Token导航 LogoToken导航TokenDH.com
开发执行命令github未标认证来源可访问clear审计提醒

tech-stack-evaluator技术堆栈评估器

Agent Skill

tech-stack-evaluator 用于处理 GitHub 仓库、Issue、Pull Request 和代码协作信息,适合在 Codex、Claude、Cursor、Gemini CLI 中需要围绕仓库状态、代码变更或协作事项进行整理时使用。可结合来源仓库、安装命令和原始 README 继续核验具体用法。安装前建议确认权限范围、维护状态,以及是否会触发联网、命令执行或文件读写。

总安装

706

周安装

30

GitHub Stars

737

下载量

247
CodexClaudeCursorGemini CLI

安装说明

本站只整理中文说明和来源信息,不托管安装包,也不代用户安装。

GitHub

来源数

3

许可证

MIT

最后核验

2026-05-01

来源状态

来源可访问

安装方式

通过对话安装

复制提示词发给支持本地命令或 Skills 的 AI 助手,先确认命令和权限,再让它执行。

请帮我安装这个 Agent Skill:tech-stack-evaluator(技术堆栈评估器)
来源仓库:https://github.com/alirezarezvani/claude-code-skill-factory
仓库路径:skills/tech-stack-evaluator
安装命令:
npx skills add https://github.com/alirezarezvani/claude-code-skill-factory --skill tech-stack-evaluator
安装前请先检查当前环境是否支持对应 CLI,并向我确认将要执行的命令、安装目录、联网范围和文件读写权限;确认后再执行。

命令行安装

复制命令到本机终端执行。不同来源提供的安装方式可能略有差异;本站展示可直接复制的安装命令,安装前请核对来源页面。

skills.shnpx skills
npx skills add https://github.com/alirezarezvani/claude-code-skill-factory --skill tech-stack-evaluator

简介

用于分析技术栈相关的协作流程和代码变更。

  • 适合跟踪 Issue、PR 和开发活动模式。
  • 可识别技术决策背后的上下文信息。
  • 使用前请确认是否具备 GitHub API 访问权限。
  • 建议结合项目文档验证分析结论。tech-stack-evaluator 属于开发类 Skill,可作为该场景下的辅助能力补充。

SKILL.md

Technology Stack Evaluator

A comprehensive evaluation framework for comparing technologies, frameworks, cloud providers, and complete technology stacks. Provides data-driven recommendations with TCO analysis, security assessment, ecosystem health scoring, and migration path analysis.

Capabilities

This skill provides eight comprehensive evaluation capabilities:

  • Technology Comparison: Head-to-head comparisons of frameworks, languages, and tools (React vs Vue, PostgreSQL vs MongoDB, Node.js vs Python)
  • Stack Evaluation: Assess complete technology stacks for specific use cases (real-time collaboration, API-heavy SaaS, data-intensive platforms)
  • Maturity & Ecosystem Analysis: Evaluate community health, maintenance status, long-term viability, and ecosystem strength
  • Total Cost of Ownership (TCO): Calculate comprehensive costs including licensing, hosting, developer productivity, and scaling
  • Security & Compliance: Analyze vulnerabilities, compliance readiness (GDPR, SOC2, HIPAA), and security posture
  • Migration Path Analysis: Assess migration complexity, risks, timelines, and strategies from legacy to modern stacks
  • Cloud Provider Comparison: Compare AWS vs Azure vs GCP for specific workloads with cost and feature analysis
  • Decision Reports: Generate comprehensive decision matrices with pros/cons, confidence scores, and actionable recommendations

Input Requirements

Flexible Input Formats (Automatic Detection)

The skill automatically detects and processes multiple input formats:

Text/Conversational:

"Compare React vs Vue for building a SaaS dashboard"
"Evaluate technology stack for real-time collaboration platform"
"Should we migrate from MongoDB to PostgreSQL?"

Structured (YAML):

comparison:
  technologies:
    - name: "React"
    - name: "Vue"
  use_case: "SaaS dashboard"
  priorities:
    - "Developer productivity"
    - "Ecosystem maturity"
    - "Performance"

Structured (JSON):

{
  "comparison": {
    "technologies": ["React", "Vue"],
    "use_case": "SaaS dashboard",
    "priorities": ["Developer productivity", "Ecosystem maturity"]
  }
}

URLs for Ecosystem Analysis:

  • GitHub repository URLs (for health scoring)
  • npm package URLs (for download statistics)
  • Technology documentation URLs (for feature extraction)

Analysis Scope Selection

Users can select which analyses to run:

  • Quick Comparison: Basic scoring and comparison (200-300 tokens)
  • Standard Analysis: Scoring + TCO + Security (500-800 tokens)
  • Comprehensive Report: All analyses including migration paths (1200-1500 tokens)
  • Custom: User selects specific sections (modular)

Output Formats

Context-Aware Output

The skill automatically adapts output based on environment:

Claude Desktop (Rich Markdown):

  • Formatted tables with color indicators
  • Expandable sections for detailed analysis
  • Visual decision matrices
  • Charts and graphs (when appropriate)

CLI/Terminal (Terminal-Friendly):

  • Plain text tables with ASCII borders
  • Compact formatting
  • Clear section headers
  • Copy-paste friendly code blocks

Progressive Disclosure Structure

Executive Summary (200-300 tokens):

  • Recommendation summary
  • Top 3 pros and cons
  • Confidence level (High/Medium/Low)
  • Key decision factors

Detailed Breakdown (on-demand):

  • Complete scoring matrices
  • Detailed TCO calculations
  • Full security analysis
  • Migration complexity assessment
  • All supporting data and calculations

Report Sections (User-Selectable)

Users choose which sections to include:

  1. Scoring & Comparison Matrix

- Weighted decision scores - Head-to-head comparison tables - Strengths and weaknesses

  1. Financial Analysis

- TCO breakdown (5-year projection) - ROI analysis - Cost per user/request metrics - Hidden cost identification

  1. Ecosystem Health

- Community size and activity - GitHub stars, npm downloads - Release frequency and maintenance - Issue response times - Viability assessment

  1. Security & Compliance

- Vulnerability count (CVE database) - Security patch frequency - Compliance readiness (GDPR, SOC2, HIPAA) - Security scoring

  1. Migration Analysis (when applicable)

- Migration complexity scoring - Code change estimates - Data migration requirements - Downtime assessment - Risk mitigation strategies

  1. Performance Benchmarks

- Throughput/latency comparisons - Resource usage analysis - Scalability characteristics

How to Use

Basic Invocations

Quick Comparison:

"Compare React vs Vue for our SaaS dashboard project"
"PostgreSQL vs MongoDB for our application"

Stack Evaluation:

"Evaluate technology stack for real-time collaboration platform:
Node.js, WebSockets, Redis, PostgreSQL"

TCO Analysis:

"Calculate total cost of ownership for AWS vs Azure for our workload:
- 50 EC2/VM instances
- 10TB storage
- High bandwidth requirements"

Security Assessment:

"Analyze security posture of our current stack:
Express.js, MongoDB, JWT authentication.
Need SOC2 compliance."

Migration Path:

"Assess migration from Angular.js (1.x) to React.
Application has 50,000 lines of code, 200 components."

Advanced Invocations

Custom Analysis Sections:

"Compare Next.js vs Nuxt.js.
Include: Ecosystem health, TCO, and performance benchmarks.
Skip: Migration analysis, compliance."

Weighted Decision Criteria:

"Compare cloud providers for ML workloads.
Priorities (weighted):
- GPU availability (40%)
- Cost (30%)
- Ecosystem (20%)
- Support (10%)"

Multi-Technology Comparison:

"Compare: React, Vue, Svelte, Angular for enterprise SaaS.
Use case: Large team (20+ developers), complex state management.
Generate comprehensive decision matrix."

Scripts

Core Modules

  • stack_comparator.py: Main comparison engine with weighted scoring algorithms
  • tco_calculator.py: Total Cost of Ownership calculations (licensing, hosting, developer productivity, scaling)
  • ecosystem_analyzer.py: Community health scoring, GitHub/npm metrics, viability assessment
  • security_assessor.py: Vulnerability analysis, compliance readiness, security scoring
  • migration_analyzer.py: Migration complexity scoring, risk assessment, effort estimation
  • format_detector.py: Automatic input format detection (text, YAML, JSON, URLs)
  • report_generator.py: Context-aware report generation with progressive disclosure

Utility Modules

  • data_fetcher.py: Fetch real-time data from GitHub, npm, CVE databases
  • benchmark_processor.py: Process and normalize performance benchmark data
  • confidence_scorer.py: Calculate confidence levels for recommendations

Metrics and Calculations

1. Scoring & Comparison Metrics

Technology Comparison Matrix:

  • Feature completeness (0-100 scale)
  • Learning curve assessment (Easy/Medium/Hard)
  • Developer experience scoring
  • Documentation quality (0-10 scale)
  • Weighted total scores

Decision Scoring Algorithm:

  • User-defined weights for criteria
  • Normalized scoring (0-100)
  • Confidence intervals
  • Sensitivity analysis

2. Financial Calculations

TCO Components:

  • Initial Costs: Licensing, training, migration
  • Operational Costs: Hosting, support, maintenance (monthly/yearly)
  • Scaling Costs: Per-user costs, infrastructure scaling projections
  • Developer Productivity: Time-to-market impact, development speed multipliers
  • Hidden Costs: Technical debt, vendor lock-in risks

ROI Calculations:

  • Cost savings projections (3-year, 5-year)
  • Productivity gains (developer hours saved)
  • Break-even analysis
  • Risk-adjusted returns

Cost Per Metric:

  • Cost per user (monthly/yearly)
  • Cost per API request
  • Cost per GB stored/transferred
  • Cost per compute hour

3. Maturity & Ecosystem Metrics

Health Scoring (0-100 scale):

  • GitHub Metrics: Stars, forks, contributors, commit frequency
  • npm Metrics: Weekly downloads, version stability, dependency count
  • Release Cadence: Regular releases, semantic versioning adherence
  • Issue Management: Response time, resolution rate, open vs closed issues

Community Metrics:

  • Active maintainers count
  • Contributor growth rate
  • Stack Overflow question volume
  • Job market demand (job postings analysis)

Viability Assessment:

  • Corporate backing strength
  • Community sustainability
  • Alternative availability
  • Long-term risk scoring

4. Security & Compliance Metrics

Security Scoring:

  • CVE Count: Known vulnerabilities (last 12 months, last 3 years)
  • Severity Distribution: Critical/High/Medium/Low vulnerability counts
  • Patch Frequency: Average time to patch (days)
  • Security Track Record: Historical security posture

Compliance Readiness:

  • GDPR: Data privacy features, consent management, data portability
  • SOC2: Access controls, encryption, audit logging
  • HIPAA: PHI handling, encryption standards, access controls
  • PCI-DSS: Payment data security (if applicable)

Compliance Scoring (per standard):

  • Ready: 90-100% compliant
  • Mostly Ready: 70-89% (minor gaps)
  • Partial: 50-69% (significant work needed)
  • Not Ready: <50% (major gaps)

5. Migration Analysis Metrics

Complexity Scoring (1-10 scale):

  • Code Changes: Estimated lines of code affected
  • Architecture Impact: Breaking changes, API compatibility
  • Data Migration: Schema changes, data transformation complexity
  • Downtime Requirements: Zero-downtime possible vs planned outage

Effort Estimation:

  • Development hours (by component)
  • Testing hours
  • Training hours
  • Total person-months

Risk Assessment:

  • Technical Risks: API incompatibilities, performance regressions
  • Business Risks: Downtime impact, feature parity gaps
  • Team Risks: Learning curve, skill gaps
  • Mitigation Strategies: Risk-specific recommendations

Migration Phases:

  • Phase 1: Planning and prototyping (timeline, effort)
  • Phase 2: Core migration (timeline, effort)
  • Phase 3: Testing and validation (timeline, effort)
  • Phase 4: Deployment and monitoring (timeline, effort)

6. Performance Benchmark Metrics

Throughput/Latency:

  • Requests per second (RPS)
  • Average response time (ms)
  • P95/P99 latency percentiles
  • Concurrent user capacity

Resource Usage:

  • Memory consumption (MB/GB)
  • CPU utilization (%)
  • Storage requirements
  • Network bandwidth

Scalability Characteristics:

  • Horizontal scaling efficiency
  • Vertical scaling limits
  • Cost per performance unit
  • Scaling inflection points

Best Practices

For Accurate Evaluations

  1. Define Clear Use Case: Specify exact requirements, constraints, and priorities
  2. Provide Complete Context: Team size, existing stack, timeline, budget constraints
  3. Set Realistic Priorities: Use weighted criteria (total = 100%) for multi-factor decisions
  4. Consider Team Skills: Factor in learning curve and existing expertise
  5. Think Long-Term: Evaluate 3-5 year outlook, not just immediate needs

For TCO Analysis

  1. Include All Cost Components: Don't forget training, migration, technical debt
  2. Use Realistic Scaling Projections: Base on actual growth metrics, not wishful thinking
  3. Account for Developer Productivity: Time-to-market and development speed are critical costs
  4. Consider Hidden Costs: Vendor lock-in, exit costs, technical debt accumulation
  5. Validate Assumptions: Document all TCO assumptions for review

For Migration Decisions

  1. Start with Risk Assessment: Identify showstoppers early
  2. Plan Incremental Migration: Avoid big-bang rewrites when possible
  3. Prototype Critical Paths: Test complex migration scenarios before committing
  4. Build Rollback Plans: Always have a fallback strategy
  5. Measure Baseline Performance: Establish current metrics before migration

For Security Evaluation

  1. Check Recent Vulnerabilities: Focus on last 12 months for current security posture
  2. Review Patch Response Time: Fast patching is more important than zero vulnerabilities
  3. Validate Compliance Claims: Vendor claims ≠ actual compliance readiness
  4. Consider Supply Chain: Evaluate security of all dependencies
  5. Test Security Features: Don't assume features work as documented

Limitations

Data Accuracy

  • Ecosystem metrics are point-in-time snapshots (GitHub stars, npm downloads change rapidly)
  • TCO calculations are estimates based on provided assumptions and market rates
  • Benchmark data may not reflect your specific use case or configuration
  • Security vulnerability counts depend on public CVE database completeness

Scope Boundaries

  • Industry-Specific Requirements: Some specialized industries may have unique constraints not covered by standard analysis
  • Emerging Technologies: Very new technologies (<1 year old) may lack sufficient data for accurate assessment
  • Custom/Proprietary Solutions: Cannot evaluate closed-source or internal tools without data
  • Political/Organizational Factors: Cannot account for company politics, vendor relationships, or legacy commitments

Contextual Limitations

  • Team Skill Assessment: Cannot directly evaluate your team's specific skills and learning capacity
  • Existing Architecture: Recommendations assume greenfield unless migration context provided
  • Budget Constraints: TCO analysis provides costs but cannot make budget decisions for you
  • Timeline Pressure: Cannot account for business deadlines and time-to-market urgency

When NOT to Use This Skill

  • Trivial Decisions: Choosing between nearly-identical tools (use team preference)
  • Mandated Solutions: When technology choice is already decided by management/policy
  • Insufficient Context: When you don't know your requirements, priorities, or constraints
  • Real-Time Production Decisions: Use for planning, not emergency production issues
  • Non-Technical Decisions: Business strategy, hiring, organizational issues

Confidence Levels

The skill provides confidence scores with all recommendations:

  • High Confidence (80-100%): Strong data, clear winner, low risk
  • Medium Confidence (50-79%): Good data, trade-offs present, moderate risk
  • Low Confidence (<50%): Limited data, close call, high uncertainty
  • Insufficient Data: Cannot make recommendation without more information

Confidence is based on:

  • Data completeness and recency
  • Consensus across multiple metrics
  • Clarity of use case requirements
  • Industry maturity and standards

适合场景

01

用户想查找某类 Agent Skill 时

02

需要根据任务场景推荐可安装能力包时

03

需要对比不同来源的安装命令和来源信息时

04

需要参考平台分布和安装热度时

能力概览

能力 1

按任务关键词查找相关 Skills

能力 2

展示可复制的安装命令

能力 3

保留来源站点、仓库和原始说明,方便继续核验

能力 4

补充不同宿主或平台的使用分布数据

能力 5

展示第三方安全扫描或审计结果

安装后应在对应宿主中按原始 README 的触发条件使用;具体调用方式请以来源页面和 README 为准。

平台分布

Claude Code

28.55%
按下载量换算71

trae

20.26%
按下载量换算50

OpenCode

18.23%
按下载量换算45

Antigravity

11.34%
按下载量换算28

Gemini CLI

7.21%
按下载量换算18

replit

3.04%
按下载量换算8

安全审计

Gen Agent Trust Hub

通过

Socket

通过

Snyk

可疑

权限和风险

执行命令

安装流程涉及命令执行,可能通过 npx skills add https://github.com/alirezarezvani/claude-code-skill-factory --skill tech-stack-evaluator;npx skills add alirezarezvani/claude-code-skill-factory --skill "tech-stack-evaluator" 联网下载 Skill 或依赖。用户安装前应确认命令来源、仓库内容和执行环境。

安装前确认

本站仅展示第三方公开信息,不托管安装包,不提供自动安装或运行环境。安装前应自行审查源码、依赖和命令行为。来源安全扫描存在 warning/failed 结果,不能写成本站确认安全。

来源信息

继续浏览同类 Skills