create-pr-b4a15c — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited create-pr-b4a15c (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
Draft a concise and descriptive title and a short paragraph for a PR. Explain the purpose of the changes, the problem they solve, and the general approach taken. When the changes involve clear runtime flows or state transitions, include Mermaid diagrams.
If git is in a feature branch, examine all commit messages and the full diff to understand the overall changes. Analyze the diff for diagram opportunities (see Diagrams section below).
Run $github-voice to load writing style rules before drafting.
Draft a title and description, embedding any diagrams in the body. Output the drafted title and description as chat text so the user can review it.
Use request_user_input for confirmation only. Write the drafted body to .turbo/pr/body.md with apply_patch, then create the PR with gh pr create --body-file:
gh pr create --title "<TITLE>" --body-file .turbo/pr/body.mdDo not set --assignee unless the user explicitly asks to assign someone.
GitHub renders Mermaid natively in PR descriptions via `mermaid code blocks. Include diagrams only when they add clarity a text description can't — skip for trivial changes or obvious flows.
Include when the changes introduce or modify a clear runtime flow: API endpoints, event handlers, pipelines, multi-service interactions, webhook flows.
sequenceDiagram Client->>API: POST /payments API->>PaymentService: processPayment() PaymentService->>StripeClient: charge() StripeClient-->>PaymentService: confirmation PaymentService->>DB: save()
Include when the changes add or modify entity states, status enums, workflow transitions, or lifecycle hooks.
stateDiagram-v2 [] --> Draft Draft --> Pending: submit() Pending --> Approved: approve() Pending --> Rejected: reject() Approved --> []
## Flow or ## State Machine heading.turbo/ content (filenames, requirement IDs, shell references, headings) in the title or body. .turbo/ is gitignored, so these references would be opaque to anyone reading without local copies.~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.