skill-validator
Validate SKILL.md files against the Agent Skills spec and Claude Code extensions. Run on new or modified skills before committing.
供給アセットの概要
リサーチとナレッジ作業
Deep research, source comparison, literature review, RAG, knowledge search, and reports.
シナリオ
リサーチ Agent
I need my agent to research a topic, compare sources, and produce a concise report.
Agent 適合
Claude Code + OpenAI Agents + CLI
Codex、Claude Code、Cursor、CLI、またはカスタム Agent に対応します。
インストール
準備完了
npx skills add shipshitdev/skills --skill skill-validator
メンテナンス
新しい
最終プッシュから 2 日
リスク
要レビュー
ライセンスが不明確です
GitHub 品質
33
57/100 品質 · 63/100 信頼
対象タグ
レビュー注記
ライセンスが不明確です · Permission surface may require sandboxing
Agent 導入スコアカード
信頼、監査、インストール準備状況を一目で確認
公開リポジトリのメタデータ、OpenAgentSkill のレビューシグナル、保守の鮮度、インストール準備状況を組み合わせたスコアです。候補選定の目安であり、人によるレビューの代替ではありません。
品質
有望有用な候補ですが、採用前に代替と比較してください。
信頼
Do not auto-installTrust Score v5 found insufficient evidence for agent installation. Treat this as discovery material, not an executable recommendation.
監査
要レビューインストール準備、安全メタデータ、保守、採用リスクの機械可読なレビュー。
OpenAgentSkill Trust Score v5
インストール前に人のレビュー
Choose a stronger alternative or inspect the source manually before any install attempt.
スター
GitHub スター 33
リポジトリ活動
スター 33、フォーク 3
メンテナンス
最終プッシュから 2 日
ライセンス
不明
インストール
npx skills add shipshitdev/skills --skill skill-validator
インストール安全性
標準パッケージまたはランタイムのインストールパス
権限範囲
shell or command execution, filesystem or document access
Agent の成果
Agent の成果データはまだありません
ドキュメント
README/SKILL.md の文脈が十分です
リスク概要
本番前にレビュー
- Repository license is unknown, which may affect redistribution clarity.
- ライセンスが不明確です
- Low GitHub adoption signal
- Quality score needs review
インストール準備状況
インストールパスを利用可能
- インストールパスを利用できます
- リポジトリの根拠を利用できます
- ライセンスが不明確です
- Agent-Proven の成果エビデンスはまだありません
Agent 可読メタデータ
このスキルの機械可読な判断データ。
このブロックまたは埋め込み JSON を使い、Agent がこのスキルをインストールすべきか、代替を選ぶべきか、先に人のレビューを求めるべきかを判断できます。
適したタスク
- Local desktop ワークフロー
- Claude Code チーム
- builders willing to evaluate younger projects
- Navigate local resources
適した Agent
インストール判断
- コマンド
- npx skills add shipshitdev/skills --skill skill-validator
- ポリシー
- レビュー
- 人によるレビュー
- はい
信頼とリスク
- 信頼
- 55/100
- 監査
- 70/100
- リスクレベル
- 要レビュー
成果ループ
- エンドポイント
- /api/agent/outcome
- イベント ID
- resolve
- 成果
- 5
使わない場合
- ベンダー提供の SLA が必要なチーム
- production agents without a repository review
- Low GitHub adoption signal
- Repository license is unknown, which may affect redistribution clarity.
- OpenAgentSkill の利用フィードバックはまだありません
Agent セーフティ v2
38/100 · 自動インストールを避ける
Sparse or mixed signals. Useful for discovery, but not for autonomous installation.
Test manually in an isolated workspace and compare against safer alternatives.
高
Shell またはコマンド実行
Skill メタデータに端末、CLI、Shell、サブプロセス、またはコマンド実行のワークフローが含まれます。
中
ネットワークアクセス
Skill はリモートページ、API、リポジトリ、外部サービスにアクセスする可能性があります。
中
ファイルシステムアクセス
Skill はプロジェクトファイル、ドキュメント、生成物、ローカルワークスペース状態を読み書きする可能性があります。
中
データベースアクセス
Skill はスキーマを確認し、データベースを照会し、永続ストアを扱う可能性があります。
- 高リスク権限のヒント: Shell またはコマンド実行
- ライセンスが不明確です
インストール先
Agent ワークフローにこのスキルをインストール
公開インストールエンドポイントからコマンド、安全チェックリスト、対象プロンプト、正規リンクを取得します。
OpenAgentSkill CLI
Resolve policy, run the source installer safely, and report a verified install receipt.
$ npx --yes https://github.com/Leon-Drq/openagentskill/releases/download/cli-v0.2.1/openagentskill-0.2.1.tgz install shipshitdev-skill-validatorAgent 解決プラン
インストール前に Agent に適合性を検証させます。
Resolve API は第一候補、代替、安全ポリシー、監査メモ、インストール先、Agent がそのまま使えるプロンプトを返します。
JSON を開く
/api/agent/resolve?task=Use%20skill-validator%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Resolve テキスト
/api/agent/resolve?task=Use%20skill-validator%20for%20an%20agent%20workflow&agent=codex&max_risk=medium&format=text
インストール引き継ぎ
/api/skills/shipshitdev-skill-validator/install
Agent が確認すべきこと
- Resolve API でタスク適合と代替を確認。
- 監査・信頼スコアと安全ポリシーの警告を確認。
- Codex、Claude Code、Cursor、CLI のインストール先互換性を確認。
プロンプトをコピー
Task: Use skill-validator in this workspace.
Resolve first: https://www.openagentskill.com/api/agent/resolve?task=Use%20skill-validator%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Review install handoff: https://www.openagentskill.com/api/skills/shipshitdev-skill-validator/install
Install command: npx skills add shipshitdev/skills --skill skill-validator
Before running it, summarize audit warnings, required permissions, and the fallback skill if install is risky.Agent 引き継ぎ
別のディレクトリではなく、インストール経路を Agent に渡します。
公開インストールエンドポイントからコマンド、安全チェックリスト、対象プロンプト、正規リンクを取得します。
インストール引き継ぎ
/api/skills/shipshitdev-skill-validator/install
LLM テキスト形式
/api/skills/shipshitdev-skill-validator/install?format=text
代替を探す
/api/skills/search?q=skill-validator&limit=3
Agent プロンプト
Use skill-validator for this task. Review https://www.openagentskill.com/api/skills/shipshitdev-skill-validator/install, then install with: npx skills add shipshitdev/skills --skill skill-validatorRegistry メタデータ
自動スキル選択用の Agent 可読プロファイル。
Registry API 経由で判断、信頼、監査、ユースケース、インストールのシグナルを提供し、UI をスクレイピングせずに Agent が順位付けできます。
Manifest
/api/registry/manifest/shipshitdev-skill-validator
LLM テキスト
/api/registry/manifest/shipshitdev-skill-validator?format=text
インストール別名
/api/registry/install/shipshitdev-skill-validator
推奨
/api/registry/recommend?task=Use%20skill-validator%20in%20an%20agent%20workflow&limit=3
Agent 適合
Local desktop
プラットフォーム
Claude Code, OpenAI Agents
Agent 判断パネル
Needs validation for Local desktop
Agent ワークフローに追加する前に手動でリポジトリをレビューしてください。
スタック内の役割
検証が必要
主な適合
Local desktop
信頼ラベル
手動レビューが必要
インストールパス
コマンド準備済み
使う場面
- Local desktop ワークフロー
- Claude Code チーム
- builders willing to evaluate younger projects
根拠
- 最近のリポジトリ活動
- インストールコマンドまたは GitHub リポジトリが利用可能
- 品質プロファイル 57/100
先にレビュー
- Low GitHub adoption signal
- Repository license is unknown, which may affect redistribution clarity.
- OpenAgentSkill の利用フィードバックはまだありません
実装パス
- 1サンドボックスの Agent にインストールし、Local desktop タスクを一度最初から最後まで実行します。
- 2Compare output quality, latency, and failure behavior against at least one alternative.
- 3Promote it into production only after reviewing repository permissions, license, and maintenance signals.
信頼プロファイル
Do not auto-install
Trust Score v5 found insufficient evidence for agent installation. Treat this as discovery material, not an executable recommendation.
GitHub 採用度
確認GitHub スター 33
スター/フォーク活動
確認スター 33、フォーク 3; 現在のメタデータでは Issue 活動を利用できません
最近のメンテナンス
合格最終プッシュから 2 日
ライセンスの明確さ
確認不明
良いシグナル
- AI レビュー承認済み
- インストールパスを利用できます
- リポジトリの根拠を利用できます
- 最近保守されたリポジトリ
- インストールコマンドに明確な高リスクパターンはありません
- 成果ループは準備済みですが、最初の実行が必要です
インストール前にレビュー
- Repository license is unknown, which may affect redistribution clarity.
- ライセンスが不明確です
- Low GitHub adoption signal
- Quality score needs review
- Permission surface needs review: shell or command execution, filesystem or document access
- GitHub adoption: 33 GitHub stars
- Stars/forks activity: 33 stars, 3 forks; issue activity unavailable in current metadata
- License clarity: Unknown
- Permission surface: shell or command execution, filesystem or document access
- 実際の Agent 成果レポートはまだありません
- 無人インストールの前に人によるレビューが必要です
推奨アクション
Choose a stronger alternative or inspect the source manually before any install attempt.
品質プロファイル
有望 Agent ワークフロー向けの候補
有用な候補ですが、採用前に代替と比較してください。
ワークフロー適合
このスキルを使うシナリオ
Operate local tools
Local desktop
I need my agent to operate local files and desktop apps in a repeatable workflow.
Investigate faster
Research agents
I need my agent to research a topic, compare sources, and produce a concise report.
Operate web apps
Browser automation
I need my agent to control a browser, fill forms, and verify web app workflows.
ワークフロー適合
完全なワークフローに追加
Find, compare, and synthesize
Research report agent
A workflow for agents that gather sources, compare claims, summarize long material, and draft useful research briefs.
Operate and verify web apps
Browser QA agent
A workflow for agents that navigate products, fill forms, take screenshots, and verify real user flows across web applications.
Turn skills into distribution
Content growth agent
A workflow for turning newly indexed skills into SEO briefs, social drafts, comparison pages, and reusable publishing workflows.
代替候補
インストール前に比較
このタスクに適する可能性のある類似スキル。
Last30days Skill
Research the last 30 days across Reddit, X, YouTube, Hacker News, Polymarket, GitHub, and the web, then synthesize a grounded brief for an AI agent.
Academic Research Skills
Academic Research Skills for Claude Code: research → write → review → revise → finalize
GPT Researcher
Run autonomous deep research over web and local sources
DeepResearch
Tongyi Deep Research, the Leading Open-source Deep Research Agent
概要
--- name: skill-validator description: | Validate SKILL.md files against the Agent Skills spec and Claude Code extensions. Run on new or modified skills before committing. metadata: internal: true version: "1.0.3" tags: "validation, skills, spec-compliance, quality" ---
# Skill Validator
Validate SKILL.md files against the Agent Skills specification and Claude Code extensions.
## When to Run
- After creating a new skill - After modifying a skill's SKILL.md frontmatter - Before committing skill changes - During periodic repo audits
## Validation Rules
### Required Fields (Agent Skills Spec)
Every SKILL.md must have YAML frontmatter with:
- `name` — kebab-case, matches directory name - `description` — 1-3 sentences, under 1024 chars, starts with verb or domain noun
### Metadata Block
`version` and `tags` must be inside `metadata:`, never top-level:
```yaml # CORRECT metadata: version: "1.0.0" tags: "react, performance, optimization"
# WRONG — top-level version version: 1.0.0
# WRONG — tags as YAML list metadata: tags: - react - performance ```
### Forbidden Fields
These are not part of any spec:
- `auto_activate` / `auto_trigger` — removed in 2026-04 migration - `risk` — not in Agent Skills or Claude Code specs
### Claude Code Extensions (Optional)
Valid extension fields (must match `allowed_fields` in `scripts/validate-skill-sync.sh`):
| Field | Purpose | |-------|---------| | `when_to_use` | Extra trigger phrases appended to `description` | | `disable-model-invocation` | Prevent auto-triggering (for destructive skills) | | `user-invocable` | `false` hides from the `/` menu | | `allowed-tools` | Auto-approve **allowlist** (not a sandbox — unlisted tools stay callable) | | `disallowed-tools` | Removes tools from the pool while active (the actual block mechanism) | | `argument-hint` | Autocomplete hint for expected arguments | | `compatibility` | Environment prerequisites (packages, network, target agent) | | `context` | `fork` for subagent isolation | | `agent` | Subagent type when `context: fork` | | `hooks` | Lifecycle hooks scoped to the skill | | `paths` | ⚠️ Broken upstream (#49835) — flag if present | | `shell` | `bash` (default) or `powershell` |
### Forbidden Fields (updated)
- `auto_activate` / `auto_trigger` — removed in 2026-04 migration - `risk` — not in any spec - `metadata.triggers` — duplicate activation metadata; put trigger phrases in `description` or `when_to_use` - `model` / `effort` — recognized by Claude Code but owned by app/session configuration, not public reusable skills - Any top-level field not in the tables above → "Unsupported top-level frontmatter field"
### Content Rules
- No hardcoded `/workspace/` paths - No tool names in instructions (say "search for" not "use Grep") - Imperative/infinitive style ("Configure X" not "You should configure X") - Code blocks use real backtick fences, not escaped `\`\`\`` - **No concrete model names** in body, `references/`, or `scripts/` — reject tier+version IDs (`claude-3-7-sonnet-20250219`, `claude-opus-4.5`, `gpt-5.5`), dated snapshots, and bare family names used as routing keys. Exception: orchestrator skills may name **capability tiers** in prose. See [skill-standards.md → Model references](../memory/system/skill-standards.md). - **No harness-owned execution parameters** in skills, commands, or routine templates. Apply [execution-boundary.md](../memory/system/execution-boundary.md). - **Routine templates** follow [routine-standards.md](../memory/system/routine-standards.md). Run `python3 scripts/audit-routines.py` to detect duplicate bodies and app-parameter leakage without printing prompt or configuration values. - **Provenance (derived skills only):** when `metadata.source` is set, `metadata.last_synced` and a README `## Upstream` section are required (enforced by `check_provenance()`). In-house skills need no provenance fields.
## Validation Process
1. Read the SKILL.md frontmatter 2. Check `name` matches parent directory name 3. Check `description` exists and is under 1024 chars 4. Check `description` plus `when_to_use` is under 1536 chars 5. Check `plugin.json` description is present and under 100 chars 6. Check `version`/`tags` are NOT top-level (must be inside `metadata:`) 7. Check for forbidden fields (`auto_activate`, `auto_trigger`, `risk`, `model`, `effort`, any field not in the extension tables) 8. Check for escaped backtick fences in content 9. Validate frontmatter value types: `allowed-tools` is a scalar, `metadata.version` and `metadata.tags` are quoted scalars, and `metadata` is a map 10. Reject duplicate `metadata.triggers`; keep activation guidance in `description` or `when_to_use` 11. Check for hardcoded paths (`/workspace/`, project-specific paths) 12. Grep body + `references/` + `scripts/` for concrete model names (`claude-*`, `gpt-*`, `sonnet`/`opus`/`haiku` used as IDs); allow only capability-tier prose in orchestrator skills 13. Warn when skills, commands, or templates set harness-owned execution parameters 14. Warn when a side-effecting skill lacks both `disable-model-invocation: true` and an explicit `Confirmation Required` gate 15. Check prose routing references across the body, excluding frontmatter and code fences, and flag missing local skills 16. Check provenance for derived skills: if `metadata.source` is set, require `metadata.last_synced` and a README `## Upstream` section 17. Run `bunx markdownlint-cli` on the file 18. Run `./scripts/validate-skill-sync.sh` for cross-validation
## Quick Validation Command
```bash # Single skill bunx markdownlint-cli skills/<name>/SKILL.md skills/<name>/references/*.md
# All skills bunx markdownlint-cli --ignore bundles --ignore dist "**/*.md"
# Sync validation ./scripts/validate-skill-sync.sh ```
技術詳細
- バージョン
- 1.0.0
- ライセンス
- Unknown
- 最終更新
- 2026年8月23日
- 公開日
- 2026年8月23日
判断の要約
検証が必要
最近のリポジトリ活動
Agent 実証エビデンス
Agent 実証エビデンス
Resolve、レビュー、インストール、限定実行後の成果レポート。
- 成功率
- —
- 直近の失敗
- —
- 成果
- 0
- 出力品質
- —
- 失敗
- 0
- 非該当
- 0
- インストール数
- 0
- リスクによりブロック
- 0
- 設定が必要
- 0
- 本番
- 0
Agent の実行結果はまだありません。最初の実行では /api/agent/outcome を通じて成功、設定要件、リスクによるブロック、失敗、非該当を報告できます。
成長ループ
共有キット
skill-validator 用のシナリオベース草案です。X へ手動投稿できます。
skill-validator: Validate SKILL.md files against the Agent Skills spec and Claude Code extensions. Run on new... 33 stars https://www.openagentskill.com/skills/shipshitdev-skill-validator?ref=x
任意:インストールコマンド付きの返信
Listing + install path for skill-validator: https://www.openagentskill.com/skills/shipshitdev-skill-validator?ref=x Install: npx skills add shipshitdev/skills --skill skill-validator
掲載元
Registry により登録
この掲載は公開ソースから登録されており、メンテナー申請が承認されるまで公式として表示されません。
- 作成者
- shipshitdev
- インデックス作成者
- OpenAgentSkill コミュニティインデックス
帰属は公開リポジトリまたは作成者プロフィールにリンクされています。作成者は掲載を申請して所有権シグナルを更新できます。
このスキルを申請所有者の申請
このスキル掲載を申請
この Registry により登録 掲載は shipshitdev に帰属していますが、まだ公式として表示されていません。申請すると、確認済み所有者シグナルが追加され、今後の公開、インストール、監査更新の信頼性が高まります。
クリエイター被リンクキット
README にエビデンスバッジを追加
開発者がリポジトリを評価する場所で、正規掲載、現在の信頼・監査シグナル、実際の Agent-Proven エビデンスを表示します。
[](https://www.openagentskill.com/skills/shipshitdev-skill-validator)
[](https://www.openagentskill.com/skills/shipshitdev-skill-validator)
[](https://www.openagentskill.com/skills/shipshitdev-skill-validator/audit)
[](https://www.openagentskill.com/skills/shipshitdev-skill-validator)作者
shipshitdev
@shipshitdev
プラットフォーム適合
健全性シグナル
- GitHub スター
- 33
- 品質スコア
- 34/100
- 最終 GitHub プッシュ
- 2026年8月20日
- フレームワークのヒント
- 不明
- OpenAgentSkill 閲覧数
- 0
- インストールコピー数
- 0
- 外部クリック
- 0
コミュニティシグナル
このスキルが Agent ワークフローに役立つかを共有してください。集約されたフィードバックがランキングを改善します。
信頼と安全性
Do not auto-install
- GitHub 採用度GitHub スター 33確認
- スター/フォーク活動スター 33、フォーク 3; 現在のメタデータでは Issue 活動を利用できません確認
- 最近のメンテナンス最終プッシュから 2 日合格
- ライセンスの明確さ不明確認
- README/SKILL.md の完全性メタデータには十分な利用・ワークフロー文脈があります合格
- 依存関係/ランタイムのリスクcommand execution surface, database surface情報
関連スキル
Last30days Skill
Research the last 30 days across Reddit, X, YouTube, Hacker News, Polymarket, GitHub, and the web, then synthesize a grounded brief for an AI agent.
53.5K スターAcademic Research Skills
Academic Research Skills for Claude Code: research → write → review → revise → finalize
38.4K スターGPT Researcher
Run autonomous deep research over web and local sources
28.0K スターDeepResearch
Tongyi Deep Research, the Leading Open-source Deep Research Agent
19.8K スター