Agent skill

Audit Log

by EmeaAppGbb in EmeaAppGbb/spec2cloud

Append structured entries to .spec2cloud/audit.log for every significant action.

MITAuto-check passed

Install Audit Log

skills CLI
$ npx skills add EmeaAppGbb/spec2cloud --skill audit-log -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install EmeaAppGbb/spec2cloud audit-log --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/EmeaAppGbb/spec2cloud.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.github/skills/audit-log .claude/skills/audit-log && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
audit-log
GitHub stars
100
Token cost
~439 tokens
SKILL.md length
102 words
Files
1
Skills in repo
38
Repo updated
First seen
Licence
MIT

At a glance

Append structured entries to .spec2cloud/audit.log for every significant action.

  • Logging task execution
  • SKILL.md covers Format, What to Log and Mandatory Completion Checklist
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • Increment transitions

What it does

Audit Log is an agent skill from EmeaAppGbb/spec2cloud. Append structured entries to .spec2cloud/audit.log for every significant action. Never overwrite, always append. Use when logging task execution, increment transitions, human gate events, or errors.

Its SKILL.md is about 440 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

The licence is MIT.

When your agent uses it

  • Logging task execution
  • Increment transitions
  • Human gate events

Example prompts

  • “/audit-log”

What it can do on your machine

Read from SKILL.md and the folder at commit 8e76618. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Audit Log loads about 439 tokens when it runs. Until then it costs about 52 tokens; SKILL.md has 102 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~52
When it runs · the whole SKILL.md, loaded when a task matches
~439

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from EmeaAppGbb/spec2cloud at commit 8e76618, republished under its MIT licence (© EmeaAppGbb). 102 words, ~439 tokens.

Download SKILL.mdSave it as .claude/skills/audit-log/SKILL.md (or your agent's skills folder).
name
audit-log
description
Append structured entries to .spec2cloud/audit.log for every significant action. Never overwrite, always append. Use when logging task execution, increment transitions, human gate events, or errors.

Audit Log Protocol

Append every significant action to .spec2cloud/audit.log. Never overwrite — always append.

Format

[ISO-timestamp] phase=PHASE action=ACTION result=RESULT

What to Log

Every task execution
[2026-02-09T14:15:00Z] increment=resource-crud step=implementation slice=api iteration=1 action=write-code result=tests-3pass-2fail
Every increment transition
[2026-02-09T14:30:00Z] increment=walking-skeleton action=increment-delivered result=transition-to-resource-crud
Every human gate event
[2026-02-09T14:35:00Z] increment=resource-crud step=tests action=human-gate result=gherkin-approved
[2026-02-09T14:35:00Z] phase=discovery step=specs action=human-gate result=rejected feedback="missing error states for auth"
Every error
[2026-02-09T14:40:00Z] phase=deployment action=azd-provision result=error message="quota exceeded in eastus"

Mandatory Completion Checklist

Every audit log entry MUST contain ALL of the following fields:

  • ISO-8601 timestamp (e.g., 2026-02-09T14:40:00Z)
  • Context identifier: phase= or increment= (what work is being done)
  • action= field (what specific action was taken)
  • result= field (outcome: done, error, approved, rejected, etc.)
  • message= field for errors and rejections (human-readable detail)

BLOCKING: An audit entry missing any required field makes the audit trail incomplete. The orchestrator must ensure every append follows this schema.

© EmeaAppGbb, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .github/skills/audit-log of EmeaAppGbb/spec2cloud.

Open the folder on GitHubat commit 8e76618

Compare with similar skills

Audit Log next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Audit Log compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Audit Log this skillEmeaAppGbb/spec2cloud100—~439Automated safety check: PassMIT
Growth Logaffaan-m/ECC275k1 repos~1.7kAutomated safety check: PassMIT
Implementing Log Integrity With Blockchainmukul975/Anthropic-Cybersecurity-Skills34k—~611Automated safety check: PassApache-2.0
Clickhouse Logs Queriessupabase/supabase111k—~2.4kAutomated safety check: PassApache-2.0
Investigating LogsPostHog/posthog40k—~2.1kAutomated safety check: PassCustom licence
Logging and Error Reporting for Warpwarpdotdev/warp65k1 repos~5.6kAutomated safety check: PassAGPL-3.0

Similar skills

  • Growth Log

    affaan-m/ECC

    Write growth log entries that extract reusable patterns from completed work — root cause, transferable rule, and a recognizable signal — instead of diary-style event narration, with a 4-8 sentence…

    275k GitHub starsUsed in 1 repo~1.7k tokens
    DevelopmentAuto-check passed
  • Implementing Log Integrity With Blockchain

    mukul975/Anthropic-Cybersecurity-Skills

    Builds an append-only log integrity chain using SHA-256 hash chaining, where each entry incorporates the previous entry's hash so tampering invalidates all subsequent hashes; covers log ingestion…

    34k GitHub stars~611 tokensUpdated 1 mo ago
    SecurityAuto-check passed
  • Clickhouse Logs Queries

    supabase/supabase

    Official

    Write, review, and migrate Supabase logs queries against the ClickHouse-backed logs table (the logs.all.otel analytics endpoint).

    111k GitHub stars~2.4k tokensUpdated today
    DatabasesAuto-check passed
  • Investigating Logs

    PostHog/posthog

    Official

    Investigate logs in a PostHog project: verify a service or deployment is healthy, explain an error spike, triage an incident, or understand what a log stream is saying.

    40k GitHub stars~2.1k tokensUpdated today
    DatabasesAuto-check passed
  • Guides log level choices and when to raise a structured Sentry event instead of a plain log line in the Warp Rust codebase, keeping secrets out of logs.

    65k GitHub starsUsed in 1 repo~5.6k tokens
    DevelopmentAuto-check passed
  • Analyze Logs

    activepieces/activepieces

    Analyze application logs from the .evlog/logs/ directory. An agent skill from activepieces/activepieces.

    25k GitHub starsUsed in 1 repo~1.6k tokens
    DevelopmentAuto-check passed

More from EmeaAppGbb/spec2cloud

All 38 skills in this repo
  • Azure Deployment

    EmeaAppGbb/spec2cloud

    Provision Azure infrastructure, deploy to Azure Container Apps, and verify via smoke tests.

    100 GitHub stars~1.8k tokensUpdated 5 mo ago
    Auto-check passed
  • Contract Generation

    EmeaAppGbb/spec2cloud

    Generate API contracts, shared TypeScript types, and infrastructure resource definitions from Gherkin scenarios and test files.

    100 GitHub stars~1.6k tokensUpdated 5 mo ago
    Auto-check passed
  • Ddd Modeling

    EmeaAppGbb/spec2cloud

    Create Domain-Driven Design proposals from product specs or brownfield extraction outputs.

    100 GitHub stars~2.4k tokensUpdated 5 mo ago
    Auto-check passed
  • Implementation

    EmeaAppGbb/spec2cloud

    Write application code to make failing tests pass using contract-driven, slice-based architecture.

    100 GitHub stars~2.8k tokensUpdated 5 mo ago
    Auto-check passed
  • Spec Refinement

    EmeaAppGbb/spec2cloud

    Review PRDs and FRDs through product and technical lenses. An agent skill from EmeaAppGbb/spec2cloud.

    100 GitHub stars~2.2k tokensUpdated 5 mo ago
    Auto-check passed
  • State Management

    EmeaAppGbb/spec2cloud

    Read, write, and maintain .spec2cloud/state.json across phases and increments.

    100 GitHub stars~1.5k tokensUpdated 5 mo ago
    Auto-check passed

Questions about Audit Log

What does Audit Log do?

Append structured entries to .spec2cloud/audit.log for every significant action. Audit Log is an agent skill from EmeaAppGbb/spec2cloud.log for every significant action.

When should I use Audit Log?

Audit Log fits situations like: logging task execution; increment transitions; human gate events.

How do I install Audit Log in Claude Code?

Run `npx skills add EmeaAppGbb/spec2cloud --skill audit-log -a claude-code`. Or copy the skill folder (.github/skills/audit-log in EmeaAppGbb/spec2cloud) into .claude/skills/audit-log in your project. Claude Code loads it when a task matches its description.

How do I install Audit Log in Codex?

Run `npx skills add EmeaAppGbb/spec2cloud --skill audit-log -a codex`. Or copy the skill folder (.github/skills/audit-log in EmeaAppGbb/spec2cloud) into .agents/skills/audit-log in your project. Codex loads it when a task matches its description.

Can I use Audit Log in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add EmeaAppGbb/spec2cloud --skill audit-log -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/audit-log, .gemini/skills/audit-log, .github/skills/audit-log and .opencode/skills/audit-log in your project.

What does Audit Log need to run?

SKILL.md names no scripts, command-line tools or credentials: Audit Log is instructions for the agent only.

Does Audit Log access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Audit Log safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Audit Log use?

Audit Log is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Audit Log use?

About 439 tokens (SKILL.md is roughly 1.8k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Audit Log?

Skills that share tags, products or a category with Audit Log: Growth Log (affaan-m/ECC, 275k stars), Implementing Log Integrity With Blockchain (mukul975/Anthropic-Cybersecurity-Skills, 34k stars), Clickhouse Logs Queries (supabase/supabase, 111k stars) and Investigating Logs (PostHog/posthog, 40k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Audit Log?

EmeaAppGbb (a GitHub organization) maintains it in EmeaAppGbb/spec2cloud, which has 100 GitHub stars. The repository holds 38 skills in this directory. The repository was last updated on April 16, 2026.

Source: EmeaAppGbb/spec2cloud on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.