Agent Expert Panel

Security and Trust Review

Scope

agent-expert-panel is primarily an instruction package. It has no runtime service, model credential, browser session, or automatic subagent launcher. The release package contains Markdown, YAML, JSON, text fixtures, and a local read-only validation script.

Trust boundaries

Public repository checks

The release gate checks:

The repository intentionally contains public documentation and product walkthrough media. These assets are not part of the Skill-only archive.

Re-run

python scripts/validate_package.py
agentskills validate /absolute/path/to/agent-expert-panel

Do not publish when either command fails. Review the exact changed-file and archive scope before tagging a release.

Reporting

Do not include private prompts, credentials, sensitive data, or access tokens in a public issue. Report a security concern through GitHub’s private vulnerability reporting channel when available.