Content
85%Weight 40%Scale 1-5Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.
A lean, highly actionable body with exact cache-header values, a cron auth check, an ordered CI pipeline, and a validated release/rollback loop with re-verification. Its one real defect is structural: the primary detail file it defers to (.opencastle/stack/deployment-config.md) is absent from the bundle, so the promised full architecture, env vars, and cron jobs are unreachable.
Suggestions
Ship the referenced file or inline its content: either add .opencastle/stack/deployment-config.md to the bundle (e.g., under references/) or inline the actual env-var inventory and cron-job definitions that the body currently promises there.
Resolve or drop the security-headers pointer: if the security-hardening skill is a real companion bundle, reference it by its actual path/name; otherwise inline the minimal CSP/header set needed to act without it.
Consider folding a few natural trigger phrasings (CI/CD, GitHub Actions, deploy) into the description's 'Use when' clause to round out trigger-term coverage.
| Dimension | Reasoning | Score |
|---|---|---|
Conciseness | Every line is a directive or spec — env precedence chain, Zod-at-startup rule, "install (always --frozen-lockfile in CI)", exact Cache-Control values, the curl verification one-liner. No concept explanations, no padding; assumes Claude's competence. Matches the lean anchor-5 example. | 5 / 5 |
Actionability | Mostly executable: exact header values in a table, "return 401 unless the authorization header equals Bearer ${process.env.CRON_SECRET}", "curl -sI https://example.com | grep -E 'HTTP|Strict'", and a concrete rollback preference (platform promote over "git revert -m 1 HEAD && git push"). Not 5 because "full architecture, env vars, cron jobs, caching headers" and the CSP inventory are deferred to references, leaving the actual env-var list and cron-job definitions absent from the body. | 4 / 5 |
Workflow Clarity | CI stages are explicitly ordered ("install → lint → test → production build → deploy"), the release gate is a checklist ("lint + test + build all exiting 0 and no draft PRs"), and rollback is a feedback loop ("rolled back immediately, not patched forward... re-run the curl -sI check before calling it resolved"). Destructive release/rollback operations do have validation and re-verification, so the cap does not apply. | 5 / 5 |
Progressive Disclosure | Sections are well organized and the body is short, but the two deferral pointers are unresolvable: ".opencastle/stack/deployment-config.md" — the designated home for "full architecture, env vars, cron jobs, caching headers" — does not exist in the bundle (no references/, scripts/, or assets/ directories), and the **security-hardening** skill reference is external/unverifiable. Matches anchor 3 (references present but the organization leaves deferred content inaccessible); not 4 because a signaled-but-missing reference is a real navigation failure, not a minor gap. | 3 / 5 |
Total | 17 / 20 Passed |