AgentStack
Browse Sign in
Browse Why AgentStack Sell Docs
Sign in
MCP unreviewed MIT Self-run

Skrills

mcp-athola-skrills · by athola

Coordinate skills between Codex, Copilot, and Claude Code. Validates, analyzes, and syncs skills, subagents, commands, and configuration between multiple CLIs.

No reviews yet
0 installs
30 views
0.0% view→install

Install

$ agentstack add mcp-athola-skrills

Open-source listing, not yet scanned by AgentStack. Follow the source repository for install instructions.

Security review

⚠ Flagged

1 finding(s); flagged for manual review. · v0.1.0 How review works →

  • Prompt-injection patterns
  • Secret / credential exfiltration
  • Dangerous shell & filesystem operations
  • Untrusted network calls
  • Known-malicious package signatures
  • high Pipes remote content directly into a shell (remote code execution).

What it can access

  • Network access Used
  • Filesystem access No
  • Shell / process execution No
  • Environment & secrets No
  • Dynamic code execution No

From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.

View the full security report →

Reliability & compatibility

Not yet reviewed
0 installs to date
no reviews yet
3mo ago

Declared compatibility

Claude CodeClaude DesktopCursorWindsurf

Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.

Preview Execution monitoring

We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.

How agent discovery & health will work →
Are you the author of Skrills? Claim this listing to set pricing, connect Stripe payouts, and keep 70% of every sale.
Sign up to claim

About

Skrills

[](https://crates.io/crates/skrills) [](https://crates.io/crates/skrills) [](https://athola.github.io/skrills/) [](https://github.com/athola/skrills/actions/workflows/ci.yml) [](https://github.com/athola/skrills/actions/workflows/coverage.yml) [](https://github.com/athola/skrills/actions/workflows/audit.yml) [](LICENSE) [](https://github.com/RoggeOhta/awesome-codex-cli)

Write a skill once, use it everywhere. Skrills validates and syncs skills, commands, agents, MCP servers, and hooks across Claude Code, Codex CLI, GitHub Copilot CLI, and Cursor, all from a single Rust binary.

[Install](book/src/installation.md) · User Guide · [CLI Reference](book/src/cli.md) · [FAQ](docs/FAQ.md) · [Changelog](book/src/changelog.md)

Install

macOS / Linux:

curl -LsSf https://raw.githubusercontent.com/athola/skrills/HEAD/scripts/install.sh | sh

Windows PowerShell:

powershell -ExecutionPolicy Bypass -NoLogo -NoProfile -Command ^
"Remove-Item alias:curl -ErrorAction SilentlyContinue; iwr https://raw.githubusercontent.com/athola/skrills/HEAD/scripts/install.ps1 -UseBasicParsing | iex"

Or cargo install skrills. See the [installation guide](book/src/installation.md) for HTTP transport and service setup.

Everyday use

Skrills handles the loop of writing skills and keeping every CLI current. The common jobs:

Make your Claude skills work everywhere. Codex and Copilot are strict about frontmatter; Cursor uses its own rule format. Detect and fix the incompatibilities, then push to the other CLIs:

skrills validate --target both --autofix   # fix missing/invalid frontmatter and body
skrills sync-all                            # mirror everything to all four CLIs

Keep two environments in sync. Edit in one, mirror to another. File hashing preserves manual edits on both sides:

skrills sync --from cursor --to claude

Trim context-window cost. Surface your token-heaviest skills with reduction suggestions:

skrills analyze --min-tokens 1000 --suggestions

Watch what's loaded, live. cold-window continuously re-reads your plugins, skills, commands, and subagents, applying per-source token attribution and tiered alerts. Render it as a terminal TUI or a browser dashboard (or both):

skrills cold-window --tui                    # live TUI in this terminal (q / Ctrl-C to quit)
skrills cold-window --browser --port 8888    # same engine, browser dashboard at /dashboard

Keep it always-on in Zellij. Dedicate a pane to the TUI that respawns if it exits. Save as ~/.config/zellij/layouts/skrills.kdl and launch with zellij --layout skrills:

layout {
    tab name="cold-window" focus=true {
        pane command="bash" {
            // Loop respawns the TUI after a crash or reboot.
            args "-c" "until skrills cold-window --tui; do echo restarting...; sleep 2; done"
        }
    }
}

Already inside a Zellij session? Open it in a split without a layout file: zellij run -d down -- bash -c 'until skrills cold-window --tui; do sleep 2; done'.

Let other tools call Skrills. The MCP server exposes 36 tools (validation, sync, intelligence, research) over stdio or HTTP:

skrills serve --http 127.0.0.1:3000 --open

See the [quickstart tutorial](docs/tutorials/quickstart.md) for a full walkthrough and the [CLI reference](book/src/cli.md) for every command, including skill lifecycle tools (skill-deprecate, skill-rollback, skill-import, skill-score, skill-catalog).

Supported environments

Skrills syncs eight asset types across four CLIs. Each cell reflects what the adapter reads and writes today:

| Asset | Claude Code | Codex CLI | Copilot CLI | Cursor | |-------|:-----------:|:---------:|:-----------:|:------:| | Skills | Y | Y | Y | Y | | Commands | Y | Y | -- | Y | | Agents | Y | -- | Y | Y | | MCP Servers | Y | Y | Y | Y | | Hooks | Y | -- | -- | Y | | Instructions / Rules | Y | -- | Y | Y | | Preferences | Y | Y | Y | -- | | Plugin Assets | Y | -- | -- | Y |

A dash means that asset doesn't sync to that CLI, either because the CLI has no equivalent (Copilot CLI has no slash commands) or because the mapping isn't built yet (Cursor preferences). Plugin assets sync to Cursor's plugins/local/ so synced plugins appear installed, and stale entries are pruned automatically. See the [sync guide](book/src/sync-guide.md) for details.

CI integration

Validate skills on every pull request with the reusable GitHub Action:

- uses: athola/skrills/.github/actions/validate-skills@v0.8.2
  with:
    targets: all
    strict: true
    path: skills/

Configuration

Persistent settings live in ~/.skrills/config.toml (precedence: CLI flags > environment variables > config file):

[serve]
auth_token = "your-secret-token"
tls_auto = true
cors_origins = "https://app.example.com"

See [security docs](docs/security.md) for TLS setup and the [FAQ](docs/FAQ.md) for environment variables.

Documentation

| Resource | Description | |----------|-------------| | User Guide | Primary documentation (mdBook) | | [CLI Reference](book/src/cli.md) | All commands with examples | | [Sync Guide](book/src/sync-guide.md) | Cross-CLI sync workflows | | [MCP Tutorial](docs/tutorials/mcp.md) | Server setup and tool reference | | [Architecture](docs/architecture.md) | Crate graph and runtime flow | | [Security](docs/security.md) | Auth, TLS, threat model | | [Changelog](book/src/changelog.md) | Release history |

Limitations

  • Skrills validates and syncs files; it does not inject skills into

prompts at runtime.

  • Session-history mining works best with recent Claude Code / Codex CLI

versions.

  • LLM-based skill generation requires ANTHROPIC_API_KEY or

OPENAI_API_KEY.

Contributing

make lint test --quiet

Builds on stable Rust. See the [development guide](book/src/development.md) and [process guidelines](docs/process-guidelines.md). Update docs and tests with code. Report bugs with your OS, skrills --version, and logs (--trace-wire for MCP). For security, see the [security policy](docs/security.md).

License

[MIT](LICENSE)

[](https://www.star-history.com/#athola/skrills&type=date&legend=top-left)

Source & license

This open-source MCP server is cataloged on AgentStack and links to its original source — we do not rehost the code.

Install and usage instructions live in the source repository linked above.

Reviews

No reviews yet, be the first.

Versions

  • v0.1.0 Imported from the upstream source.