Content
82%Weight 40%Scale 1-5Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.
The content is an extremely lean, high-signal rule set: concrete tool-level directives, an explicit verify-before-record checkpoint, and negative-result handling to prevent duplicate work. Its only weaknesses are compressed operational details (exact Fact formats, promotion path from tentative to confirmed) and a weakly signaled cross-skill reference.
| Dimension | Reasoning | Score |
|---|---|---|
Conciseness | The body is ~12 lines with zero padding: it assumes Claude's competence, explains no background concepts, and every line encodes an operative rule ("搜索结果 ≠ 漏洞", "每个 confirmed Fact 必须在 body 附验证证据", "验证失败 → 写负结果 Fact"). This matches the 'lean and efficient; every token earns its place' anchor exactly. | 5 / 5 |
Actionability | For an instruction-only skill, the guidance is largely executable: it names the exact tools and operations ("record_vulnerability", "confidence=confirmed", "upsert_project_fact" for negative results) and specifies acceptable evidence forms ("命令输出/HTTP响应/文件内容/回连记录"). Not a 5 because key details are compressed — e.g., the expected format of a negative-result Fact and when tentative notes should be promoted are left implicit. | 4 / 5 |
Workflow Clarity | The five numbered rules encode a coherent verification loop with an explicit checkpoint: leads stay tentative → verify with real evidence → only then confirm/record, and failed verification produces a recorded negative result to prevent retries ("每段用真实证据钉死后再 confirmed"). Not a 5 because the decision sequence (what to do first when a search hit appears, how to retry after a failed verification) is implicit rather than laid out as an ordered workflow with error-recovery steps. | 4 / 5 |
Progressive Disclosure | For a sub-50-line single-purpose policy skill with no bundle files (references/, scripts/, assets/ do not exist), the single well-organized section is appropriate, and the pointer to the sibling skill `pentest-blackboard` keeps alignment details out of the main body. Not a 5 because that cross-reference is a bare backtick mention rather than a clearly signaled link, and there is no navigation to the blackboard tool's rules it claims to align with. | 4 / 5 |
Total | 17 / 20 Passed |