@vanillagreencom

Ersteller · vanillagreencom

Letzte Aktualisierung · 23. Aug. 2026

code-quality

Prüfen · 67Im Registry indexiert

Generic code-authoring standards for dev agents: correctness over convenience, no fail-open branches, comment rules, over-engineering limits, prove-your-guards. Load before writing or modifying code.

OpenAgentSkill Trust Score
67/100

Nur Sandbox

Qualität65/100
Audit79/100
Stars63
Verified installs0

Installationsziele

Codex-Installationsprompt

Install the "code-quality" agent skill from https://github.com/vanillagreencom/kendex/tree/main/skills/code-quality. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Generic code-authoring standards for dev agents: correctness over convenience, no fail-open branches, comment rules, over-engineering limits, prove-your-guards. Load before writing or modifying code. After the install attempt, report the result to https://www.openagentskill.com/api/agent/outcome with POST JSON {"event_id":"install_<unique-id>","skill_slug":"vanillagreencom-code-quality","task":"Install code-quality","agent":"codex","outcome":"success","install_used":true}. Replace event_id with a unique value and outcome with success or failed. Report success only after the skill is installed and a minimal verification passes.

Asset-Profil

Coding- und Entwickler-Agents

Code review, repo analysis, testing, CI, GitHub, DevOps, and developer workflow skills.

Bereich ansehen

Szenario

GitHub automation

I need my agent to triage GitHub issues, review pull requests, and summarize repository changes.

Agent-Fit

Claude Code + CLI + Codex

Geeignet für Codex, Claude Code, Cursor, CLI oder benutzerdefinierte Agents.

Installieren

Bereit

npx skills add vanillagreencom/kendex --skill code-quality

Wartung

Aktuell

1 Tage seit dem letzten Push

Risiko

Prüfung nötig

Permission surface may require sandboxing

GitHub-Qualität

63

65/100 Qualität · 75/100 Vertrauen

Abdeckungs-Tags

CodingGitHub automationCoding-AgentsPrüfenagent-skill

Review-Notizen

Permission surface may require sandboxing · Quality score needs review

Agent-Adoptionskarte

Vertrauen, Audit und Installationsbereitschaft auf einen Blick

Diese Werte kombinieren öffentliche Repository-Metadaten, OpenAgentSkill-Reviewsignale, Wartungsaktualität und Installationsbereitschaft. Sie helfen bei der Vorauswahl, ersetzen aber keine menschliche Prüfung.

Qualität

Vielversprechend
65

Useful candidate, but compare it with alternatives before adopting.

Vertrauen

Nur Sandbox
67

Nützlicher Kandidat mit fehlenden oder gemischten Vertrauenssignalen. Bis der Ergebniszyklus die Passung belegt, in einem isolierten Arbeitsbereich verwenden.

Audit

Prüfung nötig
79

Maschinenlesbare Prüfung von Installationsbereitschaft, Sicherheitsmetadaten, Wartung und Akzeptanzrisiko.

OpenAgentSkill Trust Score v5

Menschliche Prüfung vor Installation

Nur in einer Sandbox ausführen und nahe Alternativen vergleichen, bevor sie produktiv eingesetzt wird.

CodexClaude CodeCursorOpenAgentSkill CLI

Stars

63 GitHub-Stars

Repository-Aktivität

63 Stars und 23 Forks

Wartung

1 Tage seit dem letzten Push

Lizenz

MIT

Installieren

npx skills add vanillagreencom/kendex --skill code-quality

Installationssicherheit

Standard-Paket- oder Laufzeit-Installationspfad

Berechtigungsfläche

shell or command execution, filesystem or document access

Agent-Ergebnisse

Noch keine Agent-Ergebnisdaten

Dokumentation

Starker README/SKILL.md-Kontext

Risikoübersicht

Vor Produktion prüfen

  • Quality score needs review
  • Permission surface needs review: shell or command execution, filesystem or document access
  • GitHub adoption: 63 GitHub stars
  • Stars/forks activity: 63 stars, 23 forks; issue activity unavailable in current metadata

Installationsbereitschaft

Installationspfad verfügbar

  • Installationspfad ist verfügbar
  • Repository-Belege sind verfügbar
  • Lizenz ist angegeben
  • Noch keine Agent-Proven-Ergebnisbelege

Agent-lesbare Metadaten

Maschinenlesbare Entscheidungsdaten für diesen Skill.

Nutze diesen Block oder das eingebettete JSON, um zu entscheiden, ob ein Agent diesen Skill installieren, eine Alternative wählen oder zuerst menschliche Prüfung anfordern soll.

View technical data+

Geeignete Aufgaben

  • GitHub automation-Workflows
  • Claude-Code-Teams
  • builders willing to evaluate younger projects
  • Inspect repository metadata

Geeignete Agents

CodexClaude CodeCursorOpenAgentSkill CLICLI

Installationsentscheidung

Befehl
npx skills add vanillagreencom/kendex --skill code-quality
Richtlinie
Prüfen
Menschliche Prüfung
Ja

Vertrauen und Risiko

Vertrauen
67/100
Audit
79/100
Risikoebene
Prüfung nötig

Ergebnis-Loop

Endpoint
/api/agent/outcome
Event-ID
resolve
Ergebnisse
5

Installationsbefehl

npx skills add vanillagreencom/kendex --skill code-quality

Nicht verwenden, wenn

  • Teams, die ein vom Anbieter unterstütztes SLA benötigen
  • Hochregulierte Umgebungen ohne interne Sicherheitsprüfung
  • No major risk signals from current metadata
  • Hinweise auf Hochrisiko-Berechtigungen: Shell- oder Befehlsausführung
  • Permission surface may require sandboxing

Agent-Sicherheit v2

51/100 · Automatische Installation vermeiden

ExperimentellPrüfen

Sparse or mixed signals. Useful for discovery, but not for autonomous installation.

Test manually in an isolated workspace and compare against safer alternatives.

Per API auflösen

Hoch

Shell- oder Befehlsausführung

Die Skill-Metadaten verweisen auf Terminal-, CLI-, Shell-, Subprozess- oder Befehlsausführungs-Workflows.

Mittel

Netzwerkzugriff

Die Skill ruft wahrscheinlich Remote-Seiten, APIs, Repositories oder externe Dienste ab.

Mittel

Dateisystemzugriff

Die Skill kann Projektdateien, Dokumente, generierte Artefakte oder den lokalen Arbeitsbereich lesen oder schreiben.

  • Hinweise auf Hochrisiko-Berechtigungen: Shell- oder Befehlsausführung
  • Permission surface may require sandboxing

Agent-Auflösungsplan

Lass einen Agent die Eignung vor der Installation prüfen.

Die Resolve API liefert die beste Skill, Alternativen, Sicherheitsrichtlinien, Auditnotizen, Installationsziel und einen direkt nutzbaren Prompt.

Textplan öffnen

Agent sollte prüfen

  • Task fit and alternatives from Resolve API.
  • Audit score, trust score, and safety policy warnings.
  • Install target compatibility for Codex, Claude Code, Cursor, or CLI.

Prompt kopieren

Task: Use code-quality in this workspace.
Resolve first: https://www.openagentskill.com/api/agent/resolve?task=Use%20code-quality%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Review install handoff: https://www.openagentskill.com/api/skills/vanillagreencom-code-quality/install
Install command: npx skills add vanillagreencom/kendex --skill code-quality
Before running it, summarize audit warnings, required permissions, and the fallback skill if install is risky.

Agent-Übergabe

Gib dem Agent den Installationspfad, nicht noch ein Verzeichnis.

Über den öffentlichen Endpunkt erhältst du Befehl, Sicherheitscheckliste, Ziel-Prompts und kanonische Links.

Installations-API öffnen

Agent-Prompt

Use code-quality for this task. Review https://www.openagentskill.com/api/skills/vanillagreencom-code-quality/install, then install with: npx skills add vanillagreencom/kendex --skill code-quality

Registry-Metadaten

Agent-lesbares Profil für die automatische Skill-Auswahl.

Die Registry API stellt Entscheidungs-, Vertrauens-, Audit-, Use-Case- und Installationssignale ohne UI-Scraping bereit.

Manifest öffnen

Agent-Fit

65/100

GitHub automation

Plattformen

Claude Code

Audit-Bericht

Prüfung nötig · 79/100

Maschinenlesbare Prüfung von Installationsbereitschaft, Sicherheitsmetadaten, Wartung und Akzeptanzrisiko.

Audit-Bericht ansehenEval-Bericht ansehen

Agent-Entscheidungspanel

Fallback candidate for GitHub automation

Prototype with this skill first; keep a fallback candidate ready.

65
Bereitschaft
Prototyp
Phase

Rolle im Stack

Fallback-Kandidat

Primäre Eignung

GitHub automation

Vertrauenslabel

Zuerst prototypisieren

Installationspfad

Befehl bereit

Verwenden wenn

  • GitHub automation-Workflows
  • Claude-Code-Teams
  • builders willing to evaluate younger projects

Evidenz

  • recent repository activity
  • install command or GitHub repo available
  • Qualitätsprofil 65/100
  • 2 OpenAgentSkill-Interaktionen

zuerst prüfen

  • No major risk signals from current metadata

Implementierungspfad

  1. 1Installieren Sie es in einem Sandbox-Agent und führen Sie eine GitHub automation-Aufgabe vollständig aus.
  2. 2Compare output quality, latency, and failure behavior against at least one alternative.
  3. 3Promote it into production only after reviewing repository permissions, license, and maintenance signals.

Vertrauensprofil

Nur Sandbox

Nützlicher Kandidat mit fehlenden oder gemischten Vertrauenssignalen. Bis der Ergebniszyklus die Passung belegt, in einem isolierten Arbeitsbereich verwenden.

67
OpenAgentSkill Trust Score

GitHub-Akzeptanz

Prüfen

63 GitHub-Stars

Star-/Fork-Aktivität

Prüfen

63 Stars und 23 Forks; Issue-Aktivität ist in den aktuellen Metadaten nicht verfügbar

Aktuelle Wartung

Bestanden

1 Tage seit dem letzten Push

Lizenzklarheit

Bestanden

MIT

Positive Signale

  • KI-Prüfung genehmigt
  • Installationspfad ist verfügbar
  • Repository-Belege sind verfügbar
  • Kürzlich gewartetes Repository
  • Der Installationsbefehl weist kein offensichtliches Hochrisikomuster auf
  • Ergebniszyklus ist bereit, benötigt aber den ersten echten Agent-Lauf

Vor Installation prüfen

  • Quality score needs review
  • Permission surface needs review: shell or command execution, filesystem or document access
  • GitHub adoption: 63 GitHub stars
  • Stars/forks activity: 63 stars, 23 forks; issue activity unavailable in current metadata
  • Permission surface: shell or command execution, filesystem or document access
  • Noch keine echten Agent-Ergebnisberichte
  • Vor unbeaufsichtigter Installation ist menschliche Prüfung erforderlich

Empfohlene Aktion

Nur in einer Sandbox ausführen und nahe Alternativen vergleichen, bevor sie produktiv eingesetzt wird.

Qualitätsprofil

Vielversprechend Kandidat für Agent-Workflows

Useful candidate, but compare it with alternatives before adopting.

65
GitHub-Stars
63
Aktualität
vor 1 Tagen
Installationsbereit
Ja
Lizenz
MIT

Workflow-Eignung

Diese Skill in diesen Szenarien nutzen

Workflow-Eignung

Zum vollständigen Workflow hinzufügen

Alternativen-Shortlist

Vor Installation vergleichen

Similar skills that may fit this task.

Alle vergleichen

Übersicht

--- name: code-quality description: "Generic code-authoring standards for dev agents: correctness over convenience, no fail-open branches, comment rules, over-engineering limits, prove-your-guards. Load before writing or modifying code." license: MIT user-invocable: true metadata: author: vanillagreen source: kendex repository: "https://github.com/vanillagreencom/kendex" bugs: "https://github.com/vanillagreencom/kendex/issues" version: "1.0.0" tags: [review] ---

# Code Quality

> **Problem with this skill?** Run `kendex report` — it files to the owning repo automatically. Do not hand-file.

Generic authoring rules, one copy upstream. Repo-specific standards (safety-critical invariants, domain rules, CI-pinned policies) ride each repo's `## Project Instructions` section below and override nothing here — they add to it.

## Core Principle

A loud failure beats a silent wrong answer. Handle every error, check invariants, and never continue in a state the code does not understand.

## Correctness

- No workarounds or quick hacks. If the correct fix is larger than expected, say so — do not ship the shortcut. - **Never fail open.** A dependency failure (command, file, network, parse) must not leave the caller in a passing or default state — e.g. a validator that degrades to "no findings", a probe failure read as "not applicable", an unchecked `$(mktemp)` running on with an empty variable. - A branch that "shouldn't happen" is never an empty or silently-ignored `else`: assert it, return an explicit internal error, or mark it unreachable — with a message naming the violated invariant. Use plain conditionals only when both branches are expected paths. - When an error path fires, it must blame the actual cause. A loud failure naming the wrong dependency misdirects the operator as badly as silence. - Edge cases are not optional: on a long enough timeline every possible input arrives. Empty input, boundary values, junk prefixes/suffixes, and interrupted-then-retried flows are the standard escapes.

## Prove Your Guards

A new or modified check, guard, assertion, or test ships with a must-fail control: plant the defect it exists to catch (a red-first run or a temporary mutation) and see it go red before its green counts as evidence. A guard that pattern-matches source text also gets controls for the shapes that satisfy the match without the property — comments, string and template-literal interiors, nested occurrences, alternate quoting, a braceless statement. Assertions loose enough to match a skip note, fixtures that never reach the guarded bound, and harness code that keeps alive what the implementation should, ship real bugs behind green suites.

## Language Discipline

- **Rust**: make illegal states unrepresentable; exhaustive matches (no `_ =>` over enums you own); enums over strings/sentinels/booleans-with-meaning. - **Bash**: `set -euo pipefail` in every new script; check the result of every effectful substitution; `--` before variable path arguments whose value can come from configuration, argv, or the environment — not before a path the script built itself (`mktemp -d`, its own fixture directory); no `[A-Za-z]`-class assumptions under arbitrary locales. - **TypeScript/JS**: distinguish missing from present-but-falsy (`""`, `0`) at every guard; no `any` at module boundaries.

## Comments and Prose

Do:

- Document WHY — the constraint or invariant the code cannot show — not what the line does. - Document public functions, structs, enums, and variants.

Don't:

- Comments that repeat the code. - Temporal markers ("added", "new", "existing code", "Phase 1") or revision narration — history lives in git. - References to AI conversations, review rounds, or issue archaeology. - Claims broader than what the adjacent code or assertion actually enforces.

The same rules govern docs, READMEs, and skill/agent files: state the rule or behavior, never its provenance, justification essay, or the analysis that produced it.

## Over-Engineering

Build only what was asked. No speculative abstractions, no error handling for impossible scenarios, no generalization before a third caller exists — three similar lines beat a premature abstraction. A wrapper that only forwards is a deletion candidate, not a pattern.

## Cleanup

Remove unused code completely: no backwards-compatibility shims, no renamed `_vars`, no commented-out blocks, no `// removed` markers, no re-exports for callers that no longer exist. Breaking removals get a CHANGELOG note, not a compat layer.

Technische Details

Version
1.0.0
Lizenz
MIT
Letzte Aktualisierung
23. Aug. 2026
Veröffentlicht
23. Aug. 2026

Entscheidungsübersicht

Fallback-Kandidat

65
Bereit
Prototyp
Phase

recent repository activity

Audit

Installationsprüfung

Installations- und Adoptionsprüfung

79
Prüfung nötig
Sicherheit
82/100
Wartung
100/100
Installieren
92/100
Vollständiges Audit öffnenEval-Bericht ansehen

Von Agent belegte Evidenz

Von Agent belegte Evidenz

Ergebnisberichte nach Resolve, Prüfung, Installation und einem begrenzten Lauf.

0
Belegt
Needs first agent runAuto-Installation: zuerst prüfenLetzter: Unbekannt
Erfolgsrate
Letzter Fehler
Ergebnisse
0
Ausgabequalität
Fehlgeschlagen
0
Nicht relevant
0
Installationen
0
Durch Risiko blockiert
0
Einrichtung erforderlich
0
Produktion
0

Noch keine Agent-Ergebnisdaten. Der erste Lauf kann Erfolg, Einrichtungsbedarf, Risikoblockaden, Fehler oder Irrelevanz über /api/agent/outcome melden.

Installieren

Zum Agent-Workflow hinzufügen

Kostenlos und Open Source. Bericht vor der Installation in Produktions-Agents prüfen.

Wachstums-Loop

Share-Kit

X

Szenariobasierter Entwurf für code-quality, bereit für einen manuellen X-Post.

Kuratorenhinweis
code-quality: Generic code-authoring standards for dev agents: correctness over convenience, no fail-open b...

63 stars

https://www.openagentskill.com/skills/vanillagreencom-code-quality?ref=x
X-Entwurf öffnen
Optionale Antwort mit Installationsbefehl
Listing + install path for code-quality:
https://www.openagentskill.com/skills/vanillagreencom-code-quality?ref=x

Install: npx skills add vanillagreencom/kendex --skill code-quality
Antwortentwurf öffnen

Quelle des Eintrags

Registry-indexiert

Beanspruchbar

Dieser Eintrag wurde aus öffentlichen Quellen indexiert und ist erst nach Genehmigung eines Maintainer-Anspruchs offiziell.

Indexiert von
OpenAgentSkill Community-Index

Die Zuordnung verlinkt auf das öffentliche Repository oder Creator-Profil. Creator können den Eintrag beanspruchen, um Eigentümersignale zu aktualisieren.

Diesen Skill beanspruchen

Eigentümeranspruch

Diesen Skill-Eintrag beanspruchen

Dieser Registry-indexiert-Eintrag wird vanillagreencom zugeschrieben, ist aber noch nicht offiziell markiert. Beanspruche ihn, um ein verifiziertes Eigentümersignal hinzuzufügen und künftige Launch-, Installations- und Audit-Updates vertrauenswürdiger zu machen.

Creator-Backlink-Kit

Evidenz-Badges in deine README einfügen

Zeige den kanonischen Eintrag, aktuelle Vertrauens- und Audit-Signale sowie echte Agent-Proven-Evidenz dort, wo Entwickler das Repository bewerten.

[![Listed on OpenAgentSkill](https://www.openagentskill.com/api/badge/vanillagreencom-code-quality?metric=listed&label=Listed)](https://www.openagentskill.com/skills/vanillagreencom-code-quality)
[![OpenAgentSkill Trust](https://www.openagentskill.com/api/badge/vanillagreencom-code-quality?metric=trust&label=Trust)](https://www.openagentskill.com/skills/vanillagreencom-code-quality)
[![OpenAgentSkill Audit](https://www.openagentskill.com/api/badge/vanillagreencom-code-quality?metric=audit&label=Audit)](https://www.openagentskill.com/skills/vanillagreencom-code-quality/audit)
[![Agent Proven](https://www.openagentskill.com/api/badge/vanillagreencom-code-quality?metric=proven&label=Agent%20Proven)](https://www.openagentskill.com/skills/vanillagreencom-code-quality)

Autor

V

vanillagreencom

@vanillagreencom

Plattform-Fit

Gesundheitssignale

GitHub-Stars
63
Qualitätswert
36/100
Letzter GitHub-Push
23. Aug. 2026
Framework-Hinweise
Unbekannt
OpenAgentSkill-Aufrufe
2
Installationskopien
0
Externe Klicks
0

Community-Signal

Teile mit, ob dieser Skill für deinen Agent-Workflow nützlich ist. Zusammengefasstes Feedback verbessert das Ranking im Laufe der Zeit.

Vertrauen & Sicherheit

Nur Sandbox

67
  • GitHub-Akzeptanz63 GitHub-StarsPrüfen
  • Star-/Fork-Aktivität63 Stars und 23 Forks; Issue-Aktivität ist in den aktuellen Metadaten nicht verfügbarPrüfen
  • Aktuelle Wartung1 Tage seit dem letzten PushBestanden
  • LizenzklarheitMITBestanden
  • README/SKILL.md-VollständigkeitMetadaten enthalten ausreichend Nutzungs- und Workflow-KontextBestanden
  • Abhängigkeits-/LaufzeitrisikoBefehlsausführungsflächeInfo