CtrlK
BlogDocsLog inGet started
Tessl Logo

security-compliance-compliance-check

You are a compliance expert specializing in regulatory requirements for software systems including GDPR, HIPAA, SOC2, PCI-DSS, and other industry standards. Perform compliance audits and provide implementation guidance.

47

Quality

49%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Passed

No findings from the security scan

Fix and improve this skill with Tessl

tessl review fix ./skills/security-compliance-compliance-check/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

42%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The body is well-structured with clear use/do-not-use guidance and an output template, but it is generic and lacks concrete executable guidance, and its single external reference points to a non-existent file.

Suggestions

Replace the generic Instructions bullets with concrete, executable steps or example control-checklist snippets.

Remove the verbatim duplication of the frontmatter description in the opening paragraph to tighten token use.

Either create references/implementation-playbook.md or fix the referenced path so the progressive-disclosure reference resolves to a real file.

DimensionReasoningScore

Conciseness

The opening paragraph duplicates the frontmatter description almost verbatim and the Instructions bullets are generic filler ('Apply relevant best practices and validate outcomes'), so it is mostly efficient but includes unnecessary padding, fitting anchor 3.

3 / 5

Actionability

Guidance is high-level only ('Provide actionable steps and verification', 'Apply relevant best practices') with no concrete code, commands, or checklists, matching anchor 2 for minimal concrete guidance.

2 / 5

Workflow Clarity

The Output Format provides a sequenced list of deliverables and Instructions give a rough order, but validation checkpoints are absent or only implicit, fitting anchor 3.

3 / 5

Progressive Disclosure

Sections are clearly organized and a reference is signaled ('open resources/implementation-playbook.md'), but the referenced path does not exist in the bundle (references/, scripts/, assets/ are empty), leaving structure only moderately effective, fitting anchor 3.

3 / 5

Total

11

/

20

Passed

Description

56%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

The description clearly identifies the compliance domain and key regulations but uses second-person voice and omits an explicit 'Use when' trigger clause. It is reasonably distinctive but lacks the trigger guidance needed for a top score.

Suggestions

Rewrite in third person (e.g. 'Performs compliance audits...') to avoid the second-person specificity penalty.

Add an explicit 'Use when...' clause listing natural trigger phrases like 'GDPR compliance', 'HIPAA audit', or 'SOC2 readiness'.

Expand concrete actions beyond the two listed (e.g. 'build control checklists', 'generate audit evidence') for fuller coverage.

DimensionReasoningScore

Specificity

Names the compliance domain and two concrete actions ('Perform compliance audits', 'provide implementation guidance'), matching anchor 3, but reduced by 1 per the second-person penalty for 'You are a compliance expert'.

2 / 5

Completeness

Clearly states what the skill does ('Perform compliance audits and provide implementation guidance') but lacks any 'Use when...' trigger clause, capping completeness at 3 per the rubric guideline.

3 / 5

Trigger Term Quality

Includes natural regulation keywords users would say ('GDPR, HIPAA, SOC2, PCI-DSS') plus 'compliance audits' and 'regulatory requirements'; good coverage though a few synonyms are missing, fitting anchor 4.

4 / 5

Distinctiveness Conflict Risk

The named-regulatory-standards niche is mostly distinct from generic security skills with only minor overlap risk, matching anchor 4 rather than the fully-isolated anchor 5.

4 / 5

Total

13

/

20

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
rmyndharis/antigravity-skills
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.