CtrlK
BlogDocsLog inGet started
Tessl Logo

authoring-ci-workflows

Use when adding or editing a GitHub Actions workflow, composite action, or reusable workflow under `.github/` — new CI jobs, triggers, matrices, checkout/clone tuning, action pinning, GitHub App token auth, concurrency groups, `timeout-minutes`, `paths` filters, caching, or runner choice. Covers PostHog's workflow-authoring conventions and the reasons behind them: the 500-runs/10s dispatch cap, shallow vs full clone, per-SHA push concurrency, dedicated App-token rate-limit buckets, and fork-safe secrets on a public repo. Points to the linters (`bin/hogli lint:workflows`, actionlint) that enforce the mechanical rules, and to the narrower skills for production deploys, secrets, and Depot runners. Not for debugging red CI (use debugging-ci-failures) or wiring a new secret end to end (use managing-github-actions-secrets).

74

Quality

92%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

—

The risk profile of this skill

SKILL.md
Quality
Evals
Security

Quality

Content

85%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A dense, highly actionable CI-authoring guide with executable examples, explicit validation feedback loops, and a closing checklist; its main weakness is progressive disclosure, as a very long monolithic body inlines content that could be split into reference files.

Suggestions

Extract the failure-rate-metric forensic detail (run conclusions, the 2026-09-04 gate-conclusion change, warehouse-table joins) into a references/ file and keep a short rule + pointer in SKILL.md.

Move the hourly-master-lane cron offset table and its surrounding scheduling rationale into a references/scheduled-lanes.md, leaving the core concurrency rule inline.

Consider splitting the checkout/clone and caching sections into reference files so the top-level body stays a scannable overview pointing one level deep.

DimensionReasoningScore

Conciseness

The body is overwhelmingly high-signal PostHog-specific judgment calls and measured evidence with almost no generic concept explanation, but a few forensic-evidence passages (e.g. the failure-rate-metric subsection with multiple run IDs) could be tightened.

4 / 5

Actionability

Provides fully executable, copy-paste-ready YAML and bash snippets (concurrency block, sparse-checkout, App-token step, OR-ed gate condition, curl retry invocation) plus concrete linter rules and commands like `hogli ci:plan`; the `<sha>` placeholders are an explicitly justified pinning convention.

5 / 5

Workflow Clarity

Clear multi-section structure with explicit validation checkpoints (run `bin/hogli lint:workflows` and `actionlint`, run the planner test suite, `hogli ci:plan`), feedback loops for error recovery, and a final new-workflow checklist.

5 / 5

Progressive Disclosure

Well-organized with clear headers and signaled one-level-deep links to sibling skills and docs, but as a ~485-line single file with no bundle/reference files, substantial detail (failure-rate metric forensics, hourly-lane cron table) that could live in separate reference files is inlined.

3 / 5

Total

17

/

20

Passed

Description

100%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

The description is exemplary: third-person voice, a comprehensive concrete action list, strong natural trigger terms, and explicit what/when/negative-boundary guidance. It is concise for its density and steers cleanly away from sibling skills.

DimensionReasoningScore

Specificity

Lists multiple concrete authoring actions — "new CI jobs, triggers, matrices, checkout/clone tuning, action pinning, GitHub App token auth, concurrency groups, `timeout-minutes`, `paths` filters, caching, or runner choice" — giving comprehensive coverage rather than just several with minor gaps.

5 / 5

Completeness

Explicitly answers both what (add/edit workflows plus the conventions and reasons, points to linters) and when ("Use when adding or editing a GitHub Actions workflow...") with concrete trigger phrases and explicit negative boundary guidance.

5 / 5

Trigger Term Quality

Comprehensive natural-term coverage matching what a user editing CI would say ("adding or editing a GitHub Actions workflow", "caching", "runner choice", "paths filters", "timeout-minutes"), including concrete GitHub Actions vocabulary and path/field identifiers.

5 / 5

Distinctiveness Conflict Risk

A clear niche (PostHog CI workflow authoring under `.github/`) with an explicit "Not for..." clause steering away from sibling skills, giving minimal conflict risk.

5 / 5

Total

20

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

relative_links

Relative link issues: 4 suspicious

Warning

Total

15

/

16

Passed

Repository
PostHog/posthog
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.