github.com/NVIDIA/OpenShell
| Skill | Added | Review |
|---|---|---|
gator-gate scripts/agents/gator/skills/gator-gate/SKILL.md Validate and monitor OpenShell GitHub issues and PRs using the gator:* state machine. Use when asked to triage issues/PRs for project validity, gate PRs, run gator, validate submissions, or monitor PRs toward merge readiness. | 71 71 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: deced87 | |
openshell-policy-advisor crates/openshell-supervisor-process/src/skills/policy-advisor/SKILL.md Use when an OpenShell sandbox returns policy_denied, mentions policy.local, or needs a narrow network policy proposal. | 57 57 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: deced87 | |
watch-github-actions .agents/skills/watch-github-actions/SKILL.md Watch and monitor GitHub Actions workflow runs using the gh CLI. Use when the user wants to check workflow status, watch a running workflow, view CI/CD jobs, or monitor build progress. Trigger keywords - watch pipeline, pipeline status, CI status, check build, monitor CI, view pipeline, pipeline progress, workflow status, actions status. | 70 70 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: deced87 | |
update-docs-from-commits .agents/skills/update-docs/SKILL.md Scan recent git commits for changes that affect user-facing behavior, then draft or update the corresponding documentation pages. Use when docs have fallen behind code changes, after a batch of features lands, or when preparing a release. Trigger keywords - update docs, draft docs, docs from commits, sync docs, catch up docs, doc debt, docs behind, docs drift. | 80 80 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: deced87 | |
tui-development .agents/skills/tui-development/SKILL.md Guide for developing the OpenShell TUI — a ratatui-based terminal UI for the OpenShell platform. Covers architecture, navigation, data fetching, theming, UX conventions, and development workflow. Trigger keywords - term, TUI, terminal UI, ratatui, openshell-tui, tui development, tui feature, tui bug. | 76 76 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: deced87 | |
triage-issue .agents/skills/triage-issue/SKILL.md Assess, classify, and route community-filed issues. Takes a specific issue number or processes all open issues with the state:triage-needed label in batch. Validates agent-first gate compliance, attempts diagnosis using relevant skills, and classifies issues for routing into the spike-build pipeline. Trigger keywords - triage issue, triage, assess issue, review incoming issue, triage issues. | 77 77 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: deced87 | |
test-release-canary .agents/skills/test-release-canary/SKILL.md Manually dispatch and iterate on the Release Canary workflow that smoke-tests published OpenShell artifacts (install.sh on macOS/Ubuntu/Fedora, Helm chart on kind) after each Release Dev publish. Use when changing `.github/workflows/release-canary.yml`, validating a release before tagging, debugging a canary failure, or reproducing a canary job locally. Trigger keywords - release canary, release-canary, canary failed, canary dispatch, test release canary, post-release smoke, install.sh canary, helm chart canary, kind canary, dispatch canary. | 80 80 Impact — No eval scenarios have been run Securityby Medium Suggest reviewing before use Version: deced87 | |
sync-agent-infra .agents/skills/sync-agent-infra/SKILL.md Detect and fix drift across agent-first infrastructure files. Ensures skill inventories, workflow chains, architecture tables, issue/PR templates, and cross-references stay consistent when skills, crates, or workflows change. Run after adding, removing, or renaming skills or components. Trigger keywords - sync agent infra, sync skills, update agent docs, check agent consistency, agent infra drift, sync contributing, sync agents. | 80 80 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: deced87 | |
sbom .agents/skills/sbom/SKILL.md Generate and manage Software Bill of Materials (SBOMs) for the OpenShell project. Covers SBOM generation with Syft, license resolution via public registries, and CSV export for compliance review. Trigger keywords - SBOM, sbom, bill of materials, license audit, license resolution, generate sbom, sbom csv, dependency license, supply chain, license scan. | 68 68 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: deced87 | |
review-security-issue .agents/skills/review-security-issue/SKILL.md Given a GitHub issue, review the issue for security implications. You'll make a determination if the claim in the issue is legitimate and should be addressed or will be a "won't fix." Trigger keywords - security issue, review security ticket, review security issue. | 76 76 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: deced87 | |
review-github-pr .agents/skills/review-github-pr/SKILL.md Review a GitHub pull request by summarizing its diff and key design decisions. Use when the user wants to review a PR, understand changes in a branch, or get a code review summary. Trigger keywords - review PR, review pull request, summarize PR, summarize diff, code review, review branch, PR summary, diff summary. | 67 67 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: deced87 | |
openshell-cli .agents/skills/openshell-cli/SKILL.md Guide agents through using the OpenShell CLI (openshell) for sandbox management, gateway registration, provider configuration and refresh, policy iteration, settings, service exposure, BYOC workflows, and inference routing. Covers basic through advanced multi-step workflows. Trigger keywords - openshell, sandbox create, sandbox exec, sandbox connect, logs, provider create, provider profile, provider refresh, policy set, policy get, settings, service expose, forward, port forward, BYOC, bring your own container, inference, use openshell, run openshell, CLI usage, manage sandbox, manage provider, gateway add, gateway select. | 71 71 Impact — No eval scenarios have been run Securityby Medium Suggest reviewing before use Version: deced87 | |
launch-openshell-gator .agents/skills/launch-openshell-gator/SKILL.md Launch and supervise OpenShell gator agents. Use when starting gator on issues or PRs, checking gator sandboxes, building the gator sandbox image, restarting stuck gators, inspecting gator logs, or experimenting with gator harness/model overrides. Trigger keywords - launch gator, start gator, run gator, gator sandbox, supervised gator, gator logs, restart gator. | 73 73 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: deced87 | |
helm-dev-environment .agents/skills/helm-dev-environment/SKILL.md Start up, tear down, and configure the local Kubernetes development environment for OpenShell. Uses k3d (Docker-backed k3s) + Skaffold + Helm. Covers cluster lifecycle, optional add-ons (Keycloak OIDC, Envoy Gateway), HA testing, and port mappings. Trigger keywords - local k8s, local cluster, k3d, skaffold, helm dev, start cluster, stop cluster, tear down cluster, delete cluster, create cluster, helm:k3s, helm:skaffold, local dev environment, dev cluster, k8s dev, envoy gateway local, keycloak local, high availability, HA. | 68 68 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: deced87 | |
generate-sandbox-policy .agents/skills/generate-sandbox-policy/SKILL.md Generate sandbox security policies from plain-language requirements and optional REST API documentation. Produces L4 or fine-grained L7 network policies and ordered network middleware configuration. Use for API access rules, middleware host selection, failure behavior, or built-in and operator-run middleware attachment. Trigger keywords - generate policy, create policy, update policy, change policy, sandbox policy, network policy, API policy, security policy, allow API, restrict API, network middleware, supervisor middleware. | 71 71 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: deced87 | |
fix-security-issue .agents/skills/fix-security-issue/SKILL.md Implement a fix for a reviewed security issue. Takes an issue number or scans for issues labeled "topic:security" and "state:agent-ready". Reads the security review from the issue comments and implements the remediation plan. Trigger keywords - fix security issue, remediate security, implement security fix, patch vulnerability. | 72 72 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: deced87 | |
debug-openshell-cluster .agents/skills/debug-openshell-cluster/SKILL.md Debug why an OpenShell gateway deployment is unhealthy, unreachable, or unable to create sandboxes. Use for gateway health failures, Docker/Podman runtime issues, Helm failures, Kubernetes scheduling, TLS or auth, gateway interceptors, supervisor middleware startup or runtime failures, external compute-driver sockets, VM drivers, or sandbox startup. Trigger keywords - debug gateway, gateway failing, deployment failing, helm install failing, cluster health, gateway health, gateway not starting, health check failed, sandbox pending, docker driver, podman driver, kubernetes driver, external driver, compute driver socket, gateway interceptor, supervisor middleware, middleware failed, vm driver. | 75 75 Impact — No eval scenarios have been run Securityby Medium Suggest reviewing before use Version: deced87 | |
debug-inference .agents/skills/debug-inference/SKILL.md Debug why inference.local, direct external inference, or supervisor-only system inference is failing. Use when the user cannot reach a local model server, has provider base URL issues, sees inference verification failures, hits protocol mismatches, or needs to diagnose inference on local vs remote gateways. Trigger keywords - debug inference, inference.local, system inference, sandbox-system, local inference, ollama, vllm, sglang, trtllm, NIM, inference failing, model server unreachable, failed to verify inference endpoint, host.openshell.internal. | 72 72 Impact — No eval scenarios have been run Securityby Medium Suggest reviewing before use Version: deced87 | |
create-spike .agents/skills/create-spike/SKILL.md Investigate a plain-language problem description by deeply exploring the codebase, then create a structured GitHub issue with technical findings. Prequel to build-from-issue — maps vague ideas to concrete, buildable issues. Trigger keywords - spike, investigate, explore, research issue, technical investigation, create spike, new spike, feasibility, codebase exploration. | 75 75 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: deced87 | |
create-rfc .agents/skills/create-rfc/SKILL.md Create OpenShell RFC proposals in rfc/ from a design request. Use when the user asks to write, draft, start, create, or update an RFC, Request for Comments, architecture proposal, API proposal, process proposal, or cross-cutting design proposal that should follow the OpenShell RFC process and template. | 72 72 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: deced87 | |
create-github-pr .agents/skills/create-github-pr/SKILL.md Create GitHub pull requests using the gh CLI. Use when the user wants to create a new PR, submit code for review, or open a pull request. Trigger keywords - create PR, pull request, new PR, submit for review, code review. | 71 71 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: deced87 | |
create-github-issue .agents/skills/create-github-issue/SKILL.md Create GitHub issues using the gh CLI. Use when the user wants to create a new issue, report a bug, request a feature, or create a task in GitHub. Trigger keywords - create issue, new issue, file bug, report bug, feature request, github issue. | 74 74 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: deced87 | |
build-from-issue .agents/skills/build-from-issue/SKILL.md Given a GitHub issue number, plan and implement the work described in the issue. Operates iteratively - creates an implementation plan, responds to feedback, and only builds when the 'state:agent-ready' label is applied. Includes tests, documentation updates, and PR creation. Trigger keywords - build from issue, implement issue, work on issue, build issue, start issue. | 71 71 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: deced87 |