agentic/code/frameworks/security-engineering/skills/strict-toolchain-audit/SKILL.md
Check build and CI configuration for warning-as-error, strict typechecking, and language-specific compiler/linter floors
npx skillsauth add jmagly/aiwg strict-toolchain-auditInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
Inspect build and CI configuration for the strict-toolchain rule. This maps curl Practice 13 into a reusable AIWG security-engineering audit.
-Wall, -Wextra, -Werror, -pedantic; recommended hardening flags are reported when absent.cargo clippy -- -D warnings or equivalent CI gate.go vet ./... and staticcheck ./... fail CI.ruff check and mypy strictness are configured.strict: true and noUncheckedIndexedAccess: true.Legacy projects may keep a baseline, but the audit must confirm that new warnings fail the build. A baseline without a ratchet is reported as a finding.
agentic/code/frameworks/security-engineering/rules/strict-toolchain.mdagentic/code/frameworks/security-engineering/skills/sanitizer-in-ci/SKILL.mddata-ai
Report which research-corpus radar sidecars are overdue for refresh. Computes staleness (days since last refresh vs the cadence window) for every radar, sorted most-overdue-first. Runs via `aiwg corpus radar-status`.
data-ai
Aggregate research-corpus radar sidecars into a corpus or per-cluster freshness report — totals, overdue count, per-cluster / per-GRADE / per-trajectory breakdowns, an overdue table, and per-radar rationale snippets. Runs via `aiwg corpus radar-report`.
testing
Scaffold radar/freshness sidecars for research-corpus REFs. Pulls title/authors from the citation sidecar and GRADE from the analysis doc, defaults the refresh cadence from GRADE and the cluster from a corpus-local map, and stamps documentation/radar/REF-XXX-radar.md. Runs via `aiwg corpus radar-init`.
data-ai
Compute an entity's publication trajectory — per-year paper counts, topic drift, hot-streak detection (≥3 consecutive A-grade years), and career phase. Runs via `aiwg corpus profile-temporal`.