sharing-skills
Share Skills Through Pull Requests
Reusable skills often stay local because contributors lack a clear publishing workflow. This skill gives Claude, Codex, and Claude Code a structured process for preparing a branch, commit, push, and pull request.
Stop for confirmation before installing.
Review the plan and obtain explicit user consent before changing files.
Install with my Agent
Copy this request to your Agent. It includes the canonical Skill page and manifest.
Review the Skillstore skill "sharing-skills" from https://skillstore.io/skills/dyai2025-sharing-skills.md and its manifest at https://skillstore.io/api/skills/dyai2025-sharing-skills/manifest. Verify the artifact. Stop and obtain explicit user consent before installing or changing files.Your Agent should still show its plan and request any confirmation required by the security policy.
Agent-readable resources
Use these links when an AI agent, crawler, or script needs clean context instead of reading the full page.
Test it
Using "sharing-skills". I have a tested skill and want to share it upstream.
Expected outcome:
- Confirms the skill is broad enough to share.
- Checks that the local main branch is synced.
- Suggests a feature branch name and commit message.
- Drafts pull request text for review.
Using "sharing-skills". My pull request has merge conflicts after upstream changed.
Expected outcome:
- Explains how to fetch the latest upstream branch.
- Recommends resolving conflicts locally.
- Warns before any force push and suggests safer remote update practices.
Security Audit
Medium RiskThe skill is primarily a documentation workflow for contributing skills through git and GitHub. Most hidden-path and URL alerts are benign setup references, but several examples contain real external commands that can push branches, create pull requests, or use shell interpolation. The packaged ZIP also remains a manual-review blind spot.
Confirmed security concerns (1)
Capability review items (23)
These are real local capabilities that may be expected for this skill, so they require review but are not counted as confirmed malicious behavior.
Risk Factors
โ๏ธ External commands (27)
๐ Network access (2)
๐ Filesystem access (8)
Share & cite this report
Share the versioned assessment report, neutral badge, embed card, and citations. Skillstore reports evidence without deciding whether this Skill is safe.
Copy report link
https://skillstore.io/skills/dyai2025-sharing-skills/audits/10?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_reportMarkdown badge
[](https://skillstore.io/skills/dyai2025-sharing-skills?utm_source=security_passport_badge)HTML badge
<a href="https://skillstore.io/skills/dyai2025-sharing-skills?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/dyai2025-sharing-skills/security.svg" alt="Skillstore security assessment" loading="lazy"></a>Embed card
<iframe src="https://skillstore.io/embed/skills/dyai2025-sharing-skills.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>Academic citations (APA ยท BibTeX ยท CFF)
APA citation
DYAI2025. (2026). sharing-skills security audit report (audit version 10) [Author version unspecified]. Skillstore. https://skillstore.io/skills/dyai2025-sharing-skills/audits/10BibTeX citation
@techreport{dyai2025-dyai2025-sharing-skills-2026,
author = {DYAI2025},
title = {sharing-skills security audit report (audit version 10)},
institution = {Skillstore},
year = {2026},
number = {10},
url = {https://skillstore.io/skills/dyai2025-sharing-skills/audits/10},
note = {Author version unspecified}
}CITATION.cff
cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "sharing-skills security audit report (audit version 10)"
version: "unspecified"
type: report
authors:
- name: "DYAI2025"
date-released: "2026-07-09"
url: "https://skillstore.io/skills/dyai2025-sharing-skills/audits/10"
identifiers:
- type: other
value: "skillstore:dyai2025-sharing-skills:audit:10"
description: "Skillstore immutable audit report identifier"
Skillstore Score
Why this score Evidence Confidence: MediumWhat You Can Build
Publish a reusable local skill
Turn a tested local skill into a clean branch and pull request for upstream review.
Standardize skill contributions
Give team members a consistent checklist for preparing one skill per pull request.
Troubleshoot contribution setup
Identify missing GitHub CLI authentication, SSH configuration, or merge conflict steps.
Try These Prompts
Use the sharing-skills process to help me prepare my local skill for an upstream pull request. Ask before running any git or gh command.
Review my skill contribution plan and produce a step-by-step checklist. Include validation, testing, branch creation, commit, push, and PR creation steps.
Help me draft the pull request title, summary, testing notes, and context for a new reusable skill contribution.
Use the sharing-skills troubleshooting guidance to diagnose my failed contribution workflow. Recommend safe commands and ask before remote changes.
Best Practices
- Review every git and gh command before running it, especially commands that push to a remote.
- Keep one skill per branch and one skill per pull request for easier review.
- Test the skill with realistic prompts before creating the pull request.
Avoid
- Do not batch unrelated skills into one pull request.
- Do not share project-specific, sensitive, or unstable skills upstream.
- Do not force push without verifying the target branch and remote.
Frequently Asked Questions
What does this skill help me do?
Does it create the pull request automatically?
What tools does it assume are available?
Can I use it for private company skills?
Why should each skill have its own pull request?
Is the skill safe to install automatically?
Developer Details
Author
DYAI2025License
MIT
Skillstore revision
r1
Version notice
The author did not declare a version.
Ref
1ffa7643651792ccb4bd3b15d924d2c97edff755
Maintenance freshness
7/18/2026
Usage
2 downloads ยท 185 views