Wiki IngestSAFE
A framework-agnostic, git-native standard for defining AI agents
Overview
A framework-agnostic, git-native standard for defining AI agents
799d6d0ad18cOBSERVED · 2026-10-07What it tells the agent
The instruction file, verbatim from the audited commit — this is the text the model reads, and the surface the audit's instruction layer examines. Quoted here so you can judge it without cloning anything.
--- name: wiki-ingest description: "Ingest a raw source document into the wiki. Reads the source, extracts key information, creates or updates wiki pages, maintains cross-references, and logs the operation. Use when the user adds a new source or says 'ingest this'." allowed-tools: Read Write Edit Glob Grep --- # Wiki Ingest Process a new source document and integrate its knowledge into the wiki. ## Workflow ### Step 1: Read the source Read the full source document from `knowledge/`. Identify: - Key entities (people, organizations, concepts, technologies) - Main claims and findings - Relationships between entities - Data points and statistics - Contradictions with or confirmations of existing knowledge ### Step 2: Discuss with the user Before writing, share a brief summary of key takeaways. Ask: - What aspects to emphasize? - Any entities or concepts to prioritize? - Should this update existing pages or create new ones? ### Step 3: Update the wiki For each significant entity or concept found in the source: 1. **Check if a wiki page exists** — read `memory/wiki/index.md` 2. **If page exists** — read it, integrate new information, update the "Sources" section, update frontmatter `updated` date and `source_count` 3. **If page doesn't exist** — create a new page in `memory/wiki/` with proper frontmatter, content, and source citations 4. **Update cross-references** — add `[[wikilinks]]` in both directions between related pages ### Step 4: Write a source summary page Create `memory/wiki/sources/<source-name>.md` with: - One-paragraph summary - Key claims extracted - Entities mentioned (with wikilinks to their pages) - Date ingested ### Step 5: Update index and log 1. Update `memory/wiki/index.md` — add/update entries for all pages touched 2. Update `knowledge/index.yaml` — ensure the source is cataloged with tags and priority 3. Append to `memory/log.md`: ``` ## [YYYY-MM-DD] ingest | Source Title - Pages created: [list] - Pages updated: [list] - Key findings: [1-2 sentences] ``` ## Example User drops `knowledge/quantum-computing-review-2026.pdf` and says "ingest this". 1. Read the paper, identify entities: quantum computing, error correction, IBM, Google, topological qubits 2. Discuss key findings with user 3. Create/update: `quantum-computing.md`, `error-correction.md`, `ibm.md`, `google.md` 4. Create: `sources/quantum-computing-review-2026.md` 5. Update `index.md` with all new/updated pages 6. Append ingest entry to `log.md` A single source might touch 5-15 wiki pages. This is normal and expected.
Trust audit
SAFEgrade B · trust 89/100 Nothing in the source contradicts what it says it does. Grade A is reserved for packages that have also passed the behavioural sandbox.
| Layer | What it checks | Result |
|---|---|---|
| L0 | Provenance & inventory | PASS |
| L1 | Static analysis of the code | NA |
| L2 | Instruction surface (what it tells the agent) | PASS |
| L3 | Class-specific surface | PASS |
| L4 | Behavioural (sandbox) | SKIPPED |
What the source does
- Filesystem
- none-observed
- Network
- none-observed
- Shell
- none-observed
- Dependencies
- pinned
- Secrets in source
- none-found
Findings (0)
No findings outside the package's declared scope.
Gates applied: no_behavioural_pass.
799d6d0ad18cfull audit observations/trust-audit/skill/open-gitagent__wiki-ingest.json · Report an issue / request a re-scanAudit history
Every audit this skill has had.
| Date | Source | Verdict | Grade | Score | Change |
|---|---|---|---|---|---|
| 2026-10-07 | 799d6d0ad18c | SAFE | B | 89 | first audit |
Questions
What does the Wiki Ingest skill do?
A framework-agnostic, git-native standard for defining AI agents
Is Wiki Ingest safe to install?
The audit found nothing in the source that contradicts what it says it does, and graded it B (89/100). Grade A is held back for packages that have also passed a sandboxed behavioural run, which is why a clean skill reads B.
What can Wiki Ingest access on my machine?
The audit observed no filesystem, network or shell use at all in its source.
How current is this page?
The grade is for one exact copy of the source (799d6d0ad18c), read on 2026-10-07. The repository is watched, and a new audit runs when it changes — this is the first audit.