CtrlK
BlogDocsLog inGet started
Tessl Logo

pr-sweep

Sweep open (or listed) PRs with up to 100 parallel agents: security-scan outside contributors, rebase onto main when behind (push --force-with-lease), approve pending first-time-contributor CI when relevant, optionally rebase in-house PRs, and report who should review. Supports full, changed-only, behind-only, and conflict-only scopes for cheap daily runs. Use when the user runs /pr-sweep (or /pr-inbound-sweep), or asks to "sweep PRs", "sweep inbound PRs", "security-check outside PRs", "rebase outsider PRs", "rebase our PRs", "approve waiting CI on PRs", "daily PR sweep", or "prep external PRs for review".

74

Quality

93%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Low

Low-risk findings worth noting

SKILL.md
Quality
Evals
Security

Quality

Content

88%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A thorough, highly actionable skill body for a complex batch/destructive operation, with strong validation checkpoints and executable code throughout. The main weakness is repetition of the consent/push/safety rules across sections, which inflates token cost without adding clarity.

Suggestions

Consolidate the consent ('--apply is consent, do not wait for a second yes'), push-is-part-of-rebase, and never-merge/comment/force rules into the Safety section once, and reference it from Modes and Apply instead of restating each rule 3-4 times.

Consider moving the full embeddable per-PR agent prompt and apply-child prompt into a references file (e.g. references/agent-prompts.md) and linking, to reduce SKILL.md body length while keeping the prompts copy-paste ready.

The snapshot JSON schema and SWEEP report template could live in references/ to further slim the body, leaving SKILL.md as an overview with one-level-deep pointers.

DimensionReasoningScore

Conciseness

Largely lean operational guidance (gh commands, JSON schemas, safety rules) with no beginner-concept padding, but the consent/push-is-part-of-rebase/never-merge-or-comment rules are repeated 3-4 times across Modes, Safety, and Apply sections and could be tightened.

4 / 5

Actionability

Fully executable: exact `gh pr list`/`gh pr view` field lists, copy-paste rebase+`git push --force-with-lease` bash with BEFORE/AFTER SHA verification, `gh api -X POST .../actions/runs/<RUN_ID>/approve`, and complete JSON return schemas for both read and apply agents.

5 / 5

Workflow Clarity

Destructive/batch operation with explicit validation checkpoints — `gh auth status` gate, security gate before mutations, BEFORE/AFTER head-SHA comparison as the done-criterion, conflict abort with `git rebase --abort` → blocked-conflicts, and push-403 no-retry feedback loop — sequenced 1-6 with a hard-rules checklist.

5 / 5

Progressive Disclosure

Clear section structure (Args, Modes, Daily, Prerequisites, Safety, Procedure, Orchestrator tips, Reference) with a one-level-deep, clearly signaled reference to references/security-checklist.md (verified present), but the large embeddable per-PR and apply-child prompts are inlined rather than split out.

4 / 5

Total

18

/

20

Passed

Description

96%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A high-quality description: concrete actions, comprehensive natural trigger terms, and an explicit 'Use when' clause covering both what and when. Only minor overlap risk with related PR-triage skills keeps distinctiveness just below the top anchor.

DimensionReasoningScore

Specificity

Lists multiple concrete actions — 'security-scan outside contributors', 'rebase onto main when behind (push --force-with-lease)', 'approve pending first-time-contributor CI', 'rebase in-house PRs', 'report who should review' — with comprehensive coverage of the skill's capabilities.

5 / 5

Completeness

Explicitly answers both 'what' (sweep/security-scan/rebase/approve/report) and 'when' via a 'Use when the user runs /pr-sweep … or asks to …' clause with concrete trigger phrases.

5 / 5

Trigger Term Quality

Comprehensive natural trigger phrases including synonyms — 'sweep PRs', 'sweep inbound PRs', 'security-check outside PRs', 'rebase outsider PRs', 'rebase our PRs', 'approve waiting CI on PRs', 'daily PR sweep', 'prep external PRs for review' — plus the slash-invocation forms.

5 / 5

Distinctiveness Conflict Risk

Clear niche (PR prep/rebase/security-sweep of outside contributors) with distinct triggers, but phrases like 'rebase our PRs' and 'approve waiting CI on PRs' carry minor overlap risk with sibling skills (pr-babysit, triage-github) referenced in the body.

4 / 5

Total

19

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

referenced_paths_exist

Referenced path issues: 1 missing, 1 deeper-than-1-level

Warning

Total

15

/

16

Passed

Repository
TanStack/ai
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.