setup-analysis-delivery — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited setup-analysis-delivery (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
git rev-parse --show-toplevel).git → 提示用户先 git init读项目根文件,推断技术栈:
pom.xml / build.gradle → Java/Maven/Gradlepackage.json → Node/前端pyproject.toml / requirements.txt → Pythongo.mod → Go在项目根生成以下 4 个空模板(用户填写后提交到 git):
| 文件 | 作用 | 模板 |
|---|---|---|
knowledge-path.md | 列项目涉及的外部知识库(领域表结构、合规法规等)路径 | templates/project-config/knowledge-path.md |
compliance-path.md | 列项目适用的合规规则文件路径 + 启用开关 | templates/project-config/compliance-path.md |
tech-stack-path.md | 列后端/前端/数据库/中间件 + 团队规范路径 | templates/project-config/tech-stack-path.md |
doc-naming.md | 文档编号、命名前缀、存放目录 | templates/project-config/doc-naming.md |
python3 scripts/field-alignment-check.py --help 确认脚本可用disciplines/context-pointer — 三层配置加载规则*-path.md 全部生成在项目根~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.