CtrlK
BlogDocsLog inGet started
Tessl Logo

fusion-dependency-review

Review dependency PRs with structured research, existing-PR-discussion capture, multi-lens analysis (security, code quality, impact), and a repeatable verdict template. USE FOR: dependency update PRs, Renovate/Dependabot PRs, library upgrade reviews, "review this dependency PR", "should we merge this update". DO NOT USE FOR: feature PRs, application code reviews, dependency automation/bot configuration, or unattended merge without confirmation.

68

Quality

82%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Low

Low-risk findings worth noting

SKILL.md
Quality
Evals
Security

Quality

Content

70%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The body is well organized with an unusually explicit decision-gate structure (checkpoint comments, confirmation before merge, evidence requirements) — workflow clarity is excellent. Weaknesses are redundancy (the orchestration sequence is stated three times, with duplicated Always-bullets) and broken progressive disclosure: all seven referenced agents/*-advisor.md files are absent from the bundle.

Suggestions

Merge the 'Preferred advisor orchestration' and 'Workflow summary' sections into one sequence, and fold the 'Advisors' section's one-line descriptions into it — the same agent ordering is currently stated three times.

Deduplicate the Always list (e.g., the two consecutive bullets about reusing the shared research packet / not re-fetching PR comments say the same thing).

Resolve the agents/*-advisor.md references: either ship the seven advisor files in the bundle or replace those paths with the inline orchestration fallback as the primary instruction.

DimensionReasoningScore

Conciseness

The orchestration is described three times over — 'Preferred advisor orchestration', 'Workflow summary', and the 'Advisors' section each restate the same agent sequence — and the Always list contains near-duplicate bullets ('Reuse one shared research packet across advisors...' immediately followed by 'Do not re-fetch PR comments or review threads independently in each advisor'). No filler explanation of known concepts, but the repetition is unnecessary tightening work; anchor 3 fits 'could be tightened'.

3 / 5

Actionability

Concrete, executable guidance for an instruction-only skill: specific file pointers (references/questions.md, assets/research-template.md), explicit expected-output structure, and precise safety rules ('Rebase dependency PR branches... do not merge the base branch into the PR branch'). Falls short of 5 because the agents/*.md files the workflow depends on are not in the bundle, and no inline example of the verdict wording is given; the 'if helper advisors are unavailable, follow the same orchestration inline' fallback keeps this above 3.

4 / 5

Workflow Clarity

Clear numbered sequence with explicit validation checkpoints and decision gates: minimal follow-up questions for ambiguous PR targets, 'Post the research checkpoint comment to the PR before any branch mutation', 'Post the final verdict comment to the PR before any approval or merge', 'Never... Claim CI passed or security is clear without checking actual status', plus a tracker checklist asset. As a mutation-capable skill it has confirmation and validation gates throughout.

5 / 5

Progressive Disclosure

The existing bundle files are well-signaled and one level deep (references/instructions.md, references/questions.md, and three assets/ files each get a descriptive bullet), but the body references seven agents/*-advisor.md paths that do not exist anywhere in the bundle — 7 of 12 referenced paths are dead, breaking navigation for the majority of the referenced material. Not 2 because the SKILL.md itself is well structured with a fallback for missing advisors; not 4 because missing referenced files are more than a 'minor organization gap'.

3 / 5

Total

15

/

20

Passed

Description

95%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong description: third-person voice, concrete capabilities, explicit USE FOR triggers with natural phrasing and synonyms, and a DO NOT USE list that sharply bounds the skill's niche. Only minor gap is that a couple of real capabilities (e.g., follow-up issue handoff) are not surfaced in the description.

DimensionReasoningScore

Specificity

Quotes concrete actions: 'structured research', 'existing-PR-discussion capture', 'multi-lens analysis (security, code quality, impact)', 'a repeatable verdict template' — several specific actions with minor gaps in coverage (e.g., the follow-up issue handoff capability from the body is not mentioned). Not 5 because comprehensiveness is slightly incomplete; not 3 because far more than 1-2 concrete actions are named.

4 / 5

Completeness

Explicitly answers both: what ('Review dependency PRs with structured research... multi-lens analysis... repeatable verdict template') and when ('USE FOR: dependency update PRs, Renovate/Dependabot PRs...' with concrete trigger phrases), plus a DO NOT USE exclusion list. Clear match to the anchor-5 example structure.

5 / 5

Trigger Term Quality

Natural user phrases with synonym coverage: 'dependency update PRs', 'Renovate/Dependabot PRs', 'library upgrade reviews', 'review this dependency PR', 'should we merge this update'. These are exactly what a user would say, spanning the tool names (Renovate/Dependabot) and phrasings users naturally use.

5 / 5

Distinctiveness Conflict Risk

Clear niche (dependency update PRs only) with a 'DO NOT USE FOR: feature PRs, application code reviews, dependency automation/bot configuration' exclusion list that actively separates it from adjacent code-review skills. Minimal conflict risk.

5 / 5

Total

19

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

metadata_field

'metadata' should map string keys to string values

Warning

Total

15

/

16

Passed

Repository
equinor/fusion-framework
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.