Token导航 LogoToken导航TokenDH.com
研究检索需要联网github未标认证来源可访问clear审计未展示

qa-checklist质量检查清单

Agent Skill

qa-checklist 用于查找、检索和筛选相关信息,适合在 Codex、Claude、Cursor、Gemini CLI 中需要根据关键词、任务场景或来源线索快速定位候选结果时使用。可结合来源仓库、安装命令和原始 README 继续核验具体用法。安装前建议确认权限范围、维护状态,以及是否会触发联网、命令执行或文件读写。

总安装

636

周安装

26

GitHub Stars

公开资料未说明

下载量

206
CodexClaudeCursorGemini CLI

安装说明

本站只整理中文说明和来源信息,不托管安装包,也不代用户安装。

GitHub

来源数

2

许可证

MIT

最后核验

2026-05-01

来源状态

来源可访问

安装方式

通过对话安装

复制提示词发给支持本地命令或 Skills 的 AI 助手,先确认命令和权限,再让它执行。

请帮我安装这个 Agent Skill:qa-checklist(质量检查清单)
来源仓库:https://github.com/svenja-dev/claude-code-skills
仓库路径:skills/qa-checklist
安装命令:
npx skills add svenja-dev/claude-code-skills --skill "qa-checklist"
安装前请先检查当前环境是否支持对应 CLI,并向我确认将要执行的命令、安装目录、联网范围和文件读写权限;确认后再执行。

命令行安装

复制命令到本机终端执行。该命令会通过 npx skills 从第三方来源获取 Skill;本站只展示命令,不托管安装包,也不自动执行。

AgentSkills.tonpx skills
npx skills add svenja-dev/claude-code-skills --skill "qa-checklist"

简介

qa-checklist 用于查找、检索和筛选相关信息,适合在 Codex、Claude、Cursor、Gemini CLI 中需要根据关键词、任务场景或来源线索快速定位候选结果时使用。

  • 适用于需要质量检查清单和质量保证任务的 AI 代理环境。
  • 通过 npx skills add svenja-dev/claude-code-skills --skill "qa-checklist" 命令安装使用。
  • 安装前建议确认权限范围、维护状态,以及是否会触发联网、命令执行或文件读写操作。
  • 适用宿主包括 Codex、Claude、Cursor、Gemini CLI,接入前应确认版本、权限和运行环境要求。

SKILL.md

name
qa-checklist
description
Formal Quality Assurance Checklist before every Merge/Deploy. 6-phase validation with Build Verification, Test Suite, No-Touch Zones, Region Check, Security Review, and QA Report generation. Activate on "merge", "deploy", "release", "production", or /qa command.

QA Checklist

Formal Quality Assurance Checklist before every Merge/Deploy

Trigger

This skill activates automatically on:

  • git commit (after production code changes)
  • Deploy commands (vercel --prod, npm run deploy, etc.)
  • /qa command
  • Trigger words: "merge", "deploy", "release", "production"

Configuration

Customize these values for your project:

# Add to your project's CLAUDE.md or settings
no_touch_zones:
  - "src/auth/**"           # Authentication logic
  - "src/core/**"           # Core business logic
  - "config/production.*"   # Production config

required_region: "your-region"  # e.g., fra1, us-east-1
deploy_timeout: 60              # seconds

PHASE 1: Build Verification (BLOCKING)

1.1 TypeScript Compilation

npx tsc --noEmit

Expected: No errors

StatusAction
PASSContinue to 1.2
FAILSTOP - Fix type errors

1.2 Production Build

npm run build

Expected: Build successful, no warnings

StatusAction
PASSContinue to Phase 2
FAILSTOP - Fix build errors

PHASE 2: Test Suite (BLOCKING)

2.1 Unit Tests

npm run test

Expected: All tests green

2.2 E2E Tests (optional but recommended)

npm run test:e2e

Expected: Critical flows working


PHASE 3: No-Touch Zones Check (BLOCKING)

Check if protected files were modified:

# Replace with your no-touch zones
git diff --name-only HEAD~1 | grep -E "(auth|core|production)"

Expected: No matches (or explicit approval present)

File PatternModification Allowed?
**/auth/**ONLY with explicit request
**/core/**ONLY with explicit request
config/production.*ONLY with explicit request

PHASE 4: Region/Environment Check (BLOCKING on Deploy)

4.1 Before Production Deploy

Verify deployment target matches requirements:

# Vercel example
npx vercel inspect <preview-url> --wait

# AWS example
aws configure get region

# Check environment
echo $NODE_ENV

Expected: Correct region/environment

4.2 After Production Deploy

# Verify production deployment
curl -s -o /dev/null -w "%{http_code}" https://dresdenaiinsights.com/health

Expected: 200 OK


PHASE 5: Security Review (WARNING)

5.1 No Secrets in Code

git diff HEAD~1 | grep -iE "(password|secret|api_key|token|private_key)" | grep -v "process\.env\|\.env\|example"

Expected: No matches

5.2 No Unsafe Types

# TypeScript: Check for untyped any
git diff HEAD~1 --name-only -- "*.ts" "*.tsx" | xargs grep -l ": any" 2>/dev/null

Expected: No new any types (or documented reason)

5.3 Dependency Check

npm audit --production

Expected: No high/critical vulnerabilities


PHASE 6: QA Report

After completing all checks, generate a report:

## QA Validation Report

**Date:** [ISO Timestamp]
**Branch:** [Branch Name]
**Commit:** [Commit Hash]

### Results

| Check | Status | Details |
|-------|--------|---------|
| TypeScript | PASS/FAIL | [Error count] |
| Build | PASS/FAIL | [Build time] |
| Unit Tests | PASS/FAIL | [X/Y passed] |
| E2E Tests | PASS/FAIL/SKIP | [X/Y passed] |
| No-Touch Zones | PASS/FAIL | [Affected files] |
| Region | PASS/FAIL/N/A | [Current region] |
| Security | PASS/WARN | [Issues found] |

### Verdict

**Status:** APPROVED / REJECTED

**Next Steps:**
- [If APPROVED: Merge/Deploy allowed]
- [If REJECTED: List of issues to fix]

Workflow Integration

Before Every Commit

  1. Run Phase 1-3
  2. On PASS: Commit allowed
  3. On FAIL: Fix issues, re-run

Before Production Deploy

  1. Run Phase 1-5
  2. On PASS: Deploy allowed
  3. On FAIL: Fix issues, re-run
  4. After Deploy: Phase 4.2 (Verification)

QA Loop (max 3 iterations)

1. Run checks
2. On failure: Implement fix
3. Return to step 1
4. After 3 iterations: Escalate to user

Integration with Other Skills

  • code-quality-gate: Can be used together for comprehensive checks
  • strict-typescript-mode: Enforces Phase 5.2 automatically
  • security-scan hook: Automates Phase 5.1

Origin

Originally developed for fabrikIQ - AI-powered manufacturing data analysis.

License

MIT - Free to use and modify

适合场景

01

用户想查找某类 Agent Skill 时

02

需要根据任务场景推荐可安装能力包时

03

需要对比不同来源的安装命令和来源信息时

04

需要参考平台分布和安装热度时

能力概览

能力 1

按任务关键词查找相关 Skills

能力 2

展示可复制的安装命令

能力 3

保留来源站点、仓库和原始说明,方便继续核验

能力 4

补充不同宿主或平台的使用分布数据

安装后应在对应宿主中按原始 README 的触发条件使用;具体调用方式请以来源页面和 README 为准。

平台分布

Claude Code

27.42%
按下载量换算56

Antigravity

25.42%
按下载量换算52

windsurf

19.18%
按下载量换算40

trae

11.06%
按下载量换算23

OpenCode

6.89%
按下载量换算14

Cursor

3.62%
按下载量换算7

安全审计

暂无安全审计结果可展示。

权限和风险

需要联网

该 Skill 可能需要联网访问来源站点、仓库或外部 API;具体网络访问范围需要结合源码和 README 复核。

安装前确认

本站仅展示第三方公开信息,不托管安装包,不提供自动安装或运行环境。安装前应自行审查源码、依赖和命令行为。当前只有一个来源,正式发布前建议补源仓库或其他目录站核验。

来源信息

继续浏览同类 Skills