Evaluation report
Warningsapi-fuzzing-bug-bounty · skill7d70204· 3 months ago
Every check MetaHub ran on this artifact, grouped by area. Static checks run on the source at publish time; behavioral checks run the artifact in a sandbox and judge what it actually does.
Structural
5 passedRepository is reachable
https://github.com/zebbern/claude-code-guide @ 7d70204 — ★ 4,389 · Python · MIT · last push yesterday
Manifest detected
kind=skill slug=api-fuzzing-bug-bounty · path=skills/api-fuzzing-bug-bounty · source=SKILL.md
Slug is URL-safe
"api-fuzzing-bug-bounty" matches /^[a-z0-9][a-z0-9-]{0,62}$/
Slug is unique within kind
No collision found for skill/api-fuzzing-bug-bounty
Version is semver
0.1.0
Documentation
5 passedDescription quality
38 words · 253 chars — "This skill should be used when the user asks to "test API security", "fuzz APIs"…"
README is present and substantial
159,857 chars · 12 sections · 139 code blocks
Tags / topics declared
20 total — ai, ai-agent, ai-agent-tools, anthropic-claude, claude, claude-ai (+14)
README has usage / example sections
found: Quick Start · Example · Example
Homepage / docs URL declared
no homepage declared (registry will use the repo URL) — info-only, not blocking
Safety
2 passedLICENSE file at repo root
LICENSE
No sensitive files in the repo
scanned for .env, credentials.json, *.pem, .ssh/, AWS / GCP configs — none found
Kind-specific
3 passed1 warningSkill: triggers declaredwarn
No `trigger` phrases in SKILL.md frontmatter
Add `trigger:` lines so Claude knows when to activate this skill — e.g. `when building MCP servers` or `for diagram creation`.
Skill: SKILL.md present
found at skills/api-fuzzing-bug-bounty/SKILL.md · frontmatter source: SKILL.md
Skill: body content present
1,239 words · 9,907 chars · 30 sections · 22 code blocks
Skill: allowed-tools scope
no allowed-tools restriction (Claude may use anything)
Maintenance
2 passed1 warningTests detectedwarn
no test/tests/__tests__/spec/t/ dirs, no JVM src/test/, and no JS/TS/Python/Go/Ruby/Elixir test files
Add tests (even a smoke test). Consumers gauge maintenance quality by their presence.
Recent activity
last push yesterday
CI configuration detected
GitHub Actions (1 workflows)