risk-scan — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited risk-scan (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
「考えていなかったリスク」が後から顕在化するコストを減らす。 リスクを網羅的に列挙した上で、対応コストと放置コストを比較し、優先度付きの判断材料を揃える。
以下を準備すること。不足している場合は推測せず、不足を明示する。
以下の順で出力すること。順序を変えない。
| リスク | 分類 | 発生確率 | 影響度 | 対応方針 |
|---|---|---|---|---|
| (リスクの説明) | 技術/運用/ビジネス/セキュリティ | 高/中/低 | 高/中/低 | 対応/受容/転嫁/回避 |
実行結果に対して以下を確認すること。
| 観点 | 状態 | 備考 |
|---|---|---|
| 自動化フロー | — | n8n / Webhook / 自動処理の障害リスクを含んでいるか |
| データ / 認証 / ログ | — | RLS・Supabase Auth・audit_log のリスクを確認したか |
| 実装 / 運用フロー | — | デプロイ・ロールバック・監視のリスクを含んでいるか |
| 非エンジニア理解可能性 | — | リスク説明が 非エンジニアにも説明できる言葉か |
| 会員共有 / 再利用耐性 | — | このリスクスキャンが他ケースにも転用できる形か |
| 他LLM移植耐性 | — | Claude 固有の判断基準に依存していないか |
状態は OK / 注意 / NG / 対象外 で記入すること。
施工AI へ渡す前に以下を確定させること。
issue-framing skill — リスクスキャン前の論点整理に使うassumption-audit skill — リスクの根拠となる前提を洗い出すfailure-point-review skill(lab-automation-architecture)— 自動化フロー固有のリスクを深掘りauth-boundary-check skill(lab-data-auth-ops)— 認証・認可リスクの詳細確認~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.