Atlas / Skills / oh-my-mermaid / Omm Push

Omm PushSAFE

skills/oh-my-mermaid/omm-push

Turn complex codebases into clear, navigable architecture diagrams with Claude Code.

Verdict
SAFE
Grade
B
Trust score
89 /100
Version
—
Hosts
—
License
MIT
Stars
2,503
01

Overview

Turn complex codebases into clear, navigable architecture diagrams with Claude Code.

Read from source at commit a306c32c4012OBSERVED · 2026-10-09
02

What it tells the agent

The instruction file, verbatim from the audited commit — this is the text the model reads, and the surface the audit's instruction layer examines. Quoted here so you can judge it without cloning anything.

---
name: omm-push
description: Push architecture docs to oh-my-mermaid cloud. Handles login, link, and push workflow with error guidance. Use when the user says "omm push", "push to cloud", "deploy architecture", or "share architecture".
---

# omm-push — Cloud Push Workflow

## Purpose

Automate the full workflow of pushing .omm/ architecture docs to the oh-my-mermaid cloud service.

## Prerequisites

Ensure the `omm` CLI is available:

```bash
command -v omm || npm install -g oh-my-mermaid
```

If the install command fails (permission denied), tell the user:
"Please run `npm install -g oh-my-mermaid` in your terminal, then try again."

## Workflow

### Step 1: Check Login Status

Run `omm share` via Bash. If it errors with "not logged in":
- Tell the user: "You need to log in first."
- Run `omm login` — this opens a browser for GitHub OAuth
- Wait for the user to complete login

### Step 2: Check Project Link

Run `omm share` via Bash. If it errors with "no project slug":
- Run `omm link` — this sets the cloud project slug from the directory name
- Confirm: "Linked to {slug}"

### Step 3: Push

Run `omm push` via Bash.

Handle errors:
- **401 Unauthorized**: "Login expired. Run `omm login` again."
- **403 Free plan limit**: "Free plan allows 1 project. Upgrade at https://ohmymermaid.com/pricing"
- **Network error**: "Cannot reach server. Check your connection."

### Step 4: Report

On success, output:
- Number of files uploaded
- View URL: `https://ohmymermaid.com/p/{slug}`
- Share URL (if Pro): "Run `omm share` to get the shareable link"

## Rules

- Always check login before pushing
- Always check link before pushing
- Do NOT skip steps — each depends on the previous
- If any step fails, stop and report the error with guidance
03

Trust audit

SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.

LayerWhat it checksResult
L0Provenance & inventoryPASS
L1Static analysis of the codeNA
L2Instruction surface (what it tells the agent)PASS
L3Class-specific surfacePASS
L4Behavioural (sandbox)SKIPPED

What the source does

Filesystem
none-observed
Network
none-observed
Shell
none-observed
Dependencies
pinned
Secrets in source
none-found

Findings (0)

No findings outside the package's declared scope.

Gates applied: no_behavioural_pass.

Audited 2026-10-09 · audit v0.4.1 · source sha a306c32c4012full audit observations/trust-audit/skill/oh-my-mermaid__omm-push.json · Report an issue / request a re-scan
04

Audit history

Every audit this skill has had.

DateSourceVerdictGradeScoreChange
2026-10-09a306c32c4012SAFEB89first audit
05

Questions

What does the Omm Push skill do?

Turn complex codebases into clear, navigable architecture diagrams with Claude Code.

Is Omm Push safe to install?

The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean skill reads B.

What can Omm Push access on my machine?

The audit observed no filesystem, network or shell use at all in its source.

How current is this page?

The grade is for one exact copy of the source (a306c32c4012), read on 2026-10-09. The repository is watched, and a new audit runs when it changes — this is the first audit.

Advertisement