CtrlK
BlogDocsLog inGet started
Tessl Logo

check-oas

Detect breaking changes in docs/mapi/openapi.yaml and check whether the committed spec is stale; run the OAS checks, interpret findings, and guide fixes.

71

0.97x
Quality

83%

Does it follow best practices?

Impact

82%

0.97x

1 of 3 eval scenarios. Add 2 more for a full score.

SecuritybySnyk

Medium

Suggest reviewing before use

SKILL.md
Quality
Evals
Security
Medium

W013: Attempt to modify system services in skill instructions.

What this means

The skill prompts the agent to compromise the security or integrity of the user’s machine by modifying system-level services or configurations, such as obtaining elevated privileges, altering startup scripts, or changing system-wide settings.

Why it was flagged

The skill prompt instructs the agent to download and install a binary directly into `/usr/local/bin` using `curl` and `tar`, which requires root/sudo privileges on Linux systems.

Report incorrect finding
Repository
gravitee-io/gravitee-access-management
Audited
Security analysis
Snyk

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.