Agent skill

Portfolio Audit

by hey-stefan in hey-stefan/portfolio-audit

Audit a design portfolio website against what top design leaders actually look for when hiring.

No licenceAuto-check passedProductivity & Automation

Install Portfolio Audit

skills CLI
$ npx skills add hey-stefan/portfolio-audit --skill portfolio-audit -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install hey-stefan/portfolio-audit portfolio-audit --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
portfolio-audit
GitHub stars
141
Token cost
~5.3k tokens
SKILL.md length
2,942 words
Files
4
Skills in repo
1
Repo updated
First seen
Licence
None found

At a glance

Audit a design portfolio website against what top design leaders actually look for when hiring.

  • Works in 8 steps: THE 10-SECOND GUT CHECK (Weight: Critical) → WORK IS THE HERO / VISUALS OVER TEXT… → RUTHLESS CURATION (Weight: High) → …
  • Productivity & Automation work in your project
  • SKILL.md covers Prerequisites, How to browse the portfolio, How to run the audit and Before you score: remember…, plus 3 more sections
  • Calls npx and node

What it does

Portfolio Audit is an agent skill from hey-stefan/portfolio-audit. Audit a design portfolio website against what top design leaders actually look for when hiring. Use with /portfolio-audit <url.

Its SKILL.md is about 5.3k tokens, which your agent loads only when the skill is triggered. The skill folder holds 4 other files (for example `.claude/settings.local.json` and `README.md`).

It sits in Productivity & Automation. The repository describes itself as: Audit any design portfolio website against what top design leaders actually look for when hiring.

When your agent uses it

  • Productivity & Automation work in your project

Example prompts

  • “/portfolio-audit”

Requirements

  • Node.js
  • Pre-approved tools (allowed-tools): Bash(npx agent-browser:*), Read(/tmp/*)

Workflow steps

8 steps, taken from the step headings in SKILL.md.

  1. THE 10-SECOND GUT CHECK (Weight: Critical)
  2. WORK IS THE HERO / VISUALS OVER TEXT (Weight: High)
  3. RUTHLESS CURATION (Weight: High)
  4. STORYTELLING & FRAMING (Weight: Medium)
  5. AMBITION & SCOPE OF WORK (Weight: High)
  6. SOUL & UNIQUENESS (Weight: Medium)
  7. PORTFOLIO AS PRODUCT (Weight: Medium)
  8. SIGNALS OF A BUILDER (Weight: Medium)

What it can do on your machine

Read from SKILL.md and the folder at commit 0bb507b. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Bash(npx agent-browser:*)
    • Read(/tmp/*)

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • npx
    • node

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use npx, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Portfolio Audit loads about 5.3k tokens when it runs. Until then it costs about 36 tokens; SKILL.md has 2,942 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~36
When it runs · the whole SKILL.md, loaded when a task matches
~5.3k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Without a licence we can't republish the file, so here is its outline and opening line. It has 2,942 words (~5,270 tokens).

“IMPORTANT GUIDELINE: Visual craft is valued over process and projects.”

— opening of SKILL.md by hey-stefan
name
portfolio-audit
allowed-tools
Bash(npx agent-browser:*), Read(/tmp/*)
effort
high

Read the full SKILL.md on GitHub

Files

SKILL.md and 3 other files in the repository root of hey-stefan/portfolio-audit.

  • SKILL.md
  • .claude/settings.local.json
  • .gitignore
  • README.md

Open the folder on GitHubat commit 0bb507b

Compare with similar skills

Portfolio Audit next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Portfolio Audit compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Portfolio Audit this skillhey-stefan/portfolio-audit141—~5.3kAutomated safety check: PassNone
Agent Browserquran/quran.com-frontend-next1.9k40 repos~3.3kAutomated safety check: PassNone
Dependency Watchtelegramdesktop/tdesktop33k1 repos~2.2kAutomated safety check: PassGPL-3.0
Perform Tasktelegramdesktop/tdesktop33k2 repos~3kAutomated safety check: PassGPL-3.0
Brave Searchbadlogic/pi-skills2.6k5 repos~592Automated safety check: PassMIT
Garden Inboxpaperclipai/paperclip100k—~1.1kAutomated safety check: PassMIT

Similar skills

  • Agent Browser

    quran/quran.com-frontend-next

    Automates browser interactions for web testing, form filling, screenshots, and data extraction.

    1.9k GitHub starsUsed in 40 repos~3.3k tokens
    Productivity & AutomationAuto-check passed
  • Dependency Watch

    telegramdesktop/tdesktop

    Audit Telegram Desktop dependencies on freshly fetched origin/dev for releases and security fixes, including upstream lag and backport candidates in patched forks.

    33k GitHub starsUsed in 1 repo~2.2k tokens
    Productivity & AutomationAuto-check passed
  • Perform Task

    telegramdesktop/tdesktop

    Resolve, start or resume, implement, review, test, and publish exactly one existing ai-tdesktop task by short slug or full dated id, including rare blocked retries and split-required results.

    33k GitHub starsUsed in 2 repos~3k tokens
    Productivity & AutomationAuto-check passed
  • Brave Search

    badlogic/pi-skills

    Web search and content extraction via Brave Search API. An agent skill from badlogic/pi-skills.

    2.6k GitHub starsUsed in 5 repos~592 tokens
    Productivity & AutomationAuto-check passed
  • Garden Inbox

    paperclipai/paperclip

    Scan a Paperclip user's Mine inbox, classify reversible archive candidates, request checkbox confirmation, and archive only accepted selections.

    100k GitHub stars~1.1k tokensUpdated today
    Productivity & AutomationAuto-check passed
  • Continue

    telegramdesktop/tdesktop

    Continue autonomous Telegram Desktop development from the shared ai-tdesktop repository.

    33k GitHub starsUsed in 2 repos~9.4k tokens
    Productivity & AutomationAuto-check passed

Questions about Portfolio Audit

What does Portfolio Audit do?

Audit a design portfolio website against what top design leaders actually look for when hiring. Portfolio Audit is an agent skill from hey-stefan/portfolio-audit. Audit a design portfolio website against what top design leaders actually look for when hiring.

When should I use Portfolio Audit?

Portfolio Audit fits situations like: productivity & Automation work in your project.

How do I install Portfolio Audit in Claude Code?

Run `npx skills add hey-stefan/portfolio-audit --skill portfolio-audit -a claude-code`. Or copy the skill folder (the hey-stefan/portfolio-audit repository) into .claude/skills/portfolio-audit in your project. Claude Code loads it when a task matches its description.

How do I install Portfolio Audit in Codex?

Run `npx skills add hey-stefan/portfolio-audit --skill portfolio-audit -a codex`. Or copy the skill folder (the hey-stefan/portfolio-audit repository) into .agents/skills/portfolio-audit in your project. Codex loads it when a task matches its description.

Can I use Portfolio Audit in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add hey-stefan/portfolio-audit --skill portfolio-audit -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/portfolio-audit, .gemini/skills/portfolio-audit, .github/skills/portfolio-audit and .opencode/skills/portfolio-audit in your project.

What does Portfolio Audit need to run?

Going by SKILL.md and its folder, Portfolio Audit needs the command-line tools its instructions call (npx and node). Our summary lists: Node.js. Its frontmatter pre-approves these tools: Bash(npx agent-browser:*), Read(/tmp/*).

Does Portfolio Audit access the network?

SKILL.md contains no URLs. Its commands use npx, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Portfolio Audit safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Portfolio Audit use?

No licence was found for Portfolio Audit or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.

How many tokens does Portfolio Audit use?

About 5.3k tokens (SKILL.md is roughly 21k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Portfolio Audit?

Skills that share tags, products or a category with Portfolio Audit: Agent Browser (quran/quran.com-frontend-next, 1.9k stars), Dependency Watch (telegramdesktop/tdesktop, 33k stars), Perform Task (telegramdesktop/tdesktop, 33k stars) and Brave Search (badlogic/pi-skills, 2.6k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Portfolio Audit?

hey-stefan (a GitHub user) maintains it in hey-stefan/portfolio-audit, which has 141 GitHub stars. The repository was last updated on March 23, 2026.

Source: hey-stefan/portfolio-audit on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.