Skillquality 0.45

Score open source repositories for supply-chain risk signals before adoption or release decisions with Scorecard

Check a repository against OpenSSF security heuristics before you trust it as a dependency, approve it for use, or ship from it.

Price
free
Protocol
skill
Verified
no

What it does

Score open source repositories for supply-chain risk signals before adoption or release decisions with Scorecard

Check a repository against OpenSSF security heuristics before you trust it as a dependency, approve it for use, or ship from it.

Prerequisites

Scorecard CLI or GitHub Action, network access to the target repository host, and optional GitHub authentication for higher API limits.

Installation

Use the upstream install or setup path that matches your environment:

  • docker pull ghcr.io/ossf/scorecard:latest
  • docker pull ghcr.io/ossf/scorecard:v3.2.1
  • docker run -e GITHUB_AUTH_TOKEN=token ghcr.io/ossf/scorecard:latest --show-details --repo=https://github.com/ossf/scorecard
  • docker run -e GITHUB_AUTH_TOKEN=token ghcr.io/ossf/scorecard:v3.2.1 --show-details --repo=https://github.com/ossf/scorecard

Requirements and caveats from upstream:

  • Prerequisites
  • projects the world depends on.
  • If OSS consumers require certain behaviors from their dependencies,

Basic usage or getting-started notes:

Documentation

Source

Capabilities

skillsource-agentskillexchangeskill-score-open-source-repositories-for-supply-chain-risk-signals-before-adoption-or-release-decisions-with-scorecardtopic-agent-skillstopic-ai-agentstopic-ai-toolstopic-awesome-listtopic-claude-codetopic-codextopic-cursortopic-llmtopic-mcptopic-npx-skillstopic-openclawtopic-skills-catalog

Install

Quality

0.45/ 1.00

deterministic score 0.45 from registry signals: · indexed on github topic:agent-skills · 8 github stars · SKILL.md body (1,543 chars)

Provenance

Indexed fromgithub
Enriched2026-05-18 19:12:19Z · deterministic:skill-github:v1 · v1
First seen2026-05-18
Last seen2026-05-18

Agent access