| Pre-install decision |
|---|
| 79 · Manual review | | 80 · Manual review |
|---|
| Clear source, High execution risk, Universal | Clear source, High execution risk, Universal | Clear source, High execution risk, Claude |
|---|
| High | High | |
|---|
| prompt injection, tool poisoning, unexpected code execution | unexpected code execution, data exfiltration, memory context poisoning | data exfiltration, memory context poisoning, human approval gap |
|---|
| missing license, broad permissions, shell without guardrails | missing license, broad permissions, shell without guardrails | missing license, broad permissions, network without allowlist |
|---|
| Permission review, Network, Command | Permission review, Network, Command | Network, Command |
|---|
| | 67% | 67% |
|---|
| Source & provenance |
|---|
| ZSeven-W/openpencil | martin-papy/qdrant-loader | anthropics/knowledge-work-plugins/tree/main/sales/skills/create-an-asset |
|---|
| Knowledge & RAG | Knowledge & RAG | Knowledge & RAG |
|---|
|
|---|
| Risk & permission signals |
|---|
| No explicit signals | writes files | No explicit signals |
|---|
| repository clone, local runtime dependencies | repository clone, local runtime dependencies | registry access, remote metadata pull, runtime dependencies may be required |
|---|
| Install & compatibility |
|---|
| Universal | Universal | Claude, Codex, Cursor, Universal |
|---|
| script-backed | script-backed | registry-install |
|---|
|
|---|
| Community |
|---|
| 2K | 37 | |
|---|