hone:naming-specificity-audit

hone:naming-specificity-audit is a skill for Claude Code from ckorhonen/hone-skills. It costs 70 tokens per session (1,139 once invoked), scanned A, original, MIT.

A code review that finds vague names on classes, modules, functions, and exported symbols.

In plain words
What is it for?
Use it for weekly checks, after refactoring, or when a module is difficult to understand. It suggests more specific names based on the code’s purpose.
Why use it?
Names such as Manager, Helper, Service, or Utils can hide what code actually does and make a project harder to navigate.

Skill for Claude Code

Written for Claude Code: shipped in a Claude Code plugin.

Part of the hone-skills plugin — 8 skills shipped together

Good fit Use it for weekly checks, after refactoring, or when a module is difficult to understand. It suggests more specific names based on the code’s purpose.

Compare 6 skills from other repositories ↓
Install with agentmods
npx agentmods add skills/ckorhonen/hone-skills/naming-specificity-audit
Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

Any agent
npx skills add ckorhonen/hone-skills --skill naming-specificity-audit
Clone the repo
git clone --depth 1 https://github.com/ckorhonen/hone-skills

Made for: Claude Code.

Or install hone-skills, the plugin that ships this one along with the rest of its 8 skills.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for hone:naming-specificity-audit

README.md
[![agentmods](https://agentmods.dev/badge/skills/ckorhonen/hone-skills/naming-specificity-audit/github.svg)](https://agentmods.dev/skills/ckorhonen/hone-skills/naming-specificity-audit)
Your own site
<a href="https://agentmods.dev/skills/ckorhonen/hone-skills/naming-specificity-audit"><img src="https://agentmods.dev/badge/skills/ckorhonen/hone-skills/naming-specificity-audit/github.svg" alt="Measured on agentmods" height="20"></a>

Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.

agentmods 80×15 button for hone:naming-specificity-audit

Your own site · 80×15
<a href="https://agentmods.dev/skills/ckorhonen/hone-skills/naming-specificity-audit"><img src="https://agentmods.dev/badge/skills/ckorhonen/hone-skills/naming-specificity-audit.svg" alt="Reviewed on agentmods" width="80" height="20"></a>
Per session 70 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 1,139 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00070 $0.01139
Opus 5 $0.00035 $0.00570
Sonnet 5 $0.00014 $0.00228
Haiku 4.5 $0.00007 $0.00114

Measured 11d ago against content hash 0c9aadfde621, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-11, from the pricing page.

Security

Grade A, and why

hone:naming-specificity-audit scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 11d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

skills/naming-specificity-audit/SKILL.md · 120 lines

How it starts

The opening of the file, as written. The whole thing — 120 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Naming Specificity Audit

What This Skill Does

Scans classes, modules, functions, and exported symbols for names that use vague generic suffixes or prefixes. These names hide intent and make codebases harder to navigate. The skill identifies each vague name, analyzes what the code actually does, and suggests a more specific alternative.

Target patterns include but are not limited to: Manager, Handler, Processor, Helper, Utils, Utility, Service, Base, Common, Misc, Impl, Core, Engine, Wrapper, Controller (when used generically outside MVC frameworks).

When To Use

  • Weekly scheduled audit of the full codebase.
  • When reviewing a module that feels hard to navigate or understand.
  • After a large refactor to catch names that no longer reflect the code's purpose.

Do Not Use

  • For local variable or parameter naming (too noisy, too subjective).
  • For enforcing a specific naming convention or casing style (use a linter).
  • For dead code detection (use the broken-windows-hunt skill).

Inputs To Confirm

  1. Scope -- which directories or file patterns to scan (default: entire repo, excluding vendored/generated code).
  2. Framework context -- whether the project uses MVC or similar frameworks where Controller and Service are idiomatic (default: auto-detect from project structure).
  3. Severity threshold -- whether to report all findings or only high-confidence ones (default: all).

Instructions

  1. Identify the repository root and enumerate source files, excluding vendored directories, generated files, and binary assets.
  2. Detect the project's framework conventions by checking for known framework markers (e.g., Rails, Django, Spring, Express, Next.js). If a framework uses Controller or Service idiomatically, do not flag those patterns in framework-conventional locations.
  3. For each source file, extract declarations of:
    • Classes and structs.
    • Modules and namespaces.
    • Top-level and exported functions.
    • Significant type aliases and interfaces.
  4. Check each name against the vague-name pattern list. A name is flagged if it:
    • Ends with a vague suffix (UserManager, DataHandler).
    • Consists entirely of a vague word (Utils, Helpers, Common).
    • Uses a vague prefix with no specificity (BaseProcessor).
  5. For each flagged name, analyze the implementation to determine what the code actually does:
    • Read the class/function body to identify its primary responsibility.
    • Check method names and call patterns for clues.
    • Note if the entity has a single clear responsibility or is doing too many things (which may indicate a design issue beyond naming).
  6. Suggest a more specific name based on the actual behavior:
    • UserManager that only fetches users -> UserRepository or UserFetcher.
    • DataProcessor that validates input -> InputValidator.
    • StringUtils with only formatting methods -> StringFormatter.
  7. Record each finding with:
    • File path and line number of the declaration.
    • Current name.
    • What the code actually does (one sentence).
    • Suggested replacement name.
    • Confidence: high (clear single responsibility, obvious better name), medium (reasonable suggestion, may need team input), or low (entity does too many things; renaming alone will not help).
  8. Group findings by severity and produce the output report.

Read the full file on GitHub · 120 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 11d ago First seen · 120 lines · 70 tokens per session scan A 0c9aadfde621

Subscribe to this mod's changes

hone:naming-specificity-audit is a skill published in the GitHub repository ckorhonen/hone-skills (0 stars, last pushed 4mo ago), licensed MIT. It adds 70 tokens to every session and 1,139 once invoked, about $0.0003 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.