verification-loop-8f5f1f — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited verification-loop-8f5f1f (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Claude Code 工作階段的完整驗證系統。
在以下情況呼叫此技能:
# 檢查專案是否建置
npm run build 2>&1 | tail -20
# 或
pnpm build 2>&1 | tail -20如果建置失敗,停止並在繼續前修復。
# TypeScript 專案
npx tsc --noEmit 2>&1 | head -30
# Python 專案
pyright . 2>&1 | head -30報告所有型別錯誤。繼續前修復關鍵錯誤。
# JavaScript/TypeScript
npm run lint 2>&1 | head -30
# Python
ruff check . 2>&1 | head -30# 執行帶覆蓋率的測試
npm run test -- --coverage 2>&1 | tail -50
# 檢查覆蓋率門檻
# 目標:最低 80%報告:
# 檢查密鑰
grep -rn "sk-" --include="*.ts" --include="*.js" . 2>/dev/null | head -10
grep -rn "api_key" --include="*.ts" --include="*.js" . 2>/dev/null | head -10
# 檢查 console.log
grep -rn "console.log" --include="*.ts" --include="*.tsx" src/ 2>/dev/null | head -10# 顯示變更內容
git diff --stat
git diff HEAD~1 --name-only審查每個變更的檔案:
執行所有階段後,產生驗證報告:
驗證報告
==================
建置: [PASS/FAIL]
型別: [PASS/FAIL](X 個錯誤)
Lint: [PASS/FAIL](X 個警告)
測試: [PASS/FAIL](X/Y 通過,Z% 覆蓋率)
安全性: [PASS/FAIL](X 個問題)
差異: [X 個檔案變更]
整體: [READY/NOT READY] for PR
待修復問題:
1. ...
2. ...對於長時間工作階段,每 15 分鐘或重大變更後執行驗證:
設定心理檢查點:
- 完成每個函式後
- 完成元件後
- 移至下一個任務前
執行:/verify此技能補充 PostToolUse hooks 但提供更深入的驗證。 Hooks 立即捕捉問題;此技能提供全面審查。
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.