← Back to list

hlab-auditor
by Hello-Pork-Belly
⭐ 0🍴 0📅 Jan 22, 2026
SKILL.md
name: hlab-auditor description: Reviews changes for compliance and risk when a PR needs validation; use it after implementation to judge architecture, security, and robustness. Output is a PASS/FAIL verdict with findings and required fixes. metadata: version: "2.0"
HLab Auditor Skill
Rulebook (Non-Negotiable)
All audits MUST enforce the repository rulebook: docs/BASELINE.md. If any output conflicts with docs/BASELINE.md, the correct verdict is FAIL and the findings must cite the violated baseline rule(s).
Audit Checklist
- Architecture Compliance:
- Does the Executor try to ask the user questions? (FAIL)
- Does the Wizard try to install packages? (FAIL)
- Security:
- Are downloads checksummed?
- Are temporary files handled securely (
mktemp)? - Are secrets (DB passwords) masked in logs?
- Robustness:
- Is
set -euo pipefailpresent? - Does it handle the "Lite" scenario (low RAM)?
- Is
- Extensibility:
- Are hardcoded values extracted to variables?
Output Template
- Verdict: PASS / FAIL / PASS_WITH_WARNINGS
- Architecture Violation: (List any Wizard/Executor role confusion)
- Security Risks: (e.g., Unsafe eval, unverified download)
- Code Quality: (e.g., Missing quotes, duplicate logic)
- Fix Suggestions: (Specific code blocks to replace)
Score
Total Score
50/100
Based on repository quality metrics
✓SKILL.md
SKILL.mdファイルが含まれている
+20
○LICENSE
ライセンスが設定されている
0/10
○説明文
100文字以上の説明がある
0/10
○人気
GitHub Stars 100以上
0/15
○最近の活動
3ヶ月以内に更新がある
0/10
○フォーク
10回以上フォークされている
0/5
✓Issue管理
オープンIssueが50未満
+5
✓言語
プログラミング言語が設定されている
+5
○タグ
1つ以上のタグが設定されている
0/5
Reviews
💬
Reviews coming soon