Agent skill

Spec Contract Compliance Review

by bbartling in bbartling/open-fdd

A skill your agent uses to compare any codebase against a specification, API contract, protocol, policy, RFC, security baseline, or product requirements document.

Custom licenceAuto-check passedLegal & Compliance

Install Spec Contract Compliance Review

skills CLI
$ npx skills add bbartling/open-fdd --skill spec-contract-compliance-review -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install bbartling/open-fdd spec-contract-compliance-review --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/bbartling/open-fdd.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/spec-contract-compliance-review .claude/skills/spec-contract-compliance-review && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
spec-contract-compliance-review
GitHub stars
173
Token cost
~1.4k tokens
SKILL.md length
575 words
Files
3 (incl. references)
Skills in repo
23
Repo updated
First seen
Licence
Custom licence

At a glance

A skill your agent uses to compare any codebase against a specification, API contract, protocol, policy, RFC, security baseline, or product requirements document.

  • Works in 5 steps: Objective: one sentence describing the… → Scope: files, folders, PR diff,… → Constraints: read-only vs write,… → …
  • Compare any codebase against a specification
  • SKILL.md covers Trigger, Non-goals, Operating principles and Subagent orchestration rules, plus 5 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Spec Contract Compliance Review is an agent skill from bbartling/open-fdd. Use to compare any codebase against a specification, API contract, protocol, policy, RFC, security baseline, or product requirements document. Builds a traceability matrix and prioritizes compliance gaps.

Its SKILL.md is about 1.4k tokens, which your agent loads only when the skill is triggered. The skill folder holds 3 other files, including reference files (for example `references/output-contracts.md` and `references/severity-rubric.md`).

It sits in Legal & Compliance, covering Regulatory compliance, API design and PRD writing. The repository describes itself as: Fault Detection Diagnostics (FDD) for HVAC datasets.

When your agent uses it

  • Compare any codebase against a specification
  • Security baseline
  • Product requirements document

Example prompts

  • “/spec-contract-compliance-review”

Workflow steps

5 steps, taken from the first numbered list in SKILL.md.

  1. Objective: one sentence describing the question to answer.
  2. Scope: files, folders, PR diff, services, packages, or docs to inspect.
  3. Constraints: read-only vs write, commands allowed, network/doc lookup allowed, and timeout.
  4. Required evidence: exact files/symbols/commands/sources to cite.
  5. Output schema: use the schema requested by the skill.

What it can do on your machine

Read from SKILL.md and the folder at commit 4002de0. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md (its code samples are markdown).

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Spec Contract Compliance Review loads about 1.4k tokens when it runs, and up to ~1.9k if it reads all its reference files. Until then it costs about 59 tokens; SKILL.md has 575 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~59
When it runs · the whole SKILL.md, loaded when a task matches
~1.4k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~1.9k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Its licence (Custom licence) doesn't allow us to republish the file, so here is its outline and opening line. It has 575 words (~1,406 tokens).

“When the user asks for spec compliance, standards compliance, contract conformance, acceptance criteria mapping, protocol review, regulatory/product policy review, or requirement traceability.”

— opening of SKILL.md by bbartling, Custom licence
name
spec-contract-compliance-review

Read the full SKILL.md on GitHub

Files

SKILL.md and 2 other files (references) in .agents/skills/spec-contract-compliance-review of bbartling/open-fdd.

  • SKILL.md
  • references/output-contracts.md
  • references/severity-rubric.md

Open the folder on GitHubat commit 4002de0

Compare with similar skills

Spec Contract Compliance Review next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Spec Contract Compliance Review compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Spec Contract Compliance Review this skillbbartling/open-fdd173—~1.4kAutomated safety check: PassCustom licence
CCPM Project Managementautomazeio/ccpm8.4k—~1.1kAutomated safety check: PassMIT
Feature TrackingJunsW/feature-track108—~339Automated safety check: PassMIT
Reviewfossasia/eventyay-interpretation1.6k35 repos~996Automated safety check: PassApache-2.0
Graphsmallnest/goal-workflow291—~3.9kAutomated safety check: PassMIT
Sagawarpdotdev/common-skills610—~4.1kAutomated safety check: PassMIT

Similar skills

  • Runs a spec-driven workflow from PRD to epic to GitHub issues to parallel agents, with status, standup and blocked-work reports from bundled scripts.

    8.4k GitHub stars~1.1k tokensUpdated 6 mo ago
    Product & Project ManagementAuto-check passed
  • Feature Tracking

    JunsW/feature-track

    Maintain portable Feature Track docs for project features. An agent skill from JunsW/feature-track.

    108 GitHub stars~339 tokensUpdated 2 mo ago
    Backend & APIsAuto-check passed
  • Review

    fossasia/eventyay-interpretation

    Review the changes since a fixed point (commit, branch, tag, or merge-base) along two axes — Standards (does the code follow this repo's documented coding standards?) and Spec (does the code match…

    1.6k GitHub starsUsed in 35 repos~996 tokens
    Product & Project ManagementAuto-check passed
  • Graph

    smallnest/goal-workflow

    Graph engineering for parallel task execution: convert a task, PRD, SPEC, or issue set into a dependency graph (DAG), layer it into supersteps, then implement each independent node concurrently with…

    291 GitHub stars~3.9k tokensUpdated 27 days ago
    Product & Project ManagementAuto-check passed
  • Saga

    warpdotdev/common-skills

    Run an autonomous, spec-driven development "saga" for medium-to-large features using an orchestrator agent and a fleet of worker subagents.

    610 GitHub stars~4.1k tokensUpdated yesterday
    Agent WorkflowsAuto-check passed
  • Ad Review

    CorridorTech/PoseCap

    Two-axis fresh-context code review per WORKFLOW §10. An agent skill from CorridorTech/PoseCap.

    224 GitHub stars~2.4k tokensUpdated 4 days ago
    DevelopmentAuto-check: notes

More from bbartling/open-fdd

All 23 skills in this repo
  • Architecture Design Review

    bbartling/open-fdd

    A skill your agent uses to evaluate architecture, design proposals, refactors, module boundaries, dependency direction, data flow, concurrency model, and maintainability tradeoffs across any codebase.

    173 GitHub stars~1.3k tokensUpdated today
    Auto-check passed
  • Codebase Research Pass

    bbartling/open-fdd

    A skill your agent uses for structured research on an unfamiliar or complex codebase before planning, reviewing, or editing.

    173 GitHub stars~1.4k tokensUpdated today
    Auto-check passed
  • External Source Research

    bbartling/open-fdd

    A skill your agent uses when implementation or review depends on external documentation, standards, protocols, APIs, SDKs, changelogs, or version-specific behavior.

    173 GitHub stars~1.3k tokensUpdated today
    Auto-check passed
  • Multi Agent PR Review

    bbartling/open-fdd

    A skill your agent uses for rigorous pull request, branch, patch, or diff review.

    173 GitHub stars~1.4k tokensUpdated today
    Auto-check passed
  • A skill your agent uses to design, run, or review performance work with reproducible A/B baselines.

    173 GitHub stars~1.4k tokensUpdated today
    Auto-check passed
  • Openfdd Ecm Engineering

    bbartling/open-fdd

    A skill your agent uses when migrating or changing generic ECM math in openfdd.ecmengineering, publishing PyPI ECM workbook exports, or Compare honesty (FITTED vs industry).

    173 GitHub stars~966 tokensUpdated today
    Auto-check passed

Questions about Spec Contract Compliance Review

What does Spec Contract Compliance Review do?

A skill your agent uses to compare any codebase against a specification, API contract, protocol, policy, RFC, security baseline, or product requirements document. Spec Contract Compliance Review is an agent skill from bbartling/open-fdd. Use to compare any codebase against a specification, API contract, protocol, policy, RFC, security baseline, or product requirements document.

When should I use Spec Contract Compliance Review?

Spec Contract Compliance Review fits situations like: compare any codebase against a specification; security baseline; product requirements document.

How do I install Spec Contract Compliance Review in Claude Code?

Run `npx skills add bbartling/open-fdd --skill spec-contract-compliance-review -a claude-code`. Or copy the skill folder (.agents/skills/spec-contract-compliance-review in bbartling/open-fdd) into .claude/skills/spec-contract-compliance-review in your project. Claude Code loads it when a task matches its description.

How do I install Spec Contract Compliance Review in Codex?

Run `npx skills add bbartling/open-fdd --skill spec-contract-compliance-review -a codex`. Or copy the skill folder (.agents/skills/spec-contract-compliance-review in bbartling/open-fdd) into .agents/skills/spec-contract-compliance-review in your project. Codex loads it when a task matches its description.

Can I use Spec Contract Compliance Review in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add bbartling/open-fdd --skill spec-contract-compliance-review -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/spec-contract-compliance-review, .gemini/skills/spec-contract-compliance-review, .github/skills/spec-contract-compliance-review and .opencode/skills/spec-contract-compliance-review in your project.

What does Spec Contract Compliance Review need to run?

SKILL.md names no scripts, command-line tools or credentials: Spec Contract Compliance Review is instructions for the agent only.

Does Spec Contract Compliance Review access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Spec Contract Compliance Review safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Spec Contract Compliance Review use?

Spec Contract Compliance Review has a licence file (the repository's licence) that doesn't match a standard licence. Read it on GitHub before reusing the skill.

How many tokens does Spec Contract Compliance Review use?

About 1.4k tokens (SKILL.md is roughly 5.6k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 473 tokens, read only when the agent opens those files.

What are the alternatives to Spec Contract Compliance Review?

Skills that share tags, products or a category with Spec Contract Compliance Review: CCPM Project Management (automazeio/ccpm, 8.4k stars), Feature Tracking (JunsW/feature-track, 108 stars), Review (fossasia/eventyay-interpretation, 1.6k stars) and Graph (smallnest/goal-workflow, 291 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Spec Contract Compliance Review?

bbartling (a GitHub user) maintains it in bbartling/open-fdd, which has 173 GitHub stars. The repository holds 23 skills in this directory. The repository was last updated on October 10, 2026.

Source: bbartling/open-fdd on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.