Install
$ agentstack add skill-agentlas-ai-hephaestus-agentlas-packaging ✓ scanned · ✓ verified — works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
About
Agentlas Packaging
Procedure
- Inspect the existing source: prompt, repo, ZIP, runtime folder, skill, command,
or generated agent package.
- Classify it as single-agent, team-builder, or mixed/unclear.
- Run
docs/builder-interview-research-gate.mdwhen the source behavior,
target user, tools/plugins, output artifacts, or evaluation bar are unclear. Packaging must not turn a shallow prompt into a polished but weak package. When the gate runs, research official sources, similar agent repositories or comparables, academic/professional theory, and plugin docs before changing the source behavior.
- Preserve useful behavior while adding Agentlas contracts:
AGENTS.md;docs/builder-interview.md;docs/research-sources.md;docs/tool-selection.md;docs/domain-expert-synthesis.md;docs/prompt-performance-contract.md;.agentlas/capability-eval-plan.json;.agentlas/agent-card.json;.agentlas/company-blueprint.json;.agentlas/mode-map.json;.agentlas/memory-map.json;.agentlas/memory-tickets.jsonl;.agentlas/vault-references.json;.agentlas/global-commands.json;- runtime adapters;
- verification scripts.
- Add or repair the global command across Claude Code, Codex, Gemini CLI,
generic AGENTS.md tools, and terminal adapters.
- Remove secrets, raw logs, private local notes, and unsafe public paths.
- Run
scripts/verify-team-package.shafter repair. If it
fails, correct the package shape before any final handoff.
- Run package verification and public-safety checks before release.
Output
Return classification, repaired_files, agentlas_contracts_added, runtime_adapters, global_commands, verification, and blockers.
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: agentlas-ai
- Source: agentlas-ai/Hephaestus
- License: Apache-2.0
- Homepage: https://agentlas.cloud
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet — be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.