WorkBuddy Configuration Health Audit
Paste the following prompt into your AI chat to install this skill:
Follow https://skillhub.cn/install/skillhub.md to install @user_19a6d235/workbuddy-auditor.
About this skill
Problem
WorkBuddy configuration failures are often not caused by a single missing field, but by interactions among file paths, model context, safety rules, and credential handling. This skill evaluates the current configuration against an empty-configuration baseline: it does not ask users to match a template, but checks whether the setup is more likely than an empty config to cause lockups, leakage, overreach, or degraded execution.
How It Works
- Reads
SOUL.md,IDENTITY.md,USER.md,AGENTS.md,models.json,mcp.json, andreferences/files one by one; immediately redactsapiKey,token,password, and similar fields inmodels.jsonandmcp.json. - Runs quick checks, baseline comparison, constraint detection, Pareto boundary analysis, and computes
correctness,efficiency, andoverallscores. - Stops deeper analysis when three
P0violations are found; trend records store daily scores,ie, and violation counts, and flags significant degradation when scores drop by more than 10 points.
Boundaries and Notes
- Reports only issues with a clear causal chain;
C9content-attribution findings are marked as preliminary automatic screening and should be confirmed manually. - Repair is disabled by default, limited to
.mdand.jsonwhitelisted files, and every change requires per-item confirmation plus automatic backup. - Deep checks depend on model instruction-following and context capacity; weaker models may produce larger deviation.
Use Cases
- Before release, check models.json and mcp.json for exposed credential fields and generate a redacted report.
- After config changes, rerun quick checks against baseline to catch model execution deviation before production.
- When a P0 violation causes lockup, trace the impact chain and run per-item repair with backup.
- Review the 7-day auditor-history trend to confirm correctness and efficiency are not dropping.
Best For
- WorkBuddy maintenance engineers who want to verify models.json and mcp.json have no exposed credentials before release.
- Owners of AGENTS.md and SOUL.md who want to check whether safety rules cover phishing links and batch operations.
- Ops engineers doing incident review who want to compare the 7-day auditor-history to see if correctness degraded.
- Engineers executing repairs who want per-item confirmation from P0 to P2 with backups retained.
Related Skills
For independent developers, automates Git weekly reports, prioritized bug tickets, and project health checks into shareable Markdown.
Scan Windows caches, temporary files, and junk files, show space usage and risk levels, and clean selected items to free disk space.
Deploy a WeChat Service Account backend with Hermes AI, Nginx, systemd, and an admin dashboard on an Ubuntu/Debian VM.
Covers Jenkins, GitHub, and automation-related wrap workflows for IT operations and security.