workflow-onboard — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited workflow-onboard (Agent Skill) and scored it 45/100 (orange). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 1 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 1 flagged
A base64 string of 128+ characters appears in a documentation file. Encoded prompt injection hides the hostile instruction in base64 — invisible to keyword filters — and relies on the agent's ability to decode it at runtime. There is no normal authoring reason to embed a multi-hundred-byte base64 blob in skill docs.
*.sig, SIGNATURES) outside the documentation.Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Orient to any repo in under 5 minutes. Read first, explain second.
Read (do not shell-grep unless necessary):
| File | What to extract |
|---|---|
package.json / pyproject.toml / Cargo.toml | Runtime, framework, key deps, scripts |
README.md | Stated purpose, setup steps, architecture notes |
src/app/layout.tsx / pages/_app.tsx / App.tsx | Root component, providers, global context |
src/app/**/page.tsx / src/routes/** / app/routes/** | Route tree → feature map |
capacitor.config.* / app.json / app.config.* | Mobile targets (Expo/RN/Capacitor) |
android/ / ios/ presence | Native targets |
| File | What to extract |
|---|---|
supabase/migrations/*.sql (latest 3) | Schema, tables, relationships |
prisma/schema.prisma / drizzle/*.ts | ORM model |
src/lib/supabase.* / src/lib/db.* | Client init, auth helper |
.env.example / .env.local (names only, never values) | Required env vars |
middleware.ts / auth.ts / src/lib/auth.* | Auth guard pattern |
git log --oneline -15 # recent work direction
git diff HEAD~5 --stat # files changed recentlyProduce a structured briefing covering:
package.json scriptsFormat as a scannable briefing, not a wall of text. Use short tables where helpful.
.env values — names only~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.