bitwarden/workflow-fix
> Apply fixes for workflow linter findings identified by the workflow-audit skill. Applies mechanical fixes automatically, pauses for judgment calls, verifies with a re-lint, and creates draft PRs. Run the workflow-audit skill first to identify findings before using this skill. <example> </example> <example> </example>
npx skills add https://github.com/bitwarden/ai-plugins --skill workflow-fix
gh api GET requests are allowed freely. Any call using -X POST, -X PUT, -X PATCH, or -X DELETE must be shown to the user and approved before execution..github/. Do not touch application code, scripts, or configuration outside of workflow files.Check if bwwl is available:
bwwl --version
If the command is not found, stop and inform the user that bwwl must be installed before continuing. Do not attempt to install it.
Parse the user's request to determine what to fix:
<base-dir>/<repo>. If a clone is not found, inform the user and skip that repo..github/workflows/ of the current directory.If the user has not run the workflow-audit skill first, run the linter now to identify findings before proceeding.
Repeat Steps 4–7 for each repo. Announce which repo is being worked on.
Only create the fix branch if there are findings to fix:
git checkout -b fix/workflow-linter-findings
Consult the bitwarden-workflow-linter-rules skill for the correct fix for each rule.
For mechanical findings: Apply all fixes without prompting.
Exception — step_pinned: Before applying each hash pin, follow the step_pinned fix procedure from the bitwarden-workflow-linter-rules skill (resolve SHA via gh api, show verification link, wait for user confirmation).
For judgment findings: For each one, pause and present the finding clearly. Ask the user which option they want (per the bitwarden-workflow-linter-rules skill), then apply their choice.
Re-run the linter to confirm all findings are resolved:
bwwl lint -f .github/workflows/
If errors remain, analyze and fix them. Repeat until clean.
After all fixes are applied:
git diff of all changes made.git add .github/workflows/
git commit -m "Fix workflow linter findings"
git push -u origin fix/workflow-linter-findings
gh pr create \
--title "Fix workflow linter findings" \
--body "Automated fixes for findings from the Bitwarden workflow linter (bwwl)." \
--draft
After processing all repos, output a summary table:
| Repo | Findings Fixed | PRs Created | Skipped / Notes |
| ---- | -------------- | ----------- | --------------- |
| ... | ... | ... | ... |
Take bitwarden/workflow-fix from the repository into ~/.claude/skills for personal
use, or into .claude/skills inside a project.
The agent identifies a skill by the name field in its header. Two skills with the
same name cannot sit side by side — one of them will be ignored.