# Lean Audit

> Whole-repo audit for over-engineering. Like lean-review, but scans the entire codebase instead of a diff: a ranked list of what to delete, simplify, or replace with stdlib/native equivalents. Use when the user says "audit this codebase", "audit for over-engineering", "what can I delete from this repo", "find bloat", "lean-audit", or "/lean-audit". One-shot report, does not apply fixes.

- Skill: `utk2103/lean-audit` (Agent Skill)
- Install (CLI): `npx skillmds@latest add utk2103/lean-audit`
- Raw SKILL.md: https://api.skillmd.com/api/skills/utk2103/lean-audit/raw
- Safety review: pending
- Works with: Claude Code, Claude.ai, OpenAI Codex
- Category: Security
- License: Apache-2.0
- Author: utk2103 (https://skillmd.com/u/utk2103)
- Updated: 2026-09-17
- Page: https://skillmd.com/skills/utk2103/lean-audit

---


lean-review, repo-wide. Scan the whole tree instead of a diff. Rank findings
biggest cut first.

## Tags

Same as lean-review:

- `delete:` dead code, unused flexibility, speculative feature. Replacement: nothing.
- `stdlib:` hand-rolled thing the standard library ships. Name the function.
- `native:` dependency or code doing what the platform already does. Name the feature.
- `yagni:` abstraction with one implementation, config nobody sets, layer with one caller.
- `shrink:` same logic, fewer lines. Show the shorter form.

## Hunt

Deps the stdlib or platform already ships, single-implementation interfaces,
factories with one product, wrappers that only delegate, files exporting one
thing, dead flags and config, hand-rolled stdlib.

## Output

One line per finding, ranked: `<tag> <what to cut>. <replacement>. [path]`.
End with `net: -<N> lines, -<M> deps possible.` Nothing to cut: `Lean already. Ship.`

## Boundaries

Scope: over-engineering and complexity only. Correctness bugs, security holes,
and performance are explicitly out of scope. Route them to a normal review
pass. Lists findings, applies nothing. One-shot.
"stop lean-audit" or "normal mode" to revert.

