{"id":19463,"plugin_id":"plugins_6a9a0eebb740819188bad9bb99722f27","kind":"skill","collection_source":null,"comparison_source":null,"observed_at":"2026-09-30T23:15:36.085Z","digest":"385b230fdcae8d8df2801e3924cf5a5b50a174c892fd207b0f3324ca641f523c","against":null,"payload":{"name":"dora-evidence-review","description":"Can you produce your ICT third-party evidence today? Runs a local, filename-and-path-only evidence review and reports EVIDENCE OBSERVED / NOT OBSERVED, a deterministic Review Priority with reasons, why each class matters and what to review next. Use when asked about DORA Readiness evidence, readiness, gaps or what to review next in a repository.","included_files":[{"relative_path":"agents/openai.yaml","size_in_bytes":371},{"relative_path":"assets/logo.png","size_in_bytes":4240},{"relative_path":"references/evidence-classes.json","size_in_bytes":7136},{"relative_path":"scripts/review.mjs","size_in_bytes":22386}],"skill_md_contents":"---\nname: dora-evidence-review\ndescription: Can you produce your ICT third-party evidence today? Runs a local, filename-and-path-only evidence review and reports EVIDENCE OBSERVED / NOT OBSERVED, a deterministic Review Priority with reasons, why each class matters and what to review next. Use when asked about DORA Readiness evidence, readiness, gaps or what to review next in a repository.\nlicense: MIT\n---\nUse this skill when a task asks what DORA Readiness evidence exists in a repository or workspace, whether it is ready for a DORA supervisory, audit or customer request, what is missing, or what to review next.\n\n## Run the review\n\nFrom this skill's directory, run the bundled script against the workspace root (it reads file names and paths only, opens no file, makes no network call, writes nothing):\n\n```\nnode scripts/review.mjs <path-to-workspace>\nnode scripts/review.mjs <path-to-workspace> --json\n```\n\nPresent the Markdown output as the result. It contains:\n\n- **Review Priority** (LOW / NORMAL / ELEVATED / HIGH) with the exact reasons. This is deterministic and is not a score, a grade or a verdict.\n- For each evidence class: what was observed (with the workspace-relative path), what was not, why it matters, and what to review next.\n- At most three contextual next actions matched to the result, free tools and guidance first, plus one optional discovery route.\n\n## Rules\n\n1. Report the observed / not-observed lines and the Review Priority exactly as the script produced them. Never rename the levels or convert them into a percentage or a pass/fail.\n2. Filename and path detection shows that a document exists where a reviewer expects it. It does not read the document and cannot judge its quality. Say so when the user asks whether the evidence is \"good enough\".\n3. Missing evidence is neutral. Never describe a workspace as unsafe, non-compliant or failing because a class was not observed. The user's local policy decides what is sufficient.\n4. Never assert that the user, product or organisation is compliant, certified, approved or safe. Use the vocabulary EVIDENCE OBSERVED, EVIDENCE NOT OBSERVED, REVIEW RECOMMENDED, REVIEW REQUIRED and Review Priority.\n5. Offer only the next actions the script selected for this result. The full catalogue is available through the discovery link if the user asks.\n6. If the user wants to act on a next action, open the URL for them; TrustOps handles any setup or checkout. This plugin runs no payment and creates no ECZ-ID truth, entitlement or Resolver proof.\n\n## Regulatory wording\n\nQuote the regulation only as the review text does (article numbers and dates verified against EUR-Lex). Never state that the user is compliant, certified or ready; describe evidence observed, evidence not observed and what to review next.\n\n## The same review in VS Code\n\nThe identical detectors, guidance and Review Priority ship in the free VS Code extension **ECZ-ID DORA Readiness** (https://marketplace.visualstudio.com/items?itemName=ecocitizenz.eczid-dora-readiness or on Open VSX https://open-vsx.org/extension/ecocitizenz/eczid-dora-readiness), which adds a shareable evidence summary and a local JSON + Markdown report.\n"},"changes":[],"summary":"First saved snapshot. No earlier version is available for comparison.","summary_kind":"deterministic","summary_metadata":{}}