Install
$ agentstack add skill-caoyuan-fire-engi-foundry-skill-engifoundry-verify ✓ scanned · ✓ verified — works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
About
EngiFoundry Verify
Read ./engifoundry.config.json, the project-owned workspace guide, and [contracts.md](references/contracts.md). Then read the Phase context, PAK summary and JSON, every Job result and Review, and every required artifact.
Boundary
The Agent reads this contract only for a PAK with planning.status: ready and execution.status: jobs-completed, and verifies the complete PAK goal rather than individual Job steps. During this work, the Agent does not implement, revise contracts, repeat Job Review, accept verification, or deliver.
Automation preferences do not affect verification evidence. That evidence is an input fact for Deliver.
Verification
- Record
execution.status: verifyingwhile goal-level evidence is being gathered. - Map every PAK acceptance criterion to fresh evidence.
- Confirm every required artifact exists and is usable.
- Run every check required by the goal and project facts, such as build, automated tests, unit tests, lint, type checking, integration checks, or target-environment checks. Do not offer a menu or skip a required check.
- For non-code goals, use target-appropriate inspection and evidence. Absence of a code command is not a blocker; inability to perform a required check can be.
- Write one immutable verification record using the reference contract and attach it as
execution.verificationRef.
The completed verification record has exactly one result whose meaning matches the evidence:
- If every criterion is satisfied, every required artifact is usable, and every required check succeeds, write
verified-available. - If evidence shows a correctable implementation or contract failure, write
rework-requiredwith the finding kind and facts. - If a required verification cannot run because of an objective external condition and no valid alternative evidence exists, write
blocked.
Never write pass. verified-available means evidence is available; it is not acceptance or approval. A failed check is rework-required, not blocked.
When implementation evidence is rework-required, affected Jobs and Package execution also carry rework-required because their former completion facts no longer hold. When contract evidence is rework-required, Package planning carries rework-required because its former ready fact no longer holds. Preserve the verification record that establishes the newer fact.
Continuation
- For an endpoint that includes delivery,
verified-availablelets the Agent read Deliver and continue with the PAK and verification record. - An
implementationfinding makes Exec the applicable correction contract. - A
contractfinding makes Orch the applicable correction contract. blockedis terminal while its objective fact remains.
Never continue without the required record or without loading the destination Skill first.
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: caoyuan-fire
- Source: caoyuan-fire/engi-foundry-skill
- License: Apache-2.0
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet — be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.