Skip to content

[skill-optimizer] Daily Skill Optimizer Improvements - 2026-08-02 #49705

Description

@github-actions

Summary

  • Run mode: dry-run
  • Status: ✅ (exit code 0, but suite execution was skipped)

Key Findings

  1. Set OPENROUTER_API_KEY as a repo/org secret to enable real benchmark runs. Expected impact: unlocks actual skill-optimizer scoring instead of a no-op dry-run, giving real signal on skill quality regressions.
  2. Consolidate oversized skill files (developer/SKILL.md at 2071 lines, custom-agents/SKILL.md and gh-agent-session/SKILL.md/gh-agent-task/SKILL.md each ~386-591 lines) into smaller, task-scoped sub-skills. Expected impact: reduces first-load context cost per the repo's own lazy-loading policy and improves optimizer/benchmark signal quality by making individual skills easier to evaluate in isolation.
  3. Pin/upgrade skill-optimizer npm dependencies to resolve the 19 reported vulnerabilities (9 high, 8 moderate, 2 low) surfaced in npm-ci.log. Expected impact: removes noisy npm audit warnings from every run log and reduces supply-chain risk in the optimizer pipeline itself.
Evidence from Artifact
  • summary.json: {"repository":"github/gh-aw","run_mode":"dry-run","run_status":0,"run_url":"https://github.com/github/gh-aw/actions/runs/30731275907"}
  • run.log: dry-run: Docker available but OPENROUTER_API_KEY not set; skipping suite execution — confirms no benchmark suite ran and no skill-scoring evidence is available this cycle.
  • npm-ci.log: 19 vulnerabilities (2 low, 8 moderate, 9 high) plus allow-scripts warnings for esbuild@0.27.7, koffi@2.16.0, protobufjs@7.5.5 — install scripts not yet reviewed/approved.
  • npm-build.log: build succeeded (tsc && chmod +x dist/cli.js), no errors.
  • clone.log: source clone of fastxyz/skill-optimizer succeeded with no issues.
  • Repo skill inventory: .github/skills/developer/SKILL.md (2071 lines), .github/skills/custom-agents/SKILL.md (591 lines), .github/skills/gh-agent-session/SKILL.md and .github/skills/gh-agent-task/SKILL.md (386 lines each) — significantly larger than the median skill file (~100-200 lines), making these prime candidates for splitting.

Recommendations

  1. Configure OPENROUTER_API_KEY in repository/organization secrets so future scheduled runs execute the full benchmark suite instead of falling back to dry-run mode.
  2. Split developer/SKILL.md and other oversized skill files into smaller, intent-scoped sub-skills to align with the repo's lazy-loading policy and improve benchmarkable skill granularity.
  3. Run npm audit fix (or pin safe versions) for the skill-optimizer toolchain to eliminate the 19 flagged vulnerabilities and review pending allow-scripts entries.

Generated by ⚡ Daily Skill Optimizer Improvements · auto · 13 AIC · ⌖ 3.74 AIC · ⊞ 6.2K · ◷

  • expires on Aug 8, 2026, 7:56 PM UTC-08:00

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Type

No type

Projects

No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions