marketplace/bundles/plan-marshall/skills/persona-auditor/SKILL.md
Audit persona that composes other personas as evaluation lenses across a wide scope
npx skillsauth add cuioss/plan-marshall persona-auditorInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
REFERENCE MODE: This skill is a persona shell. It declares the auditor evaluator identity and the composition it resolves to; it carries no executable workflow of its own.
The auditor is a meta/evaluator persona — it has no work-activity profile of its own. It composes other personas as evaluation lenses to survey a wide scope for compliance, recurring patterns, and coverage gaps. Because it owns no primary work-activity profile, it omits the profiles: field entirely.
The persona resolver (manage-personas resolve) flattens this persona's composition DAG into a deduped skills[]:
plan-marshall:persona-plan-marshall-agent (the unconditional foundational base every persona inherits).composes: frontmatter (persona-implementer, persona-module-tester, persona-integration-tester, persona-documenter, persona-security-expert); the resolver recurses into each composed persona's refs and profiles, then dedups.None. A meta/evaluator persona that composes other personas as lenses omits the profiles: field — it is never reverse-looked-up from a task's work-activity profile.
development
Domain-owned OpenRewrite log-line finding parser for the java-cui domain — parses the
development
Domain-owned OpenRewrite marker detection for the java-cui domain — scans Java/Kotlin sources for cui-rewrite TODO markers, categorizes them by recipe, and fails the gate on any detected marker
development
Operator control surface for the marshalld build server — enrol/drop a project in the machine-global registry (the opt-in enable signal and anti-laundering wall), manage the daemon lifecycle (start, stop, drain, status, install, upgrade) version-pinned to the verified bundle copy, and inspect the daemon's per-project interaction-audit log (read-only)
tools
The tiny build-consumption client for the marshalld build server — submit a build job, bounded long-poll for its result, ping the daemon identity, and preflight registry-plus-liveness in one call; consumption only, never provisioning or enrolment