From vanguard-frontier-agentic
Reviews exported Salesforce metadata for over-customization, unused fields, hardcoded IDs, deprecated types, and security risks in objects, fields, layouts, profiles, permission sets, and sharing rules.
How this skill is triggered — by the user, by Claude, or both
Slash command
/vanguard-frontier-agentic:salesforce-metadata-review-skillThis skill is limited to the following tools:
The summary Claude sees in its skill listing — used to decide when to auto-load this skill
This skill reviews pasted or exported Salesforce metadata for quality,
This skill reviews pasted or exported Salesforce metadata for quality, maintainability, security, and compliance indicators. It flags over-customization, unused fields, hardcoded IDs, and deprecated metadata types, and produces a structured findings report. It does not access live orgs and does not authorize changes.
salesforce-org-assessment-skill.salesforce-permission-model-review-skill.salesforce-flow-automation-review-skill.salesforce-live-change-approval-protocol.Object and field review
Layout review
Profile and permission set review
Sharing rule review
Deprecated metadata types
Hardcoded ID detection
metadata_review_findings:
objects_and_fields:
- finding: [description]
severity: Critical | High | Medium | Low
evidence: [what in the metadata supports this]
recommendation: [brief]
layouts:
- finding: [description]
severity: [tier]
evidence: [...]
recommendation: [...]
profiles_and_permission_sets:
- finding: [description]
severity: [tier]
evidence: [...]
recommendation: [...]
sharing_rules:
- finding: [description]
severity: [tier]
evidence: [...]
recommendation: [...]
deprecated_metadata_types:
- type: [name]
usage: [where found]
migration_path: [recommended replacement]
hardcoded_ids:
- location: [metadata element]
pattern: [describe pattern, do not repeat the ID value]
recommendation: [use Custom Metadata, Custom Setting, or label instead]
summary:
total_findings: [count]
critical_count: [count]
high_count: [count]
escalation_gates_fired: [from salesforce-risk-taxonomy, or "none"]
assumptions: [list]
missing_evidence: [what would improve the review]
npx claudepluginhub raishin/vanguard-frontier-agentic --plugin vanguard-frontier-agenticFetches Salesforce metadata (objects, fields, flows, validation rules, profiles, Apex, LWC) live from a connected T1 org without ModifyMetadata. Routes sanitized output to downstream review skills.
Runs Salesforce Code Analyzer to scan Apex, LWC, and JS code for security, performance, style, and duplicate violations. Supports all engines (PMD, ESLint, CPD, RetireJS, Flow, SFGE, ApexGuru) and targets including git diff.
Identifies Salesforce pitfalls like SOQL N+1 queries, governor limit violations, API overuse, and SOQL injection during code reviews, onboarding, and integration audits.