skills/AUDIT-drift-detector/SKILL.md
Real-time drift detection across tool manifests, agent cards, skill registries, and runtime-injected files. Compares live state against saved baselines and reports mismatches. USE WHEN: "check drift", "verify registry", "detect manifest drift", "tool surface audit", "runtime injection detection".
npx skillsauth add ariffazil/openclaw-workspace AUDIT-drift-detectorInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
The federation has multiple registries (tool_registry.json, agent cards, SKILL_ALIAS_TABLE, affordances.yaml). Drift between them causes routing failures, orphaned skills, and silent capability loss.
arifOS/runtime/manifest.py (build_manifest vs runtime_manifest). This is the primary drift detection mechanism post-KSR Epoch 1+2.Some organ services modify files at runtime. Known patterns:
index.html: WebMCP adapter injected on service start → dirty after commitWhen dirty after clean commit: check if injected content was already committed → if yes, re-commit; if no, actual drift.
arifOS/runtime/manifest.py — build_manifest vs runtime_manifest (post-KSR Epoch 1+2)/root/arifOS/tool_registry.json/root/AAA/a2a-server/agent-cards//root/AAA/skills/SKILL_ALIAS_TABLE.jsontools/list from each organarifOS/runtime/verdict.py — closed 6-value setdevelopment
Federation-wide gold (XAUUSD) trading capability. Python stack, OANDA broker, backtesting, macro signals, RSI strategy. Every organ has a role.
development
Capital claim state management — tracks claim lifecycle across WEALTH organ.
development
Archived constitutional warga placeholder retained only for audit provenance. Do not use for active work; use the live arifOS governance and constitutional skills instead.
testing
Warga (citizen) agent skills for AAA federation members. See subdirectories for specialized warga skills.