かどうかは判断しません。

バージョン別レポートを開く
セキュリティ評価

レポートリンクをコピー

https://skillstore.io/skills/emasoft-ghe-report/audits/8?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_report

Markdownバッジ

[![Skillstore security assessment](https://skillstore.io/badges/skills/emasoft-ghe-report/security.svg)](https://skillstore.io/skills/emasoft-ghe-report?utm_source=security_passport_badge)

HTMLバッジ

<a href="https://skillstore.io/skills/emasoft-ghe-report?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/emasoft-ghe-report/security.svg" alt="Skillstore security assessment" loading="lazy"></a>

埋め込みカード

<iframe src="https://skillstore.io/embed/skills/emasoft-ghe-report.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>
学術引用 (APA · BibTeX · CFF)

APA形式の引用

Emasoft. (2026). ghe-report security audit report (audit version 8) [Author version unspecified]. Skillstore. https://skillstore.io/skills/emasoft-ghe-report/audits/8

BibTeX形式の引用

@techreport{emasoft-emasoft-ghe-report-2026, author = {Emasoft}, title = {ghe-report security audit report (audit version 8)}, institution = {Skillstore}, year = {2026}, number = {8}, url = {https://skillstore.io/skills/emasoft-ghe-report/audits/8}, note = {Author version unspecified} }

CITATION.cff

cff-version: 1.2.0 message: "If you use this Skill, cite its author and this versioned security audit report." title: "ghe-report security audit report (audit version 8)" version: "unspecified" type: report authors: - name: "Emasoft" date-released: "2026-07-05" url: "https://skillstore.io/skills/emasoft-ghe-report/audits/8" identifiers: - type: other value: "skillstore:emasoft-ghe-report:audit:8" description: "Skillstore immutable audit report identifier"

Skillstore スコア

このスコアの理由 証拠の信頼度: 中
55
アーキテクチャ
85
保守性
87
コンテンツ
70
コミュニティ
83
仕様準拠

作成できるもの

デリバリー傾向を確認する

計画前に、スループット、サイクルタイム、レビュー合格率、差し戻し率を確認するための指標レポートを作成します。

ワークフローの健全性を監査する

コンプライアンスステータス、古いスレッド、違反履歴、memory bank の同期、全体的なワークフローの健全性を確認します。

エピックの進捗を要約する

issue 履歴、現在のフェーズ、主要な決定、推定残作業を含むエピックレポートを作成します。

これらのプロンプトを試す

指標レポートを作成する
ghe-report を使用して、現在の GitHub Elements プロジェクトの指標レポートを作成します。スループット、サイクルタイム、品質指標を含めてください。
ワークフローの健全性を確認する
ghe-report を使用して健全性レポートを作成します。コンプライアンスステータス、古いスレッド、違反履歴、memory bank ステータス、健全性評価を含めてください。
エピックを要約する
ghe-report を使用して [epic name] のエピックレポートを作成します。スレッド履歴、現在のフェーズ、決定事項、残作業を含めてください。
指標と健全性を比較する
ghe-report を使用して、直近のスプリントの統合分析を作成します。指標、健全性リスク、古いスレッド、推奨されるフォローアップアクションを比較してください。

ベストプラクティス

  • スキルの実行を依頼する前に、レポートタイプを確認します。
  • エピックレポートを依頼する場合は、エピック名を指定します。
  • 機密性の高いプロジェクト詳細を投稿する前に、レポートの出力先を確認します。

回避

  • プロジェクトまたはエピックのコンテキストなしでレポートを依頼する。
  • 簡単なステータスだけで十分な場合に詳細レポートを使用する。
  • レビューなしでユーザーレベルの Claude 設定への編集を許可する。

よくある質問

どのようなレポートを作成できますか?
GitHub Elements ワークフロー向けに、指標、健全性、エピックのレポートをサポートします。
レポートを投稿しますか?
このスキルでは、GitHub issue thread と GHE_REPORTS ディレクトリの両方に完全なレポート本文が必要です。
どのデータを分析しますか?
ワークフロー指標、コンプライアンスステータス、古いスレッド、issue 履歴、エピックの進捗に重点を置きます。
GitHub Elements 以外で使用できますか?
GitHub Elements プロジェクト向けに設計されており、他のワークフローでは適応なしには合わない場合があります。
コードを実行しますか?
このスキルはドキュメントのみですが、その指示では reporter agent とローカルファイルへの書き込みに言及しています。
インストール前に権限を確認する理由は何ですか?
ソースでは ~/.claude への書き込みが許可されており、アシスタント設定に影響する可能性があります。

開発者情報

作成者

Emasoft

ライセンス

MIT

Skillstore リビジョン

r1

バージョンに関する注意

作者はバージョンを宣言していません。

参照

30c73eac2afe762f6aa9c4553158769369d47351

メンテナンスの新しさ

2026/7/26

利用状況

6 ダウンロード · 209 閲覧

ファイル構成

📄 SKILL.md

Emasoft のその他のスキル

すべて表示
すべて表示