CtrlK
BlogDocsLog inGet started
Tessl Logo

review-deps

Use when auditing the monorepo's dependencies — every workspace package.json — for version drift between workspaces and for upgrades available on npm. Finds the packages whose declared ranges disagree, checks the registry for newer versions, classifies each upgrade against the waiting-period rules, reads the changelogs of the ready ones, and reports the package.json changes to make.

75

Quality

94%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Low

Low-risk findings worth noting

The canonical home for this skill is review-deps in englishstreetventures/osn

SKILL.md
Quality
Evals
Security

Quality

Content

96%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

Excellent procedural skill content: fully executable commands, a clear step sequence with real validation and feedback loops, and prose that only adds what Claude could not already know. The sole structural note is that everything lives inline in one file with no reference split, which is defensible for a cohesive workflow but leaves minor organization headroom.

DimensionReasoningScore

Conciseness

The body is dense with repo-specific rules Claude cannot know (peerDependencies-as-contract rationale, root overrides as floor, bunfig minimumReleaseAge and its CI-enforced DROP AFTER markers, lockfile cross-platform pruning) and teaches no general concepts. Every sentence adds a constraint or command, matching the lean 5 anchor.

5 / 5

Actionability

Guidance is copy-paste ready end to end: the find/jq TSV pipeline, the cut|sort|uniq drift detection one-liner, bun outdated --filter '*', the verbatim DEPS-REVIEW.md heredoc, and the final grep verification commands. Not 4: there are no gaps between instruction and execution.

5 / 5

Workflow Clarity

Steps 0–7 are clearly sequenced with explicit validation checkpoints: the never-fabricate rule with a degraded-network path, "bun install --frozen-lockfile still passes" before committing the lockfile, the bun audit stop-not---no-verify rule, user confirmation before edits, and the closing check where both greps must print 4. The batch-edit cap does not apply because validation is present.

5 / 5

Progressive Disclosure

A single self-contained file with well-organized step headings and no nested references, and the content is a tightly coupled procedure that needs no bundle. Not 5: there is no overview-to-reference split at all (no bundle files exist), and at roughly 130 lines it falls outside the under-50-line exception for reference-free skills.

4 / 5

Total

19

/

20

Passed

Description

92%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong description: it combines an explicit "Use when" trigger with a comprehensive, concrete inventory of the skill's actions in third-person voice. The only weakness is slightly thin synonym coverage for trigger terms (e.g., "outdated", "update dependencies").

DimensionReasoningScore

Specificity

The description lists five concrete actions — "finds the packages whose declared ranges disagree, checks the registry for newer versions, classifies each upgrade against the waiting-period rules, reads the changelogs of the ready ones, and reports the package.json changes to make" — with comprehensive coverage of the skill's behavior. Not 4: there are no minor gaps in the action inventory.

5 / 5

Completeness

It opens with an explicit trigger clause ("Use when auditing the monorepo's dependencies ... for version drift ... and for upgrades available on npm") and fully states what it does via five concrete actions, matching the anchor structure of both what and when with concrete trigger phrases.

5 / 5

Trigger Term Quality

Natural terms include "auditing the monorepo's dependencies", "version drift", "upgrades available on npm", and "package.json" — phrases a user would plausibly say. Not 5: common synonyms such as "outdated" or "update dependencies" are missing.

4 / 5

Distinctiveness Conflict Risk

Monorepo workspace dependency auditing with npm registry checks is a clear niche with distinct triggers, and the third-person voice ("Finds", "checks", "reports") is used throughout. Minimal overlap risk with other skills.

5 / 5

Total

19

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

referenced_paths_exist

Referenced path issues: 1 missing

Warning

Total

15

/

16

Passed

Repository
englishstreetventures/englishstreetventures.com
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.