Manage SkillsSAFE
A framework-agnostic, git-native standard for defining AI agents
Overview
A framework-agnostic, git-native standard for defining AI agents
799d6d0ad18cOBSERVED · 2026-10-07What it tells the agent
The instruction file, verbatim from the audited commit — this is the text the model reads, and the surface the audit's instruction layer examines. Quoted here so you can judge it without cloning anything.
--- name: manage-skills description: "Searches the SkillsMP registry, installs skills locally or globally, creates custom skills with SKILL.md frontmatter, and manages the skill lifecycle. Use when the user wants to find skills, add new capabilities, install a skill, browse available skills, create a custom skill, or manage the skills system." license: MIT metadata: author: gitagent version: "1.0.0" category: skills --- # Manage Skills ## When to Use When a user wants to find skills, install them, create new ones, or understand the skills system. ## Verify Installation After installing a skill, confirm it's available: ```bash opengap skills list -d ./my-agent | grep "code-review" ``` ## Search Skills ```bash # Search SkillsMP registry opengap skills search "code review" # Search GitHub opengap skills search "pdf reader" --provider github # Limit results opengap skills search "testing" --limit 5 ``` ## Install Skills ```bash # Install from SkillsMP to agent-local skills/ opengap skills install code-review -d ./my-agent # Install globally to ~/.agents/skills/ opengap skills install code-review --global # Install from GitHub opengap skills install owner/repo#skills/my-skill --provider github ``` ## List Skills ```bash # Show all discovered skills (local + global) opengap skills list -d ./my-agent # Only agent-local skills opengap skills list -d ./my-agent --local ``` ## Inspect a Skill ```bash opengap skills info code-review -d ./my-agent ``` Shows: name, description, license, allowed tools, metadata, optional directories. ## Create a Skill 1. Create directory: `skills/<name>/` 2. Create `SKILL.md` with frontmatter: ```markdown --- name: my-skill description: What this skill does (max 1024 chars) license: MIT allowed-tools: Read Edit Grep Glob Bash metadata: author: your-name version: "1.0.0" category: developer-tools --- # Instructions [Detailed instructions for using this skill. Keep under ~5000 tokens / ~20000 characters.] ``` 3. Reference it in `agent.yaml`: ```yaml skills: - my-skill ``` 4. Validate: ```bash opengap validate -d ./my-agent ``` ## Skill Discovery Paths Skills are found in this order (first match wins): | Priority | Path | |----------|------| | 1 | `<agent>/skills/` | | 2 | `<agent>/.agents/skills/` | | 3 | `<agent>/.claude/skills/` | | 4 | `<agent>/.github/skills/` | | 5 | `~/.agents/skills/` | ## Optional Directories in Skills - `scripts/` — Executable scripts the skill can reference - `references/` — Reference documents - `assets/` — Images, static files - `agents/` — Skill-specific sub-agents
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | NA |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (0)
No findings outside the package's declared scope.
Gates applied: no_behavioural_pass.
799d6d0ad18cfull audit observations/trust-audit/skill/open-gitagent__manage-skills.json · Report an issue / request a re-scanAudit history
Every audit this skill has had.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-07 | 799d6d0ad18c | SAFE | B | 89 | first audit |
Questions
What does the Manage Skills skill do?
A framework-agnostic, git-native standard for defining AI agents
Is Manage Skills safe to install?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean skill reads B.
What can Manage Skills access on my machine?
The audit observed no filesystem, network or shell use at all in its source.
How current is this page?
The grade is for one exact copy of the source (799d6d0ad18c), read on 2026-10-07. The repository is watched, and a new audit runs when it changes — this is the first audit.