automation-audit-ops
Evidence-first automation inventory and overlap audit workflow for ECC. Use when the user wants to know which jobs, hooks, connectors, MCP servers, …
它会碰到什么
这一栏是扫描器报的事实,不是结论。命中多不等于有毒(安全工具、规则库、示例脚本本来就会包含危险写法),命中少也不等于干净。它和你手上的凭据、文件、网络有什么关系,需要你自己看。
技能内容
Automation Audit Ops
Use this when the user asks what automations are live, which jobs are broken, where overlap exists, or what tooling and connectors are actually doing useful work right now.
This is an audit-first operator skill. The job is to produce an evidence-backed inventory and a keep / merge / cut / fix-next recommendation set before rewriting anything.
Skill Stack
Pull these ECC-native skills into the workflow when relevant:
workspace-surface-auditfor connector, MCP, hook, and app inventoryknowledge-opswhen the audit needs to reconcile live repo truth with durable contextgithub-opswhen the answer depends on CI, scheduled workflows, issues, or PR automationecc-tools-cost-auditwhen the real problem is webhook fanout, queued jobs, or billing burn in the sibling app reporesearch-opswhen local inventory must be compared against current platform support or public docsverification-loopfor proving post-fix state instead of relying on assumed recovery
When to Use
- user asks "what automations do I have", "what is live", "what is broken", or "what overlaps"
- the task spans cron jobs, GitHub Actions, local hooks, MCP servers, connectors, wrappers, or app integrations
- the user wants to know what was ported from another agent system and what still needs to be rebuilt inside ECC
- the workspace has accumulated multiple ways to do the same thing and the user wants one canonical lane
Guardrails
- start read-only unless the user explicitly asked for fixes
- separate:
- configured
- authenticated
- recently verified
- stale or broken
- missing entirely
- do not claim a tool is live just because a skill or config references it
- do not merge or delete overlapping surfaces until the evidence table exists
Workflow
1. Inventory the real surface
Read the current live surface before theorizing:
- repo hooks and local hook scripts
- GitHub Actions and scheduled workflows
- MCP configs and enabled servers
- connector- or app-backed integrations
- wrapper scripts and repo-specific automation entrypoints
Group them by surface:
- local runtime
- repo CI / automation
- connected external systems
- messaging / notifications
- billing / customer operations
- research / monitoring
2. Classify each item by live state
For every surfaced automation, mark:
- configured
- authenticated
- recently verified
- stale or broken
- missing
Then classify the problem type:
- active breakage
- auth outage
- stale status
- overlap or redundancy
- missing capability
3. Trace the proof path
Back every important claim with a concrete source:
- file path
- workflow run
- hook log
- config entry
- recent command output
- exact failure signature
If the current state is ambiguous, say so directly instead of pretending the audit is complete.
4. End with keep / merge / cut / fix-next
For each overlapping or suspect surface, return one call:
- keep
- merge
- cut
- fix next
The value is in collapsing noisy automation into one canonical ECC lane, not in preserving every historical path.
Output Format
CURRENT SURFACE
- automation
- source
- live state
- proof
FINDINGS
- active breakage
- overlap
- stale status
- missing capability
RECOMMENDATION
- keep
- merge
- cut
- fix next
NEXT ECC MOVE
- exact skill / hook / workflow / app lane to strengthen
Pitfalls
- do not answer from memory when the live inventory can be read
- do not treat "present in config" as "working"
- do not fix lower-value redundancy before naming the broken high-signal path
- do not widen the task into a repo rewrite if the user asked for inventory first
Verification
- important claims cite a live proof path
- each surfaced automation is labeled with a clear live-state category
- the final recommendation distinguishes keep / merge / cut / fix-next
想直接用这个技能?
本站把开放许可(MIT / Apache 等)的技能按仓库打包整理到网盘,点一下转存到你自己的网盘,不用一个个从 GitHub 拉。许可未声明的技能只给原始仓库链接,不打包。
同名技能的其他版本
有 3 个不同仓库或目录里都有叫 automation-audit-ops 的技能。它们内容并不相同,别混用:
- affaan-m/ECC — ECC用の証拠ベースの自動化インベントリとオーバーラップ監査ワークフロー。ユーザーがどのジョブ、フック、コネクタ、MCPサーバー、またはラッパーがライブか、壊れているか、冗長である
- affaan-m/ECC — 面向ECC的以证据为先的自动化清单与重叠审计工作流。当用户希望在修复任何内容之前了解哪些作业、钩子、连接器、MCP服务器或包装器是活跃的、损坏的、冗余的或缺失时使用。