Main application building orchestrator.
48
36%
Does it follow best practices?
Impact
Pending
No eval scenarios have been run
Advisory
Suggest reviewing before use
Optimize this skill with Tessl
npx tessl skill review --optimize ./.agent/skills/app-builder/SKILL.mdSecurity
1 medium severity finding. This skill can be installed but you should review these findings before use.
The skill is specifically designed for direct financial operations, giving the agent the ability to move money or execute financial transactions — such as payment processing, cryptocurrency operations, banking integrations, or market order execution.
Direct money access detected (high risk: 1.00). The skill includes a specific payment gateway integration: the templates list contains "nextjs-saas (Next.js + Stripe)". Stripe is an explicit payment gateway API used to send/receive payments, which falls under the Direct Financial Execution category. Even though the overall skill is an app builder, the explicit inclusion of Stripe in a template is a specific financial integration and meets the criteria for flagging.
332e58b
If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.