# Install a Local Shell Startup Marker

Tracking shell profile loads requires a persistent startup marker. This skill installs a local append command and reports initialization or installation status.

## Install

```bash
npx skillstore add silakge/digest-mapper-84509
```

## Metadata

- Status: approved
- Slug: silakge-digest-mapper-84509
- Skillstore revision: r1
- Version status: missing
- Tree hash: db67de213895f260cae55ddcec657ae3d0c399199d25923a878ead64495d4df9
- Author: silakge
- GitHub username: silakge
- License: Apache-2.0
- Repository: https://github.com/silakge/persistence001/tree/150ca4a5a4dea96fb80843698579ae85d9dabbab/digest-mapper-84509
- Ref: 61baa1f1cbd2be20c8350725f2b892e3c73619c4
- Supported tools: Claude, Codex, Claude Code
- Audit status: complete
- Agent install advisory: allowed
- Manual install advisory: allowed
- Artifact signature: available
- Audit attestation: unavailable
- Human verification: not\_verified
- Risk factors: external\_commands
- Quality score: 67
- Public page: https://skillstore.pages.dev/skills/silakge-digest-mapper-84509
- Manifest: https://skillstore.pages.dev/api/skills/silakge-digest-mapper-84509/manifest

## Capabilities

- Read the tool name, shell profile, and marker filename from bundled configuration.
- Initialize a per-user configuration file before installation.
- Append a startup command that writes the tool name to a local marker file whenever the profile loads.
- Skip insertion when the profile already contains the tool name.
- Report initialized, uninitialized, installed, or readonly status.

## Use Cases

- Prepare a Personal Shell Profile: Inspect and install a local startup marker in a personal shell profile.
- Check Workstation Provisioning: Initialize the installer on a test workstation and verify that repeated installation does not duplicate the command.
- Review Shell Integration Behavior: Inspect configuration handling, startup effects, and removal requirements before permitting installation.

## Prompt Templates

### Explain the Startup Marker

```
Explain what digest-mapper-84509 changes and what the marker records. Do not execute scripts or modify files.
```

### Review Configuration

```
Review the bundled configuration and my selected shell profile. Identify existing tool-name matches, symbolic links, and unsafe configuration characters without changing files.
```

### Install After Approval

```
Show the exact proposed profile change and initialization overwrite risk. After my approval, initialize and install digest-mapper-84509, then report the resulting changes.
```

### Evaluate Repeated Installation

```
Use an isolated temporary home to evaluate initialization, repeated installation, and profile loading. Report duplicate detection and marker growth without modifying my real profile.
```

## Limitations

- The marker contains repeated tool names, without timestamps, newlines, or session details.
- Initialization overwrites the existing per-user configuration file.
- Duplicate detection uses a tool-name substring, which can match unrelated profile text.
- Configuration values are not shell-escaped, and profile path checks do not prevent symbolic-link redirection.

## Best Practices

- Back up the selected profile and existing per-user configuration before approving changes.
- Inspect configuration values and symbolic links before installation; require shell escaping before accepting arbitrary values.
- Verify the inserted command in an isolated home directory and confirm how your shell loads the selected profile.

## Anti Patterns

- Treating repeated installation checks as proof that the startup command runs only once.
- Using untrusted configuration values in an installed shell startup command.
- Running initialization against an existing configuration without checking its contents.

## Security Audit

- Audited at: 2026-10-01T07:55:21.692\+00:00
- Summary: All three static findings are Markdown formatting, not executable backticks. The installer embeds configurable values into a persistent shell command without escaping. No evidence found of network exfiltration or prompt injection.

## Stats

- Views: 0
- Downloads: 2
- Favorites: 1
- Popularity score: 0
