Content
43%Weight 40%Scale 1-5Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.
The body is a lean, correctly structured pointer that delegates everything to a real detailed guide, but it delegates too much: no workflow, modes, or validation checkpoints appear in the body, the scripts bundle is invisible, and the guide's own reference list includes five broken paths. Surfacing a quick-start mode summary, the scripts, and the real reference files would lift actionability and workflow clarity substantially.
Suggestions
Add a brief quick-start section in the body: the audit modes (audit, threat-model, approve, block, monitor, incident) and how to invoke the scripts, e.g. `python scripts/quick_scan.py` vs `python scripts/full_audit.py`.
Fix or remove the five broken cross-references in the detailed guide (hardening-linux.md, hardening-windows.md, payment-security.md, bot-security.md, compliance-matrix.md) and list the actual reference files in the body so they are discoverable.
Include a short sequenced workflow in the body (map attack surface → threat model → checklists → red team → blue team → verdict) with an explicit validation/checkpoint step, so the multi-phase process does not depend entirely on the external guide.
| Dimension | Reasoning | Score |
|---|---|---|
Conciseness | The body is lean with no concept explanations Claude already knows — a short pointer to the detailed guide, trigger lists, and limitations. It falls short of the lean anchor because of mechanical repetition ("or related topics" repeated in all six trigger bullets) and boilerplate filler like "The task is unrelated to 007" and "A simpler, more specific tool can handle the request", which earn little per token. | 4 / 5 |
Actionability | The only concrete instruction in the body is "Read [the detailed guide](references/detailed-guide.md) before executing this skill" — a pointer with no steps, commands, or code, and the body never mentions the executable bundle in scripts/ (full_audit.py, quick_scan.py, score_calculator.py) at all. This matches the anchor of minimal concrete guidance with high-level hints but missing the specific steps to execute; it is above score 1 only because the pointer is an explicit, real, actionable directive. | 2 / 5 |
Workflow Clarity | This skill is a multi-mode, six-phase audit process, yet the body contains no sequenced steps — the entire workflow is delegated to the guide, leaving only a rough read-then-execute order with many gaps. It is not score 1 because the directive to load guide sections for focused work vs. reading completely gives a coherent, if minimal, order; it cannot be higher since no phases, modes, or validation checkpoints appear in the body itself. | 2 / 5 |
Progressive Disclosure | The body's single reference is well-signaled and one level deep (detailed-guide.md exists), but scoring against the actual bundle reveals problems: the guide cross-references 10 files of which 5 do not exist (hardening-linux.md, hardening-windows.md, payment-security.md, bot-security.md, compliance-matrix.md), and the scripts/ directory plus 4 other reference files are never surfaced in the body. This fits the anchor of some structure with organizational gaps — better than buried or monolithic, but not the good-structure anchor given the broken paths and undiscoverable bundle resources. | 3 / 5 |
Total | 11 / 20 Passed |