Agent skill

Roller Release

by apache in apache/roller

Prepare, build, sign, verify, stage, vote on and publish Apache Roller releases, including release website updates and announcement drafts.

Apache-2.0Auto-check passed

Install Roller Release

skills CLI
$ npx skills add apache/roller --skill roller-release -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install apache/roller roller-release --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/apache/roller.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/roller-release .claude/skills/roller-release && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
roller-release
GitHub stars
133
Token cost
~1.3k tokens
SKILL.md length
563 words
Files
9 (incl. scripts, references)
Skills in repo
2
Repo updated
First seen
Licence
Apache-2.0

At a glance

Prepare, build, sign, verify, stage, vote on and publish Apache Roller releases, including release website updates and announcement drafts.

  • Works in 7 steps: Agree scope and version, keeping… → Inspect version-bearing POMs and… → Commit the release inputs and record an… → …
  • SKILL.md covers Establish release inputs, Prepare and verify, Vote and publish and References and helpers
  • Runs Shell scripts from its folder; calls mvn

What it does

Roller Release is an agent skill from apache/roller. Prepare, build, sign, verify, stage, vote on and publish Apache Roller releases, including release website updates and announcement drafts.

Its SKILL.md is about 1.3k tokens, which your agent loads only when the skill is triggered. The skill folder holds 10 other files, including scripts and reference files (for example `references/asf-policy.md`, `references/atr.md` and `references/dist-svn.md`).

It works with Java. The repository describes itself as: Mirror of Apache Roller. The licence is Apache-2.0.

Example prompts

  • “/roller-release”

Requirements

  • Python 3
  • A Bash shell

Workflow steps

7 steps, taken from the first numbered list in SKILL.md.

  1. Agree scope and version, keeping undisclosed vulnerability details private.
  2. Inspect version-bearing POMs and packaging scripts. Run
  3. Commit the release inputs and record an RC tag at the exact source revision.
  4. Build and test from the root using the branch's documented Maven invocation
  5. Inspect the source and binary tar/zip archives. Sign and generate checksums
  6. Run scripts/check-release.sh from this skill. Its optional
  7. Stage and download the candidate using distribution guidance.

What it can do on your machine

Read from SKILL.md and the folder at commit 15d4fce. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 2 files in scripts/ (Shell), which the agent can run.

    Shell commands in SKILL.md call:

    • mvn

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • apache.org

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Roller Release loads about 1.3k tokens when it runs, and up to ~5.4k if it reads all its reference files. Until then it costs about 39 tokens; SKILL.md has 563 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~39
When it runs · the whole SKILL.md, loaded when a task matches
~1.3k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~5.4k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from apache/roller at commit 15d4fce, republished under its Apache-2.0 licence (© apache). 563 words, ~1,331 tokens.

Download SKILL.mdSave it as .claude/skills/roller-release/SKILL.md (or your agent's skills folder). This skill also uses 8 other files; get the full folder from GitHub.
name
roller-release
description
Prepare, build, sign, verify, stage, vote on and publish Apache Roller releases, including release website updates and announcement drafts.
<!--
Licensed to the Apache Software Foundation (ASF) under one or more
contributor license agreements.  See the NOTICE file distributed with
this work for additional information regarding copyright ownership.
The ASF licenses this file to You under the Apache License, Version 2.0
(the "License"); you may not use this file except in compliance with
the License.  You may obtain a copy of the License at

    https://www.apache.org/licenses/LICENSE-2.0

Unless required by applicable law or agreed to in writing, software
distributed under the License is distributed on an "AS IS" BASIS,
WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied.
See the License for the specific language governing permissions and
limitations under the License.
-->

Apache Roller releases

Use the current checkout, project release decisions and ASF policy sources. Keep release execution notes, personal signing setup and undisclosed security scope outside this skill. Loading the skill does not authorize sending mail, pushing tags or publishing.

Establish release inputs

Record the source checkout, target branch and exact commit; release version; RC number and tag; release-manager ASF ID; signing-key fingerprint; distribution working copies; and website checkout. Supply these from the actual release, not defaults from an earlier session. Use a clean tree or isolated checkout.

Check build documentation and CI for the branch's supported JDK. Confirm Maven, GnuPG, SVN and archive tools are available. Python 3 is used by the version helper. Use signing-key guidance before building a candidate.

Prepare and verify

  1. Agree scope and version, keeping undisclosed vulnerability details private.
  2. Inspect version-bearing POMs and packaging scripts. Run scripts/bump-version.sh <old> <new> from this skill for a preview; use --write only to apply the reviewed scope. It does not commit. Update release notes and other appropriate references manually, preserving historical entries.
  3. Commit the release inputs and record an RC tag at the exact source revision. Build from that revision so the embedded revision matches the candidate. Preserve candidate history; changed artifacts normally require a new candidate and vote. Do not silently replace artifacts already being voted on.
  4. Build and test from the root using the branch's documented Maven invocation (normally mvn -V -ntp clean install). Build assembly-release separately with mvn -f assembly-release/pom.xml package; it is outside the root reactor.
  5. Inspect the source and binary tar/zip archives. Sign and generate checksums using signing instructions.
  6. Run scripts/check-release.sh <artifact-dir> from this skill. Its optional --build compiles the source archive with tests skipped; it does not replace the test suite, a full license review, or independent voter verification.
  7. Stage and download the candidate using distribution guidance. Verify signatures, checksums, contents and source build from the downloaded files.
Show full SKILL.md (241 more words)Show less

Vote and publish

Use vote and announcement templates. Normally allow at least 72 hours and require at least three positive binding votes and more positive than negative binding votes. Check current policy for exceptions. Record the result and the exact approved candidate.

Promote the approved artifact bytes; do not rebuild. If filenames lose the RC suffix, detached signatures still verify those unchanged bytes, but checksum filenames must be updated and verified. Point the final Git tag at the approved RC commit. Inspect remote destination paths before distribution changes.

Update and publish the website, verify public download links and propagation, then announce. Prune superseded distributions only after the website points to the new release and archive availability is confirmed. Keep historical signing keys available for verification of old releases.

For security releases, coordinate advisory timing with the PMC and ASF Security; use the companion roller-security skill when available. Public vote material, announcements and release notes must not expose undisclosed case details; keep them neutral until the advisories are out. The operator upgrade must be available when the advisory is published.

References and helpers

Resolve helper paths relative to this skill; when using the repository copy, they are under skills/roller-release/scripts/. Helpers do not commit or publish.

© apache, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 8 other files (scripts, references) in skills/roller-release of apache/roller.

  • SKILL.md
  • references/asf-policy.md
  • references/atr.md
  • references/dist-svn.md
  • references/signing-key.md
  • references/vote-and-announce.md
  • references/website.md
  • scripts/bump-version.sh
  • scripts/check-release.sh

Open the folder on GitHubat commit 15d4fce

Compare with similar skills

Roller Release next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Roller Release compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Roller Release this skillapache/roller133—~1.3kAutomated safety check: PassApache-2.0
Brainstormingxpinjection/test-driven-spring-boot11254 repos~2.6kAutomated safety check: PassMIT
Android API Diffgkd-kit/gkd43k—~796Automated safety check: PassGPL-3.0
Video Cover Imageitwanger/toBeBetterJavaer18k—~3.3kAutomated safety check: PassNone
Lancedb Update Lance Dependencylancedb/lancedb12k—~1.1kAutomated safety check: PassApache-2.0
Java SDK E2E Test with Replay Snapshotgithub/copilot-sdk11k—~1.8kAutomated safety check: PassMIT

Similar skills

  • Brainstorming

    xpinjection/test-driven-spring-boot

    You MUST use this before any creative work - creating features, building components, adding functionality, or modifying behavior.

    112 GitHub starsUsed in 54 repos~2.6k tokens
    Agent WorkflowsAuto-check passed
  • Android API Diff

    gkd-kit/gkd

    Looks up Android framework Java and AIDL APIs across versions with the android-api-diff CLI: signatures, availability, source files and hidden-API access code.

    43k GitHub stars~796 tokensUpdated yesterday
    MobileAuto-check passed
  • Video Cover Image

    itwanger/toBeBetterJavaer

    Generate matched 3:4, 16:9, and 4:3 short-video cover images from toBeBetterJavaer video scripts or AI/Java technical topics.

    18k GitHub stars~3.3k tokensUpdated today
    Media & CreativeAuto-check passed
  • Update LanceDB to a specific Lance release or tag. An agent skill from lancedb/lancedb.

    12k GitHub stars~1.1k tokensUpdated today
    DatabasesAuto-check passed
  • Official

    Creates a Java SDK end-to-end test for the Copilot SDK that runs against a recorded YAML snapshot through a replay proxy, so CI needs no real authentication.

    11k GitHub stars~1.8k tokensUpdated today
    Testing & QAAuto-check passed
  • Fory Release

    apache/fory

    Prepare an Apache Fory release candidate from a clean release branch, including the version bump, RC tag, JVM staging, ASF source artifacts, SVN upload, and vote email.

    4.6k GitHub stars~2.9k tokensUpdated yesterday
    Auto-check passed

More from apache/roller

  • Roller Security

    apache/roller

    Triage Apache Roller security reports, maintain private case tracking, prepare CVE records, coordinate fixes and reporter review, and prepare disclosure with a release.

    133 GitHub stars~1.9k tokensUpdated today
    Auto-check passed

Works with

Questions about Roller Release

What does Roller Release do?

Prepare, build, sign, verify, stage, vote on and publish Apache Roller releases, including release website updates and announcement drafts. Roller Release is an agent skill from apache/roller. Prepare, build, sign, verify, stage, vote on and publish Apache Roller releases, including release website updates and announcement drafts.

How do I install Roller Release in Claude Code?

Run `npx skills add apache/roller --skill roller-release -a claude-code`. Or copy the skill folder (skills/roller-release in apache/roller) into .claude/skills/roller-release in your project. Claude Code loads it when a task matches its description.

How do I install Roller Release in Codex?

Run `npx skills add apache/roller --skill roller-release -a codex`. Or copy the skill folder (skills/roller-release in apache/roller) into .agents/skills/roller-release in your project. Codex loads it when a task matches its description.

Can I use Roller Release in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add apache/roller --skill roller-release -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/roller-release, .gemini/skills/roller-release, .github/skills/roller-release and .opencode/skills/roller-release in your project.

What does Roller Release need to run?

Going by SKILL.md and its folder, Roller Release needs a shell for the scripts in its folder and the command-line tools its instructions call (mvn). Our summary lists: Python 3; A Bash shell.

Does Roller Release access the network?

SKILL.md names 1 domain. As links in the text: apache.org. This is read from the text; nothing was executed.

Is Roller Release safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Roller Release use?

Roller Release is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Roller Release use?

About 1.3k tokens (SKILL.md is roughly 5.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 4.1k tokens, read only when the agent opens those files.

What are the alternatives to Roller Release?

Skills that share tags, products or a category with Roller Release: Brainstorming (xpinjection/test-driven-spring-boot, 112 stars), Android API Diff (gkd-kit/gkd, 43k stars), Video Cover Image (itwanger/toBeBetterJavaer, 18k stars) and Lancedb Update Lance Dependency (lancedb/lancedb, 12k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Roller Release?

apache (a GitHub organization) maintains it in apache/roller, which has 133 GitHub stars. The repository holds 2 skills in this directory. The repository was last updated on October 7, 2026.

Source: apache/roller on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.