bmad-orchestrator — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited bmad-orchestrator (Agent Skill) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
bmad:initbmad:statusbmad:nextinitstatusnextbmad/Enforce language selection separately for chat responses and generated artifacts.
Chat language (communication_language) fallback order:
language.communication_language from bmad/project.yamlEnglishRules for chat responses:
Artifact language (document_output_language) fallback order:
language.document_output_language from bmad/project.yamlEnglishRules for generated artifacts:
System shall followed by non-English text)API, SLA, KPI, OAuth, WCAG)Before executing init, status, or next, read REFERENCE.md first. Treat REFERENCE.md as required context for routing, sequencing, and state handling.
bmad/project.yamlbmad/workflow-status.yamlbmad/sprint-status.yamlinit).status).next).Primary scripts:
bash scripts/init-project.sh --name "MyApp" --type web-app --level 2 bash scripts/show-status.sh bmad/workflow-status.yaml bash scripts/recommend-next.sh bmad/workflow-status.yamlCompatibility wrappers:
scripts/check-status.sh -> wrapper to show-status.shscripts/validate-config.sh -> project config structural validationShared state helpers are in ../bmad-shared/scripts/.
templates/project.template.yamlinit-project.sh.templates/workflow-status.template.yamlinit-project.sh.templates/sprint-status.template.yamlinit-project.sh.REFERENCE.mdresources/workflow-phases.md../bmad-shared/workflows.registry.yamlbmad/workflow-status.yaml -> recommend bmad:initWhen routing to another skill, include:
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.