AI Agent Hub
Back to skills
WorkBuddy Configuration Health Audit icon

WorkBuddy Configuration Health Audit

IT Ops & Security Updated 2026.08.30

Paste the following prompt into your AI chat to install this skill:

Follow https://skillhub.cn/install/skillhub.md to install @user_19a6d235/workbuddy-auditor.

About this skill

Problem

WorkBuddy configuration failures are often not caused by a single missing field, but by interactions among file paths, model context, safety rules, and credential handling. This skill evaluates the current configuration against an empty-configuration baseline: it does not ask users to match a template, but checks whether the setup is more likely than an empty config to cause lockups, leakage, overreach, or degraded execution.

How It Works

  • Reads SOUL.md, IDENTITY.md, USER.md, AGENTS.md, models.json, mcp.json, and references/ files one by one; immediately redacts apiKey, token, password, and similar fields in models.json and mcp.json.
  • Runs quick checks, baseline comparison, constraint detection, Pareto boundary analysis, and computes correctness, efficiency, and overall scores.
  • Stops deeper analysis when three P0 violations are found; trend records store daily scores, ie, and violation counts, and flags significant degradation when scores drop by more than 10 points.

Boundaries and Notes

  • Reports only issues with a clear causal chain; C9 content-attribution findings are marked as preliminary automatic screening and should be confirmed manually.
  • Repair is disabled by default, limited to .md and .json whitelisted files, and every change requires per-item confirmation plus automatic backup.
  • Deep checks depend on model instruction-following and context capacity; weaker models may produce larger deviation.

Use Cases

  • Before release, check models.json and mcp.json for exposed credential fields and generate a redacted report.
  • After config changes, rerun quick checks against baseline to catch model execution deviation before production.
  • When a P0 violation causes lockup, trace the impact chain and run per-item repair with backup.
  • Review the 7-day auditor-history trend to confirm correctness and efficiency are not dropping.

Best For

  • WorkBuddy maintenance engineers who want to verify models.json and mcp.json have no exposed credentials before release.
  • Owners of AGENTS.md and SOUL.md who want to check whether safety rules cover phishing links and batch operations.
  • Ops engineers doing incident review who want to compare the 7-day auditor-history to see if correctness degraded.
  • Engineers executing repairs who want per-item confirmation from P0 to P2 with backups retained.