CtrlK
BlogDocsLog inGet started
Tessl Logo

ruview-verify

Verify a RuView build — full Rust workspace tests, the deterministic Python pipeline proof (SHA-256 Trust Kill Switch), firmware hash manifest, and the ADR-028 witness bundle with one-command self-verification. Use after any significant change, before merging a PR, or to produce an attestation bundle for a recipient.

72

Quality

90%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Passed

No findings from the security scan

SKILL.md
Quality
Evals
Security

Quality

Content

88%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

The body is a lean, highly actionable runbook: every step is an executable command with a stated expected outcome, the sequence is numbered, and both a hash-mismatch recovery loop and a pre-merge checklist are present. The two weaker spots are the compressed QEMU notes, which read as a fact dump, and the inlined checklist that would sit better in a referenced file.

DimensionReasoningScore

Conciseness

Every section is a command plus an expected-outcome comment ('# must be 1,400+ passed, 0 failed', '# must print VERDICT: PASS', '# must be 7/7 PASS') with no explanation of concepts Claude already knows. The 'QEMU firmware CI' section is a dense run-on fact dump ('11-job workflow ... needs source $IDF_PATH/export.sh before pip ... WARNs (no real WiFi) are treated as OK in CI') that could be tightened, which matches the 'efficient; minor instances that could be trimmed' anchor rather than the fully lean 5.

4 / 5

Actionability

All guidance is copy-paste executable — 'cargo test --workspace --no-default-features', 'python archive/v1/data/proof/verify.py', 'bash scripts/generate-witness-bundle.sh', 'bash VERIFY.sh' — and it even covers the error-recovery path ('--generate-hash' then re-run for a hash mismatch after a numpy/scipy bump). Commands cover the common cases end to end.

5 / 5

Workflow Clarity

Sections 1–5 give a clear sequence with an explicit validation checkpoint at each step (expected test counts, VERDICT: PASS, 7/7 PASS), a feedback loop for the one realistic failure mode, and a 12-item pre-merge checklist for the complex process. This matches the top anchor: explicit validation, error-recovery loops, and a checklist.

5 / 5

Progressive Disclosure

Sections are well organized and pointers are one level deep into real repo files ('docs/WITNESS-LOG-028.md', 'CLAUDE.md → "Validation & Witness Verification"'). However the 12-item pre-merge checklist and the QEMU CI notes are inlined in full — exactly the detail that could live in a separate reference file — keeping this at 'good structure; minor organization gaps' rather than the cleanly split top anchor.

4 / 5

Total

18

/

20

Passed

Description

92%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong description: it states concrete capabilities in third person, gives three explicit usage triggers (after significant change, before merging a PR, producing an attestation bundle), and is tightly scoped to a distinct project niche. The only gap is a handful of natural synonym phrases a user might use.

DimensionReasoningScore

Specificity

The description enumerates multiple concrete capabilities — 'full Rust workspace tests', 'deterministic Python pipeline proof (SHA-256 Trust Kill Switch)', 'firmware hash manifest', and the 'ADR-028 witness bundle with one-command self-verification' — giving comprehensive, action-level coverage rather than a vague domain claim. It is not 4 because the action list covers the skill's whole surface with only minor gaps, matching the 'multiple specific concrete actions; comprehensive coverage' anchor.

5 / 5

Completeness

'Verify a RuView build — full Rust workspace tests, ... witness bundle with one-command self-verification' explicitly states what the skill does, and 'Use after any significant change, before merging a PR, or to produce an attestation bundle for a recipient' explicitly states when, with three concrete trigger scenarios. Both halves are present and explicit, matching the top anchor.

5 / 5

Trigger Term Quality

Natural phrases like 'Verify a RuView build', 'before merging a PR', 'after any significant change', and 'produce an attestation bundle' would plausibly appear in a user request, and project-specific terms (RuView, ADR-028, SHA-256) are appropriate for a repo skill. It is not 5 because common variations users would actually say — e.g. 'run the tests', 'pre-merge check', 'regression' — are missing, and not 3 because keyword coverage is strong rather than partial.

4 / 5

Distinctiveness Conflict Risk

The description occupies a clear niche — verification of one specific project's build with its own artifacts (RuView, ADR-028, SHA-256 Trust Kill Switch) — so triggers like 'verify the RuView build' or 'before merging' in this repo are unlikely to collide with unrelated skills.

5 / 5

Total

19

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

referenced_paths_exist

Referenced path issues: 3 missing

Warning

Total

15

/

16

Passed

Repository
ruvnet/RuView
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.