workflow-audit

Prüfen, ob bwwl verfügbar ist:

npx skills add https://github.com/bitwarden/ai-plugins --skill workflow-audit

Rules

  • This skill is strictly read-only. Do not modify, create, or delete any files.
  • Flag uncertainty. If a finding is ambiguous, note it in the report rather than guessing.

Step 1: Verify Prerequisites

Check if bwwl is available:

bwwl --version

If the command is not found, stop and inform the user that bwwl must be installed before continuing. Do not attempt to install it.

Step 2: Determine Scope

Parse the user's request to determine what to lint:

  • Single file or directory (e.g., .github/workflows/build.yml or .github/workflows/): Operate on the current repo only.
  • Multiple repos (e.g., "server, clients, android"): Operate on each repo sequentially. Ask the user for the base directory where their repos are cloned. For each repo, look for its local clone at <base-dir>/<repo>. If a clone is not found, inform the user and skip that repo.
  • No specific target: Lint all files in .github/workflows/ of the current directory.

Step 3: Run the Linter

For each repo in scope, run:

bwwl lint -f .github/workflows/

Capture both stdout and stderr. If operating on multiple repos, announce which repo is being linted.

Step 4: Parse and Categorize Findings

From the linter output, produce a structured list of findings. Group by file and rule. Consult the bitwarden-workflow-linter-rules skill to categorize each finding:

Mechanical (can be auto-fixed):

  • name_capitalized, permissions_exist, pinned_job_runner, step_pinned, underscore_outputs, job_environment_prefix, check_pr_target
  • Simple run_actionlint findings (single-line shell fixes)

Judgment (requires user input):

  • name_exists, step_approved, complex run_actionlint findings

Step 5: Report

Output a summary table per repo:

FileFindingRuleCategory
............

Include totals: mechanical findings, judgment findings, and repos with no issues.

Inform the user that they can use the workflow-fix skill to apply fixes based on these findings.

Mehr Skills von bitwarden

figma-to-angular
bitwarden
Diese Fähigkeit wandelt eine Figma-Designspezifikation in eine vollständig implementierte Angular-Komponente mit Storybook-Stories im Bitwarden Clients Monorepo um. Die Ausgabe sollte dem Design visuell entsprechen und dabei alle Codebase-Konventionen einhalten.
force-multiplier
bitwarden
Wende eine Absicht auf viele Ziele gleichzeitig an — auf eine Flotte von Repositories im Bitwarden-Ökosystem oder auf viele Projekte in einem Monorepo — als N konsistente,…
analyzing-git-sessions
bitwarden
Analysiert Git-Commits und Änderungen innerhalb eines Zeitrahmens oder Commit-Bereichs und liefert strukturierte Zusammenfassungen für Code-Reviews, Retrospektiven, Arbeitsprotokolle oder Sitzungen…
coordinating-cross-team-breakdown
bitwarden
Koordinierung der teamübergreifenden Überprüfung und Freigabe für eine Bitwarden Tech Breakdown. Verwenden Sie dies, wenn Sie betroffene Teams identifizieren, die Signoff-Tabelle für Teil 3 erstellen, nachfassen…
assessing-jira-issue-relevance
bitwarden
Verwenden Sie dies, wenn der Benutzer einen einzelnen Jira-Issue-Schlüssel angibt und fragt, ob er noch relevant, noch anwendbar, noch offen, noch ein Fehler ist, behoben wurde oder ob er kann…
assessing-test-coverage
bitwarden
Verwenden, wenn ermittelt werden soll, welche Testabdeckung BEREITS für eine bestimmte Änderung existiert (ein PR, Jira-Key, Tech-Breakdown-Dokument, Testmo-CSV, geänderte Pfade oder benannte…
retrospecting
bitwarden
Führt umfassende Analysen von Claude Code-Sitzungen durch, untersucht Git-Verlauf, Konversationsprotokolle, Codeänderungen und sammelt Benutzerfeedback, um…
reviewing-incremental-changes
bitwarden
Verwende diese Fähigkeit beim erneuten Überprüfen eines PR, der bereits Kommentare enthält, oder beim Reagieren auf Entwickleränderungen nach der ersten Überprüfung. Wende sie an, wenn PR-Threads vorhanden sind oder…