| Pre-install decision |
|---|
| 79 · Manual review | 79 · Evidence missing | |
|---|
| Clear source, High execution risk, Claude | Source needs review, High execution risk, Claude | Clear source, High execution risk, Universal |
|---|
| | High | High |
|---|
| data exfiltration, memory context poisoning, human approval gap | unexpected code execution, identity privilege abuse, data exfiltration | unexpected code execution, data exfiltration, memory context poisoning |
|---|
| missing license, network without allowlist, no human approval | missing repo, missing license, broad permissions | missing license, broad permissions, shell without guardrails |
|---|
| Network, Command | Permission review, Network, Secrets, Command | Permission review, Network, Command |
|---|
| 65% | | 67% |
|---|
| Source & provenance |
|---|
| davila7/claude-code-templates/tree/main/cli-tool/components/skills/ai-research/agent-memory-systems | Source needs review | deepset-ai/haystack |
|---|
| Knowledge & RAG | Knowledge & RAG | Knowledge & RAG |
|---|
|
|---|
| Risk & permission signals |
|---|
| No explicit signals | needs credentials, network access, runs shell, writes files | No explicit signals |
|---|
| registry access, remote metadata pull, runtime dependencies may be required | review skill metadata before install, check required credentials in skill docs | repository clone, local runtime dependencies |
|---|
| Install & compatibility |
|---|
| Claude, Codex, Cursor, Universal | Codex, OpenClaw, Claude, Cursor, Universal | Universal |
|---|
| registry-install | instruction-only | script-backed |
|---|
|
|---|
| Community |
|---|
| 19.9K | 108 | |
|---|