codebase-onboarding — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited codebase-onboarding (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
体系的に不慣れなコードベースを分析し、構造化オンボーディングガイドを作成。新しいプロジェクトに参加するか、既存リポでOpenAI Codexを初めてセットアップする開発者向けに設計。
すべてのファイルを読まずにプロジェクトについての生の信号を集めます。これらのチェックを並行して実行:
1. パッケージマニフェスト検出
→ package.json, go.mod, Cargo.toml, pyproject.toml, pom.xml
2. フレームワークフィンガープリント
→ next.config、nuxt.config、angular.json、vite.config
3. エントリポイント識別
→ main.*、index.*、app.*、server.*
4. ディレクトリ構造スナップショット
→ ディレクトリツリーの最上位2レベル
5. コンフィグとツール検出
→ .eslintrc、.prettierrc、tsconfig.json、Dockerfile
6. テスト構造検出
→ tests/、__tests__/、*.spec.ts、jest.config.*主要なモジュールとそれらの関係を特定します。
コード規約、命名パターン、プロジェクト固有のパターンを特定。
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.