openapi-utilities — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited openapi-utilities (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Bearer token required (see the openapi-auth skill).
https://exchange.altravia.comSingle endpoint returning real-time currency exchange rates.
https://pdf.openapi.itOne endpoint: generate a PDF from a URL or an HTML string; JavaScript is rendered.
https://domains.altravia.comRegister and manage .it domains (availability, purchase, DNS/contacts management). Domain purchase is a paid, durable action — confirm with the user first.
https://ai.openapi.comManaged Retrieval-Augmented Generation:
POST /rag — create a RAG; GET /rag, GET /rag/{id}, DELETE /rag/{id}POST /rag/{id}/documents — upload text documents or images (metadata supported for filtered search); GET/DELETE to list/removePATCH /rag/{id} — start indexingPOST /rag-search (plain retrieval), POST /rag-search-with-answer (LLM answer), POST /rag-conversation (conversational)Typical flow: create RAG → upload documents → index → query → delete when no longer needed.
Full specs: https://console.openapi.com/oas/en/exchange.openapi.json · …/pdf.openapi.json · …/domains.openapi.json · …/ai.openapi.json
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.