skills-governance
- Repo stars 288
- Author repo ai-collab-playbook
Skills Governance
Purpose
Use the bundled scanner as the source of truth for local skill inventory. Base recommendations on real directories and SKILL.md frontmatter instead of stale catalogs or memory.
When to Use
- The user says they have too many skills and cannot tell what is useful.
- The user wants a Codex-first keep or disable plan.
- The user needs duplicate-name groups across multiple skill roots.
- The user suspects imported plugin packs or mirrored skills are causing confusion.
- The user wants a filesystem-backed inventory before changing skill settings.
How to Run It
Invoke the bundled scan.js from this skill directory.
- Codex-first inventory:
node scan.js --mode codex --format markdown - Cross-agent inventory:
node scan.js --mode all --format markdown - Duplicate review only:
node scan.js --mode all --duplicates-only --format markdown - Machine-readable output:
node scan.js --mode all --format json
Workflow
- Run the scanner in
codexmode first. - If the results still do not explain the user's confusion, rerun in
allmode. - Explain the problem from roots, duplicate groups, and suspicious flags before recommending changes.
- Prefer Codex
[[skills.config]]disable suggestions over editing individualSKILL.mdfiles unless the user explicitly asks for direct file edits. - Separate recommendations into three buckets: keep, disable for now, and archive or external mirror.
- If the user asks to execute changes, list exact target paths and wait for confirmation first.
Output Contract
Report at least:
- scanned roots
- total skills
- enabled and disabled counts
- duplicate-name groups
- suspicious flags such as
plugin-import,system, orbackup-like - a compact per-skill list when needed
Acceptance
A good run:
- completes without external dependencies
- reflects the actual filesystem state
- shows duplicate groups by skill
name - remains stable across repeated runs unless files changed
- Fluxly category
- Security
- Author-declared agents
- No explicit declaration found; this is not inferred or tested compatibility
- Static check
- 88 / 100 · heuristic scan, not runtime safety proof
- Author / version / license
- @cnfjlhj · no license declared
- Fluxly token estimate
- Lean
- Fluxly setup estimate
- Guided setup
- External API key
- No requirement detected
- Detected OS requirements
- macOS · Linux · Windows
- Runtime requirements
- Node.js
- Detected file/system behavior
-
- Read-only
- Shell exec
- Detected network behavior
- Local-only
- Install commands
- None (reference only)
Profile is derived at build time from SKILL.md and install vectors. Subject to drift from author intent.
Heads up: 未限定 allowed-tools,默认拥有全部工具权限。
The current SKILL.md does not define a fixed output example. Use the bundled scanner as the source of truth for local skill inventory. Base recommendations on real directories and SKILL.md frontmatter instead of stale catalogs or memory.
The user says they have too many skills and cannot tell what is useful. The user wants a Codex-first keep or disable plan. The user needs duplicate-name groups across multiple skill roots.
Invoke the bundled scan.js from this skill directory. Codex-first inventory: node scan.js --mode codex --format markdown Cross-agent inventory: node scan.js --mode all --format markdown
Run the scanner in codex mode first. If the results still do not explain the user's confusion, rerun in all mode. Explain the problem from roots, duplicate groups, and suspicious flags before recommending changes.
Report at least: scanned roots total skills
A good run: completes without external dependencies reflects the actual filesystem state
# Skills Governance
## Purpose
Use the bundled scanner as the source of truth for local skill inventory. Base recommendations on real directories and `SKILL.md` frontmatter instead of stale catalogs or memory.
## When to Use
- The user says they have too many skills and cannot tell what is useful.
- The user wants a Codex-first keep or disable plan.
- The user needs duplicate-name groups across multiple skill roots.
- The user suspects imported plugin packs or mirrored skills are causing confusion.
- The user wants a filesystem-backed inventory before changing skill settings.
## How to Run It
Invoke the bundled `scan.js` from this skill directory.
- Codex-first inventory: `node scan.js --mode codex --format markdown`
- Cross-agent inventory: `node scan.js --mode all --format markdown`
- Duplicate review only: `node scan.js --mode all --duplicates-only --format markdown`
- Machine-readable output: `node scan.js --mode all --format json`
## Workflow
1. Run the scanner in `codex` mode first.
2. If the results still do not explain the user's confusion, rerun in `all` mode.
3. Explain the problem from roots, duplicate groups, and suspicious flags before recommending changes.
4. Prefer Codex `[[skills.config]]` disable suggestions over editing individual `SKILL.md` files unless the user explicitly asks for direct file edits.
5. Separate recommendations into three buckets: keep, disable for now, and archive or external mirror.
6. If the user asks to execute changes, list exact target paths and wait for confirmation first.
## Output Contract
Report at least:
- scanned roots
- total skills
- enabled and disabled counts
- duplicate-name groups
- suspicious flags such as `plugin-import`, `system`, or `backup-like`
- a compact per-skill list when needed
## Acceptance
… Author text anchors workflow facts; Fluxly only indexes current sections, terms, files, and commands.
sections -> Purpose → When to Use → How to Run It → Workflow → Output Contract → Acceptance
terms -> Use the bundled scanner as the source of truth for local skill inventory. · - The user says they have too many skills and cannot tell what is useful. · Invoke the bundled scan.js from this skill directory. · 1. Run the scanner in codex mode first.
files/cmd -> scan.js · node scan.js --mode codex --format markdown · node scan.js --mode all --format markdown · node scan.js --mode all --duplicates-only --format markdown · node scan.js --mode all --format json · all · [[skills.config]] · plugin-import
body sha256 -> 3dfcbea6bd24
Decide Fit First
Design Intent
How To Use It
Boundaries And Review