CtrlK
BlogDocsLog inGet started
Tessl Logo

wireshark-analysis

This skill should be used when the user asks to "analyze network traffic with Wireshark", "capture packets for troubleshooting", "filter PCAP files", "follow TCP/UDP streams", "detect network anomalies", "investigate suspicious traffic", or "perform protocol analysis". It provides comprehensive techniques for network packet capture, filtering, and analysis using Wireshark.

68

Quality

82%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Medium

Suggest reviewing before use

SKILL.md
Quality
Evals
Security

Quality

Content

65%

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A dense, highly actionable Wireshark reference with excellent concrete filter syntax and examples, undermined by verbosity and a monolithic structure that externalizes nothing. Workflow sequencing is present but lacks explicit validation checkpoints.

Suggestions

Trim prerequisite/educational padding (OSI model, basic protocol explanations, restated use cases) that Claude already knows, to improve token efficiency.

Add explicit validation/verification checkpoints between analysis phases (e.g., confirm filter applied, verify capture not saturated before deep analysis) to lift workflow clarity.

Move the large Common Filter Reference and Statistics sections into reference files under references/ and link to them from SKILL.md, keeping the body as a lean overview.

DimensionReasoningScore

Conciseness

The body is mostly an efficient filter/menu reference, but it pads with concepts Claude already knows (OSI model layers, protocol basics, 'understanding of common attack patterns') and explains what each Statistics view shows, so it could be tightened.

2 / 3

Actionability

It provides copy-paste-ready display/capture filter expressions, concrete keyboard shortcuts, exact menu paths, and worked examples — fully executable guidance rather than vague direction.

3 / 3

Workflow Clarity

Six numbered phases give a clear sequence, but there are no explicit validation checkpoints or feedback loops between phases; checkpoints are implicit rather than stated.

2 / 3

Progressive Disclosure

No bundle files exist and the ~490-line body is monolithic — large filter references and statistics material that could be externalized sit inline, though section organization is reasonable.

2 / 3

Total

9

/

12

Passed

Description

100%

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong, third-person description that pairs explicit natural-language trigger phrases with a clear statement of capabilities. It cleanly answers both what the skill does and when to invoke it, with low conflict risk.

DimensionReasoningScore

Specificity

The description lists multiple concrete actions — "network packet capture, filtering, and analysis using Wireshark" plus follow streams and detect anomalies — matching the 'lists multiple specific concrete actions' anchor.

3 / 3

Completeness

It explicitly answers both what ("provides comprehensive techniques for network packet capture, filtering, and analysis") and when ("This skill should be used when the user asks to...") with explicit triggers, in third-person voice.

3 / 3

Trigger Term Quality

Quoted triggers like "analyze network traffic with Wireshark", "capture packets for troubleshooting", "filter PCAP files", and "follow TCP/UDP streams" are natural phrases a user would actually say, giving good coverage.

3 / 3

Distinctiveness Conflict Risk

Wireshark-specific triggers (PCAP files, packet capture, TCP/UDP streams) carve a clear niche that is unlikely to conflict with other skills.

3 / 3

Total

12

/

12

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
zebbern/claude-code-guide
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.