Content
92%Weight 40%Scale 1-5Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.
Excellent content: dense non-obvious Supabase/RLS gotchas, a validation-rich migration workflow with explicit feedback loops, and executable verification/type-generation commands, all in a compact body with clear external pointers. The only improvement space is providing a concrete example migration file and a pointer to the "safe-deploy pipeline" itself.
Suggestions
Include a minimal example migration file (e.g., an ENABLE ROW LEVEL SECURITY + policy pair) to make the RLS gotcha #1 rule directly copy-pasteable.
Name or link the "safe-deploy pipeline" referenced in step 5 so the deployment step is actionable rather than assumed.
| Dimension | Reasoning | Score |
|---|---|---|
Conciseness | The body is dense, non-obvious knowledge — "`ENABLE ROW LEVEL SECURITY` with no policy denies everything", "`auth.uid()` is NULL for the `anon` role", "`INSERT` needs `WITH CHECK`, not `USING`" — with no padding and no explanation of concepts Claude already knows. It matches the score-5 anchor: lean, assumes competence, every token earns its place. | 5 / 5 |
Actionability | It provides copy-paste-ready commands (the `pg_tables` verification query and `supabase gen types typescript --project-id <project-id> > src/types/supabase.ts`) plus concrete syntax rules, matching the score-4 anchor (mostly executable, minor gaps). It falls short of 5 because there is no example migration snippet and the "safe-deploy pipeline" is referenced without a concrete command or path. | 4 / 5 |
Workflow Clarity | The 5-step migration workflow has a clear sequence, a destructive-action review step, explicit validation at steps 2 and 4 ("run smoke tests plus per-role RLS checks", "Re-run in CI against a test replica with the full suite"), post-deploy re-verification, and an explicit feedback loop ("On failure: revert, adjust, re-run"). This matches the score-5 anchor, and the destructive/batch validation requirement is fully satisfied — not 4, since checkpoints and error recovery are explicit throughout. | 5 / 5 |
Progressive Disclosure | At ~35 lines with well-organized sections (RLS gotchas, Migration workflow) and one clearly signaled one-level-deep reference ("key files: `.opencastle/stack/supabase-config.md`"), it matches the under-50-lines exception for score 5. No bundle files exist to inline, and no nested references are present. | 5 / 5 |
Total | 19 / 20 Passed |