Analyzer Overview
@FeiyouG/skill-lab-analyzer evaluates skills for requested capabilities and potential risks.
It provides deterministic static analysis output suitable for local checks, CI workflows, and policy evaluation.
What it produces
permissions: normalized capability requests discovered in frontmatter and contentrisks: typed risk signals with severity and referencesscore: aggregate numeric risk scoreriskLevel: one ofsafe,caution,attention,risky,avoidsummary: short human-readable outcome
Pipeline
- Discovery - gather files and parse frontmatter.
- Permissions - extract permissions and static findings.
- Risks - map findings to typed risk signals and calculate scoring output.