CtrlK
BlogDocsLog inGet started
Tessl Logo

ai-inventory

EU AI Act per-system inventory — track each AI system's role (provider, deployer, importer, distributor, authorized representative, product manufacturer) and risk tier (prohibited, high-risk, limited, minimal, GPAI, GPAI+systemic). Role and tier are assessed per system, not per company. Use when the user says "ai inventory", "add an ai system", "what systems do we have", "classify this ai system", "eu ai act register", or "ai system registry".

72

Quality

88%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Low

Low-risk findings worth noting

SKILL.md
Quality
Evals
Security

Quality

Content

77%Weight 40%Scale 1-3

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A well-structured, highly actionable compliance skill with clear sequencing and verification checkpoints. Its main weakness is conciseness (repeated hooks and justificatory prose) and a monolithic structure with no progressive disclosure of its reference material into bundle files.

Suggestions

De-duplicate the closing hook — state the 'in-conversation obligations' offer once and reference it, instead of repeating it in steps 4, 5, and the 'Why this skill does NOT auto-derive obligations' section.

Move the Article 5 prohibited-practices and Annex III high-risk area lists into a references/ file (e.g. REFERENCE.md) and link to it from the classification walk-through, enabling progressive disclosure and a leaner SKILL.md.

Trim the justificatory 'This is deliberate:' bullets and the re-statement of the per-system concept in 'When this runs' since it already appears in the description.

DimensionReasoningScore

Conciseness

Much of the reference material (Article 5 practices, Annex III areas, role definitions) is genuinely beyond Claude's reliable recall and earns its place, but the closing hook is repeated in steps 4, 5, and again in the 'Why this skill does NOT auto-derive obligations' section, and the intro re-states the per-system concept already in the description; not score 1 because the legal reference content is legitimate, not score 3 because of the duplicated hooks and justificatory prose that could be tightened.

2 / 3

Actionability

Gives concrete executable guidance — exact config/inventory file paths, an argument dispatch table, named required fields, a distinguishing test per role, and a copy-paste YAML record format; not score 2 because guidance is specific and complete rather than pseudocode or abstract description.

3 / 3

Workflow Clarity

Multi-step process is clearly sequenced (read config, read inventory, dispatch, then sub-flows) with explicit checkpoints: prohibited→stop and route, dual-role/substantial-modification→re-run classify, and confirm-before-write in edit; not score 2 because validation/verification checkpoints are explicit rather than implicit.

3 / 3

Progressive Disclosure

Single ~240-line monolithic file with no bundle files and no one-level-deep references; the Article 5 and Annex III reference lists are well-sectioned but inline where they could be split into a reference file; not score 1 because sections are clearly organized, not score 3 because content that could be separated remains inline and nothing is split across files.

2 / 3

Total

10

/

12

Passed

Description

100%Weight 40%Scale 1-3

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong description: third-person voice, concrete enumerated capabilities, explicit natural trigger phrases, and a clear what-and-when structure. It cleanly distinguishes itself in a narrow compliance niche.

DimensionReasoningScore

Specificity

Enumerates concrete capabilities — tracking role (provider, deployer, importer, distributor, authorized representative, product manufacturer) and tier (prohibited, high-risk, limited, minimal, GPAI, GPAI+systemic) — matching the 'lists multiple specific concrete actions' anchor; not score 2 because it goes beyond naming a domain to itemizing the actual actions.

3 / 3

Completeness

Clearly answers both what (per-system role/tier tracking) and when via an explicit "Use when the user says..." clause; not score 2 because the when-trigger is explicit, not merely implied.

3 / 3

Trigger Term Quality

Provides natural phrases a user would actually say — "ai inventory", "add an ai system", "what systems do we have", "classify this ai system", "eu ai act register", "ai system registry" — giving good coverage; not score 2 because it lists six natural variations rather than a few jargon terms.

3 / 3

Distinctiveness Conflict Risk

Occupies a clear EU AI Act niche with distinct, domain-specific triggers unlikely to fire for other skills; not score 2 because the scope is sharply bounded rather than overlapping with generic inventory or compliance skills.

3 / 3

Total

12

/

12

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

frontmatter_unknown_keys

Unknown frontmatter key(s) found; consider removing or moving to metadata

Warning

Total

15

/

16

Passed

Repository
anthropics/claude-for-legal
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.