CtrlK
BlogDocsLog inGet started
Tessl Logo

secops-setup-antigravity

Helps the user configure the Google SecOps Remote MCP Server for Antigravity. Use this when the user asks to "set up" or "configure" the security tools for Antigravity.

85

1.53x
Quality

78%

Does it follow best practices?

Impact

100%

1.53x

Average score across 3 eval scenarios

SecuritybySnyk

High

Do not use without reviewing

Fix and improve this skill with Tessl

tessl review fix ./extensions/google-secops/skills/setup-antigravity/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

75%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The content is a concise, actionable, well-sequenced setup workflow with built-in safeguards. The main gaps are missing template bundle files, a prose-only merge step, and no error-recovery guidance for failed verification.

Suggestions

Ship the referenced bundle files (mcp_config.template.json, .env.example) alongside SKILL.md, or inline a minimal JSON template so the skill is self-contained.

Add a concrete code/JSON snippet for the merge step (e.g. a jq or Python dict-merge command) instead of describing it in prose.

Add a short feedback loop in Verification: if 'list 3 soar cases' fails, re-check the auth token (it is temporary) and the merged mcpServers entry before retrying.

DimensionReasoningScore

Conciseness

The body is lean and instruction-oriented with no conceptual padding, but small redundancies (e.g. stating 'must be authenticated' before the question that establishes it) keep it just short of fully lean.

4 / 5

Actionability

Provides concrete commands (gcloud auth/print-access-token), explicit file paths, and template-variable replacements, but the merge step is described in prose rather than executable code and relies on template files that are not present in the bundle.

4 / 5

Workflow Clarity

A clear three-phase sequence (Prerequisite Checks, Configuration, Verification) with an explicit verification checkpoint and a 'Do not overwrite other servers' safeguard, but it lacks a feedback/recovery loop for the case where verification fails.

4 / 5

Progressive Disclosure

Well-organized sections with content appropriately kept inline for a sub-50-line skill, but it references mcp_config.template.json and .env.example as 'located in the same directory' when no such bundle files exist, leaving minor broken-reference gaps.

4 / 5

Total

16

/

20

Passed

Description

82%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

The description is clear, specific, and well-structured with explicit trigger guidance and low conflict risk. Its main weakness is specificity, naming only 'configure' as an action rather than enumerating the concrete steps it performs.

Suggestions

Expand the 'what' to list concrete actions, e.g. 'Checks Google Cloud auth, gathers project/customer/region config, and merges the remote-mcp-secops server into your Antigravity MCP config.'

Add a couple of natural trigger synonyms such as 'connect' or 'install' alongside 'set up'/'configure' to broaden keyword coverage.

DimensionReasoningScore

Specificity

Names the domain ('Google SecOps Remote MCP Server for Antigravity') and one concrete action ('configure') but offers no broader list of actions, matching the anchor for 1-2 concrete actions without being comprehensive.

3 / 5

Completeness

Explicitly answers both what (configure the Google SecOps Remote MCP Server for Antigravity) and when (when the user asks to 'set up' or 'configure' the security tools) with concrete trigger phrases.

5 / 5

Trigger Term Quality

Includes natural user-facing triggers ('set up' and 'configure' the security tools for Antigravity) but misses common synonyms like 'connect' or 'install', so it is good but not comprehensive.

4 / 5

Distinctiveness Conflict Risk

Targets a highly specific niche with distinct triggers ('Antigravity', 'Google SecOps Remote MCP Server'), minimizing overlap with other skills.

5 / 5

Total

17

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

frontmatter_unknown_keys

Unknown frontmatter key(s) found; consider removing or moving to metadata

Warning

Total

15

/

16

Passed

Repository
google/mcp-security
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.