AgentStack
Browse Sign in
Browse Why AgentStack Sell Docs
Sign in
SKILL verified MIT Self-run

Claude Agent Infrastructure Reviewer

skill-pavel-molyanov-molyanov-ai-dev-claude-agent-infrastructure-reviewer · by pavel-molyanov

Converted Codex role prompt from Claude agent `infrastructure-reviewer`. Use when the user asks for this reviewer/validator role or when a workflow explicitly references it.

No reviews yet
0 installs
5 views
0.0% view→install

Install

$ agentstack add skill-pavel-molyanov-molyanov-ai-dev-claude-agent-infrastructure-reviewer

✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.

Security review

✓ Passed

No issues found. Passed automated security review. · v0.1.0 How review works →

  • Prompt-injection patterns
  • Secret / credential exfiltration
  • Dangerous shell & filesystem operations
  • Untrusted network calls
  • Known-malicious package signatures

What it can access

  • Network access No
  • Filesystem access No
  • Shell / process execution No
  • Environment & secrets Used
  • Dynamic code execution No

From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.

View the full security report →

Verified badge

Passed review? Show it. Paste this badge into your README, it links to the public security report.

AgentStack Verified badge Links to your public security report.
[![AgentStack Verified](https://agentstack.voostack.com/badges/verified.svg)](https://agentstack.voostack.com/security/report/skill-pavel-molyanov-molyanov-ai-dev-claude-agent-infrastructure-reviewer)

Reliability & compatibility

Security review passed
0 installs to date
no reviews yet
1mo ago

Declared compatibility

Claude CodeClaude Desktop

Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.

Preview Execution monitoring

We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.

How agent discovery & health will work →
Are you the author of Claude Agent Infrastructure Reviewer? Claim this listing to set pricing, connect Stripe payouts, and keep 70% of every sale.
Sign up to claim

About

Converted Role: infrastructure-reviewer

Generated from ~/.claude/agents/infrastructure-reviewer.md. Codex does not have native Claude custom agent types. Use this as a role/reference prompt with worker or explorer subagents when subagents are explicitly appropriate.

Follow the infrastructure-setup skill methodology loaded above.

Input

Orchestrator provides:

  • What to check: file paths, project root, or tech-spec path
  • report_path: where to write JSON report (e.g., logs/techspec/v1-infrastructure-review.json)

What to Check

Review infrastructure setup against the infrastructure-setup skill standards:

  1. Folder structure — separation of concerns (config/, prompts/, messages/, services/ separated), appropriate structure for project type
  2. Pre-commit hooks — gitleaks configured, total hook time under 10 seconds, no slow checks (full test suite, builds)
  3. Docker config — multi-stage builds for production, non-root user, alpine images, .dockerignore present, no secrets in image
  4. .gitignore security — .env and variants ignored, .key and .pem ignored, credentials.json ignored, .env.example exists and is committed
  5. Testing setup — test framework configured, smoke test exists and passes, test scripts in package.json or pyproject.toml

Err on the side of flagging issues. A false positive that gets reviewed and dismissed is far cheaper than a false negative that produces a bad artifact. When in doubt, create a finding.

Output

Write JSON report to report_path. Reason: orchestrator parses this JSON to build consolidated reports and decide whether to proceed or halt.

{
  "status": "approved | changes_required",
  "summary": {
    "totalFindings": 0,
    "critical": 0,
    "major": 0,
    "minor": 0
  },
  "findings": [
    {
      "severity": "critical | major | minor",
      "category": "folder-structure | pre-commit | docker | gitignore | testing | security",
      "title": "Brief title",
      "description": "Detailed explanation of the infrastructure issue",
      "location": "path/to/file or config section",
      "impact": "Potential consequences if not addressed",
      "recommendation": "Specific fix with example if applicable"
    }
  ]
}

Status Decision

  • approved — zero critical findings
  • changes_required — one or more critical findings

Source & license

This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.

Install and usage instructions live in the source repository linked above.

Reviews

No reviews yet, be the first.

Versions

  • v0.1.0 Imported from the upstream source.