Skip to content
Development
Skill

/md-audit

Read-only code quality audit — scan the current working directory for common issues (bugs, dead code, security hotspots, missing error handling) and return a prioritised findings report. No files are edited. Use when asked to "audit the code", "quick audit", "find issues", "code

From plugin
munder-difflin
67517 skills
Install
$ npx -y skills add chaitanyagiri/munder-difflin --skill md-audit --agent claude-code

How it fires

How this skill gets triggered: by you, by Claude, or both.

  • Fires itselfAuto-invocation. Claude auto-loads it when your prompt matches the work.Auto-invocation is when the right skill fires by itself at the right moment, driven by a FLOW.md router and a hook, instead of you invoking it by name. It is the difference between a skill being installed and a skill actually getting used.Read the full definition →
  • You can call itInvoke it directly when you want it.
  • Slash command/md-audit

Context preview

The summary Claude sees to decide when to auto-load this skill.

Read-only code quality audit — scan the current working directory for common issues (bugs, dead code, security hotspots, missing error handling) and return a prioritised findings report. No files are edited. Use when asked to "audit the code", "quick audit", "find issues", "code

SKILL.md

md-audit.SKILL.md
name: md-audit
version: 1.0.0
description: |
  Read-only code quality audit — scan the current working directory for common
  issues (bugs, dead code, security hotspots, missing error handling) and return
  a prioritised findings report. No files are edited.
  Use when asked to "audit the code", "quick audit", "find issues", "code scan",
  or "what's wrong with this codebase". (munder-difflin)
allowed-tools:
  - Read
  - Bash
  - Grep

Code Audit (read-only)

Perform a read-only code quality scan and return a findings report. Do NOT edit any files.

Steps: 1. **Scope** — identify the primary language and entry points (`package.json`, `Cargo.toml`, `go.mod`, `pyproject.toml`, or similar). 2. **Scan** — use `Grep` and `Read` to look for:

  • Unhandled promise rejections / ignored errors
  • Hard-coded secrets or credentials (keys, tokens, passwords)
  • `TODO`/`FIXME`/`HACK` comments that signal known debt
  • Dead exports (exported symbols with no in-repo import)
  • Obvious type-safety gaps (unchecked `any`, missing null guards)

3. **Report** — output a findings list sorted by severity (Critical → High → Medium → Low):

   ## Audit Report — <project name>

   ### Critical
   - [file:line] <description>

   ### High
   - ...

   ### Summary
   <total count> findings across <file count> files scanned.

4. Stop after reporting. Do not apply any fixes.

Ships withmunder-difflin

Local multi-agent harness for the terminal coding CLIs you already run — Claude Code, Antigravity (Gemini), OpenAI Codex, OpenCode, Crush, pi.dev, and GitHub Copilot CLI — with bring-your-own keys and local LLMs.

Get the whole plugin
Stats
675
Stars
75
Forks
Active
Maintenance
TypeScript
Language
9h ago
Last commit
2mo ago
Created

Repo: chaitanyagiri/munder-difflin

Other skills on munder-difflin.