Atlas / Skills / leoyeai / Runbook Generator

Runbook GeneratorSAFE

skills/leoyeai/runbook-generator

๐Ÿง  Curated collection of 1209+ best OpenClaw skills โ€” weekly updated by MyClaw.ai

Verdict
SAFE
Grade
B
Trust score
89 /100
Version
โ€”
Hosts
1 documented
License
MIT
Stars
2,160
01

Overview

๐Ÿง  Curated collection of 1209+ best OpenClaw skills โ€” weekly updated by MyClaw.ai

Read from source at commit 4f3b4a2a472eOBSERVED ยท 2026-10-08
02

Host compatibility

What the documentation claims. We have not run a compatibility test.

HostStatusNotes
openclawmentioned
03

What it tells the agent

The instruction file, verbatim from the audited commit โ€” this is the text the model reads, and the surface the audit's instruction layer examines. Quoted here so you can judge it without cloning anything.

---
name: "runbook-generator"
description: "Runbook Generator"
---

# Runbook Generator

**Tier:** POWERFUL  
**Category:** Engineering  
**Domain:** DevOps / Site Reliability Engineering  

---

## Overview

Analyze a codebase and generate production-grade operational runbooks. Detects your stack (CI/CD, database, hosting, containers), then produces step-by-step runbooks with copy-paste commands, verification checks, rollback procedures, escalation paths, and time estimates. Keeps runbooks fresh with staleness detection linked to config file modification dates.

---

## Core Capabilities

- **Stack detection** โ€” auto-identify CI/CD, database, hosting, orchestration from repo files
- **Runbook types** โ€” deployment, incident response, database maintenance, scaling, monitoring setup
- **Format discipline** โ€” numbered steps, copy-paste commands, โœ… verification checks, time estimates
- **Escalation paths** โ€” L1 โ†’ L2 โ†’ L3 with contact info and decision criteria
- **Rollback procedures** โ€” every deployment step has a corresponding undo
- **Staleness detection** โ€” runbook sections reference config files; flag when source changes
- **Testing methodology** โ€” dry-run framework for staging validation, quarterly review cadence

---

## When to Use

Use when:
- A codebase has no runbooks and you need to bootstrap them fast
- Existing runbooks are outdated or incomplete (point at the repo, regenerate)
- Onboarding a new engineer who needs clear operational procedures
- Preparing for an incident response drill or audit
- Setting up monitoring and on-call rotation from scratch

Skip when:
- The system is too early-stage to have stable operational patterns
- Runbooks already exist and only need minor updates (edit directly)

---

## Stack Detection

When given a repo, scan for these signals before writing a single runbook line:

```bash
# CI/CD
ls .github/workflows/     โ†’ GitHub Actions
ls .gitlab-ci.yml         โ†’ GitLab CI
ls Jenkinsfile            โ†’ Jenkins
ls .circleci/             โ†’ CircleCI
ls bitbucket-pipelines.yml โ†’ Bitbucket Pipelines

# Database
grep -r "postgresql\|postgres\|pg" package.json pyproject.toml โ†’ PostgreSQL
grep -r "mysql\|mariadb"           package.json               โ†’ MySQL
grep -r "mongodb\|mongoose"        package.json               โ†’ MongoDB
grep -r "redis"                    package.json               โ†’ Redis
ls prisma/schema.prisma            โ†’ Prisma ORM (check provider field)
ls drizzle.config.*                โ†’ Drizzle ORM

# Hosting
ls vercel.json                     โ†’ Vercel
ls railway.toml                    โ†’ Railway
ls fly.toml                        โ†’ Fly.io
ls .ebextensions/                  โ†’ AWS Elastic Beanstalk
ls terraform/  ls *.tf             โ†’ Custom AWS/GCP/Azure (check provider)
ls kubernetes/ ls k8s/             โ†’ Kubernetes
ls docker-compose.yml              โ†’ Docker Compose

# Framework
ls next.config.*                   โ†’ Next.js
ls nuxt.config.*                   โ†’ Nuxt
ls svelte.config.*                 โ†’ SvelteKit
cat package.json | jq '.scripts'   โ†’ Check build/start commands
```

Map detected stack โ†’ runbook templates. A Next.js + PostgreSQL + Vercel + GitHub Actions repo needs:
- Deployment runbook (Vercel + GitHub Actions)
- Database runbook (PostgreSQL backup, migration, vacuum)
- Incident response (with Vercel logs + pg query debugging)
- Monitoring setup (Vercel Analytics, pg_stat, alerting)

---

## Runbook Types

### 1. Deployment Runbook

```markdown
# Deployment Runbook โ€” [App Name]
**Stack:** Next.js 14 + PostgreSQL 15 + Vercel  
**Last verified:** 2025-03-01  
**Source configs:** vercel.json (modified: git log -1 --format=%ci -- vercel.json)  
**Owner:** Platform Team  
**Est. total time:** 15โ€“25 min  

---

## Pre-deployment Checklist
- [ ] All PRs merged to main
- [ ] CI passing on main (GitHub Actions green)
- [ ] Database migrations tested in staging
- [ ] Rollback plan confirmed

## Steps

### Step 1 โ€” Run CI checks locally (3 min)
```bash
pnpm test
pnpm lint
pnpm build
```
โœ… Expected: All pass with 0 errors. Build output in `.next/`

### Step 2 โ€” Apply database migrations (5 min)
```bash
# Staging first
DATABASE_URL=$STAGING_DATABASE_URL npx prisma migrate deploy
```
โœ… Expected: `All migrations have been successfully applied.`

```bash
# Verify migration applied
psql $STAGING_DATABASE_URL -c "\d" | grep -i migration
```
โœ… Expected: Migration table shows new entry with today's date

### Step 3 โ€” Deploy to production (5 min)
```bash
git push origin main
# OR trigger manually:
vercel --prod
```
โœ… Expected: Vercel dashboard shows deployment in progress. URL format:
`https://app-name-<hash>-team.vercel.app`

### Step 4 โ€” Smoke test production (5 min)
```bash
# Health check
curl -sf https://your-app.vercel.app/api/health | jq .

# Critical path
curl -sf https://your-app.vercel.app/api/users/me \
  -H "Authorization: Bearer $TEST_TOKEN" | jq '.id'
```
โœ… Expected: health returns `{"status":"ok","db":"connected"}`. Users API returns valid ID.

### Step 5 โ€” Monitor for 10 min
- Check Vercel Functions log for errors: `vercel logs --since=10m`
- Check error rate in Vercel Analytics: < 1% 5xx
- Check DB connection pool: `SELECT count(*) FROM pg_stat_activity;` (< 80% of max_connections)

---

## Rollback

If smoke tests fail or error rate spikes:

```bash
# Instant rollback via Vercel (preferred โ€” < 30 sec)
vercel rollback [previous-deployment-url]

# Database rollback (only if migration was applied)
DATABASE_URL=$PROD_DATABASE_URL npx prisma migrate reset --skip-seed
# WARNING: This resets to previous migration. Confirm data impact first.
```

โœ… Expected after rollback: Previous deployment URL becomes active. Verify with smoke test.

---

## Escalation
- **L1 (on-call engineer):** Check Vercel logs, run smoke tests, attempt rollback
- **L2 (platform lead):** DB issues, data loss risk, rollback failed โ€” Slack: @platform-lead
- **L3 (CTO):** Production down > 30 min, data breach โ€” PagerDuty: #critical-incidents
```

---

### 2. Incident Respon
04

Trust audit

SAFEgrade B ยท trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.

LayerWhat it checksResult
L0Provenance & inventoryPASS
L1Static analysis of the codeWARN
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
none-observed
Shell
none-observed
Dependencies
pinned
Secrets in source
none-found

Findings (1)

MEDIUMObfuscation / stealth ยท obf.base64_blob ยท CWE-506, CWE-94
skills/compdf-conversion-cli/scripts/license.xml:9
<key>k5Ey9KFlkqpj+SDkUw+5ED9lTA3En/qUi0zdrydUCH3kMWTE3Eh65NXnFCaxlY2omY2JHnlEoK7Li7oOEvM7eG5VPdcO/sFlMfoCRdnLYdepJ+uLzYwOWR8W4yQVve/clxVFTVRL4DFleKInGdpAxIbHZT2yi4ADAMENls1N1XSLojRuqXePXDeAT/4Mv4TTx0s

Gates applied: no_behavioural_pass.

Audited 2026-10-08 ยท audit v0.4.1 ยท source sha 4f3b4a2a472efull audit observations/trust-audit/skill/leoyeai__runbook-generator.json ยท Report an issue / request a re-scan
05

Audit history

Every audit this skill has had.

DateSourceVerdictGradeScoreChange
2026-10-084f3b4a2a472eSAFEB89first audit
06

Questions

What does the Runbook Generator skill do?

๐Ÿง  Curated collection of 1209+ best OpenClaw skills โ€” weekly updated by MyClaw.ai

Is Runbook Generator safe to install?

The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean skill reads B.

What can Runbook Generator access on my machine?

The audit observed no filesystem, network or shell use at all in its source.

Which assistants does Runbook Generator work with?

Its documentation mentions openclaw. That is what the text claims, not a compatibility test we ran.

How current is this page?

The grade is for one exact copy of the source (4f3b4a2a472e), read on 2026-10-08. The repository is watched, and a new audit runs when it changes โ€” this is the first audit.

Advertisement