# Skill Router

> Use for every user request when SkillSpec router mode is enabled. First check the local SkillSpec router index, load the selected skill only when route decision is use_skill, and continue with normal agent behavior when the decision is bypass or ambiguous.

- **Type:** Skill
- **Install:** `agentstack add skill-modiqo-skillspec-skill-router`
- **Verified:** Yes — security-reviewed for prompt injection and unsafe behavior
- **Seller:** [modiqo](https://agentstack.voostack.com/s/modiqo)
- **Installs:** 0
- **Category:** [Agent Skills](https://agentstack.voostack.com/c/agent-skills)
- **Latest version:** 0.1.0
- **License:** Apache-2.0
- **Upstream author:** [modiqo](https://github.com/modiqo)
- **Source:** https://github.com/modiqo/skillspec/tree/main/examples/skill-router
- **Website:** https://skillspec.sh

## Install

```sh
agentstack add skill-modiqo-skillspec-skill-router
```

Requires the [AgentStack CLI](https://agentstack.voostack.com/docs/cli). Works with Claude Code, Cursor, and any MCP-compatible agent.

## About

# Skill Router

This skill is a thin native harness loader for the SkillSpec router.
When router mode is enabled and the harness has been restarted, this router is
the first hop for every user request in managed skill roots. All routed skills
are explicit-only/manual-only, so check the router index before reading,
searching for, or guessing at a domain skill.

The router does not execute task work. It decides whether a local skill should
be loaded, reports confidence and candidate paths, and asks for direct or
durable execution only after a `use_skill` decision when the task will use tools
and the user has not already chosen an execution mode.

## Runtime Contract

1. For ordinary requests with prompt-hook context `first_hop_ready=true`, use the fast path: do not read `./skill.spec.yml` and do not run `skillspec router index status`.
2. Run one route query:

   ```bash
   skillspec route --index  --query '' --top 5 --json
   ```

3. If route output says `decision: "use_skill"` and `selected` is non-null, read that skill's `SKILL.md` and follow it.
4. If route output says `decision: "bypass"`, do not load any candidate skill; continue with normal agent behavior for the request.
5. If route output says `decision: "ambiguous"`, do not silently choose a candidate. Ask only when the user explicitly requested skill selection; otherwise continue with normal agent behavior.
6. If route output includes `execution_mode_direct_or_durable` for a `use_skill` decision, ask the user whether to run direct or durable before tool-backed execution.
7. Load and follow `./skill.spec.yml` only for router lifecycle, repair, visibility, guard, index status, index refresh, or when guard context is missing or failed.
8. If the user chooses durable execution, hand the selected skill and task context to `durable-executor`. The router still only routes; durable-executor owns workspace evidence, rote execution policy, alignment, token stats, and final closure.

## Router Management

Use lifecycle commands for managed installation:

```bash
skillspec router install --roots ... --index 
skillspec router index status --roots ... --index  --visibility-manifest 
skillspec router index refresh --roots ... --index  --visibility-manifest 
skillspec router uninstall
```

Any index argument can be either the SQLite file itself or the router directory;
directory paths resolve to `skill-index.sqlite`.

Use visibility commands for explicit controls:

```bash
skillspec visibility plan --roots ... --json
skillspec visibility apply --roots ... --manifest  --json
skillspec visibility restore --manifest  --json
skillspec skills set-visibility  manual-only --roots ... --manifest 
skillspec skills disable  --roots ... --manifest 
skillspec skills enable  --roots ... --manifest 
```

The manifest is the rollback boundary. Do not bulk-restore visibility by inference when the manifest is missing.

## Source & license

This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.

- **Author:** [modiqo](https://github.com/modiqo)
- **Source:** [modiqo/skillspec](https://github.com/modiqo/skillspec)
- **License:** Apache-2.0
- **Homepage:** https://skillspec.sh

Install and usage instructions live in the source repository linked above.

## Pricing

- **Free** — Free

## Security capabilities

Automated source analysis of v0.1.0 — what this tool can access:

- **Network access:** no
- **Filesystem access:** no
- **Shell / process execution:** no
- **Environment & secrets:** no
- **Dynamic code execution:** no

*"Yes" means the capability is present in the source — more access means more to trust, not that it is unsafe.*


## Versions

- **0.1.0** — security scan: passed — Imported from the upstream source.

## Links

- Listing page: https://agentstack.voostack.com/l/skill-modiqo-skillspec-skill-router
- Seller: https://agentstack.voostack.com/s/modiqo
- Browse the marketplace: https://agentstack.voostack.com/browse

---
Listed on AgentStack — the marketplace for AI agent skills and MCP servers. Every listing is security-reviewed. Creators keep 70%.
