OSA — security grade SAFE, quality 78/100

Security audit verdict: SAFE · quality 78/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by aimclub · LLM Plugin · ★ 145

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is OSA safe to install? View the security audit →

About OSA

OSA: OPEN-SOURCE ADVISOR Built with: <img src="https://img.shields.io/badge/GitHub%20Actions-2088FF.svg?style=BadgeStyleOptions.DEFAULT&logo=GitHub-Actions&logoColor=white" alt="GitHub%20Actio

code-analysiscode-improvementllmopen-sourcerepository-improvementscientific-software

Quick Facts

Stars145
Forks23
LanguagePython
CategoryLLM Plugin
LicenseBSD-3-Clause
Quality Score78.0263276106271/100
Open Issues54
Last Updated2026-09-24
Created2024-10-22
Platformspython
Est. Tokens~17k

OSA alternative? Top 6 similar tools

Looking for a OSA alternative? If you're comparing OSA with other llm plugin tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • Gito by Nayjest · ⭐ 436

    An AI-powered GitHub code review tool that uses LLMs to detect high-confidence, high-impact issues—such as sec

  • gemini-flow by clduab11 · ⭐ 387

    rUv's Claude-Flow, translated to the new Gemini CLI; transforming it into an autonomous AI development team.

  • wikipedia-mcp by Rudra-ravi · ⭐ 295

    A Model Context Protocol (MCP) server that retrieves information from Wikipedia to provide context to LLMs.

  • penpot-mcp by montevive · ⭐ 240

    Penpot MCP server

  • claudepro-directory by JSONbored · ⭐ 217

    HeyClaude (formerly Claude Pro Directory) is a searchable collection of pre-built AI skills, agents, MCP serve

  • mcp-fusion by vinkius-labs · ⭐ 204

    MCP Fusion - The framework for AI-native MCP servers.

More LLM Plugin Tools

Explore other popular llm plugin tools:

View all LLM Plugin tools →

Popular Python Agent Tools

Frequently Asked Questions

What is OSA?

OSA is Tool that just makes your open source project better using LLM agents. It is categorized as a LLM Plugin with 145 GitHub stars.

What programming language is OSA written in?

OSA is primarily written in Python. It covers topics such as code-analysis, code-improvement, llm.

How do I install or use OSA?

You can find installation instructions and usage details in the OSA GitHub repository at github.com/aimclub/OSA. The project has 145 stars and 23 forks, indicating an active community.

What license does OSA use?

OSA is released under the BSD-3-Clause license, making it free to use and modify according to the license terms.

What are the best alternatives to OSA?

The top alternatives to OSA on Agent Skills Hub include Gito, gemini-flow, wikipedia-mcp. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse LLM Plugin tools