Creator · murphytrueman
Last updated · Sep 6, 2026
Generate a pre-computed component index from a design system codebase — YAML infrastructure files containing a component inventory, relationship graph, and summary statistics that AI agents and MCP servers consume. This produces machine-readable index files in .ai/index/, NOT a h
Creator · murphytrueman
Last updated · Sep 6, 2026
Generate a pre-computed component index from a design system codebase — YAML infrastructure files containing a component inventory, relationship graph, and summary statistics that AI agents and MCP servers consume. This produces machine-readable index files in .ai/index/, NOT a h
Creator · murphytrueman
Last updated · Sep 6, 2026
Generate a pre-computed component index from a design system codebase — YAML infrastructure files containing a component inventory, relationship graph, and summary statistics that AI agents and MCP servers consume. This produces machine-readable index files in .ai/index/, NOT a h
Creator · murphytrueman
Last updated · Sep 6, 2026
Generate a pre-computed component index from a design system codebase — YAML infrastructure files containing a component inventory, relationship graph, and summary statistics that AI agents and MCP servers consume. This produces machine-readable index files in .ai/index/, NOT a h
Sandbox only
Install targets
Codex install prompt
Install the "codebase-index" agent skill from https://github.com/murphytrueman/design-system-ops/tree/main/skills/codebase-index. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Generate a pre-computed component index from a design system codebase — YAML infrastructure files containing a component inventory, relationship graph, and summary statistics that AI agents and MCP servers consume. This produces machine-readable index files in .ai/index/, NOT a health report or quality assessment. Trigger when someone says: index my codebase, build a relationship graph, create a component map, codebase index, what depends on what, dependency graph, map component relationships, or anything about producing queryable infrastructure files for AI agents or developer tooling. Do NOT trigger for component health assessments, quality scores, or audit reports — use component-audit for those. After the install attempt, report the result to https://www.openagentskill.com/api/agent/outcome with POST JSON {"event_id":"install_<unique-id>","skill_slug":"murphytrueman-codebase-index","task":"Install codebase-index","agent":"codex","outcome":"success","install_used":true}. Replace event_id with a unique value and outcome with success or failed. Report success only after the skill is installed and a minimal verification passes.Supply asset profile
Deep research, source comparison, literature review, RAG, knowledge search, and reports.
Scenario
Document processing
I need my agent to read PDFs, extract tables, and turn documents into structured data.
Agent fit
Claude Code + CLI + Codex
Codex, Claude Code, Cursor, CLI, or custom agents.
Install
Ready
npx skills add murphytrueman/design-system-ops --skill codebase-index
Maintenance
fresh
15d since push
Risk
Needs review
Dependency or permission surface needs review
GitHub quality
176
69/100 Quality · 71/100 Trust
Coverage tags
Review notes
Dependency or permission surface needs review · Permission surface may require sandboxing
Agent adoption scorecard
These scores combine public repository metadata, OpenAgentSkill review signals, maintenance freshness, and install readiness. They are a shortlist signal, not a replacement for human review.
Quality
PromisingUseful candidate, but compare it with alternatives before adopting.
Trust
Sandbox onlyUseful candidate with missing or mixed trust signals. Keep it in an isolated workspace until the outcome loop proves task fit.
Audit
Needs reviewA machine-readable review of install readiness, security metadata, maintenance, and adoption risk.
OpenAgentSkill Trust Score v5
Run only in a sandbox and compare close alternatives before using it for real work.
Stars
176 GitHub stars
Repo activity
176 stars, 7 forks
Maintenance
15d since push
License
MIT
Install
npx skills add murphytrueman/design-system-ops --skill codebase-index
Install safety
Agent-readable metadata
Use this block or the embedded JSON to decide whether an agent should install this skill, choose an alternative, or ask for human review first.
Suited tasks
Suited agents
Install decision
Trust and risk
Outcome loop
Install command
npx skills add murphytrueman/design-system-ops --skill codebase-indexDo not use when
Agent safety v2
This skill should not be selected by an agent without explicit human security review.
Do not auto-install. Inspect the source, dependencies, and permission surface first.
high
Skill metadata references terminal, CLI, shell, subprocess, or command execution workflows.
medium
Skill may drive a browser or interact with web pages.
medium
Skill likely fetches remote pages, APIs, repositories, or external services.
medium
Skill may read or write project files, documents, generated artifacts, or local workspace state.
Agent resolve plan
The Resolve API returns the selected skill, alternatives, safety policy, audit notes, install target, and copy-paste prompt an agent can follow without scraping this page.
Open JSON
/api/agent/resolve?task=Use%20codebase-index%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Resolve text
/api/agent/resolve?task=Use%20codebase-index%20for%20an%20agent%20workflow&agent=codex&max_risk=medium&format=text
Install handoff
/api/skills/murphytrueman-codebase-index/install
Agent should check
Copy prompt
Task: Use codebase-index in this workspace.
Resolve first: https://www.openagentskill.com/api/agent/resolve?task=Use%20codebase-index%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Review install handoff: https://www.openagentskill.com/api/skills/murphytrueman-codebase-index/install
Install command: npx skills add murphytrueman/design-system-ops --skill codebase-index
Before running it, summarize audit warnings, required permissions, and the fallback skill if install is risky.Agent handoff
Use the public install endpoint to fetch the command, safety checklist, target prompts, and canonical links for this skill.
Install handoff
/api/skills/murphytrueman-codebase-index/install
LLM text format
/api/skills/murphytrueman-codebase-index/install?format=text
Find alternatives
/api/skills/search?q=codebase-index&limit=3
Agent prompt
Use codebase-index for this task. Review https://www.openagentskill.com/api/skills/murphytrueman-codebase-index/install, then install with: npx skills add murphytrueman/design-system-ops --skill codebase-indexRegistry metadata
This page exposes the same decision, trust, audit, use-case, and install signals through the Registry API, so agents can rank this skill without scraping the UI.
Manifest
/api/registry/manifest/murphytrueman-codebase-index
LLM text
/api/registry/manifest/murphytrueman-codebase-index?format=text
Install alias
/api/registry/install/murphytrueman-codebase-index
Recommend
/api/registry/recommend?task=Use%20codebase-index%20in%20an%20agent%20workflow&limit=3
Agent fit
Document processing
Use-case tags
Platforms
Claude Code
Audit report
A machine-readable review of install readiness, security metadata, maintenance, and adoption risk.
Agent decision cockpit
Prototype with this skill first; keep a fallback candidate ready.
Role in stack
Fallback candidate
Primary fit
Document processing
Trust label
Prototype first
Install path
Command ready
Use when
Evidence
review first
Implementation path
Trust profile
Useful candidate with missing or mixed trust signals. Keep it in an isolated workspace until the outcome loop proves task fit.
GitHub adoption
INFO176 GitHub stars
Stars/forks activity
CHECK176 stars, 7 forks; issue activity unavailable in current metadata
Recent maintenance
PASS15d since push
License clarity
PASSMIT
Good signals
Review before install
Recommended action
Run only in a sandbox and compare close alternatives before using it for real work.
Quality profile
Useful candidate, but compare it with alternatives before adopting.
Workflow fit
Parse messy files
I need my agent to read PDFs, extract tables, and turn documents into structured data.
Build and ship code
I need a coding agent that can understand a repository, edit code, and review pull requests.
Search private knowledge
I need my agent to build a RAG workflow over documents and retrieve reliable context.
Workflow fit
Design, build, test, and ship interfaces
A practical workflow for agents that turn product briefs or Figma designs into polished frontend code, review the result, test it in a browser, and prepare a safe deployment.
Inspect, patch, and verify code
A workflow for software agents that inspect repositories, review pull requests, generate tests, and turn findings into shippable patches.
Ingest, retrieve, and cite
A workflow for document-heavy agents that ingest files, create searchable knowledge, retrieve relevant context, and answer with grounded sources.
Alternative shortlist
Similar skills that may fit this task.
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
🕵️♂️ Collect a dossier on a person by username from 3000+ sites
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
Infisical is the open-source platform for secrets, certificates, and privileged access management.
--- name: codebase-index description: "Generate a pre-computed component index from a design system codebase — YAML infrastructure files containing a component inventory, relationship graph, and summary statistics that AI agents and MCP servers consume. This produces machine-readable index files in .ai/index/, NOT a health report or quality assessment. Trigger when someone says: index my codebase, build a relationship graph, create a component map, codebase index, what depends on what, dependency graph, map component relationships, or anything about producing queryable infrastructure files for AI agents or developer tooling. Do NOT trigger for component health assessments, quality scores, or audit reports — use component-audit for those." references: - ../../knowledge-notes/ai-readiness.md - ../../knowledge-notes/component-governance.md ---
# Codebase index
A skill for generating a pre-computed, machine-readable index of a design system's codebase. The index contains three pieces: a component inventory, a relationship graph, and summary statistics. Together they form a queryable map that eliminates the need for AI agents or developers to explore the codebase from scratch every time they need to understand the system.
## Context
When an AI agent needs to work with a design system codebase, it has two options: explore or navigate. Exploration means scanning directories, grepping for imports, reading files one by one. Navigation means loading a pre-computed index and reasoning over cached data.
The difference matters. Exploration is slow, incomplete, and non-deterministic. An agent scanning `src/components` might miss components in `src/layouts`, `src/pages`, or utility directories that don't follow naming conventions. It might report a deeply-nested component as "unused" because it can't trace the dependency chain. It might recreate an existing component because it didn't find it.
A pre-computed index front-loads this cost. The agent loads the index once — typically a few thousand tokens — and gets a complete picture of what exists, where things live, and how they relate. Follow-up questions become cheap because the agent reasons over cached data instead of triggering new file reads.
This skill generates that index. Run it after adding or removing components, and commit the output alongside the code.
---
## Configuration
Before producing output, check for a `.ds-ops-config.yml` file in the project root. If present, load: - `system.framework` — pre-selects framework detection (React, Vue, Svelte, Astro, Angular, etc.) - `system.component_paths` — overrides default component directory scanning - `system.category_model` — atomic design, functional, or custom categorisation - `integrations.*` — enables auto-pull for component data - `recurring.*` — enables comparison with previous index
## Auto-pull integrations
If integrations are configured in `.ds-ops-config.yml`, pull data automatically:
**Figma MCP** (`integrations.figma.enabled: true`): - Read the published library from `integrations.figma.file_key` - Cross-reference the Figma component inventory against the code inventory to detect components that exist in design but not in code (or vice versa) - Pull description status per component to populate the metadata coverage field
**Storybook** (`integrations.storybook.enabled: true`): - Fetch the story index from `integrations.storybook.url/index.json` - Extract component list and documentation status - Use as a secondary source for component discovery
**GitHub** (`integrations.github.enabled: true`): - Use `gh api search/code` to count import references across consuming repositories - Pull PR activity for recency signals
If an integration fails, log it and proceed with manual scanning.
---
## Step 1: Detect the framework and structure
Scan the project root to determine: - **Framework**: React (JSX/TSX), Vue (SFC), Svelte, Astro, Angular, Web Components, or mixed - **Component directories**: Where components live — scan common locations: `src/components/`, `src/lib/`, `components/`, `packages/`, and any paths in `tsconfig.json` or framework config - **Category model**: How components are organised — atomic design (`atoms/`, `molecules/`, `organisms/`), functional (`forms/`, `navigation/`, `feedback/`), flat, or monorepo packages - **Styling approach**: CSS modules, CSS-in-JS, Tailwind, SCSS, or design tokens — this determines how to trace token dependencies
Ask for or confirm (skip questions already answered by config or detection): - The component source root if auto-detection finds multiple candidates - Whether there are components in non-standard locations (e.g., a shared `utils/` directory with reusable UI primitives) - Whether to include internal/private components in the index (underscore-prefixed, `internal/` directories, components not re-exported from barrel files)
**Framework detection rules:**
| Signal | Framework | |---|---| | `.jsx` / `.tsx` files with JSX returns | React | | `.vue` files with `<template>` blocks | Vue | | `.svelte` files | Svelte | | `.astro` files | Astro | | `.component.ts` with `@Component` decorator | Angular | | `customElements.define()` | Web Components | | Mixed signals | Ask the user |
## Step 2: Scan and build the component inventory
For every component file found, extract:
- **Name**: The component's exported name - **Path**: Relative path from project root - **Category**: Based on the category model (atom, molecule, organism, etc.) or functional category (navigation, form, feedback, layout, data display) - **Metadata status**: Whether the component has structured metadata (a `.metadata.ts`, `.metadata.json`, description in Storybook, JSDoc/TSDoc block, or Figma description) - **Export type**: Default export, named export, or re-exported through a barrel file
**What counts as a component:** - Files that export a renderable element (JSX, template, render function) - Files explicitly registered in a component index, barrel file, or Storybook config - Exclude: pure utility functions, hooks/composables (unless they return JSX), type definitions, test files, story files
**Category assignment:** - If the directory structure encodes categories (atomic design folders, functional folders), use directory position - If the structure is flat, infer from component characteristics: components with no child components are atoms/primitives, components that compose other system components are compounds, components with significant built-in logic or product-specific context are features - If uncertain, assign `uncategorised` and flag for manual review
### Inventory format
Produce the inventory in YAML for readability and token efficiency:
```yaml components: Button: path: src/components/atoms/Button/Button.tsx category: atoms metadata: true Card: path: src/components/molecules/Card/Card.tsx category: molecules metadata: true DataTable: path: src/components/organisms/DataTable/DataTable.tsx category: organisms metadata: false ```
## Step 3: Build the relationship graph
For every component in the inventory, trace two relationships:
- **uses**: Which other system components does this component import and render? - **usedBy**: Which other system components import and render this component?
**How to trace relationships:** 1. Parse import statements in each component file 2. Filter to imports that reference other components in the inventory (ignore external package imports, utility imports, type imports) 3. For each import, verify it's actually rendered in the template/JSX (an unused import is not a relationship) 4. Record the relationship bidirectionally — if Card imports Button, then Card `uses` Button and Button `usedBy` Card
**Deep tracing rules:** - Follow dependency chains to their leaves. If a page imports a layout, and the layout imports a nav, and the nav imports a link and an icon — the full chain matters for understanding which atoms actually appear on that page. - Components with `uses: []` (empty) are leaf nodes — they have no internal dependencies on other system components. These are the terminal nodes in the graph. - Components with `usedBy: []` (empty) are root nodes — nothing else in the system depends on them. If they're also not used directly in pages, they're orphan candidates.
**Instance counting:** Import count and instance count are different metrics. A page might import Button once but render it five times. Instance counting requires parsing templates, not just import statements. - Count `<ComponentName` tags in templates/JSX for instance counts - Detect slot/children components: if Button contains a `<slot />` and someone writes `<Button><Icon /></Button>`, the Icon instance belongs to the parent scope, not to Button's internals. Don't recurse into slot content for instance counting.
### Relationship graph format
```yaml relationships: Card: uses: [Text, Button, Icon] usedBy: [ProductCard, UserProfile] Button: uses: [Icon] usedBy: [Card, Form, Nav, Modal, Dialog, Header] Icon: uses: [] usedBy: [Button, Card, Nav, MenuItem, Alert] Tooltip: uses: [] usedBy: [CopyButton] CopyButton: uses: [Tooltip] usedBy: [CodeBlock] ```
This format makes dependency chains explicit. An agent reading this graph knows immediately that Tooltip is actively used (by CopyButton, which is used by CodeBlock) even though no page imports Tooltip directly.
## Step 4: Generate summary statistics
Compute aggregate metrics that give an at-a-glance picture of system health:
```yaml summary: totalComponents: 55 componentsWithMetadata: 54 relationshipsMapped: 302 categories: atoms: 18 molecules: 15 organisms: 12 templates: 4 pages: 6 orphanedComponents: 2 mostDependedOn: - name: Icon fanIn: 14 - name: Button fanIn: 11 - name: Text fanIn: 9 highestFanOut: - name: Header fanOut: 8 - name: ProductCard fanOut: 6 metadataCoverage: 98% averageInstancesPerComponent: 9.6 ```
**Key metrics to compute:** - **totalComponents**: Count of all components in the inventory - **componentsWithMetadata**: Count of components with structured metadata files or descriptions - **relationshipsMapped**: Total number of relationship edges in the graph (sum of all `uses` arrays) - **categories**: Breakdown by category model - **orphanedComponents**: Components with both `uses: []` and `usedBy: []` — these are standalone and may be unused - **mostDependedOn**: Top components by fan-in count (usedBy length). These are foundation components — changes propagate widely - **highestFanOut**: Top components by fan-out count (uses length). These are integration points — fragile to upstream changes - **metadataCoverage**: Percentage of components with structured metadata - **averageInstancesPerComponent**: Total instances across all pages divided by total components (if instance counting was performed)
## Step 5: Produce the index output
Generate three output files to be committed alongside the codebase:
### File 1: `component-inventory.yml` The full component inventory from Step 2.
### File 2: `component-relationships.yml` The full relationship graph from Step 3 plus the summary statistics from Step 4.
### File 3: `query-protocols.md` A markdown file with instructions for how to use the index. This file teaches AI agents (or developers) how to read the map:
```markdown # Query protocols
When answering questions about the design system codebase:
1. Check the index first. Before reading any source file, check whether the answer exists in component-inventory.yml or component-relationships.yml.
2. Never re-read relationship files. If the relationship graph has already been loaded in this session, reason over the cached data.
3. Follow-up questions should be cheap. After the initial index load, subsequent questions should require zero or minimal file reads.
## Common
Source provenance
Decision snapshot
recent repository activity
Audit
Install and adoption review
Agent-proven evidence
Outcome reports after resolve, review, install, and one narrow run.
No agent outcome data yet. The first agent run can report success, setup needs, risk blocks, failure, or not-relevant through /api/agent/outcome.
Install
Free and open source. Review the report before installing into production agents.
Growth loop
Scenario-led draft for codebase-index, ready for a manual X post.
codebase-index: Generate a pre-computed component index from a design system codebase — YAML infrastructure f... 176 stars https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=x
Listing + install path for codebase-index: https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=x Install: npx skills add murphytrueman/design-system-ops --skill codebase-index
Listing source
This listing was indexed from public sources and is not marked official until a maintainer claim is approved.
Attribution links to the public repository or creator profile. Creators can claim the listing to update ownership signals.
Claim this skillOwner claim
This Registry indexed listing is attributed to murphytrueman but is not marked official yet. Claim it to add a verified owner signal and make future launch, install, and audit updates easier to trust.
Creator backlink kit
Show the canonical listing, current trust and audit signals, and real Agent-Proven evidence where developers evaluate the repository.
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=github&utm_source=github&utm_medium=referral&utm_campaign=creator_badge)
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=github&utm_source=github&utm_medium=referral&utm_campaign=creator_badge)
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index/audit)
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=github&utm_source=github&utm_medium=referral&utm_campaign=creator_badge)murphytrueman
@murphytrueman
Share whether this skill looks useful for your agent workflow. Aggregated feedback improves rankings over time.
Sandbox only
Wazuh
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
16.3K StarsMaigret
🕵️♂️ Collect a dossier on a person by username from 3000+ sites
32.9K StarsNuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
29.2K StarsInfisical
Infisical is the open-source platform for secrets, certificates, and privileged access management.
27.4K StarsSandbox only
Install targets
Codex install prompt
Install the "codebase-index" agent skill from https://github.com/murphytrueman/design-system-ops/tree/main/skills/codebase-index. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Generate a pre-computed component index from a design system codebase — YAML infrastructure files containing a component inventory, relationship graph, and summary statistics that AI agents and MCP servers consume. This produces machine-readable index files in .ai/index/, NOT a health report or quality assessment. Trigger when someone says: index my codebase, build a relationship graph, create a component map, codebase index, what depends on what, dependency graph, map component relationships, or anything about producing queryable infrastructure files for AI agents or developer tooling. Do NOT trigger for component health assessments, quality scores, or audit reports — use component-audit for those. After the install attempt, report the result to https://www.openagentskill.com/api/agent/outcome with POST JSON {"event_id":"install_<unique-id>","skill_slug":"murphytrueman-codebase-index","task":"Install codebase-index","agent":"codex","outcome":"success","install_used":true}. Replace event_id with a unique value and outcome with success or failed. Report success only after the skill is installed and a minimal verification passes.Supply asset profile
Deep research, source comparison, literature review, RAG, knowledge search, and reports.
Scenario
Document processing
I need my agent to read PDFs, extract tables, and turn documents into structured data.
Agent fit
Claude Code + CLI + Codex
Codex, Claude Code, Cursor, CLI, or custom agents.
Install
Ready
npx skills add murphytrueman/design-system-ops --skill codebase-index
Maintenance
fresh
15d since push
Risk
Needs review
Dependency or permission surface needs review
GitHub quality
176
69/100 Quality · 71/100 Trust
Coverage tags
Review notes
Dependency or permission surface needs review · Permission surface may require sandboxing
Agent adoption scorecard
These scores combine public repository metadata, OpenAgentSkill review signals, maintenance freshness, and install readiness. They are a shortlist signal, not a replacement for human review.
Quality
PromisingUseful candidate, but compare it with alternatives before adopting.
Trust
Sandbox onlyUseful candidate with missing or mixed trust signals. Keep it in an isolated workspace until the outcome loop proves task fit.
Audit
Needs reviewA machine-readable review of install readiness, security metadata, maintenance, and adoption risk.
OpenAgentSkill Trust Score v5
Run only in a sandbox and compare close alternatives before using it for real work.
Stars
176 GitHub stars
Repo activity
176 stars, 7 forks
Maintenance
15d since push
License
MIT
Install
npx skills add murphytrueman/design-system-ops --skill codebase-index
Install safety
Agent-readable metadata
Use this block or the embedded JSON to decide whether an agent should install this skill, choose an alternative, or ask for human review first.
Suited tasks
Suited agents
Install decision
Trust and risk
Outcome loop
Install command
npx skills add murphytrueman/design-system-ops --skill codebase-indexDo not use when
Agent safety v2
This skill should not be selected by an agent without explicit human security review.
Do not auto-install. Inspect the source, dependencies, and permission surface first.
high
Skill metadata references terminal, CLI, shell, subprocess, or command execution workflows.
medium
Skill may drive a browser or interact with web pages.
medium
Skill likely fetches remote pages, APIs, repositories, or external services.
medium
Skill may read or write project files, documents, generated artifacts, or local workspace state.
Agent resolve plan
The Resolve API returns the selected skill, alternatives, safety policy, audit notes, install target, and copy-paste prompt an agent can follow without scraping this page.
Open JSON
/api/agent/resolve?task=Use%20codebase-index%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Resolve text
/api/agent/resolve?task=Use%20codebase-index%20for%20an%20agent%20workflow&agent=codex&max_risk=medium&format=text
Install handoff
/api/skills/murphytrueman-codebase-index/install
Agent should check
Copy prompt
Task: Use codebase-index in this workspace.
Resolve first: https://www.openagentskill.com/api/agent/resolve?task=Use%20codebase-index%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Review install handoff: https://www.openagentskill.com/api/skills/murphytrueman-codebase-index/install
Install command: npx skills add murphytrueman/design-system-ops --skill codebase-index
Before running it, summarize audit warnings, required permissions, and the fallback skill if install is risky.Agent handoff
Use the public install endpoint to fetch the command, safety checklist, target prompts, and canonical links for this skill.
Install handoff
/api/skills/murphytrueman-codebase-index/install
LLM text format
/api/skills/murphytrueman-codebase-index/install?format=text
Find alternatives
/api/skills/search?q=codebase-index&limit=3
Agent prompt
Use codebase-index for this task. Review https://www.openagentskill.com/api/skills/murphytrueman-codebase-index/install, then install with: npx skills add murphytrueman/design-system-ops --skill codebase-indexRegistry metadata
This page exposes the same decision, trust, audit, use-case, and install signals through the Registry API, so agents can rank this skill without scraping the UI.
Manifest
/api/registry/manifest/murphytrueman-codebase-index
LLM text
/api/registry/manifest/murphytrueman-codebase-index?format=text
Install alias
/api/registry/install/murphytrueman-codebase-index
Recommend
/api/registry/recommend?task=Use%20codebase-index%20in%20an%20agent%20workflow&limit=3
Agent fit
Document processing
Use-case tags
Platforms
Claude Code
Audit report
A machine-readable review of install readiness, security metadata, maintenance, and adoption risk.
Agent decision cockpit
Prototype with this skill first; keep a fallback candidate ready.
Role in stack
Fallback candidate
Primary fit
Document processing
Trust label
Prototype first
Install path
Command ready
Use when
Evidence
review first
Implementation path
Trust profile
Useful candidate with missing or mixed trust signals. Keep it in an isolated workspace until the outcome loop proves task fit.
GitHub adoption
INFO176 GitHub stars
Stars/forks activity
CHECK176 stars, 7 forks; issue activity unavailable in current metadata
Recent maintenance
PASS15d since push
License clarity
PASSMIT
Good signals
Review before install
Recommended action
Run only in a sandbox and compare close alternatives before using it for real work.
Quality profile
Useful candidate, but compare it with alternatives before adopting.
Workflow fit
Parse messy files
I need my agent to read PDFs, extract tables, and turn documents into structured data.
Build and ship code
I need a coding agent that can understand a repository, edit code, and review pull requests.
Search private knowledge
I need my agent to build a RAG workflow over documents and retrieve reliable context.
Workflow fit
Design, build, test, and ship interfaces
A practical workflow for agents that turn product briefs or Figma designs into polished frontend code, review the result, test it in a browser, and prepare a safe deployment.
Inspect, patch, and verify code
A workflow for software agents that inspect repositories, review pull requests, generate tests, and turn findings into shippable patches.
Ingest, retrieve, and cite
A workflow for document-heavy agents that ingest files, create searchable knowledge, retrieve relevant context, and answer with grounded sources.
Alternative shortlist
Similar skills that may fit this task.
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
🕵️♂️ Collect a dossier on a person by username from 3000+ sites
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
Infisical is the open-source platform for secrets, certificates, and privileged access management.
--- name: codebase-index description: "Generate a pre-computed component index from a design system codebase — YAML infrastructure files containing a component inventory, relationship graph, and summary statistics that AI agents and MCP servers consume. This produces machine-readable index files in .ai/index/, NOT a health report or quality assessment. Trigger when someone says: index my codebase, build a relationship graph, create a component map, codebase index, what depends on what, dependency graph, map component relationships, or anything about producing queryable infrastructure files for AI agents or developer tooling. Do NOT trigger for component health assessments, quality scores, or audit reports — use component-audit for those." references: - ../../knowledge-notes/ai-readiness.md - ../../knowledge-notes/component-governance.md ---
# Codebase index
A skill for generating a pre-computed, machine-readable index of a design system's codebase. The index contains three pieces: a component inventory, a relationship graph, and summary statistics. Together they form a queryable map that eliminates the need for AI agents or developers to explore the codebase from scratch every time they need to understand the system.
## Context
When an AI agent needs to work with a design system codebase, it has two options: explore or navigate. Exploration means scanning directories, grepping for imports, reading files one by one. Navigation means loading a pre-computed index and reasoning over cached data.
The difference matters. Exploration is slow, incomplete, and non-deterministic. An agent scanning `src/components` might miss components in `src/layouts`, `src/pages`, or utility directories that don't follow naming conventions. It might report a deeply-nested component as "unused" because it can't trace the dependency chain. It might recreate an existing component because it didn't find it.
A pre-computed index front-loads this cost. The agent loads the index once — typically a few thousand tokens — and gets a complete picture of what exists, where things live, and how they relate. Follow-up questions become cheap because the agent reasons over cached data instead of triggering new file reads.
This skill generates that index. Run it after adding or removing components, and commit the output alongside the code.
---
## Configuration
Before producing output, check for a `.ds-ops-config.yml` file in the project root. If present, load: - `system.framework` — pre-selects framework detection (React, Vue, Svelte, Astro, Angular, etc.) - `system.component_paths` — overrides default component directory scanning - `system.category_model` — atomic design, functional, or custom categorisation - `integrations.*` — enables auto-pull for component data - `recurring.*` — enables comparison with previous index
## Auto-pull integrations
If integrations are configured in `.ds-ops-config.yml`, pull data automatically:
**Figma MCP** (`integrations.figma.enabled: true`): - Read the published library from `integrations.figma.file_key` - Cross-reference the Figma component inventory against the code inventory to detect components that exist in design but not in code (or vice versa) - Pull description status per component to populate the metadata coverage field
**Storybook** (`integrations.storybook.enabled: true`): - Fetch the story index from `integrations.storybook.url/index.json` - Extract component list and documentation status - Use as a secondary source for component discovery
**GitHub** (`integrations.github.enabled: true`): - Use `gh api search/code` to count import references across consuming repositories - Pull PR activity for recency signals
If an integration fails, log it and proceed with manual scanning.
---
## Step 1: Detect the framework and structure
Scan the project root to determine: - **Framework**: React (JSX/TSX), Vue (SFC), Svelte, Astro, Angular, Web Components, or mixed - **Component directories**: Where components live — scan common locations: `src/components/`, `src/lib/`, `components/`, `packages/`, and any paths in `tsconfig.json` or framework config - **Category model**: How components are organised — atomic design (`atoms/`, `molecules/`, `organisms/`), functional (`forms/`, `navigation/`, `feedback/`), flat, or monorepo packages - **Styling approach**: CSS modules, CSS-in-JS, Tailwind, SCSS, or design tokens — this determines how to trace token dependencies
Ask for or confirm (skip questions already answered by config or detection): - The component source root if auto-detection finds multiple candidates - Whether there are components in non-standard locations (e.g., a shared `utils/` directory with reusable UI primitives) - Whether to include internal/private components in the index (underscore-prefixed, `internal/` directories, components not re-exported from barrel files)
**Framework detection rules:**
| Signal | Framework | |---|---| | `.jsx` / `.tsx` files with JSX returns | React | | `.vue` files with `<template>` blocks | Vue | | `.svelte` files | Svelte | | `.astro` files | Astro | | `.component.ts` with `@Component` decorator | Angular | | `customElements.define()` | Web Components | | Mixed signals | Ask the user |
## Step 2: Scan and build the component inventory
For every component file found, extract:
- **Name**: The component's exported name - **Path**: Relative path from project root - **Category**: Based on the category model (atom, molecule, organism, etc.) or functional category (navigation, form, feedback, layout, data display) - **Metadata status**: Whether the component has structured metadata (a `.metadata.ts`, `.metadata.json`, description in Storybook, JSDoc/TSDoc block, or Figma description) - **Export type**: Default export, named export, or re-exported through a barrel file
**What counts as a component:** - Files that export a renderable element (JSX, template, render function) - Files explicitly registered in a component index, barrel file, or Storybook config - Exclude: pure utility functions, hooks/composables (unless they return JSX), type definitions, test files, story files
**Category assignment:** - If the directory structure encodes categories (atomic design folders, functional folders), use directory position - If the structure is flat, infer from component characteristics: components with no child components are atoms/primitives, components that compose other system components are compounds, components with significant built-in logic or product-specific context are features - If uncertain, assign `uncategorised` and flag for manual review
### Inventory format
Produce the inventory in YAML for readability and token efficiency:
```yaml components: Button: path: src/components/atoms/Button/Button.tsx category: atoms metadata: true Card: path: src/components/molecules/Card/Card.tsx category: molecules metadata: true DataTable: path: src/components/organisms/DataTable/DataTable.tsx category: organisms metadata: false ```
## Step 3: Build the relationship graph
For every component in the inventory, trace two relationships:
- **uses**: Which other system components does this component import and render? - **usedBy**: Which other system components import and render this component?
**How to trace relationships:** 1. Parse import statements in each component file 2. Filter to imports that reference other components in the inventory (ignore external package imports, utility imports, type imports) 3. For each import, verify it's actually rendered in the template/JSX (an unused import is not a relationship) 4. Record the relationship bidirectionally — if Card imports Button, then Card `uses` Button and Button `usedBy` Card
**Deep tracing rules:** - Follow dependency chains to their leaves. If a page imports a layout, and the layout imports a nav, and the nav imports a link and an icon — the full chain matters for understanding which atoms actually appear on that page. - Components with `uses: []` (empty) are leaf nodes — they have no internal dependencies on other system components. These are the terminal nodes in the graph. - Components with `usedBy: []` (empty) are root nodes — nothing else in the system depends on them. If they're also not used directly in pages, they're orphan candidates.
**Instance counting:** Import count and instance count are different metrics. A page might import Button once but render it five times. Instance counting requires parsing templates, not just import statements. - Count `<ComponentName` tags in templates/JSX for instance counts - Detect slot/children components: if Button contains a `<slot />` and someone writes `<Button><Icon /></Button>`, the Icon instance belongs to the parent scope, not to Button's internals. Don't recurse into slot content for instance counting.
### Relationship graph format
```yaml relationships: Card: uses: [Text, Button, Icon] usedBy: [ProductCard, UserProfile] Button: uses: [Icon] usedBy: [Card, Form, Nav, Modal, Dialog, Header] Icon: uses: [] usedBy: [Button, Card, Nav, MenuItem, Alert] Tooltip: uses: [] usedBy: [CopyButton] CopyButton: uses: [Tooltip] usedBy: [CodeBlock] ```
This format makes dependency chains explicit. An agent reading this graph knows immediately that Tooltip is actively used (by CopyButton, which is used by CodeBlock) even though no page imports Tooltip directly.
## Step 4: Generate summary statistics
Compute aggregate metrics that give an at-a-glance picture of system health:
```yaml summary: totalComponents: 55 componentsWithMetadata: 54 relationshipsMapped: 302 categories: atoms: 18 molecules: 15 organisms: 12 templates: 4 pages: 6 orphanedComponents: 2 mostDependedOn: - name: Icon fanIn: 14 - name: Button fanIn: 11 - name: Text fanIn: 9 highestFanOut: - name: Header fanOut: 8 - name: ProductCard fanOut: 6 metadataCoverage: 98% averageInstancesPerComponent: 9.6 ```
**Key metrics to compute:** - **totalComponents**: Count of all components in the inventory - **componentsWithMetadata**: Count of components with structured metadata files or descriptions - **relationshipsMapped**: Total number of relationship edges in the graph (sum of all `uses` arrays) - **categories**: Breakdown by category model - **orphanedComponents**: Components with both `uses: []` and `usedBy: []` — these are standalone and may be unused - **mostDependedOn**: Top components by fan-in count (usedBy length). These are foundation components — changes propagate widely - **highestFanOut**: Top components by fan-out count (uses length). These are integration points — fragile to upstream changes - **metadataCoverage**: Percentage of components with structured metadata - **averageInstancesPerComponent**: Total instances across all pages divided by total components (if instance counting was performed)
## Step 5: Produce the index output
Generate three output files to be committed alongside the codebase:
### File 1: `component-inventory.yml` The full component inventory from Step 2.
### File 2: `component-relationships.yml` The full relationship graph from Step 3 plus the summary statistics from Step 4.
### File 3: `query-protocols.md` A markdown file with instructions for how to use the index. This file teaches AI agents (or developers) how to read the map:
```markdown # Query protocols
When answering questions about the design system codebase:
1. Check the index first. Before reading any source file, check whether the answer exists in component-inventory.yml or component-relationships.yml.
2. Never re-read relationship files. If the relationship graph has already been loaded in this session, reason over the cached data.
3. Follow-up questions should be cheap. After the initial index load, subsequent questions should require zero or minimal file reads.
## Common
Source provenance
Decision snapshot
recent repository activity
Audit
Install and adoption review
Agent-proven evidence
Outcome reports after resolve, review, install, and one narrow run.
No agent outcome data yet. The first agent run can report success, setup needs, risk blocks, failure, or not-relevant through /api/agent/outcome.
Install
Free and open source. Review the report before installing into production agents.
Growth loop
Scenario-led draft for codebase-index, ready for a manual X post.
codebase-index: Generate a pre-computed component index from a design system codebase — YAML infrastructure f... 176 stars https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=x
Listing + install path for codebase-index: https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=x Install: npx skills add murphytrueman/design-system-ops --skill codebase-index
Listing source
This listing was indexed from public sources and is not marked official until a maintainer claim is approved.
Attribution links to the public repository or creator profile. Creators can claim the listing to update ownership signals.
Claim this skillOwner claim
This Registry indexed listing is attributed to murphytrueman but is not marked official yet. Claim it to add a verified owner signal and make future launch, install, and audit updates easier to trust.
Creator backlink kit
Show the canonical listing, current trust and audit signals, and real Agent-Proven evidence where developers evaluate the repository.
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=github&utm_source=github&utm_medium=referral&utm_campaign=creator_badge)
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=github&utm_source=github&utm_medium=referral&utm_campaign=creator_badge)
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index/audit)
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=github&utm_source=github&utm_medium=referral&utm_campaign=creator_badge)murphytrueman
@murphytrueman
Share whether this skill looks useful for your agent workflow. Aggregated feedback improves rankings over time.
Sandbox only
Wazuh
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
16.3K StarsMaigret
🕵️♂️ Collect a dossier on a person by username from 3000+ sites
32.9K StarsNuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
29.2K StarsInfisical
Infisical is the open-source platform for secrets, certificates, and privileged access management.
27.4K StarsSandbox only
Install targets
Codex install prompt
Install the "codebase-index" agent skill from https://github.com/murphytrueman/design-system-ops/tree/main/skills/codebase-index. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Generate a pre-computed component index from a design system codebase — YAML infrastructure files containing a component inventory, relationship graph, and summary statistics that AI agents and MCP servers consume. This produces machine-readable index files in .ai/index/, NOT a health report or quality assessment. Trigger when someone says: index my codebase, build a relationship graph, create a component map, codebase index, what depends on what, dependency graph, map component relationships, or anything about producing queryable infrastructure files for AI agents or developer tooling. Do NOT trigger for component health assessments, quality scores, or audit reports — use component-audit for those. After the install attempt, report the result to https://www.openagentskill.com/api/agent/outcome with POST JSON {"event_id":"install_<unique-id>","skill_slug":"murphytrueman-codebase-index","task":"Install codebase-index","agent":"codex","outcome":"success","install_used":true}. Replace event_id with a unique value and outcome with success or failed. Report success only after the skill is installed and a minimal verification passes.Supply asset profile
Deep research, source comparison, literature review, RAG, knowledge search, and reports.
Scenario
Document processing
I need my agent to read PDFs, extract tables, and turn documents into structured data.
Agent fit
Claude Code + CLI + Codex
Codex, Claude Code, Cursor, CLI, or custom agents.
Install
Ready
npx skills add murphytrueman/design-system-ops --skill codebase-index
Maintenance
fresh
15d since push
Risk
Needs review
Dependency or permission surface needs review
GitHub quality
176
69/100 Quality · 71/100 Trust
Coverage tags
Review notes
Dependency or permission surface needs review · Permission surface may require sandboxing
Agent adoption scorecard
These scores combine public repository metadata, OpenAgentSkill review signals, maintenance freshness, and install readiness. They are a shortlist signal, not a replacement for human review.
Quality
PromisingUseful candidate, but compare it with alternatives before adopting.
Trust
Sandbox onlyUseful candidate with missing or mixed trust signals. Keep it in an isolated workspace until the outcome loop proves task fit.
Audit
Needs reviewA machine-readable review of install readiness, security metadata, maintenance, and adoption risk.
OpenAgentSkill Trust Score v5
Run only in a sandbox and compare close alternatives before using it for real work.
Stars
176 GitHub stars
Repo activity
176 stars, 7 forks
Maintenance
15d since push
License
MIT
Install
npx skills add murphytrueman/design-system-ops --skill codebase-index
Install safety
Agent-readable metadata
Use this block or the embedded JSON to decide whether an agent should install this skill, choose an alternative, or ask for human review first.
Suited tasks
Suited agents
Install decision
Trust and risk
Outcome loop
Install command
npx skills add murphytrueman/design-system-ops --skill codebase-indexDo not use when
Agent safety v2
This skill should not be selected by an agent without explicit human security review.
Do not auto-install. Inspect the source, dependencies, and permission surface first.
high
Skill metadata references terminal, CLI, shell, subprocess, or command execution workflows.
medium
Skill may drive a browser or interact with web pages.
medium
Skill likely fetches remote pages, APIs, repositories, or external services.
medium
Skill may read or write project files, documents, generated artifacts, or local workspace state.
Agent resolve plan
The Resolve API returns the selected skill, alternatives, safety policy, audit notes, install target, and copy-paste prompt an agent can follow without scraping this page.
Open JSON
/api/agent/resolve?task=Use%20codebase-index%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Resolve text
/api/agent/resolve?task=Use%20codebase-index%20for%20an%20agent%20workflow&agent=codex&max_risk=medium&format=text
Install handoff
/api/skills/murphytrueman-codebase-index/install
Agent should check
Copy prompt
Task: Use codebase-index in this workspace.
Resolve first: https://www.openagentskill.com/api/agent/resolve?task=Use%20codebase-index%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Review install handoff: https://www.openagentskill.com/api/skills/murphytrueman-codebase-index/install
Install command: npx skills add murphytrueman/design-system-ops --skill codebase-index
Before running it, summarize audit warnings, required permissions, and the fallback skill if install is risky.Agent handoff
Use the public install endpoint to fetch the command, safety checklist, target prompts, and canonical links for this skill.
Install handoff
/api/skills/murphytrueman-codebase-index/install
LLM text format
/api/skills/murphytrueman-codebase-index/install?format=text
Find alternatives
/api/skills/search?q=codebase-index&limit=3
Agent prompt
Use codebase-index for this task. Review https://www.openagentskill.com/api/skills/murphytrueman-codebase-index/install, then install with: npx skills add murphytrueman/design-system-ops --skill codebase-indexRegistry metadata
This page exposes the same decision, trust, audit, use-case, and install signals through the Registry API, so agents can rank this skill without scraping the UI.
Manifest
/api/registry/manifest/murphytrueman-codebase-index
LLM text
/api/registry/manifest/murphytrueman-codebase-index?format=text
Install alias
/api/registry/install/murphytrueman-codebase-index
Recommend
/api/registry/recommend?task=Use%20codebase-index%20in%20an%20agent%20workflow&limit=3
Agent fit
Document processing
Use-case tags
Platforms
Claude Code
Audit report
A machine-readable review of install readiness, security metadata, maintenance, and adoption risk.
Agent decision cockpit
Prototype with this skill first; keep a fallback candidate ready.
Role in stack
Fallback candidate
Primary fit
Document processing
Trust label
Prototype first
Install path
Command ready
Use when
Evidence
review first
Implementation path
Trust profile
Useful candidate with missing or mixed trust signals. Keep it in an isolated workspace until the outcome loop proves task fit.
GitHub adoption
INFO176 GitHub stars
Stars/forks activity
CHECK176 stars, 7 forks; issue activity unavailable in current metadata
Recent maintenance
PASS15d since push
License clarity
PASSMIT
Good signals
Review before install
Recommended action
Run only in a sandbox and compare close alternatives before using it for real work.
Quality profile
Useful candidate, but compare it with alternatives before adopting.
Workflow fit
Parse messy files
I need my agent to read PDFs, extract tables, and turn documents into structured data.
Build and ship code
I need a coding agent that can understand a repository, edit code, and review pull requests.
Search private knowledge
I need my agent to build a RAG workflow over documents and retrieve reliable context.
Workflow fit
Design, build, test, and ship interfaces
A practical workflow for agents that turn product briefs or Figma designs into polished frontend code, review the result, test it in a browser, and prepare a safe deployment.
Inspect, patch, and verify code
A workflow for software agents that inspect repositories, review pull requests, generate tests, and turn findings into shippable patches.
Ingest, retrieve, and cite
A workflow for document-heavy agents that ingest files, create searchable knowledge, retrieve relevant context, and answer with grounded sources.
Alternative shortlist
Similar skills that may fit this task.
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
🕵️♂️ Collect a dossier on a person by username from 3000+ sites
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
Infisical is the open-source platform for secrets, certificates, and privileged access management.
--- name: codebase-index description: "Generate a pre-computed component index from a design system codebase — YAML infrastructure files containing a component inventory, relationship graph, and summary statistics that AI agents and MCP servers consume. This produces machine-readable index files in .ai/index/, NOT a health report or quality assessment. Trigger when someone says: index my codebase, build a relationship graph, create a component map, codebase index, what depends on what, dependency graph, map component relationships, or anything about producing queryable infrastructure files for AI agents or developer tooling. Do NOT trigger for component health assessments, quality scores, or audit reports — use component-audit for those." references: - ../../knowledge-notes/ai-readiness.md - ../../knowledge-notes/component-governance.md ---
# Codebase index
A skill for generating a pre-computed, machine-readable index of a design system's codebase. The index contains three pieces: a component inventory, a relationship graph, and summary statistics. Together they form a queryable map that eliminates the need for AI agents or developers to explore the codebase from scratch every time they need to understand the system.
## Context
When an AI agent needs to work with a design system codebase, it has two options: explore or navigate. Exploration means scanning directories, grepping for imports, reading files one by one. Navigation means loading a pre-computed index and reasoning over cached data.
The difference matters. Exploration is slow, incomplete, and non-deterministic. An agent scanning `src/components` might miss components in `src/layouts`, `src/pages`, or utility directories that don't follow naming conventions. It might report a deeply-nested component as "unused" because it can't trace the dependency chain. It might recreate an existing component because it didn't find it.
A pre-computed index front-loads this cost. The agent loads the index once — typically a few thousand tokens — and gets a complete picture of what exists, where things live, and how they relate. Follow-up questions become cheap because the agent reasons over cached data instead of triggering new file reads.
This skill generates that index. Run it after adding or removing components, and commit the output alongside the code.
---
## Configuration
Before producing output, check for a `.ds-ops-config.yml` file in the project root. If present, load: - `system.framework` — pre-selects framework detection (React, Vue, Svelte, Astro, Angular, etc.) - `system.component_paths` — overrides default component directory scanning - `system.category_model` — atomic design, functional, or custom categorisation - `integrations.*` — enables auto-pull for component data - `recurring.*` — enables comparison with previous index
## Auto-pull integrations
If integrations are configured in `.ds-ops-config.yml`, pull data automatically:
**Figma MCP** (`integrations.figma.enabled: true`): - Read the published library from `integrations.figma.file_key` - Cross-reference the Figma component inventory against the code inventory to detect components that exist in design but not in code (or vice versa) - Pull description status per component to populate the metadata coverage field
**Storybook** (`integrations.storybook.enabled: true`): - Fetch the story index from `integrations.storybook.url/index.json` - Extract component list and documentation status - Use as a secondary source for component discovery
**GitHub** (`integrations.github.enabled: true`): - Use `gh api search/code` to count import references across consuming repositories - Pull PR activity for recency signals
If an integration fails, log it and proceed with manual scanning.
---
## Step 1: Detect the framework and structure
Scan the project root to determine: - **Framework**: React (JSX/TSX), Vue (SFC), Svelte, Astro, Angular, Web Components, or mixed - **Component directories**: Where components live — scan common locations: `src/components/`, `src/lib/`, `components/`, `packages/`, and any paths in `tsconfig.json` or framework config - **Category model**: How components are organised — atomic design (`atoms/`, `molecules/`, `organisms/`), functional (`forms/`, `navigation/`, `feedback/`), flat, or monorepo packages - **Styling approach**: CSS modules, CSS-in-JS, Tailwind, SCSS, or design tokens — this determines how to trace token dependencies
Ask for or confirm (skip questions already answered by config or detection): - The component source root if auto-detection finds multiple candidates - Whether there are components in non-standard locations (e.g., a shared `utils/` directory with reusable UI primitives) - Whether to include internal/private components in the index (underscore-prefixed, `internal/` directories, components not re-exported from barrel files)
**Framework detection rules:**
| Signal | Framework | |---|---| | `.jsx` / `.tsx` files with JSX returns | React | | `.vue` files with `<template>` blocks | Vue | | `.svelte` files | Svelte | | `.astro` files | Astro | | `.component.ts` with `@Component` decorator | Angular | | `customElements.define()` | Web Components | | Mixed signals | Ask the user |
## Step 2: Scan and build the component inventory
For every component file found, extract:
- **Name**: The component's exported name - **Path**: Relative path from project root - **Category**: Based on the category model (atom, molecule, organism, etc.) or functional category (navigation, form, feedback, layout, data display) - **Metadata status**: Whether the component has structured metadata (a `.metadata.ts`, `.metadata.json`, description in Storybook, JSDoc/TSDoc block, or Figma description) - **Export type**: Default export, named export, or re-exported through a barrel file
**What counts as a component:** - Files that export a renderable element (JSX, template, render function) - Files explicitly registered in a component index, barrel file, or Storybook config - Exclude: pure utility functions, hooks/composables (unless they return JSX), type definitions, test files, story files
**Category assignment:** - If the directory structure encodes categories (atomic design folders, functional folders), use directory position - If the structure is flat, infer from component characteristics: components with no child components are atoms/primitives, components that compose other system components are compounds, components with significant built-in logic or product-specific context are features - If uncertain, assign `uncategorised` and flag for manual review
### Inventory format
Produce the inventory in YAML for readability and token efficiency:
```yaml components: Button: path: src/components/atoms/Button/Button.tsx category: atoms metadata: true Card: path: src/components/molecules/Card/Card.tsx category: molecules metadata: true DataTable: path: src/components/organisms/DataTable/DataTable.tsx category: organisms metadata: false ```
## Step 3: Build the relationship graph
For every component in the inventory, trace two relationships:
- **uses**: Which other system components does this component import and render? - **usedBy**: Which other system components import and render this component?
**How to trace relationships:** 1. Parse import statements in each component file 2. Filter to imports that reference other components in the inventory (ignore external package imports, utility imports, type imports) 3. For each import, verify it's actually rendered in the template/JSX (an unused import is not a relationship) 4. Record the relationship bidirectionally — if Card imports Button, then Card `uses` Button and Button `usedBy` Card
**Deep tracing rules:** - Follow dependency chains to their leaves. If a page imports a layout, and the layout imports a nav, and the nav imports a link and an icon — the full chain matters for understanding which atoms actually appear on that page. - Components with `uses: []` (empty) are leaf nodes — they have no internal dependencies on other system components. These are the terminal nodes in the graph. - Components with `usedBy: []` (empty) are root nodes — nothing else in the system depends on them. If they're also not used directly in pages, they're orphan candidates.
**Instance counting:** Import count and instance count are different metrics. A page might import Button once but render it five times. Instance counting requires parsing templates, not just import statements. - Count `<ComponentName` tags in templates/JSX for instance counts - Detect slot/children components: if Button contains a `<slot />` and someone writes `<Button><Icon /></Button>`, the Icon instance belongs to the parent scope, not to Button's internals. Don't recurse into slot content for instance counting.
### Relationship graph format
```yaml relationships: Card: uses: [Text, Button, Icon] usedBy: [ProductCard, UserProfile] Button: uses: [Icon] usedBy: [Card, Form, Nav, Modal, Dialog, Header] Icon: uses: [] usedBy: [Button, Card, Nav, MenuItem, Alert] Tooltip: uses: [] usedBy: [CopyButton] CopyButton: uses: [Tooltip] usedBy: [CodeBlock] ```
This format makes dependency chains explicit. An agent reading this graph knows immediately that Tooltip is actively used (by CopyButton, which is used by CodeBlock) even though no page imports Tooltip directly.
## Step 4: Generate summary statistics
Compute aggregate metrics that give an at-a-glance picture of system health:
```yaml summary: totalComponents: 55 componentsWithMetadata: 54 relationshipsMapped: 302 categories: atoms: 18 molecules: 15 organisms: 12 templates: 4 pages: 6 orphanedComponents: 2 mostDependedOn: - name: Icon fanIn: 14 - name: Button fanIn: 11 - name: Text fanIn: 9 highestFanOut: - name: Header fanOut: 8 - name: ProductCard fanOut: 6 metadataCoverage: 98% averageInstancesPerComponent: 9.6 ```
**Key metrics to compute:** - **totalComponents**: Count of all components in the inventory - **componentsWithMetadata**: Count of components with structured metadata files or descriptions - **relationshipsMapped**: Total number of relationship edges in the graph (sum of all `uses` arrays) - **categories**: Breakdown by category model - **orphanedComponents**: Components with both `uses: []` and `usedBy: []` — these are standalone and may be unused - **mostDependedOn**: Top components by fan-in count (usedBy length). These are foundation components — changes propagate widely - **highestFanOut**: Top components by fan-out count (uses length). These are integration points — fragile to upstream changes - **metadataCoverage**: Percentage of components with structured metadata - **averageInstancesPerComponent**: Total instances across all pages divided by total components (if instance counting was performed)
## Step 5: Produce the index output
Generate three output files to be committed alongside the codebase:
### File 1: `component-inventory.yml` The full component inventory from Step 2.
### File 2: `component-relationships.yml` The full relationship graph from Step 3 plus the summary statistics from Step 4.
### File 3: `query-protocols.md` A markdown file with instructions for how to use the index. This file teaches AI agents (or developers) how to read the map:
```markdown # Query protocols
When answering questions about the design system codebase:
1. Check the index first. Before reading any source file, check whether the answer exists in component-inventory.yml or component-relationships.yml.
2. Never re-read relationship files. If the relationship graph has already been loaded in this session, reason over the cached data.
3. Follow-up questions should be cheap. After the initial index load, subsequent questions should require zero or minimal file reads.
## Common
Source provenance
Decision snapshot
recent repository activity
Audit
Install and adoption review
Agent-proven evidence
Outcome reports after resolve, review, install, and one narrow run.
No agent outcome data yet. The first agent run can report success, setup needs, risk blocks, failure, or not-relevant through /api/agent/outcome.
Install
Free and open source. Review the report before installing into production agents.
Growth loop
Scenario-led draft for codebase-index, ready for a manual X post.
codebase-index: Generate a pre-computed component index from a design system codebase — YAML infrastructure f... 176 stars https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=x
Listing + install path for codebase-index: https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=x Install: npx skills add murphytrueman/design-system-ops --skill codebase-index
Listing source
This listing was indexed from public sources and is not marked official until a maintainer claim is approved.
Attribution links to the public repository or creator profile. Creators can claim the listing to update ownership signals.
Claim this skillOwner claim
This Registry indexed listing is attributed to murphytrueman but is not marked official yet. Claim it to add a verified owner signal and make future launch, install, and audit updates easier to trust.
Creator backlink kit
Show the canonical listing, current trust and audit signals, and real Agent-Proven evidence where developers evaluate the repository.
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=github&utm_source=github&utm_medium=referral&utm_campaign=creator_badge)
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=github&utm_source=github&utm_medium=referral&utm_campaign=creator_badge)
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index/audit)
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=github&utm_source=github&utm_medium=referral&utm_campaign=creator_badge)murphytrueman
@murphytrueman
Share whether this skill looks useful for your agent workflow. Aggregated feedback improves rankings over time.
Sandbox only
Wazuh
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
16.3K StarsMaigret
🕵️♂️ Collect a dossier on a person by username from 3000+ sites
32.9K StarsNuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
29.2K StarsInfisical
Infisical is the open-source platform for secrets, certificates, and privileged access management.
27.4K StarsSandbox only
Install targets
Codex install prompt
Install the "codebase-index" agent skill from https://github.com/murphytrueman/design-system-ops/tree/main/skills/codebase-index. Read its SKILL.md or equivalent instructions first, install only the files needed for this workspace, and summarize any required setup before using it. Skill purpose: Generate a pre-computed component index from a design system codebase — YAML infrastructure files containing a component inventory, relationship graph, and summary statistics that AI agents and MCP servers consume. This produces machine-readable index files in .ai/index/, NOT a health report or quality assessment. Trigger when someone says: index my codebase, build a relationship graph, create a component map, codebase index, what depends on what, dependency graph, map component relationships, or anything about producing queryable infrastructure files for AI agents or developer tooling. Do NOT trigger for component health assessments, quality scores, or audit reports — use component-audit for those. After the install attempt, report the result to https://www.openagentskill.com/api/agent/outcome with POST JSON {"event_id":"install_<unique-id>","skill_slug":"murphytrueman-codebase-index","task":"Install codebase-index","agent":"codex","outcome":"success","install_used":true}. Replace event_id with a unique value and outcome with success or failed. Report success only after the skill is installed and a minimal verification passes.Supply asset profile
Deep research, source comparison, literature review, RAG, knowledge search, and reports.
Scenario
Document processing
I need my agent to read PDFs, extract tables, and turn documents into structured data.
Agent fit
Claude Code + CLI + Codex
Codex, Claude Code, Cursor, CLI, or custom agents.
Install
Ready
npx skills add murphytrueman/design-system-ops --skill codebase-index
Maintenance
fresh
15d since push
Risk
Needs review
Dependency or permission surface needs review
GitHub quality
176
69/100 Quality · 71/100 Trust
Coverage tags
Review notes
Dependency or permission surface needs review · Permission surface may require sandboxing
Agent adoption scorecard
These scores combine public repository metadata, OpenAgentSkill review signals, maintenance freshness, and install readiness. They are a shortlist signal, not a replacement for human review.
Quality
PromisingUseful candidate, but compare it with alternatives before adopting.
Trust
Sandbox onlyUseful candidate with missing or mixed trust signals. Keep it in an isolated workspace until the outcome loop proves task fit.
Audit
Needs reviewA machine-readable review of install readiness, security metadata, maintenance, and adoption risk.
OpenAgentSkill Trust Score v5
Run only in a sandbox and compare close alternatives before using it for real work.
Stars
176 GitHub stars
Repo activity
176 stars, 7 forks
Maintenance
15d since push
License
MIT
Install
npx skills add murphytrueman/design-system-ops --skill codebase-index
Install safety
Agent-readable metadata
Use this block or the embedded JSON to decide whether an agent should install this skill, choose an alternative, or ask for human review first.
Suited tasks
Suited agents
Install decision
Trust and risk
Outcome loop
Install command
npx skills add murphytrueman/design-system-ops --skill codebase-indexDo not use when
Agent safety v2
This skill should not be selected by an agent without explicit human security review.
Do not auto-install. Inspect the source, dependencies, and permission surface first.
high
Skill metadata references terminal, CLI, shell, subprocess, or command execution workflows.
medium
Skill may drive a browser or interact with web pages.
medium
Skill likely fetches remote pages, APIs, repositories, or external services.
medium
Skill may read or write project files, documents, generated artifacts, or local workspace state.
Agent resolve plan
The Resolve API returns the selected skill, alternatives, safety policy, audit notes, install target, and copy-paste prompt an agent can follow without scraping this page.
Open JSON
/api/agent/resolve?task=Use%20codebase-index%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Resolve text
/api/agent/resolve?task=Use%20codebase-index%20for%20an%20agent%20workflow&agent=codex&max_risk=medium&format=text
Install handoff
/api/skills/murphytrueman-codebase-index/install
Agent should check
Copy prompt
Task: Use codebase-index in this workspace.
Resolve first: https://www.openagentskill.com/api/agent/resolve?task=Use%20codebase-index%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Review install handoff: https://www.openagentskill.com/api/skills/murphytrueman-codebase-index/install
Install command: npx skills add murphytrueman/design-system-ops --skill codebase-index
Before running it, summarize audit warnings, required permissions, and the fallback skill if install is risky.Agent handoff
Use the public install endpoint to fetch the command, safety checklist, target prompts, and canonical links for this skill.
Install handoff
/api/skills/murphytrueman-codebase-index/install
LLM text format
/api/skills/murphytrueman-codebase-index/install?format=text
Find alternatives
/api/skills/search?q=codebase-index&limit=3
Agent prompt
Use codebase-index for this task. Review https://www.openagentskill.com/api/skills/murphytrueman-codebase-index/install, then install with: npx skills add murphytrueman/design-system-ops --skill codebase-indexRegistry metadata
This page exposes the same decision, trust, audit, use-case, and install signals through the Registry API, so agents can rank this skill without scraping the UI.
Manifest
/api/registry/manifest/murphytrueman-codebase-index
LLM text
/api/registry/manifest/murphytrueman-codebase-index?format=text
Install alias
/api/registry/install/murphytrueman-codebase-index
Recommend
/api/registry/recommend?task=Use%20codebase-index%20in%20an%20agent%20workflow&limit=3
Agent fit
Document processing
Use-case tags
Platforms
Claude Code
Audit report
A machine-readable review of install readiness, security metadata, maintenance, and adoption risk.
Agent decision cockpit
Prototype with this skill first; keep a fallback candidate ready.
Role in stack
Fallback candidate
Primary fit
Document processing
Trust label
Prototype first
Install path
Command ready
Use when
Evidence
review first
Implementation path
Trust profile
Useful candidate with missing or mixed trust signals. Keep it in an isolated workspace until the outcome loop proves task fit.
GitHub adoption
INFO176 GitHub stars
Stars/forks activity
CHECK176 stars, 7 forks; issue activity unavailable in current metadata
Recent maintenance
PASS15d since push
License clarity
PASSMIT
Good signals
Review before install
Recommended action
Run only in a sandbox and compare close alternatives before using it for real work.
Quality profile
Useful candidate, but compare it with alternatives before adopting.
Workflow fit
Parse messy files
I need my agent to read PDFs, extract tables, and turn documents into structured data.
Build and ship code
I need a coding agent that can understand a repository, edit code, and review pull requests.
Search private knowledge
I need my agent to build a RAG workflow over documents and retrieve reliable context.
Workflow fit
Design, build, test, and ship interfaces
A practical workflow for agents that turn product briefs or Figma designs into polished frontend code, review the result, test it in a browser, and prepare a safe deployment.
Inspect, patch, and verify code
A workflow for software agents that inspect repositories, review pull requests, generate tests, and turn findings into shippable patches.
Ingest, retrieve, and cite
A workflow for document-heavy agents that ingest files, create searchable knowledge, retrieve relevant context, and answer with grounded sources.
Alternative shortlist
Similar skills that may fit this task.
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
🕵️♂️ Collect a dossier on a person by username from 3000+ sites
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
Infisical is the open-source platform for secrets, certificates, and privileged access management.
--- name: codebase-index description: "Generate a pre-computed component index from a design system codebase — YAML infrastructure files containing a component inventory, relationship graph, and summary statistics that AI agents and MCP servers consume. This produces machine-readable index files in .ai/index/, NOT a health report or quality assessment. Trigger when someone says: index my codebase, build a relationship graph, create a component map, codebase index, what depends on what, dependency graph, map component relationships, or anything about producing queryable infrastructure files for AI agents or developer tooling. Do NOT trigger for component health assessments, quality scores, or audit reports — use component-audit for those." references: - ../../knowledge-notes/ai-readiness.md - ../../knowledge-notes/component-governance.md ---
# Codebase index
A skill for generating a pre-computed, machine-readable index of a design system's codebase. The index contains three pieces: a component inventory, a relationship graph, and summary statistics. Together they form a queryable map that eliminates the need for AI agents or developers to explore the codebase from scratch every time they need to understand the system.
## Context
When an AI agent needs to work with a design system codebase, it has two options: explore or navigate. Exploration means scanning directories, grepping for imports, reading files one by one. Navigation means loading a pre-computed index and reasoning over cached data.
The difference matters. Exploration is slow, incomplete, and non-deterministic. An agent scanning `src/components` might miss components in `src/layouts`, `src/pages`, or utility directories that don't follow naming conventions. It might report a deeply-nested component as "unused" because it can't trace the dependency chain. It might recreate an existing component because it didn't find it.
A pre-computed index front-loads this cost. The agent loads the index once — typically a few thousand tokens — and gets a complete picture of what exists, where things live, and how they relate. Follow-up questions become cheap because the agent reasons over cached data instead of triggering new file reads.
This skill generates that index. Run it after adding or removing components, and commit the output alongside the code.
---
## Configuration
Before producing output, check for a `.ds-ops-config.yml` file in the project root. If present, load: - `system.framework` — pre-selects framework detection (React, Vue, Svelte, Astro, Angular, etc.) - `system.component_paths` — overrides default component directory scanning - `system.category_model` — atomic design, functional, or custom categorisation - `integrations.*` — enables auto-pull for component data - `recurring.*` — enables comparison with previous index
## Auto-pull integrations
If integrations are configured in `.ds-ops-config.yml`, pull data automatically:
**Figma MCP** (`integrations.figma.enabled: true`): - Read the published library from `integrations.figma.file_key` - Cross-reference the Figma component inventory against the code inventory to detect components that exist in design but not in code (or vice versa) - Pull description status per component to populate the metadata coverage field
**Storybook** (`integrations.storybook.enabled: true`): - Fetch the story index from `integrations.storybook.url/index.json` - Extract component list and documentation status - Use as a secondary source for component discovery
**GitHub** (`integrations.github.enabled: true`): - Use `gh api search/code` to count import references across consuming repositories - Pull PR activity for recency signals
If an integration fails, log it and proceed with manual scanning.
---
## Step 1: Detect the framework and structure
Scan the project root to determine: - **Framework**: React (JSX/TSX), Vue (SFC), Svelte, Astro, Angular, Web Components, or mixed - **Component directories**: Where components live — scan common locations: `src/components/`, `src/lib/`, `components/`, `packages/`, and any paths in `tsconfig.json` or framework config - **Category model**: How components are organised — atomic design (`atoms/`, `molecules/`, `organisms/`), functional (`forms/`, `navigation/`, `feedback/`), flat, or monorepo packages - **Styling approach**: CSS modules, CSS-in-JS, Tailwind, SCSS, or design tokens — this determines how to trace token dependencies
Ask for or confirm (skip questions already answered by config or detection): - The component source root if auto-detection finds multiple candidates - Whether there are components in non-standard locations (e.g., a shared `utils/` directory with reusable UI primitives) - Whether to include internal/private components in the index (underscore-prefixed, `internal/` directories, components not re-exported from barrel files)
**Framework detection rules:**
| Signal | Framework | |---|---| | `.jsx` / `.tsx` files with JSX returns | React | | `.vue` files with `<template>` blocks | Vue | | `.svelte` files | Svelte | | `.astro` files | Astro | | `.component.ts` with `@Component` decorator | Angular | | `customElements.define()` | Web Components | | Mixed signals | Ask the user |
## Step 2: Scan and build the component inventory
For every component file found, extract:
- **Name**: The component's exported name - **Path**: Relative path from project root - **Category**: Based on the category model (atom, molecule, organism, etc.) or functional category (navigation, form, feedback, layout, data display) - **Metadata status**: Whether the component has structured metadata (a `.metadata.ts`, `.metadata.json`, description in Storybook, JSDoc/TSDoc block, or Figma description) - **Export type**: Default export, named export, or re-exported through a barrel file
**What counts as a component:** - Files that export a renderable element (JSX, template, render function) - Files explicitly registered in a component index, barrel file, or Storybook config - Exclude: pure utility functions, hooks/composables (unless they return JSX), type definitions, test files, story files
**Category assignment:** - If the directory structure encodes categories (atomic design folders, functional folders), use directory position - If the structure is flat, infer from component characteristics: components with no child components are atoms/primitives, components that compose other system components are compounds, components with significant built-in logic or product-specific context are features - If uncertain, assign `uncategorised` and flag for manual review
### Inventory format
Produce the inventory in YAML for readability and token efficiency:
```yaml components: Button: path: src/components/atoms/Button/Button.tsx category: atoms metadata: true Card: path: src/components/molecules/Card/Card.tsx category: molecules metadata: true DataTable: path: src/components/organisms/DataTable/DataTable.tsx category: organisms metadata: false ```
## Step 3: Build the relationship graph
For every component in the inventory, trace two relationships:
- **uses**: Which other system components does this component import and render? - **usedBy**: Which other system components import and render this component?
**How to trace relationships:** 1. Parse import statements in each component file 2. Filter to imports that reference other components in the inventory (ignore external package imports, utility imports, type imports) 3. For each import, verify it's actually rendered in the template/JSX (an unused import is not a relationship) 4. Record the relationship bidirectionally — if Card imports Button, then Card `uses` Button and Button `usedBy` Card
**Deep tracing rules:** - Follow dependency chains to their leaves. If a page imports a layout, and the layout imports a nav, and the nav imports a link and an icon — the full chain matters for understanding which atoms actually appear on that page. - Components with `uses: []` (empty) are leaf nodes — they have no internal dependencies on other system components. These are the terminal nodes in the graph. - Components with `usedBy: []` (empty) are root nodes — nothing else in the system depends on them. If they're also not used directly in pages, they're orphan candidates.
**Instance counting:** Import count and instance count are different metrics. A page might import Button once but render it five times. Instance counting requires parsing templates, not just import statements. - Count `<ComponentName` tags in templates/JSX for instance counts - Detect slot/children components: if Button contains a `<slot />` and someone writes `<Button><Icon /></Button>`, the Icon instance belongs to the parent scope, not to Button's internals. Don't recurse into slot content for instance counting.
### Relationship graph format
```yaml relationships: Card: uses: [Text, Button, Icon] usedBy: [ProductCard, UserProfile] Button: uses: [Icon] usedBy: [Card, Form, Nav, Modal, Dialog, Header] Icon: uses: [] usedBy: [Button, Card, Nav, MenuItem, Alert] Tooltip: uses: [] usedBy: [CopyButton] CopyButton: uses: [Tooltip] usedBy: [CodeBlock] ```
This format makes dependency chains explicit. An agent reading this graph knows immediately that Tooltip is actively used (by CopyButton, which is used by CodeBlock) even though no page imports Tooltip directly.
## Step 4: Generate summary statistics
Compute aggregate metrics that give an at-a-glance picture of system health:
```yaml summary: totalComponents: 55 componentsWithMetadata: 54 relationshipsMapped: 302 categories: atoms: 18 molecules: 15 organisms: 12 templates: 4 pages: 6 orphanedComponents: 2 mostDependedOn: - name: Icon fanIn: 14 - name: Button fanIn: 11 - name: Text fanIn: 9 highestFanOut: - name: Header fanOut: 8 - name: ProductCard fanOut: 6 metadataCoverage: 98% averageInstancesPerComponent: 9.6 ```
**Key metrics to compute:** - **totalComponents**: Count of all components in the inventory - **componentsWithMetadata**: Count of components with structured metadata files or descriptions - **relationshipsMapped**: Total number of relationship edges in the graph (sum of all `uses` arrays) - **categories**: Breakdown by category model - **orphanedComponents**: Components with both `uses: []` and `usedBy: []` — these are standalone and may be unused - **mostDependedOn**: Top components by fan-in count (usedBy length). These are foundation components — changes propagate widely - **highestFanOut**: Top components by fan-out count (uses length). These are integration points — fragile to upstream changes - **metadataCoverage**: Percentage of components with structured metadata - **averageInstancesPerComponent**: Total instances across all pages divided by total components (if instance counting was performed)
## Step 5: Produce the index output
Generate three output files to be committed alongside the codebase:
### File 1: `component-inventory.yml` The full component inventory from Step 2.
### File 2: `component-relationships.yml` The full relationship graph from Step 3 plus the summary statistics from Step 4.
### File 3: `query-protocols.md` A markdown file with instructions for how to use the index. This file teaches AI agents (or developers) how to read the map:
```markdown # Query protocols
When answering questions about the design system codebase:
1. Check the index first. Before reading any source file, check whether the answer exists in component-inventory.yml or component-relationships.yml.
2. Never re-read relationship files. If the relationship graph has already been loaded in this session, reason over the cached data.
3. Follow-up questions should be cheap. After the initial index load, subsequent questions should require zero or minimal file reads.
## Common
Source provenance
Decision snapshot
recent repository activity
Audit
Install and adoption review
Agent-proven evidence
Outcome reports after resolve, review, install, and one narrow run.
No agent outcome data yet. The first agent run can report success, setup needs, risk blocks, failure, or not-relevant through /api/agent/outcome.
Install
Free and open source. Review the report before installing into production agents.
Growth loop
Scenario-led draft for codebase-index, ready for a manual X post.
codebase-index: Generate a pre-computed component index from a design system codebase — YAML infrastructure f... 176 stars https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=x
Listing + install path for codebase-index: https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=x Install: npx skills add murphytrueman/design-system-ops --skill codebase-index
Listing source
This listing was indexed from public sources and is not marked official until a maintainer claim is approved.
Attribution links to the public repository or creator profile. Creators can claim the listing to update ownership signals.
Claim this skillOwner claim
This Registry indexed listing is attributed to murphytrueman but is not marked official yet. Claim it to add a verified owner signal and make future launch, install, and audit updates easier to trust.
Creator backlink kit
Show the canonical listing, current trust and audit signals, and real Agent-Proven evidence where developers evaluate the repository.
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=github&utm_source=github&utm_medium=referral&utm_campaign=creator_badge)
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=github&utm_source=github&utm_medium=referral&utm_campaign=creator_badge)
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index/audit)
[](https://www.openagentskill.com/skills/murphytrueman-codebase-index?ref=github&utm_source=github&utm_medium=referral&utm_campaign=creator_badge)murphytrueman
@murphytrueman
Share whether this skill looks useful for your agent workflow. Aggregated feedback improves rankings over time.
Sandbox only
Wazuh
Wazuh - The Open Source Security Platform. Unified XDR and SIEM protection for endpoints and cloud workloads.
16.3K StarsMaigret
🕵️♂️ Collect a dossier on a person by username from 3000+ sites
32.9K StarsNuclei
Nuclei is a fast, customizable vulnerability scanner powered by the global security community and built on a simple YAML-based DSL, enabling collaboration to tackle trending vulnerabilities on the internet. It helps you find vulnerabilities in your applications, APIs, networks, DNS, and cloud configurations.
29.2K StarsInfisical
Infisical is the open-source platform for secrets, certificates, and privileged access management.
27.4K StarsPermission surface
secrets or environment access, shell or command execution
Agent outcomes
No agent outcome data yet
Docs
Usable metadata, review docs
Risk summary
Install readiness
Permission surface
secrets or environment access, shell or command execution
Agent outcomes
No agent outcome data yet
Docs
Usable metadata, review docs
Risk summary
Install readiness
Permission surface
secrets or environment access, shell or command execution
Agent outcomes
No agent outcome data yet
Docs
Usable metadata, review docs
Risk summary
Install readiness
Permission surface
secrets or environment access, shell or command execution
Agent outcomes
No agent outcome data yet
Docs
Usable metadata, review docs
Risk summary
Install readiness