deploy-package — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited deploy-package (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Deploy a cz-agents-mcp package to Hetzner production.
npm test --workspace=@czagents/<pkg> then npm run build --workspace=@czagents/<pkg>packages/<pkg>/src/ and packages/<pkg>/package.json to /opt/docker/compose/cz-agents-mcp/packages/<pkg>/ on Hetzner ([email protected], key ~/.ssh/id_rsa_macbook)docker compose build --no-cache <pkg> in /opt/docker/compose/cz-agents-mcp/docker compose up -d <pkg> (zero-downtime replace)docker exec cz-agents-<pkg> wget -qO- http://localhost:<port>/health and show result| package | port |
|---|---|
| ares | 3030 |
| cnb | 3031 |
| sanctions | 3032 |
| dd | 3033 |
| isir | 3034 |
| adis | 3035 |
| realestate | 3036 |
shared is changed, rebuild ALL packages that depend on it (run full monorepo build)docker compose up -d <pkg> with previous image tag~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.