CtrlK
BlogDocsLog inGet started
Tessl Logo

fix-codesign-error

Slash command that inspects a macOS signing or entitlement failure and explains the minimum fix path. Invoke explicitly with /fix-codesign-error — this skill never self-triggers.

67

Quality

80%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Passed

No findings from the security scan

Fix and improve this skill with Tessl

tessl review fix ./.agents/skills/fix-codesign-error/SKILL.md
SKILL.md
Quality
Evals
Security

Quality

Content

86%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A tight, well-structured diagnostic skill body: efficient use of tokens, a concrete tool set and failure taxonomy, and a clear sequenced workflow with sensible guardrails. The main improvement area is actionability depth — example command invocations with expected outputs and an explicit post-repair verification loop.

Suggestions

Add one or two copy-paste example invocations with expected output, e.g. `codesign -d --entitlements - :` and `spctl -a -vv ./App.app`, to close the actionability gap.

Extend the workflow with an explicit validation feedback loop (propose fix → re-run verification command → confirm it passes) to push workflow clarity to the top anchor.

Briefly distinguish the two modes' expected deliverables (what 'inspect' returns vs. what a 'repair-plan' contains) so the mode argument maps to a concrete outcome.

DimensionReasoningScore

Conciseness

The 29-line body is lean and assumes Claude's competence: it never explains what codesigning is or how the tools work, and sections (Arguments, Workflow, Guardrails) contain only operational content. The only arguably trimmable line is the intro restating the description, which is conventional structure rather than padding, so anchor 5 fits better than 4.

5 / 5

Actionability

Concrete guidance is present: named verification commands ('codesign -d', 'spctl', 'plutil'), a defined argument contract, and an enumerated failure taxonomy (identity, provisioning, hardened runtime, sandboxing, trust policy). It stops short of anchor 5 because no example invocations, expected outputs, or a concrete repair sequence are given — minor gaps consistent with anchor 4.

4 / 5

Workflow Clarity

The four-step workflow is clearly sequenced (inspect → classify → summarize failure class → provide minimal repair/validation command) with a mid-point checkpoint at step 3. It is a read-only diagnostic skill, so the destructive-operation cap does not apply, but there is no explicit verify-after-repair feedback loop, which keeps it below anchor 5.

4 / 5

Progressive Disclosure

This is a simple, single-purpose skill under 50 lines with no bundle files (references/, scripts/, assets/ do not exist) and no content that warrants external files. Per the rubric's simple-skill note, well-organized sections alone qualify for the top anchor.

5 / 5

Total

18

/

20

Passed

Description

73%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A clear, third-person, appropriately concise description for an explicitly-invoked slash command: it states what the skill does and how it must be invoked. Its main gaps are situational trigger phrases and coverage of adjacent natural vocabulary (notarization, provisioning), plus only two named actions.

Suggestions

Add a situational trigger phrase such as 'Use when you encounter a codesign, entitlements, or notarization failure' to strengthen the 'when' half of completeness.

Include adjacent natural keywords users actually say — 'notarization', 'provisioning', 'hardened runtime', or the literal 'codesign failed' message — to raise trigger term coverage.

Name one or two more concrete actions (e.g., 'classifies the failure and suggests the minimal repair command') to broaden capability coverage.

DimensionReasoningScore

Specificity

The description names the domain ('macOS signing or entitlement failure') and two concrete actions ('inspects' and 'explains the minimum fix path'), but does not enumerate the fuller diagnostic behavior. This matches the anchor for naming a domain with 1-2 concrete actions without comprehensive coverage, and falls short of anchor 4's 'several specific actions'.

3 / 5

Completeness

It clearly answers 'what' ('inspects a macOS signing or entitlement failure and explains the minimum fix path') and includes explicit trigger guidance ('Invoke explicitly with /fix-codesign-error — this skill never self-triggers'), so it is not capped at 3. However, the 'when' lacks situational trigger phrases (e.g., 'use when you see a codesign error'), matching anchor 4 rather than 5.

4 / 5

Trigger Term Quality

Natural terms users would say are present ('macOS signing', 'entitlement failure', and 'codesign' via the command name /fix-codesign-error), giving good keyword coverage. A few common natural terms are missing (e.g., 'notarization', 'provisioning', or the literal 'codesign failed' error), keeping it below anchor 5.

4 / 5

Distinctiveness Conflict Risk

The niche is narrow and unambiguous — macOS codesign/entitlement failures — with distinct triggers and an explicit statement that the skill never self-triggers, minimizing conflict risk with other skills.

5 / 5

Total

16

/

20

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
robinebers/openusage
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.