ai-collab-protocols — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited ai-collab-protocols (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Spot the protocol gap, name the better tactic, point at the durable handle. Small surgical interventions, not a lecture.
If the user says "the PR Bob mentioned", "that bug from last week", or "the function we discussed", stop and ask for the URL or the symbol path. Why: names are ambiguous in long-context sessions and unrecoverable across sessions. A stable URL — GitHub PR comment permalink, MCP resource URI like @github:pr/owner/repo/123#comment-456, file:line reference — survives compaction and enables exact match. The chat that prompted this skill explicitly named this as the highest-signal collaboration tip.
Long-running PR comment threads outlive any single session and form the persistence layer for multi-session work. Prefer leaving a comment on the PR over a chat-only handoff. Why: the next session — yours, a colleague's, or a future agent's — can resume from the thread without replaying context. Chat is ephemeral; PR comments are addressable.
When a project has an AGENTS.md, CLAUDE.md, or .clinerules, read it before acting. When the project has none and the work is non-trivial, propose authoring one — defer to init for AGENTS.md authoring rather than re-doing it here. Why: project-level rule files are the cross-tool agent-config convention; fighting them creates drift across sessions.
Earlier candidate extensions, second-pass verified — usage details belong in a dedicated reference, not here:
https://platform.claude.com/docs/en/agents-and-tools/tool-use/tool-search-tool.| Skill | When |
|---|---|
| `ai-collab-protocols` | In-task tactic surfacing — user describes an AI workflow informally |
contexts | Pre-implementation context sweep — gather files / patterns / tooling for a feature |
qa | Bug capture — user reports something broken in plain language |
init | AGENTS.md authoring — onboarding a repository, capturing hard-to-rediscover conventions |
Do not invoke this skill for context sweeps (use contexts), bug filing (use qa), or AGENTS.md authoring (defer to init).
Surface one tactic at a time. Name the protocol. Show the better handle in concrete form (the actual URL, the actual file path, the actual symbol name). Do not dump the catalog on the user — pick the one tactic that matches the gap and surface that.
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.