# agentsmd-audit Audit a target repo's AGENTS.md file(s) for embedded secrets, structural completeness, and drift. ## What it does Runs a single combined pass across every AGENTS.md file in a repo (root and any nested monorepo files): flags embedded secrets/credentials, checks structure against the agents.md common-sections checklist, and resolves referenced commands/paths against the actual repo to catch stale documentation. Outputs a compact findings report — findings only, grouped by dimension, each with Why and Fix. Never inspects provider-specific adapter files (CLAUDE.md, etc.) and never writes or fixes anything. ## Usage ``` /agentsmd-audit ``` Provide the path to the repo root to audit when invoking. ## Files | File | Purpose | |------|---------| | `SKILL.md` | Skill instructions for agents | | `scripts/validate-secrets.sh` | Scans AGENTS.md files for embedded secrets, API keys, tokens, connection strings | | `scripts/validate-structure.sh` | Checks for empty/placeholder content, common-sections checklist, nested-vs-root duplication | | `scripts/validate-drift.sh` | Resolves referenced npm/make commands and file paths against the repo | | `references/sources.md` | Provenance record — sources that informed this skill and which files each contributed to | | `tests/validate-secrets.bats` | Bats test suite for `scripts/validate-secrets.sh` | | `tests/validate-structure.bats` | Bats test suite for `scripts/validate-structure.sh` | | `tests/validate-drift.bats` | Bats test suite for `scripts/validate-drift.sh` |