Works with the AI tools you already use

    Claude CodeClaude CodeCursorCursorCodex CLICodex CLIMuseMuseDotsDots+22 more

    codebase improvement advisor

    1

    Senior-level codebase auditor that generates evidence-backed improvement plans and prioritized technical roadmaps.

    $12

    Secure checkout via Stripe

    30-day refund guarantee

    Converts to your local currency at checkout

    Security scanned
    codebase improvement advisor

    codebase improvement advisor

    Example session with this skill installed

    Run a standard audit of the current repository. Focus on high-leverage tech debt and performance bottlenecks. Generate plans for the top three findings.

    • Read your context and instructions
    • Compiled the codebase improvement advisor
    • Generated the document

    I have completed a standard audit of the repository. I analyzed the directory structure, package manifests, and CI configurations to identify high-leverage improvements. I have vetted all findings against source evidence and prioritized them by impact and confidence.

    Codebase Audit Results

    IDTitleCategoryImpactEffortRiskConfidence
    PERF-01N+1 Query in Dashboard LoaderPerformanceHighMLowHigh
    DEBT-01Circular Dependency in Auth ModuleTech DebtMedSMedHigh
    TEST-02Missing Integration Tests for Payment FlowTest CoverageHighLLowHigh
    SEC-01Unvalidated Input in Search APISecurityCriticalSLowHigh

    [PERF-01] N+1 Query in Dashboard Loader

    • Evidence: src/api/dashboard.ts:42 - The getUserStats call is inside a map function over the workspace list.
    • Impact: Significant latency increase for users with more than 5 workspaces.
    • Effort: M.
    • Risk: LOW - standard refactor to join query.
    • Confidence: HIGH.

    Fix sketch: Refactor the data fetcher to use a single batch query for all workspace IDs instead of individual calls.

    [SEC-01] Unvalidated Input in Search API

    • Evidence: src/controllers/search.ts:18 - Query parameter q is passed directly to the database driver.
    • Impact: Potential SQL injection risk.
    • Effort: S.
    • Risk: LOW - fix involves adding a validation schema.
    • Confidence: HIGH.
    • Fix sketch: Implement Zod validation for all incoming search query parameters.

    [DEBT-01] Circular Dependency in Auth Module

    • Evidence: src/auth/service.ts imports from src/user/service.ts, which imports back from src/auth/utils.ts.
    • Impact: Increases build times and prevents clean modularization.
    • Effort: S.
    • Risk: MED - requires careful re-ordering of exports.
    • Confidence: HIGH.
    • Fix sketch: Move shared types to a new src/common/types/auth.ts file to break the loop.

    Next steps

    • I have created detailed execution plans for PERF-01, SEC-01, and DEBT-01 in the plans/ directory.
    • Review plans/README.md for the suggested execution order.
    • You can now hand these plans to an executor agent or a developer.

    codebase-improvement-advisor.pdf

    PDF · document

    Generated

    Example file from a real run - the skill writes it into your workspace.

    Connects securely to your tools. The creator never sees your data.

    What you get

    Audit repositories for tech debt, security gaps, and performance bottlenecks.Create self-contained implementation plans for other developers or agents.Review pull requests for introduced risks using evidence-based vetting.Generate prioritized roadmaps grounded in actual source code evidence.Audit an unfamiliar codebase and produce evidence-backed findingsPrioritise technical debt by impact and effort rather than by opinionWrite self-contained implementation plans another agent can execute coldPrepare an engineering improvement backlog for leadership review

    About this skill

    The problem

    Large codebases accumulate tech debt and architectural drift that manual reviews often miss. Engineering teams struggle to turn vague audit findings into actionable, self-contained implementation plans that other developers or agents can actually execute.

    What it does

    • Performs multi-category audits covering security, performance, test coverage, and developer experience.
    • Vets findings against concrete file evidence to eliminate false positives and "hallucinated" bugs.
    • Prioritizes work by leverage, calculating impact-to-effort ratios for every identified issue.
    • Generates self-contained, machine-executable implementation plans with clear stop conditions and verification gates.
    • Reviews existing pull requests or branches to identify introduced risks before they merge.

    Frameworks & tools

    Works with any language or framework by analyzing root manifests, CI configs, and directory structures. Specifically leverages plans/ or advisor-plans/ directories for artifact storage.

    Why this beats prompting it yourself

    Most LLM audits provide "vibes" and generic advice. This skill enforces a rigorous evidence-backed protocol, requiring the agent to open and confirm every file and line number cited. It separates the advisor role from the executor role, ensuring plans are robust enough to stand alone without session context.

    Use cases

    • Conducting deep security and performance audits on legacy repositories.
    • Onboarding new agents or engineers by creating a verified roadmap of high-leverage fixes.
    • Performing pre-merge risk assessments on complex feature branches.
    • Standardizing tech debt documentation into executable handoff templates.

    Known limitations

    This skill is strictly read-only for source code. It will not implement fixes, commit changes, or run mutating commands in your working tree.

    How to install

    Works the same in every agent - Claude, Cursor, Codex, Copilot and 20+ more.

    ~30 seconds
    1. 1

      Download the ZIP

      Free skills download straight away. Paid skills unlock right after purchase.

    2. 2

      Unzip into your skills folder

      Every agent reads skills from one folder on your machine. Drop the unzipped folder in there.

    3. 3

      Ask your agent to use it

      Restart the agent if it was already running. It picks the skill up automatically - no config needed.

    Skills folder by agent

    Click the path to copy it. Create the folder if it does not exist yet.

    Reviews

    No reviews yet

    Be one of the first to try it. Every listed skill passes our trust checks below.

    Security scanned

    Passed our 8-point scan before listing

    Fresh listing

    Recently published to Agensi

    30-day refund

    Not a fit? Get your money back

    Trust & safety

    Security scanned

    Verified clean 1 month ago

    • Passed all security checks, Safe to install

    Listed1 month ago

    What's inside

    Frequently Asked Questions