project-min-evaluation
Trigger: done, complete, finish, before commit, quality check, verify. Run the project's own minimum quality scripts before claiming work is complete.
How do I install this agent skill?
npx skills add https://github.com/c3sc0-v4113/scaffold --skill project-min-evaluationIs this agent skill safe to install?
- Gen Agent Trust Hubpass
This skill automates the execution of project-defined quality scripts (like linting and testing) using package managers like npm, pnpm, or bun. The primary security consideration is that the skill instructs the agent to execute commands defined within the project's local configuration files (package.json) without verifying their contents, which could lead to the execution of malicious scripts if the project files are compromised.
- Socketpass
No alerts
- Snykpass
Risk: LOW · No issues
What does this agent skill do?
Project Minimum Evaluation
Activation Contract
Load this skill before reporting implementation work as complete, before committing, or when asked to verify quality.
Hard Rules
- Detect the package manager from the project; never hardcode a runner.
- Run only scripts defined in
package.jsonscripts; report expected scripts that are missing instead of inventing commands. - Run from the repository root, in the order below, and do not skip a failing step to reach a later one.
- Never claim completion while a check fails or was not run.
Decision Gates
| Project signal | Runner |
|---|---|
packageManager field in package.json | use the manager it names |
pnpm-lock.yaml | pnpm run <script> |
bun.lock or bun.lockb | bun run <script> |
package-lock.json, or no other signal | npm run <script> |
| Script | Run when |
|---|---|
lint | always, if defined |
typecheck | always, if defined |
format:check | always, if defined |
test | always, if defined |
doctor | always, if defined |
check | always, if defined (aggregate gate) |
test:e2e | only when end-to-end behavior changed |
Execution Steps
- Read
package.jsonand the lockfiles to choose the runner. - Collect the scripts from the table that exist in
scripts. - Run each existing script in table order with the chosen runner.
- Stop at the first failure, fix it, and rerun from that script.
Output Contract
Report each script as passed, failed, or not defined. For a failure or a check that cannot run, give the exact command, the exact error, and the unverified scope.
References
- references/script-discovery.md — detection edge cases.
How can the creator link this skill?
Add the canonical catalog link to the repository README so users can inspect current installs and available audits. The publishing guide covers the complete discovery path.
<a href="https://skillzs.dev/skills/c3sc0-v4113/scaffold/project-min-evaluation">View project-min-evaluation on skillZs</a>