openapi-risk — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited openapi-risk (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Base URL: https://risk.openapi.com — reports and scores on natural and legal persons, sourced from CRIF, the Protest Register and other official registers.
Authentication: Bearer token — see the openapi-auth skill.
GET /IT-creditscore-top/{vatCode_taxCode_or_id} — top-level score for an Italian companyGET /IT-creditscore-start/… / GET /IT-creditscore-advanced/… — lighter/deeper variantsGET /IT-verifica_cf/{codice_fiscale} — fiscal code checkPOST /<type> → GET /<type>/{id} → GET /<type>/{id}/download for the PDF)| Resource | Subject |
|---|---|
IT-report-persona, IT-report-persona-top | Natural person report |
IT-patrimoniale-persona, IT-patrimoniale-persona-top | Patrimonial (assets) report |
IT-report-azienda, IT-report-azienda-top | Company report |
IT-crif-persona, IT-crif-azienda | CRIF search (requires a signed delegation: upload via PATCH /{id}, template via GET /{id}/delega) |
IT-eredi-con-accettazione, IT-eredi-senza-accettazione | Heirs reports |
IT-negativita (+ GET /IT-negativita/{id}/dettaglio) | Negative events |
IT-richiesta | Generic request listing/status/download |
POST /WW-kyc-full — full check; targeted: /WW-kyc-pep, /WW-kyc-sanction_list, /WW-kyc-adverse_mediaGET /WW-kyc-evidences, GET /WW-kyc-evidences/{id}, GET /WW-kyc-evidences/{id}/{entity_id} — results and evidencesPOST|GET|DELETE /WW-kyc-full-monitor — continuous KYC monitoringFull spec: https://console.openapi.com/oas/en/risk.openapi.json
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.