sync-changelog

REVIEW · 56
Registry indexed

Use after a release succeeds, when maintainers need to sync apps/nori-code/CHANGELOG.md into docs/en/release-notes/changelog.md and docs/zh/release-notes/changelog.md, then open a PR on a dedicated branch.

Verified installs0
Stars13
Version1.0.0
Quality58/100 · Promising
Trust56/100 · Do not auto-install
Audit71/100 · Needs review

Supply asset profile

Coding and developer agents

Code review, repo analysis, testing, CI, GitHub, DevOps, and developer workflow skills.

Browse track

Scenario

GitHub automation

I need my agent to triage GitHub issues, review pull requests, and summarize repository changes.

Agent fit

Claude Code + CLI + Codex

Codex, Claude Code, Cursor, CLI, or custom agents.

Install

Ready

npx skills add wangyuahn/nori-code --skill sync-changelog

Maintenance

fresh

Pushed today

Risk

Needs review

Dependency or permission surface needs review

GitHub quality

13

58/100 Quality · 64/100 Trust

Coverage tags

CodingGitHub automationcoding-agentsagent-skill

Review notes

Dependency or permission surface needs review · Permission surface may require sandboxing

Agent adoption scorecard

Trust, audit, and install readiness at a glance

These scores combine public repository metadata, OpenAgentSkill review signals, maintenance freshness, and install readiness. They are a shortlist signal, not a replacement for human review.

Quality

Promising
58

Useful candidate, but compare it with alternatives before adopting.

Trust

Do not auto-install
56

Trust Score v5 found insufficient evidence for agent installation. Treat this as discovery material, not an executable recommendation.

Audit

Needs review
71

A machine-readable review of install readiness, security metadata, maintenance, and adoption risk.

OpenAgentSkill Trust Score v5

Human review before install

Choose a stronger alternative or inspect the source manually before any install attempt.

CodexClaude CodeCursorOpenAgentSkill CLI

Stars

13 GitHub stars

Repo activity

13 stars, 0 forks

Maintenance

Pushed today

License

MIT

Install

npx skills add wangyuahn/nori-code --skill sync-changelog

Install safety

standard package or runtime install path

Permission surface

secrets or environment access, shell or command execution

Agent outcomes

No agent outcome data yet

Docs

Strong README/SKILL.md context

Risk summary

Review before production

  • The SKILL.md excerpt is truncated; the full document may contain additional details not reviewed, but the provided portion is sufficient for evaluation.
  • Financial research output is not financial advice; require human review before any live investment decision.
  • Low GitHub adoption signal
  • Quality score needs review

Install readiness

Install path available

  • Install path is available
  • Repository evidence is available
  • License is declared
  • No Agent Proven outcome evidence yet

Agent-readable metadata

Machine-readable decision data for this skill.

Use this block or the embedded JSON to decide whether an agent should install this skill, choose an alternative, or ask for human review first.

Open JSON

Suited tasks

  • GitHub automation workflows
  • Claude Code teams
  • builders willing to evaluate younger projects
  • Inspect repository metadata

Suited agents

CodexClaude CodeCursorOpenAgentSkill CLICLI

Install decision

Command
npx skills add wangyuahn/nori-code --skill sync-changelog
Policy
block
Human review
yes

Trust and risk

Trust
56/100
Audit
71/100
Risk level
Needs review

Outcome loop

Endpoint
/api/agent/outcome
Event ID
resolve
Outcomes
5

Install command

npx skills add wangyuahn/nori-code --skill sync-changelog

Do not use when

  • teams that need a vendor-supported SLA
  • production agents without a repository review
  • Low GitHub adoption signal
  • The SKILL.md excerpt is truncated; the full document may contain additional details not reviewed, but the provided portion is sufficient for evaluation.
  • No OpenAgentSkill engagement data yet

Agent safety v2

27/100 · Avoid automatic install

Blocked for auto-installblock

This skill should not be selected by an agent without explicit human security review.

Do not auto-install. Inspect the source, dependencies, and permission surface first.

Resolve via API

high

Shell or command execution

Skill metadata references terminal, CLI, shell, subprocess, or command execution workflows.

medium

Browser automation

Skill may drive a browser or interact with web pages.

medium

Network access

Skill likely fetches remote pages, APIs, repositories, or external services.

medium

Filesystem access

Skill may read or write project files, documents, generated artifacts, or local workspace state.

  • High-risk permission hints: Shell or command execution, Secrets or environment access
  • Dependency or permission surface needs review

Install targets

Install this skill in your agent workflow

Use the public install endpoint to fetch the command, safety checklist, target prompts, and canonical links for this skill.

skill install

OpenAgentSkill CLI

Resolve policy, run the source installer safely, and report a verified install receipt.

$ npx --yes https://github.com/Leon-Drq/openagentskill/releases/download/cli-v0.2.1/openagentskill-0.2.1.tgz install wangyuahn-sync-changelog

Agent resolve plan

Let an agent verify fit before installing.

The Resolve API returns the selected skill, alternatives, safety policy, audit notes, install target, and copy-paste prompt an agent can follow without scraping this page.

Open text plan

Agent should check

  • Task fit and alternatives from Resolve API.
  • Audit score, trust score, and safety policy warnings.
  • Install target compatibility for Codex, Claude Code, Cursor, or CLI.

Copy prompt

Task: Use sync-changelog in this workspace.
Resolve first: https://www.openagentskill.com/api/agent/resolve?task=Use%20sync-changelog%20for%20an%20agent%20workflow&agent=codex&max_risk=medium
Review install handoff: https://www.openagentskill.com/api/skills/wangyuahn-sync-changelog/install
Install command: npx skills add wangyuahn/nori-code --skill sync-changelog
Before running it, summarize audit warnings, required permissions, and the fallback skill if install is risky.

Agent handoff

Give an agent the install path, not another directory page.

Use the public install endpoint to fetch the command, safety checklist, target prompts, and canonical links for this skill.

Open install API

Agent prompt

Use sync-changelog for this task. Review https://www.openagentskill.com/api/skills/wangyuahn-sync-changelog/install, then install with: npx skills add wangyuahn/nori-code --skill sync-changelog

Registry metadata

Agent-readable profile for automatic skill selection.

This page exposes the same decision, trust, audit, use-case, and install signals through the Registry API, so agents can rank this skill without scraping the UI.

Open manifest

Agent fit

57/100

GitHub automation

Platforms

Claude Code

Audit report

Needs review · 71/100

A machine-readable review of install readiness, security metadata, maintenance, and adoption risk.

View audit reportView eval report

Agent decision cockpit

Needs validation for GitHub automation

Do a manual repository review before adding this to an agent workflow.

57
Readiness
Review
Stage

Role in stack

Needs validation

Primary fit

GitHub automation

Trust label

Needs manual review

Install path

Command ready

Use when

  • GitHub automation workflows
  • Claude Code teams
  • builders willing to evaluate younger projects

Evidence

  • recent repository activity
  • install command or GitHub repo available
  • 58/100 quality profile

review first

  • Low GitHub adoption signal
  • The SKILL.md excerpt is truncated; the full document may contain additional details not reviewed, but the provided portion is sufficient for evaluation.
  • No OpenAgentSkill engagement data yet

Implementation path

  1. 1Install it in a sandbox agent and run one GitHub automation task end to end.
  2. 2Compare output quality, latency, and failure behavior against at least one alternative.
  3. 3Promote it into production only after reviewing repository permissions, license, and maintenance signals.

Trust profile

Do not auto-install

Trust Score v5 found insufficient evidence for agent installation. Treat this as discovery material, not an executable recommendation.

56
OpenAgentSkill Trust Score

GitHub adoption

FIX

13 GitHub stars

Stars/forks activity

FIX

13 stars, 0 forks; issue activity unavailable in current metadata

Recent maintenance

PASS

Pushed today

License clarity

PASS

MIT

Good signals

  • AI review approved
  • Install path is available
  • Repository evidence is available
  • Recently maintained repository
  • Install command has no obvious high-risk pattern
  • Outcome loop is ready but needs first real agent run

Review before install

  • The SKILL.md excerpt is truncated; the full document may contain additional details not reviewed, but the provided portion is sufficient for evaluation.
  • Financial research output is not financial advice; require human review before any live investment decision.
  • Low GitHub adoption signal
  • Quality score needs review
  • Permission surface needs review: secrets or environment access, shell or command execution
  • GitHub adoption: 13 GitHub stars
  • Stars/forks activity: 13 stars, 0 forks; issue activity unavailable in current metadata
  • Dependency/runtime risk: command execution surface, credential or environment access
  • Permission surface: secrets or environment access, shell or command execution
  • No real agent outcome reports yet
  • Human review required before unattended installation

Recommended action

Choose a stronger alternative or inspect the source manually before any install attempt.

Quality profile

Promising candidate for agent workflows

Useful candidate, but compare it with alternatives before adopting.

58
GitHub stars
13
Freshness
Today
Install ready
Yes
License
MIT
Review before install: Low GitHub adoption signal · The SKILL.md excerpt is truncated; the full document may contain additional details not reviewed, but the provided portion is sufficient for evaluation.

Workflow fit

Use this skill in these scenarios

Workflow fit

Add it to a complete workflow

Alternative shortlist

Compare before you install

Similar skills that may fit this task.

Compare all

Overview

--- name: sync-changelog description: Use after a release succeeds, when maintainers need to sync apps/nori-code/CHANGELOG.md into docs/en/release-notes/changelog.md and docs/zh/release-notes/changelog.md, then open a PR on a dedicated branch. ---

# Sync Changelog

## Overview

`kimi-code` uses changesets for versioning. Each package gets its own `CHANGELOG.md`. The user-facing CLI package, `@moonshot-ai/kimi-code`, writes its changelog here:

```text apps/nori-code/CHANGELOG.md ```

This file is the **only upstream source** for the documentation-site changelog. Internal package changelogs such as `packages/*/CHANGELOG.md` do not go into the documentation site.

After the release flow finishes (Release PR merged → `Version Packages` completed → npm publish succeeded), maintainers manually run this skill to copy the new CLI changelog entries into the docs site, translate the English increment into Chinese, wait for an optional human review, then commit on a dedicated branch and open a PR.

## When To Use

- A new version has been published to npm. - The top of `apps/nori-code/CHANGELOG.md` contains version blocks that are not yet in `docs/en/release-notes/changelog.md`. - The `gen-docs` flow does not run this automatically; maintainers must explicitly do it after release.

Do **not** run this before the Release PR is merged. At that point, changesets has not yet written the new version into `apps/nori-code/CHANGELOG.md`.

## Source And Targets

| File | Role | Edited by | |---|---|---| | `apps/nori-code/CHANGELOG.md` | **Only upstream source**, generated by changesets | Never edit manually | | `docs/en/release-notes/changelog.md` | English docs changelog; source of truth for docs | This skill | | `docs/zh/release-notes/changelog.md` | Chinese docs changelog, translated from English | This skill, following `translate-docs` |

Core rule: the English docs changelog is the source of truth, and Chinese is translated from English. This matches `translate-docs`.

## Preconditions

Before editing, confirm:

- The released version exists on npm (`npm view @moonshot-ai/kimi-code versions --json`) or has a matching GitHub Release tag. - The top of `apps/nori-code/CHANGELOG.md` is that new version.

If any condition is not true, stop and confirm with the user.

Do **not** edit or commit directly on `main`. All sync work happens on a dedicated branch created in step 1.

## Workflow

### 1. Prepare Branch

Start from an up-to-date default branch:

```bash git fetch origin git checkout main git pull --ff-only origin main ```

Before creating the branch, peek at the version range so the branch name matches the newest version being synced:

```bash rg '^## ' apps/nori-code/CHANGELOG.md | head -5 rg '^## ' docs/en/release-notes/changelog.md | head -5 ```

Name the branch after the newest upstream version that is not yet in the English docs page:

```text docs/changelog-sync-<newest-version> ```

Example: syncing `0.2.1` only → `docs/changelog-sync-0.2.1`.

```bash git checkout -b docs/changelog-sync-<newest-version> ```

If the branch already exists locally or on the remote, stop and confirm with the user instead of reusing it.

### 2. Find The Version Range

Use the same version lists from step 1. Confirm:

- First sync: copy all upstream version blocks into the English page. - Incremental sync: copy every upstream version block above the latest version already present in the English page.

Use upstream order: newest version first.

### 3. Strip Decorations And Extract Entry Text

Upstream entries look like this:

```markdown - [#317](https://github.com/...) [`2f51db4`](https://github.com/...) - Clean up lint warnings ... ```

Keep:

- Version headings such as `## 0.2.0`. - Only the body text of each entry, after the PR/hash decoration.

Remove:

- The upstream H1 `# @moonshot-ai/kimi-code` because the docs page already has `# Changelog`. - Changesets subheadings such as `### Patch Changes`, `### Minor Changes`, and `### Major Changes`. - PR links such as `[#317](...)`. - Commit hash links such as ``[`2f51db4`](...)``.

After stripping, each entry should be only:

```markdown - <body text> ```

Upstream language rule: `gen-changesets` requires changelog entries to be English. If the upstream CLI changelog contains a non-English entry, stop and report it to the user. Do not silently rewrite it while syncing docs.

Public-text rule: do not copy real internal endpoints, key names, account names, or service names into docs changelogs. Replace examples with neutral placeholders such as `example.com`, `example.test`, or `YOUR_API_KEY` while preserving the user-visible meaning.

### 4. Classify Entries

The docs changelog uses five section types:

| English section | Chinese section | Meaning | |---|---|---| | `### Features` | `### 新功能` | New user-facing functionality, such as a new command, flag, mode, or capability that did not exist before | | `### Bug Fixes` | `### 修复` | Fixes for behavior that was broken | | `### Polish` | `### 优化` | User-visible improvements to existing functionality, including UX adjustments, behavior tweaks, and performance improvements that are not fixes or new capabilities | | `### Refactors` | `### 重构` | Internal changes with no user-visible behavior change, including build, CI, tests, dependency cleanup, and internal renames | | `### Other` | `### 其他` | Anything that does not fit above, such as CDN/endpoint swaps and docs-related artifacts |

Classification process:

1. Classify from the stripped entry text first. 2. If unclear, inspect the related commit or PR: - Use the stripped commit hash with `git show <hash>`. - Or use the PR number with `gh pr view <NNN>`. 3. If it is still unclear, put it in `Other`. Do not guess or force entries into `Features`.

Features vs. Polish: ask whether the entry introduces something the user could not do before. If yes (new command, flag, mode, viewer, or capability), use `Features`. If it only improves an existing surface (a UI panel that already existed, an existing prompt, an existing tool card, an existing payload pipeline), use `Polish`. Verbs like `Add` do not automatically mean `Features` — a small visual addition to an existing UI is still polish.

Keyword hints:

- **Features**: `Add ... command/flag/option/mode/viewer`, `Introduce`, `Support`, `Allow`, `Enable`, `Implement`, `New ... command/flag/option` - **Bug Fixes**: `Fix`, `Resolve`, `Correct`, `Address`, `Prevent ... from`, `Stop ... from`, `... no longer ...` - **Polish**: `Polish`, `Optimize`, `Improve`, `Enhance`, `Speed up`, `Reduce`, `Cap`, `Shorten`, `Wrap`, `Clarify`, `Tweak`, `Adjust`, `Offload`, `Show ... in existing surface`, performance and UX adjustments to existing features - **Refactors**: `Refactor`, `Rename`, `Clean up`, `Simplify`, `Remove unused`, `Migrate to`, `Unify`, `Restructure`, `Internal`, dependency bumps, pure CI/build/test changes - **Other**: docs artifacts, CDN/endpoint switches, anything that genuinely fits no other section

Within each version, section order is:

```text Features → Bug Fixes → Polish → Refactors → Other ```

Omit empty sections. Within each section, order entries by reader value, not upstream order:

1. Put the most valuable, obvious, and larger changes first. 2. Prefer broad user-visible features, workflow-changing fixes, high-frequency bugs, and large cross-cutting improvements over small polish, narrow edge cases, and internal cleanup. 3. If entries have similar value, preserve upstream order.

Do not reword or exaggerate entries just to make them look more important; only reorder existing entries.

### 5. Write The English Page

Never change the English page header:

```markdown # Changelog

This page documents the changes in each Kimi Code CLI release. ```

Insert new version blocks immediately after the header paragraph and before the previous latest version.

Every version heading must carry its release date in parentheses:

```text ## <version> (YYYY-MM-DD) ```

Take the date from the version's published GitHub Release tag, not from when you run the sync:

```bash git log -1 --format=%cs "@moonshot-ai/kimi-code@<version>" ```

Use the half-width parenthesis form ` (YYYY-MM-DD)` on the English page. Never invent or guess a date; if the tag is missing, stop and confirm with the user.

Example:

```markdown ## 0.2.0 (2026-05-26)

### Bug Fixes

- Fix the TUI not restoring the current todo list after resuming a session.

### Refactors

- Clean up lint warnings across the CLI, SDK examples, and bundled runtime code without changing product behavior. - Update the native release workflow to use current GitHub artifact actions. ```

### 6. Translate The Increment Into Chinese

After updating the English page, translate only the newly added English content into `docs/zh/release-notes/changelog.md`.

Follow `translate-docs`, direction `en → zh`. Changelog direction is English-to-Chinese even though many other docs flows use Chinese-to-English.

Chinese page requirements:

- Header:

```markdown # 变更记录

本页记录 Kimi Code CLI 每个版本的变更内容。 ```

- Preserve version headings including the release date, but use full-width parentheses on the Chinese page, such as `## 0.2.0(2026-05-26)`. The date must match the English page; only the parenthesis style differs (half-width `()` in English, full-width `()` in Chinese). - Translate section headings exactly: - `### Features` → `### 新功能` - `### Bug Fixes` → `### 修复` - `### Polish` → `### 优化` - `### Refactors` → `### 重构` - `### Other` → `### 其他` - The Chinese page must mirror the English page 1:1 for versions, sections, section order, entry order, and entry counts. - Keep the classification and entry order from the English page. Do not reclassify or reorder while translating. - Translate only entry body text. Do not add entries that are not present in English. - Follow `docs/AGENTS.md` for Chinese typography: full-width punctuation, spaces between Chinese and English, and the glossary.

#### Chinese wording style

Structural fidelity does not mean literal translation. The Chinese entries should read like a concise, idiomatic Chinese changelog. Keep the same facts as the English entry, but rephrase for natural Chinese prose.

Guidelines:

- **One entry, one sentence.** Avoid chaining multiple effects with commas or semicolons. If the English entry is long, split it into shorter sentences or keep only the most important effect. - **Prefer common changelog verbs**: 新增、支持、修复、优化、改进、调整. - **Avoid indirect "through... make..." structures**. Do not write "通过 X,使 Y"; prefer direct cause-effect or just state the result. - Bad: `通过缓存已渲染消息行,使终端在长篇对话中保持响应。` - Better: `缓存已渲染消息行,提升长对话下终端的响应速度。` - **Be specific, not vague**. Prefer concrete actions over abstract quality words. - Bad: `加固默认系统提示词和内置工具描述。` - Better: `优化默认系统提示词与内置工具描述,避免 Agent 阻塞后台任务。` - **Name concrete files or config keys when it helps clarity**. - Bad: `插件现在可以在其清单中声明 hooks。` - Better: `插件现支持在 kimi.plugin.json 中声明生命周期 hooks。` - **Include required argument placeholders in CLI options**. - Bad: `--allowed-host` - Better: `--allowed-host <host>` - **Keep usage hints to one short clause**. - Bad: `传入 --allowed-host 以允许额外的 host。例如 ... (多句展开)` - Better: `例如 kimi web --allowed-host example.com。` - **Do not translate technical identifiers**: keep command names, flag names, file names, env vars, and config keys as-is.

Example — translating a feature entry:

English source:

```markdown - Add a --allowed-host flag to kimi web that lets extra Host header values pass the DNS-rebinding check, and include allow guidance in the 403 error message. Pass --allowed-host <host> to allow an extra host. ```

Before (literal, wordy):

```markdown - 为 `kimi web` 新增 `--allowed-host` 标志,允许额外的 Host 请求头值通过 DNS 重绑定检查,并在 403 错误消息中包含允许指引。传入 `--allowed-host <host>` 以允许额外的 host。例如 `kimi web --allowed-host example.com`。 ```

After (concise, idiomatic):

```markdown - `kimi web` 新增 `--allowed-host <host>` 选项,可将指定 Host 加入 DNS 重绑定白

Technical details

Version
1.0.0
License
MIT
Last updated
Aug 23, 2026
Published
Aug 22, 2026

Decision snapshot

Needs validation

57
Ready
Review
Stage

recent repository activity

Audit

Install review

Install and adoption review

71
Needs review
Security
69/100
Maintenance
100/100
Install
92/100
Open full auditView eval report

Agent-proven evidence

Agent-proven evidence

Outcome reports after resolve, review, install, and one narrow run.

0
Proven
Needs first agent runAuto-install: review firstLast: Unknown
Success rate
Recent failure
Outcomes
0
Output quality
Failed
0
Not relevant
0
Installs
0
Risk blocked
0
Setup needed
0
Production
0

No agent outcome data yet. The first agent run can report success, setup needs, risk blocks, failure, or not-relevant through /api/agent/outcome.

Install

Add to agent workflow

Free and open source. Review the report before installing into production agents.

Growth loop

Share kit

X

Scenario-led draft for sync-changelog, ready for a manual X post.

Curator note
sync-changelog: Use after a release succeeds, when maintainers need to sync apps/nori-code/CHANGELOG.md into...

13 stars

https://www.openagentskill.com/skills/wangyuahn-sync-changelog?ref=x
Open X draft
Optional reply with install command
Listing + install path for sync-changelog:
https://www.openagentskill.com/skills/wangyuahn-sync-changelog?ref=x

Install: npx skills add wangyuahn/nori-code --skill sync-changelog

Listing source

Registry indexed

Claimable

This listing was indexed from public sources and is not marked official until a maintainer claim is approved.

Creator
wangyuahn
Indexed by
OpenAgentSkill community index

Attribution links to the public repository or creator profile. Creators can claim the listing to update ownership signals.

Claim this skill

Owner claim

Claim this skill listing

This Registry indexed listing is attributed to wangyuahn but is not marked official yet. Claim it to add a verified owner signal and make future launch, install, and audit updates easier to trust.

Creator backlink kit

Add the evidence badges to your README

Show the canonical listing, current trust and audit signals, and real Agent-Proven evidence where developers evaluate the repository.

[![Listed on OpenAgentSkill](https://www.openagentskill.com/api/badge/wangyuahn-sync-changelog?metric=listed&label=Listed)](https://www.openagentskill.com/skills/wangyuahn-sync-changelog)
[![OpenAgentSkill Trust](https://www.openagentskill.com/api/badge/wangyuahn-sync-changelog?metric=trust&label=Trust)](https://www.openagentskill.com/skills/wangyuahn-sync-changelog)
[![OpenAgentSkill Audit](https://www.openagentskill.com/api/badge/wangyuahn-sync-changelog?metric=audit&label=Audit)](https://www.openagentskill.com/skills/wangyuahn-sync-changelog/audit)
[![Agent Proven](https://www.openagentskill.com/api/badge/wangyuahn-sync-changelog?metric=proven&label=Agent%20Proven)](https://www.openagentskill.com/skills/wangyuahn-sync-changelog)

Author

W

wangyuahn

@wangyuahn

Platform fit

Health signals

GitHub stars
13
Quality score
31/100
Last GitHub push
Aug 23, 2026
Framework hints
Unknown
OpenAgentSkill views
0
Install copies
0
Outbound clicks
0

Community signal

Share whether this skill looks useful for your agent workflow. Aggregated feedback improves rankings over time.

Trust & safety

Do not auto-install

56
  • GitHub adoption13 GitHub starsFIX
  • Stars/forks activity13 stars, 0 forks; issue activity unavailable in current metadataFIX
  • Recent maintenancePushed todayPASS
  • License clarityMITPASS
  • README/SKILL.md completenessMetadata includes enough usage and workflow contextPASS
  • Dependency/runtime riskcommand execution surface, credential or environment accessCHECK