CtrlK
BlogDocsLog inGet started
Tessl Logo

oma-tf-infra

Create or review Terraform infrastructure and plans. Use for cloud resources, IAM, networking, state management, and infrastructure changes.

62

Quality

73%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Passed

No findings from the security scan

Fix and improve this skill with Tessl

tessl review fix ./.agents/skills/oma-tf-infra/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

67%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A well-structured IaC skill body with executable Terraform/scanner commands, a clear guarded workflow with validation and destructive-change checkpoints, and well-signaled external references. It is held back by meta-framework boilerplate and redundant scheduling sections that inflate tokens, abstract scene labels instead of concrete step-by-step commands, and inline reference-grade tables that would be better split into the referenced resource files.

Suggestions

Cut the meta-framework scaffolding ("Intent signature", "Actions | SSL primitive", "Resource scope" tables) and the sections duplicating the frontmatter description to reduce token cost without losing actionable content.

Make the VERIFY scene an explicit feedback loop with re-run commands (e.g. "If fmt/validate/scan fails: fix, then re-run terraform validate before proceeding"), and make validation unconditional rather than "when available".

Move the multi-cloud resource mapping and guardrail details into resources/multi-cloud-examples.md and a dedicated reference file, keeping only the provider-detection table and command path inline; also ensure all referenced resource paths actually exist in the skill bundle.

DimensionReasoningScore

Conciseness

The body is mostly dense tables and lists with little concept explanation Claude already knows, but meta-framework scaffolding ("Intent signature", the "Actions | SSL primitive" table, "Resource scope" table) and sections that repeat the frontmatter ("When to use"/"Expected inputs") add unnecessary tokens. This fits anchor 3 (mostly efficient but includes unnecessary material that could be tightened) rather than anchor 4's minor-trimming profile.

3 / 5

Actionability

Concrete executable commands are provided ("terraform init", "terraform fmt -recursive", "terraform validate", "terraform plan -out=tfplan", "checkov -d .", "trivy config .") alongside a provider-detection table, a multi-cloud resource mapping, and version-specific guidance (ephemeral resources TF >= 1.10, write-only arguments TF >= 1.11). Minor gaps remain — no inline HCL examples — so it fits anchor 4 rather than the fully copy-paste-ready coverage of anchor 5.

4 / 5

Workflow Clarity

A clear sequence is present (Entry → PREPARE/ACQUIRE/REASON/ACT/VERIFY/FINALIZE → Transitions → Failure and recovery → Exit) with a VERIFY scene running fmt, validate, plan, and scans, and explicit stops for destructive changes, so the destructive-operation validation cap does not apply. However, the scene labels are abstract, validation is conditional ("when available"), and "fix or report concrete remediation" is not an explicit re-run loop, fitting anchor 4 rather than anchor 5.

4 / 5

Progressive Disclosure

The References section clearly signals one-level-deep resources with their purposes ("Execution steps (follow for the selected task): resources/execution-protocol.md", "Self-check (run before handoff): resources/checklist.md"). It falls short of anchor 5 because the large multi-cloud mapping and guardrail tables are inline content that arguably belongs in reference files, and none of the referenced paths (resources/*.md, ../_shared/core/*) resolve within the provided bundle, so they could not be verified.

4 / 5

Total

15

/

20

Passed

Description

78%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A concise, third-person description that clearly states what the skill does and when to use it, anchored by the distinctive "Terraform" keyword. Its main weakness is that the capability list names domains rather than concrete actions, and it omits common synonyms like "IaC" or cloud provider names that users would naturally say.

Suggestions

Replace generic domain nouns with concrete actions, e.g. "Provision cloud resources, configure IAM/OIDC roles, and design networking across AWS, GCP, Azure, and OCI".

Add natural synonyms and trigger variations users would say, such as "IaC", "infrastructure-as-code", "provisioning", or "terraform plan review".

DimensionReasoningScore

Specificity

"Create or review Terraform infrastructure and plans" names the domain with two concrete actions, but the remaining clause lists domain objects ("cloud resources, IAM, networking, state management") rather than specific actions within them. It matches anchor 3 (domain plus 1-2 concrete actions, not comprehensive) rather than anchor 4, which expects several specific listed actions.

3 / 5

Completeness

The description explicitly answers both "what" ("Create or review Terraform infrastructure and plans") and "when" ("Use for cloud resources, IAM, networking, state management, and infrastructure changes") with concrete trigger phrases. This matches anchor 5; the 'when' clause is explicit rather than weakly implied, ruling out anchor 4.

5 / 5

Trigger Term Quality

Natural trigger terms like "Terraform", "IAM", "networking", "state management", and "infrastructure changes" are present and would be said by users. Common variations such as "IaC", "provisioning", or provider names (AWS/GCP/Azure) are missing, so it fits anchor 4 (good coverage, a few natural terms missing) rather than the comprehensive synonym coverage of anchor 5.

4 / 5

Distinctiveness Conflict Risk

"Terraform" establishes a clear niche with distinct triggers, but the broad trigger phrases "cloud resources" and "IAM" create minor overlap risk with general cloud or security skills. It fits anchor 4 (mostly distinct, minor overlap) rather than anchor 5's minimal-conflict profile.

4 / 5

Total

16

/

20

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
first-fluke/oh-my-agent
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.