spec-driven-workflow — security grade SAFE, quality 70/100

Security audit verdict: SAFE · quality 70/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by liatrio-labs · Agent Tool · ★ 93

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is spec-driven-workflow safe to install? View the security audit →

About spec-driven-workflow

🧭 Spec-Driven Development Workflow Build predictable software with a repeatable AI-guided workflow. A skill-first spec-driven development workflow for collaborating with AI agents to deliver reliable outcomes. Overview This repository provides a primary agent skill plus structured prompt files that guide AI assistants through a complete software development workflow: Define intent: generate a reviewed spec with clear demo criteria Plan: break work into demoable tasks and subtasks, then run a planning audit gate Execute: implement with checkpoints and proof artifacts Validate: verify implementation against the

ai-agentsai-assisted-developmentai-coding-assistantclaude-codecontext-engineeringcursordevelopment-workflowmarkdownprompt-engineeringprompts

Quick Facts

Stars93
Forks10
LanguagePython
CategoryAgent Tool
LicenseApache-2.0
Quality Score69.5911589490817/100
Open Issues15
Last Updated2026-09-10
Created2025-10-02
Platformsclaude-code, python
Est. Tokens~17k

spec-driven-workflow alternative? Top 6 similar tools

Looking for a spec-driven-workflow alternative? If you're comparing spec-driven-workflow with other agent tool tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • vibe-log-cli by vibe-log · ⭐ 340

    A CLI tool for logging and analyzing Claude Code and Cursor ai-driven coding session.

  • agent-skills by jdrhyne · ⭐ 241

    A collection of AI agent skills for Clawdbot, Claude Code, Codex

  • awesome-ai-agent-skills by seb1n · ⭐ 149

    103 ready-to-use AI agent skills for Claude Code, OpenAI Codex, Gemini CLI, Cursor, GitHub Copilot, Windsurf,

  • bulletproof by artemiimillier · ⭐ 148

    Turns AI agents from chaotic code generators into disciplined engineers. 12-stage workflow from research to pr

  • ZeroSpec by corey924 · ⭐ 63

    ZeroSpec is a zero-dependency Markdown framework that helps AI agents understand your repository structure, ru

  • ox by sageox · ⭐ 59

    The hivemind for AI coding agents — persistent team context recorded once and recalled across agents, machines

More Agent Tool Tools

Explore other popular agent tool tools:

View all Agent Tool tools →

Popular Python Agent Tools

Frequently Asked Questions

What is spec-driven-workflow?

spec-driven-workflow is Lightweight markdown-based workflow for collaborating with AI coding assistants using spec-driven development methodology. It is categorized as a Agent Tool with 93 GitHub stars.

What programming language is spec-driven-workflow written in?

spec-driven-workflow is primarily written in Python. It covers topics such as ai-agents, ai-assisted-development, ai-coding-assistant.

How do I install or use spec-driven-workflow?

You can find installation instructions and usage details in the spec-driven-workflow GitHub repository at github.com/liatrio-labs/spec-driven-workflow. The project has 93 stars and 10 forks, indicating an active community.

What license does spec-driven-workflow use?

spec-driven-workflow is released under the Apache-2.0 license, making it free to use and modify according to the license terms.

What are the best alternatives to spec-driven-workflow?

The top alternatives to spec-driven-workflow on Agent Skills Hub include vibe-log-cli, agent-skills, awesome-ai-agent-skills. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse Agent Tool tools