CtrlK
BlogDocsLog inGet started
Tessl Logo

github-automation

Automate GitHub repositories, issues, pull requests, branches, CI/CD, and permissions via Rube MCP (Composio). Manage code workflows, review PRs, search code, and handle deployments programmatically.

81

1.32x
Quality

78%

Does it follow best practices?

Impact

81%

1.32x

Average score across 3 eval scenarios

SecuritybySnyk

Low

Low-risk findings worth noting

Fix and improve this skill with Tessl

tessl review fix ./plugins/all-skills/skills/github-automation/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

75%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A well-organized, highly actionable MCP orchestration guide whose value lies in concrete tool slugs, parameters, and GitHub API pitfalls Claude would not otherwise know. Its main weaknesses are a fully duplicated Known Pitfalls section and the lack of any progressive-disclosure split despite a long body, plus validation steps framed as caution notes rather than explicit verify-then-retry loops.

Suggestions

Delete the "Known Pitfalls" section — all eight bullets restate pitfalls already documented per workflow — and drop the duplicate intro sentence and "Powered by Composio" footer.

Split the six workflow sections (or at least the Quick Reference table) into references/ files, keeping SKILL.md as a short overview with clearly signaled one-level-deep links.

Convert caution notes into explicit validation steps, e.g. after `GITHUB_CREATE_A_WORKFLOW_DISPATCH_EVENT`, verify via `GITHUB_LIST_CHECK_RUNS_FOR_A_REF` that the run started; after issue creation, confirm via `GITHUB_LIST_REPOSITORY_ISSUES`.

DimensionReasoningScore

Conciseness

The workflow sections are dense with non-obvious API knowledge (parameter quirks, 422/409/404 errors, pagination limits) that Claude cannot be assumed to know, but the "Known Pitfalls" section (~lines 199-208) restates the per-workflow Pitfalls nearly verbatim and the intro sentence repeats the frontmatter description. This matches "mostly efficient but includes some unnecessary explanation or could be tightened" rather than 4, because an entire duplicated section plus a duplicate footer/table-of-tools is more than a minor trim.

3 / 5

Actionability

Every workflow gives exact tool slugs (`GITHUB_CREATE_A_PULL_REQUEST`, `GITHUB_LIST_CHECK_RUNS_FOR_A_REF`), concrete parameters with valid values (`merge_method`: 'merge', 'squash', 'rebase'; `q` qualifiers like `repo:owner/repo`), and specific failure modes. Per the rubric's scoring note, an instruction-only skill needs concrete actionable guidance rather than code, and this is copy-paste ready for MCP calls. Not a 4 because there are no gaps — even example qualifier syntax is given.

5 / 5

Workflow Clarity

Sequences are clearly ordered with Required/Optional/Alternative tags, and the risky operations have explicit checkpoints: "Confirm connection status shows ACTIVE before running any workflows", "Always verify mergeable status ... immediately before merging", "Check CI status ... before merging", and "Require explicit user confirmation for destructive operations", plus error-recovery guidance (auth-link retry, treating 404 on branch protection as unprotected). It falls short of 5 because some feedback loops are described as failure modes to know rather than validate-then-retry steps (no post-creation/post-dispatch verification step, and pitfalls like 422/409 lack an explicit retry path).

4 / 5

Progressive Disclosure

No bundle files exist (no references/, scripts/, or assets/), so everything is in one well-sectioned file: six workflows, Common Patterns, Known Pitfalls, and a Quick Reference index table — easy to navigate, one level deep at most, no buried or nested references. It matches "good structure; most content appropriately placed; minor organization gaps" rather than 5 because at ~224 lines with six full workflows inlined, the per-workflow details and the Quick Reference table are candidates for separate reference files that would keep SKILL.md a leaner overview.

4 / 5

Total

16

/

20

Passed

Description

82%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong, specific, third-person description with comprehensive natural trigger terms for the GitHub automation domain. Its only structural weakness is the absence of an explicit "Use when..." trigger clause, which leaves the activation condition implied rather than stated.

Suggestions

Append an explicit trigger clause, e.g. "Use when the user asks to automate GitHub tasks — creating issues, reviewing or merging PRs, managing branches or CI/CD — or mentions Rube MCP or Composio."

Optionally add one or two workflow-orienting synonyms users say (e.g. "merge PRs", "run GitHub Actions") to strengthen the when-side of the description.

DimensionReasoningScore

Specificity

Phrases like "Automate GitHub repositories, issues, pull requests, branches, CI/CD, and permissions" and "Manage code workflows, review PRs, search code, and handle deployments" list multiple concrete actions with comprehensive coverage across the toolkit's six workflows, matching the top anchor. It is not a 4 because coverage spans essentially every capability the body details (issues, PRs, branches, search, CI/CD, permissions).

5 / 5

Completeness

The "what" is clear and concrete (automating GitHub repos, issues, PRs, branches, CI/CD, permissions via Rube MCP), but there is no "Use when..." clause or equivalent explicit trigger guidance, which caps this dimension at 3 per the rubric guideline. It is not a 4 because the "when" is only weakly implied by the domain nouns, never stated; not a 2 because the "what" is detailed and unambiguous.

3 / 5

Trigger Term Quality

It uses the natural terms users say for this domain — "GitHub", "issues", "pull requests", "PRs" (a synonym pair alongside "pull requests"), "branches", "CI/CD", "deployments", "review PRs", "search code". It is not a 4 because both the full term and common shorthand are present and the vocabulary mirrors how users phrase GitHub automation requests; file extensions are not applicable to this service-oriented skill.

5 / 5

Distinctiveness Conflict Risk

The description is anchored to a clear niche — GitHub automation specifically "via Rube MCP (Composio)" — so its triggers (GitHub, PRs, issues, CI/CD) map unambiguously to this skill. It is not a 4 because the tool-chain qualifier plus domain-specific nouns leave minimal overlap risk with non-GitHub or non-Rube skills.

5 / 5

Total

18

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

frontmatter_unknown_keys

Unknown frontmatter key(s) found; consider removing or moving to metadata

Warning

Total

15

/

16

Passed

Repository
davepoon/buildwithclaude
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.