Versioned artifact review for people and AI agents, with contextual comments and human control.
Verification confirms publisher identity (repo ownership), not code safety. The security scan covers known CVEs and suspicious install scripts — it cannot prove the absence of malicious code.
Versioned artifact review for people and AI agents, with contextual comments and human control.