gen-changesets

审查 · 59
已收录

Use when generating changesets in the kimi-code repository, including package bump selection, internal package and CLI bundle handling, bump levels, major confirmation, and English changelog wording.

Verified installs0
Stars13
版本1.0.0
质量58/100 · 有潜力
信任59/100 · Do not auto-install
审计73/100 · 需审查

供给资产档案

编程与开发 Agent

代码审查、仓库分析、测试、CI、GitHub、DevOps 与开发工作流 Skill。

浏览赛道

场景

GitHub automation

I need my agent to triage GitHub issues, review pull requests, and summarize repository changes.

适配 Agent

Claude Code + CLI + Codex

适用于 Codex、Claude Code、Cursor、CLI 或自定义 Agent。

安装

就绪

npx skills add wangyuahn/nori-code --skill gen-changesets

维护状态

新鲜

距上次推送 1 天

风险

需审查

Dependency or permission surface needs review

GitHub 质量

13

58/100 质量 · 67/100 信任

覆盖标签

编程GitHub automation编程 Agentagent-skill

审查说明

Dependency or permission surface needs review · Permission surface may require sandboxing

Agent 采用评分卡

一眼查看信任、审计与安装准备度

这些分数综合公开仓库元数据、OpenAgentSkill 审查信号、维护新鲜度与安装准备度。它用于候选筛选,不替代人工审查。

质量

有潜力
58

有用的候选项,但采用前应与替代方案比较。

信任

Do not auto-install
59

Trust Score v5 found insufficient evidence for agent installation. Treat this as discovery material, not an executable recommendation.

审计

需审查
73

对安装准备度、安全元数据、维护情况与采用风险的机器可读审查。

OpenAgentSkill 信任评分 v5

安装前需人工审查

Choose a stronger alternative or inspect the source manually before any install attempt.

CodexClaude CodeCursorOpenAgentSkill CLI

Stars

13 个 GitHub Stars

仓库活跃度

13 个 Star,0 个 Fork

维护状态

距上次推送 1 天

许可证

MIT

安装

npx skills add wangyuahn/nori-code --skill gen-changesets

安装安全性

标准软件包或运行时安装路径

权限范围

secrets or environment access, shell or command execution

Agent 结果

暂未有 Agent 结果数据

文档

README/SKILL.md 上下文充分

风险摘要

生产前审查

  • Low GitHub adoption signal
  • Quality score needs review
  • Permission surface needs review: secrets or environment access, shell or command execution
  • GitHub adoption: 13 GitHub stars

安装准备度

安装路径可用

  • 安装路径可用
  • 仓库证据可用
  • 已声明许可证
  • 暂无 Agent 验证结果证据

Agent 可读元数据

这个 Skill 的机器可读决策数据。

使用此区块或内嵌 JSON 判断 Agent 是否应安装该 Skill、选择替代方案,或先请求人工审查。

打开 JSON

适用任务

  • GitHub automation 工作流
  • Claude Code 团队
  • builders willing to evaluate younger projects
  • Inspect repository metadata

适用 Agent

CodexClaude CodeCursorOpenAgentSkill CLICLI

安装决策

命令
npx skills add wangyuahn/nori-code --skill gen-changesets
策略
阻止
人工审查

信任与风险

信任
59/100
审计
73/100
风险级别
需审查

结果闭环

端点
/api/agent/outcome
事件 ID
resolve
结果
5

安装命令

npx skills add wangyuahn/nori-code --skill gen-changesets

不适用场景

  • 需要厂商支持 SLA 的团队
  • production agents without a repository review
  • Low GitHub adoption signal
  • 暂未有 OpenAgentSkill 使用反馈数据
  • 高风险权限提示:Shell or command execution, Secrets or environment access

Agent 安全 v2

29/100 · 避免自动安装

Blocked for auto-install阻止

This skill should not be selected by an agent without explicit human security review.

Do not auto-install. Inspect the source, dependencies, and permission surface first.

通过 API 解析

Shell 或命令执行

Skill 元数据引用了终端、CLI、Shell、子进程或命令执行工作流。

网络访问

Skill 可能访问远程页面、API、仓库或外部服务。

文件系统访问

Skill 可能读取或写入项目文件、文档、生成产物或本地工作区状态。

Secrets or environment access

Skill metadata references credentials, tokens, environment variables, or secret-bearing workflows.

  • 高风险权限提示:Shell or command execution, Secrets or environment access
  • Dependency or permission surface needs review

安装目标

在你的 Agent 工作流中安装此 Skill

通过公开安装端点获取命令、安全清单、目标提示词和该 Skill 的规范链接。

skill install

OpenAgentSkill CLI

Resolve policy, run the source installer safely, and report a verified install receipt.

$ npx --yes https://github.com/Leon-Drq/openagentskill/releases/download/cli-v0.2.1/openagentskill-0.2.1.tgz install wangyuahn-gen-changesets

Agent 解析计划

让 Agent 在安装前验证匹配度。

Resolve API 返回首选 Skill、替代方案、安全策略、审计说明、安装目标和可直接执行的提示词,无需抓取此页面。

打开文本计划

Agent 应检查

  • 从 Resolve API 检查任务匹配与替代方案。
  • 检查审计评分、信任评分和安全策略警告。
  • 检查 Codex、Claude Code、Cursor 或 CLI 的安装目标兼容性。

复制提示词

Task: Use gen-changesets in this workspace.
Resolve first: https://www.openagentskill.com/api/agent/resolve?task=Use%20gen-changesets%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Review install handoff: https://www.openagentskill.com/api/skills/wangyuahn-gen-changesets/install
Install command: npx skills add wangyuahn/nori-code --skill gen-changesets
Before running it, summarize audit warnings, required permissions, and the fallback skill if install is risky.

Agent 交接

把安装路径交给 Agent,而不是再给一个目录页。

通过公开安装端点获取命令、安全清单、目标提示词和该 Skill 的规范链接。

打开安装 API

Agent 提示词

Use gen-changesets for this task. Review https://www.openagentskill.com/api/skills/wangyuahn-gen-changesets/install, then install with: npx skills add wangyuahn/nori-code --skill gen-changesets

Registry 元数据

用于自动选择 Skill 的 Agent 可读档案。

本页通过 Registry API 提供相同的决策、信任、审计、场景和安装信号,让 Agent 无需抓取界面即可排序。

打开 Manifest

适配 Agent

57/100

GitHub automation

平台

Claude Code

审计报告

需审查 · 73/100

对安装准备度、安全元数据、维护情况与采用风险的机器可读审查。

查看审计报告查看评估报告

Agent 决策面板

Needs validation for GitHub automation

在将它加入 Agent 工作流前先人工审查仓库。

57
就绪度
审查
阶段

栈中角色

需要验证

主要匹配

GitHub automation

信任标签

需要人工审查

安装路径

命令已就绪

适用场景

  • GitHub automation 工作流
  • Claude Code 团队
  • builders willing to evaluate younger projects

证据

  • 仓库近期活跃
  • 已提供安装命令或 GitHub 仓库
  • 58/100 质量档案

先审查

  • Low GitHub adoption signal
  • 暂未有 OpenAgentSkill 使用反馈数据

实施路径

  1. 1在沙盒 Agent 中安装它,并端到端完成一次GitHub automation任务。
  2. 2Compare output quality, latency, and failure behavior against at least one alternative.
  3. 3Promote it into production only after reviewing repository permissions, license, and maintenance signals.

信任档案

Do not auto-install

Trust Score v5 found insufficient evidence for agent installation. Treat this as discovery material, not an executable recommendation.

59
OpenAgentSkill 信任评分

GitHub 采用度

修复

13 个 GitHub Stars

Star/Fork 活跃度

修复

13 个 Star,0 个 Fork; 当前元数据中没有议题活跃度信息

近期维护

通过

距上次推送 1 天

许可证清晰度

通过

MIT

积极信号

  • AI 审查已通过
  • 安装路径可用
  • 仓库证据可用
  • 近期维护的仓库
  • 安装命令未发现明显高风险模式
  • 结果闭环已就绪,但需要首次真实 Agent 运行

安装前审查

  • Low GitHub adoption signal
  • Quality score needs review
  • Permission surface needs review: secrets or environment access, shell or command execution
  • GitHub adoption: 13 GitHub stars
  • Stars/forks activity: 13 stars, 0 forks; issue activity unavailable in current metadata
  • Dependency/runtime risk: command execution surface, credential or environment access
  • Permission surface: secrets or environment access, shell or command execution
  • 暂未有真实 Agent 结果报告
  • 无人值守安装前需要人工审查

建议操作

Choose a stronger alternative or inspect the source manually before any install attempt.

质量档案

有潜力 适用于 Agent 工作流的候选

有用的候选项,但采用前应与替代方案比较。

58
GitHub Stars
13
新鲜度
1 天前
安装就绪
许可证
MIT
安装前审查: Low GitHub adoption signal

工作流匹配

在这些场景使用此 Skill

工作流匹配

加入完整工作流

替代方案短名单

安装前对比

可能适合该任务的相近 Skill。

对比全部

概览

--- name: gen-changesets description: Use when generating changesets in the kimi-code repository, including package bump selection, internal package and CLI bundle handling, bump levels, major confirmation, and English changelog wording. ---

# Generate Changesets

`kimi-code` uses changesets to manage versions and changelogs. The current user-facing published package is:

- `@moonshot-ai/nori-code`: the CLI

All other `@moonshot-ai/*` packages are treated as internal packages, including `@moonshot-ai/nori-code-sdk`, `agent-core`, `kosong`, `kaos`, `kimi-code-oauth`, `kimi-telemetry`, and `migration-legacy`.

`@moonshot-ai/pi-tui` is a special internal package: it is a private fork (`private: true`) that is never published, but it keeps its own changelog through changesets. It is an exception to Core Rule 4 — see the dedicated section below.

## Core Rules

1. **Inspect the actual changes first.** Use `git status` / `git diff --name-only` to identify which packages were actually changed. 2. **List packages that changesets can release.** If a changed package is ignored in `.changeset/config.json`, do not put that ignored package in frontmatter together with a non-ignored package; changesets rejects mixed ignored/non-ignored frontmatter. 3. **Map ignored internal changes to the affected released package.** If an ignored internal package changes CLI output or behavior, list `@moonshot-ai/nori-code` and describe the actual user-visible or release-artifact change in the changelog text. 4. **Internal package source changes that enter the CLI bundle must manually list the CLI.** `@moonshot-ai/nori-code` inline-bundles `@moonshot-ai/*` source, but those internal packages are devDependencies from the CLI's perspective, so changesets will not automatically propagate bumps. If a change enters the CLI output, list `@moonshot-ai/nori-code`. - **Web app (`@moonshot-ai/kimi-web`) changes always enter the CLI bundle.** `@moonshot-ai/kimi-web` is ignored by changesets (see `.changeset/config.json`) and cannot be mixed with `@moonshot-ai/nori-code` in one changeset frontmatter. Describe the web change in the changelog text, but list `@moonshot-ai/nori-code` so the CLI release carries the bundled `dist-web` output. 5. **Docs-only and tests-only changes usually do not need a changeset.** README, internal docs, and `test/` changes that do not enter package output do not trigger a CLI bump. 6. `@moonshot-ai/vis` / `vis-server` / `vis-web` are ignored by changesets and should not be handled.

## Workflow

1. List the changed packages and check whether each one is ignored by `.changeset/config.json`. 2. Choose a bump level for each package. 3. If an ignored internal package change enters the CLI bundle, put `@moonshot-ai/nori-code` in frontmatter instead of mixing the ignored package into the same changeset. 4. Create a short kebab-case file under `.changeset/`. 5. Split unrelated changes into separate changesets; keep one logical change in one file.

Format:

```markdown --- "<package A>": patch "<package B>": minor ---

<English changelog entry> ```

## Bump Levels

| Level | When to use | |---|---| | `patch` | Bug fixes; build/package fixes; internal refactors that do not change behavior; wording tweaks; small dependency upgrades; small improvements to existing features with limited user-facing impact (e.g. a new keyboard shortcut, a flag alias, a minor UX tweak) | | `minor` | A substantial new user-facing feature, such as a new slash command, a new built-in tool, or a new mode | | `major` | Breaking changes: incompatible config changes, renamed or removed commands/arguments, behavior semantics changes, and similar |

When in doubt between `patch` and `minor`: if the change improves an existing feature and the user-facing impact is small, choose `patch` even when the change is technically "new". Reserve `minor` for a substantial new capability that introduces something users could not do before.

### Major Rule

Never write `major` on your own.

If you believe a change qualifies as major, stop first, explain why, and ask the user for confirmation. Only write `major` after the user explicitly agrees. If the user does not reply, replies ambiguously, or disagrees, fall back to `minor`; if `minor` is also unclear, fall back to `patch`.

## Wording Rules

- Changelog entries **must be written in English**. - **Keep the whole entry concise.** Aim for one short sentence that states what was done; at most a short sentence plus a one-line usage hint. Do not write a paragraph, do not pile on technical detail, and do not enumerate every sub-change. - **For new user-facing features, append a brief usage hint** so users know how to try it. Keep it to a single short line — a command name, a subcommand, a flag, or a one-line "how to use". Do not explain design rationale or list edge cases. Skip the hint for bug fixes, internal changes, and refactors. - Slash command: `Add the /foo slash command to list active sessions. Run /foo to see them.` - CLI subcommand: `Add the kimi web subcommand to open the web UI. Run kimi web to launch it.` - Flag: `Add a --bar flag to skip confirmation prompts. Pass --bar to skip.` - Too long: `Add the /foo command to list active sessions. It accepts an optional --all flag to include background sessions, supports filtering by name with /foo <name>, and writes the result to the transcript...` - User-facing CLI wording should only be used when CLI users can perceive the change. - Internal changes that do not affect CLI users can still share a changeset with the CLI, but the wording must describe the real change honestly and must not present it as a user-facing feature. - Do not mention file names, class names, function names, PR numbers, or commit hashes. - Do not include real internal endpoints, key names, account names, or service names. If an example is needed, use neutral placeholders such as `example.com`, `example.test`, or `YOUR_API_KEY`. - Avoid vague words such as `refactor`, `optimize`, and `improve`. Describe the actual change, or use more specific wording.

## When You Are Unsure About a Change

Generate the changeset from what the diff clearly shows. If part of a change is unclear and you cannot confidently describe what it does for users, do not guess or pad the entry with vague wording.

1. Finish the changeset for the parts that are clear. 2. Then ask the user once, in a short list: name the specific change(s) you do not understand, and ask whether you may dig into the repository (read related source, tests, or call sites) to describe it more accurately. 3. Only read more code after the user agrees. If the user says no or does not reply, keep the concise wording you already have and do not invent detail.

## Common Examples

An internal package fixes a bug visible to CLI users:

```markdown --- "@moonshot-ai/nori-code": patch ---

Fix occasional loss of tool call results in long conversations. ```

A new user-facing slash command (note the short usage hint):

```markdown --- "@moonshot-ai/nori-code": minor ---

Add the /foo slash command to list active sessions. Run /foo to see them. ```

A new CLI subcommand:

```markdown --- "@moonshot-ai/nori-code": minor ---

Add the kimi web subcommand to open the web UI. Run kimi web to launch it. ```

A new flag on an existing command:

```markdown --- "@moonshot-ai/nori-code": patch ---

Add a --bar flag to skip confirmation prompts. Pass --bar to skip. ```

An internal package has an internal-only change, but it enters the CLI bundle:

```markdown --- "@moonshot-ai/nori-code": patch ---

Unify tool execution metadata handling. ```

Only SDK source changed, and the CLI does not use it:

```markdown --- "@moonshot-ai/nori-code-sdk": patch ---

Clarify session status typing for internal SDK callers. ```

## Web app changes

`@moonshot-ai/kimi-web` is ignored by changesets and must **never** appear in a changeset frontmatter. Because the web app is bundled into the CLI release artifact, any web change that ships must list `@moonshot-ai/nori-code` instead and describe the actual web-facing change in the text.

- If a PR contains both web UI changes and server API changes, split them into separate changesets so each entry has a focused description. - Do not enumerate every micro-tweak; keep it to one sentence that captures what the web user gets.

Web-only fix:

```markdown --- "@moonshot-ai/nori-code": patch ---

Fix the web chat not scrolling to the bottom after sending a message. ```

Web UI plus server APIs in the same PR (split into two changesets):

```markdown --- "@moonshot-ai/nori-code": minor ---

Add the server-hosted web UI, including chat layout and session list behaviors. ```

```markdown --- "@moonshot-ai/nori-code": minor ---

Add the server REST and WebSocket APIs that power the web UI. ```

## `@moonshot-ai/pi-tui` changes

`@moonshot-ai/pi-tui` is a vendored fork that lives in `packages/pi-tui`. It is `private: true` and is never published, but it is **not** ignored by changesets: changesets versions it and writes `packages/pi-tui/CHANGELOG.md` so the fork keeps its own history. Because it is bundled into the CLI like other internal packages, it is an exception to Core Rule 4 — do **not** list `@moonshot-ai/nori-code` for a change that only touches pi-tui.

- Changes that only affect pi-tui (build, package, strict-mode cleanup, renderer fixes): list `@moonshot-ai/pi-tui` only. No CLI changeset. - If the same change is also user-visible in the CLI (for example a terminal rendering fix that CLI users can see), add a **separate** changeset that lists `@moonshot-ai/nori-code` with CLI-focused wording, in addition to the pi-tui changeset. Do not mix both packages in one frontmatter — the two changelogs need different wording.

pi-tui-only change:

```markdown --- "@moonshot-ai/pi-tui": patch ---

Export the package manifest so the bundled binary can locate its native assets. ```

pi-tui change that is also visible in the CLI (two separate changesets):

```markdown --- "@moonshot-ai/pi-tui": patch ---

Clamp the differential render to the visible viewport so scrolling up during streaming no longer jumps to the top. ```

```markdown --- "@moonshot-ai/nori-code": patch ---

Fix the transcript jumping to the top when scrolling up through history during streaming output. ```

## Red Flags

- You are about to write `major` without asking the user. - A new user-facing feature entry has no usage hint, or the hint runs to multiple lines and explains design rationale. - You guessed wording for a change you do not understand instead of asking the user whether you may dig into the repo. - Internal package source enters the CLI bundle, but `@moonshot-ai/nori-code` is missing. - A changeset frontmatter mixes ignored internal packages with non-ignored packages. - `packages/node-sdk` was not changed, but `@moonshot-ai/nori-code-sdk` was listed for "internal package sync". - The changelog entry is in Chinese. - The wording claims more than the diff actually did. - The CLI wording mentions internal package names, class names, or PR numbers. - The entry includes real internal identifiers instead of neutral placeholders. - A change that only touches `@moonshot-ai/pi-tui` lists `@moonshot-ai/nori-code` instead of `@moonshot-ai/pi-tui`, or mixes both packages in one frontmatter.

技术详情

版本
1.0.0
许可证
MIT
最近更新
2026年8月23日
发布时间
2026年8月22日

决策摘要

需要验证

57
就绪
审查
阶段

仓库近期活跃

审计

安装审查

安装与采用审查

73
需审查
安全性
73/100
维护状态
100/100
安装
92/100
打开完整审计查看评估报告

Agent 验证证据

Agent 验证证据

来自解析、审查、安装和一次小范围运行后的结果报告。

0
已验证
Needs first agent run自动安装: 先审查最近: 未知
成功率
近期失败
结果
0
输出质量
失败
0
不相关
0
安装次数
0
风险拦截
0
需要配置
0
生产环境
0

暂时没有 Agent 结果数据。首次 Agent 执行可以通过 /api/agent/outcome 报告成功、需要设置、风险拦截、失败或不相关。

安装

加入 Agent 工作流

免费且开源. 在生产 Agent 中安装前请先审查报告。

增长闭环

分享工具包

X

为 gen-changesets 准备的场景化草稿,可手动发布到 X。

策展说明
gen-changesets: Use when generating changesets in the kimi-code repository, including package bump selection,...

13 stars

https://www.openagentskill.com/skills/wangyuahn-gen-changesets?ref=x
打开 X 草稿
可选:带安装命令的回复
Listing + install path for gen-changesets:
https://www.openagentskill.com/skills/wangyuahn-gen-changesets?ref=x

Install: npx skills add wangyuahn/nori-code --skill gen-changesets
打开回复草稿

收录来源

Registry 收录

可认领

此列表来自公开来源,维护者认领获批前不会标记为官方。

创作者
wangyuahn
收录方
OpenAgentSkill 社区索引

归属链接指向公开仓库或创作者主页。创作者可认领列表以更新所有权信号。

认领此 Skill

所有者认领

认领此 Skill 页面

这条 Registry 收录 列表归属于 wangyuahn,但尚未标记为官方。认领后可增加已验证所有者信号,使后续发布、安装和审计更新更值得信赖。

创作者外链工具包

将证据徽章加入你的 README

在开发者评估仓库的位置展示规范页面、当前信任与审计信号,以及真实的 Agent 验证证据。

[![Listed on OpenAgentSkill](https://www.openagentskill.com/api/badge/wangyuahn-gen-changesets?metric=listed&label=Listed)](https://www.openagentskill.com/skills/wangyuahn-gen-changesets)
[![OpenAgentSkill Trust](https://www.openagentskill.com/api/badge/wangyuahn-gen-changesets?metric=trust&label=Trust)](https://www.openagentskill.com/skills/wangyuahn-gen-changesets)
[![OpenAgentSkill Audit](https://www.openagentskill.com/api/badge/wangyuahn-gen-changesets?metric=audit&label=Audit)](https://www.openagentskill.com/skills/wangyuahn-gen-changesets/audit)
[![Agent Proven](https://www.openagentskill.com/api/badge/wangyuahn-gen-changesets?metric=proven&label=Agent%20Proven)](https://www.openagentskill.com/skills/wangyuahn-gen-changesets)

作者

W

wangyuahn

@wangyuahn

平台适配

健康信号

GitHub Stars
13
质量评分
32/100
最近 GitHub 推送
2026年8月23日
框架提示
未知
OpenAgentSkill 浏览量
0
复制安装命令
0
跳转点击
0

社区信号

告诉我们这个 Skill 是否对你的 Agent 工作流有帮助。汇总反馈会持续改善排序。

信任与安全

Do not auto-install

59
  • GitHub 采用度13 个 GitHub Stars修复
  • Star/Fork 活跃度13 个 Star,0 个 Fork; 当前元数据中没有议题活跃度信息修复
  • 近期维护距上次推送 1 天通过
  • 许可证清晰度MIT通过
  • README/SKILL.md 完整度元数据包含足够的用法与工作流上下文通过
  • 依赖与运行时风险command execution surface, credential or environment access修复