operations/skills/vendor-review/SKILL.md
Evaluate a vendor — cost analysis, risk assessment, and recommendation
npx skillsauth add grailautomation/claude-plugins vendor-reviewInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
If you see unfamiliar placeholders or need to check which tools are connected, see CONNECTORS.md.
Evaluate a vendor with structured analysis covering cost, risk, performance, and fit. See the vendor-management skill for TCO frameworks, risk assessment criteria, and performance metrics.
/operations:vendor-review $ARGUMENTS
## Vendor Review: [Vendor Name]
**Date:** [Date] | **Type:** [New / Renewal / Comparison]
### Summary
[2-3 sentence recommendation]
### Cost Analysis
| Component | Annual Cost | Notes |
|-----------|-------------|-------|
| License/subscription | $[X] | [Per seat, flat, usage-based] |
| Implementation | $[X] | [One-time] |
| Support/maintenance | $[X] | [Included or add-on] |
| **Total Year 1** | **$[X]** | |
| **Total 3-Year** | **$[X]** | |
### Risk Assessment
| Risk | Likelihood | Impact | Mitigation |
|------|-----------|--------|------------|
| [Risk] | High/Med/Low | High/Med/Low | [Mitigation] |
### Strengths
- [Strength 1]
- [Strength 2]
### Concerns
- [Concern 1]
- [Concern 2]
### Recommendation
[Proceed / Negotiate / Pass] — [Reasoning]
### Negotiation Points
- [Leverage point 1]
- [Leverage point 2]
If ~~knowledge base is connected:
If ~~procurement is connected:
development
Parse and analyze Workato recipe JSON exports. Use when the user asks about a Workato recipe's logic, data flow, field mappings, error handling, or control flow. Also use when the user references a .recipe.json file or asks to debug a Workato integration.
databases
Review implementation plans as a staff software engineer. Use when the user asks for staff engineer feedback, senior engineering review, plan review, architecture review, implementation-plan critique, approval before proceeding, risk review, or feedback on a proposed technical plan.
tools
Use when the user invokes $spec-kit:tasks or /spec-kit:tasks, or asks to generate dependency-ordered tasks from the plan and repo context.
testing
Use when the user invokes $spec-kit:specify or /spec-kit:specify, or asks to create a brownfield-aware feature specification from a natural language description.