cds-docs-update — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited cds-docs-update (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
<objective> Generate and update up to 9 documentation files for the current project. Each doc type is written by a gsd-doc-writer subagent that explores the codebase directly — no hallucinated paths, phantom endpoints, or stale signatures.
Flag handling rule:
$ARGUMENTS$ARGUMENTS, treat it as inactive--force: skip preservation prompts, regenerate all docs regardless of existing content or GSD markers--verify-only: check existing docs for accuracy against codebase, no generation (full verification requires Phase 4 verifier)--force and --verify-only both appear in $ARGUMENTS, --force takes precedence</objective>
<execution_context> @$HOME/.claude/cds-workflow/workflows/docs-update.md </execution_context>
<context> Arguments: $ARGUMENTS
Available optional flags (documentation only — not automatically active):
--force — Regenerate all docs. Overwrites hand-written and GSD docs alike. No preservation prompts.--verify-only — Check existing docs for accuracy against the codebase. No files are written. Reports VERIFY marker count. Full codebase fact-checking requires the gsd-doc-verifier agent (Phase 4).Active flags must be derived from `$ARGUMENTS`:
--force is active only if the literal --force token is present in $ARGUMENTS--verify-only is active only if the literal --verify-only token is present in $ARGUMENTS</context>
<process> Execute the docs-update workflow from @$HOME/.claude/cds-workflow/workflows/docs-update.md end-to-end. Preserve all workflow gates (preservation_check, flag handling, wave execution, monorepo dispatch, commit, reporting). </process>
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.