All skills
vincentkoc avatar

/technical-skill-finder

@e0b7247
by Vincent Kocvincentkoc/dotskills108 stars
9

Mine coding agent logs (Codex/Cursor/session histories and similar telemetry) to discover high-value candidate skills, then draft structured skill creation/reuse recommendations.

Use this Skill: https://skilld.dev/gh/vincentkoc/dotskills/technical-skill-finder

This session only. Nothing lands on disk.

referencesscorecard.md

≈124 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Candidate Scorecard

Score each candidate 0-5 in each dimension:

  • frequency: repeated occurrences across distinct sessions
  • impact: time-to-resolution / incident severity
  • actionability: can the pattern be handled by deterministic checks/workflows
  • toolability: enough local tooling commands to automate
  • novelty: not already covered by existing skill coverage

confidence = average score / 5.

Prioritize candidates with:

  • frequency >= 3
  • confidence >= 0.72
  • impact >= 3

Source: SKILL.md on GitHub

1 alert6mo4 checks · Risk HIGH
  • Gen Agent Trust Hub7mo

    This skill mines sensitive local agent interaction histories and telemetry to suggest new automation. It lacks safeguards against Indirect Prompt Injection, meaning malicious instructions embedded in historical logs could trick the agent into recommending harmful commands or exposing private conversation data. Additionally, it reads dotfiles and log directories that often contain sensitive credentials and proprietary code.

  • Socket6mo

    No alerts

  • Snyk7mo

    Risk: LOW · No issues

  • Runlayer7mo

    4/4 files flagged

Signed by skilld at e0b7247. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub last week.

Activeupdated 2 weeks ago
metadata
{
  "source": "https://github.com/vincentkoc/dotskills"
}

README badge

README badge for vincentkoc/dotskills/technical-skill-finder