Install
$ agentstack add skill-hedgehogues-awesome-claude-deps ✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
Verified badge
Passed review? Show it. Paste this badge into your README, it links to the public security report.
Reliability & compatibility
Declared compatibility
Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.
We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.
How agent discovery & health will work →About
skill:deps — зависимости из manifest.yaml
Шаги
1. Проверить manifest.yaml существует
test -f manifest.yaml || { echo "ERROR: manifest.yaml not found in current directory"; exit 1; }
2. Validate schema
Через Bash + python3:
python3 -c "
import sys, yaml
data = yaml.safe_load(open('manifest.yaml')) or {}
required = {'version', 'tools', 'repos'}
missing = required - set(data.keys())
if missing:
print(f'ERROR: manifest.yaml missing required keys: {sorted(missing)}', file=sys.stderr)
sys.exit(1)
print('manifest.yaml schema OK')
print(f' version: {data[\"version\"]}')
print(f' tools: {len(data[\"tools\"] or {})} entries')
print(f' repos: {len(data[\"repos\"] or [])} entries')
"
При non-zero exit — остановись с error message.
3. Install/verify tools
Для каждой записи в tools: (читаешь через Bash + python3):
python3 -c "
import yaml
data = yaml.safe_load(open('manifest.yaml')) or {}
for name, version in (data.get('tools') or {}).items():
print(f'{name}={version}')
"
Для каждой пары = — проверь установку:
openspec:openspec --version— сравни с required version. Если несовпадение или отсутствует —npm install -g openspec@(или другой install method).- Другие tools: best-effort через
which+ version-check; если установка нетривиальна — выведи instruction для пользователя.
Сообщай по каждому: : >.
4. Sync repos (если не пусто)
Если repos: непустой:
python3 -c "
import yaml
data = yaml.safe_load(open('manifest.yaml')) or {}
print('non-empty' if data.get('repos') else 'empty')
"
Если non-empty — вызови sdd:sync через Skill tool. Если empty — пропусти этот шаг с сообщением repos: empty, skipping sdd:sync.
5. Read-only гарантия
После выполнения git diff manifest.yaml SHALL показать пустой diff. Если diff не пуст — выведи warning: WARNING: manifest.yaml was modified during deps install — this is a bug.
6. Final report
skill:deps completed:
- tools installed/verified:
- repos synced: (or skipped: empty)
- manifest.yaml: unchanged (read-only)
Что скилл НЕ делает
- НЕ модифицирует
manifest.yaml. Для добавления tools/repos — редактируй файл руками или используйsdd:repoдля секцииrepos:. - НЕ создаёт симлинки (это
skill:setup). - НЕ запускает тесты.
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: Hedgehogues
- Source: Hedgehogues/awesome-claude
- License: MIT
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet, be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.