Skill CreatorCAUTION
The most comprehensive Claude Code guide: agentic workflows, hooks, skills, MCP servers, quizzes, and production-ready templates. 430K+ lines.
Overview
The most comprehensive Claude Code guide: agentic workflows, hooks, skills, MCP servers, quizzes, and production-ready templates. 430K+ lines.
d90170da4369OBSERVED · 2026-10-07Host compatibility
What the documentation claims. We have not run a compatibility test.
| Host | Status | Notes |
|---|---|---|
| claude-code | mentioned |
What it tells the agent
The instruction file, verbatim from the audited commit — this is the text the model reads, and the surface the audit's instruction layer examines. Quoted here so you can judge it without cloning anything.
--- name: skill-creator description: "Scaffold a new Claude Code skill with SKILL.md, frontmatter, and bundled resources. Use when creating a custom skill, standardizing skill structure across a team, or packaging a skill for distribution." allowed-tools: Write Bash effort: low --- # Skill creator Generate new Claude Code skills with correct directory structure, YAML frontmatter, and optional bundled resources. ## When to use - Creating a new custom skill for a project - Standardizing skill structure across a team - Generating skill templates with scripts, references, and assets - Packaging skills for distribution ## Skill directory structure ``` skill-name/ ├── SKILL.md # Required: Main skill file with YAML frontmatter ├── scripts/ # Optional: Executable code for deterministic tasks ├── references/ # Optional: Documentation loaded contextually └── assets/ # Optional: Templates, images, boilerplate (not loaded into context) ``` ## Workflow ### 1. Create the skill ``` Create a new skill called "my-skill-name" in ~/.claude/skills/ ``` Or with a specific purpose: ``` Create a skill for generating release notes from git commits, with templates for CHANGELOG.md and Slack announcements ``` Or via the initialization script: ```bash python3 ~/.claude/skills/skill-creator/scripts/init_skill.py <skill-name> --path <output-directory> ``` ### 2. Generated SKILL.md template The created SKILL.md follows this structure: ```markdown --- name: skill-name description: "What the skill does. Use when [trigger conditions]." --- # Skill Name ## When to Use - Trigger condition 1 - Trigger condition 2 ## What This Skill Does 1. **Step 1**: Description 2. **Step 2**: Description ## How to Use [Usage examples] ## Example **User**: "Example prompt" **Output**: [Example output] ``` ### 3. Validate the skill After creation, verify: 1. **Frontmatter**: `name` is kebab-case, 1-64 chars; `description` is a quoted string with "Use when" clause 2. **Content**: Has "When to Use" section with trigger conditions and at least one usage example 3. **Structure**: SKILL.md is under 5000 words; references and assets are in correct subdirectories 4. **Test**: Invoke the skill with a real use case and confirm expected output ### 4. Package for distribution (optional) ```bash python3 ~/.claude/skills/skill-creator/scripts/package_skill.py <path/to/skill-folder> [output-directory] ``` ## Organizational patterns | Pattern | Best For | Structure | |---------|----------|-----------| | **Workflow-Based** | Sequential procedures | Step-by-step instructions | | **Task-Based** | Multiple operations | Collection of tasks | | **Reference/Guidelines** | Standards, specs | Rules and examples | | **Capabilities-Based** | Interrelated features | Feature descriptions | ## Example: Creating a release notes skill **User**: "Create a skill for generating release notes with 3 output formats" **Steps**: 1. Initialize: `init_skill.py release-notes-generator --path ~/.claude/skills/` 2. Add templates to `assets/`: `changelog-template.md`, `pr-release-template.md`, `slack-template.md` 3. Add rules to `references/`: `tech-to-product-mappings.md` 4. Complete `SKILL.md` with usage instructions 5. Validate: check frontmatter, test with a real commit range 6. Package: `package_skill.py ~/.claude/skills/release-notes-generator` ## Tips - Keep SKILL.md under 5000 words for efficient context usage - Use `references/` for domain knowledge that doesn't change often - Put templates in `assets/` so they're not auto-loaded into context - Always include a "Use when" clause in the description frontmatter - Test with real use cases before packaging
Trust audit
CAUTIONgrade B · trust 89/100 Install with care. The audit found things worth knowing before you trust its output.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | WARN |
| L1 | Static analysis of the code | PASS |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (2)
whitepapers/recap-cards/en/_extensions
whitepapers/recap-cards/fr/_extensions
Gates applied: no_behavioural_pass.
d90170da4369full audit observations/trust-audit/skill/florianbruniaux__skill-creator.json · Report an issue / request a re-scanAudit history
Every audit this skill has had.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-07 | d90170da4369 | CAUTION | B | 89 | first audit |
Questions
What does the Skill Creator skill do?
The most comprehensive Claude Code guide: agentic workflows, hooks, skills, MCP servers, quizzes, and production-ready templates. 430K+ lines.
Is Skill Creator safe to install?
With care. The audit graded it B (89/100) and found 2 things worth knowing before you trust this skill, listed below with the exact line each was found on.
What can Skill Creator access on my machine?
The audit observed no filesystem, network or shell use at all in its source.
Which assistants does Skill Creator work with?
Its documentation mentions claude-code. That is what the text claims, not a compatibility test we ran.
How current is this page?
The grade is for one exact copy of the source (d90170da4369), read on 2026-10-07. The repository is watched, and a new audit runs when it changes — this is the first audit.