Init
asgeirtj/system_prompts_leaks
Initialize new CLAUDE.md file(s) and optional skills/hooks with codebase documentation
Author idempotent init.sh under 120s plus sibling test.sh, stop.sh, reset.sh, serve.sh with fixed names the harness relies on.
$ npx skills add Archive228/loopkit --skill init-script-contract -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install Archive228/loopkit init-script-contract --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/Archive228/loopkit.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/init-script-contract .claude/skills/init-script-contract && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "init-script-contract" agent skill from https://github.com/Archive228/loopkit/tree/main/skills/init-script-contract into .claude/skills/init-script-contract/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "init-script-contract", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/Archive228/loopkit/tree/main/skills/init-script-contractType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add Archive228/loopkit --skill init-script-contract -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install Archive228/loopkit init-script-contract --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Archive228/loopkit.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/init-script-contract .agents/skills/init-script-contract && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "init-script-contract" agent skill from https://github.com/Archive228/loopkit/tree/main/skills/init-script-contract into .agents/skills/init-script-contract/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "init-script-contract", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add Archive228/loopkit --skill init-script-contract -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install Archive228/loopkit init-script-contract --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Archive228/loopkit.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/init-script-contract .cursor/skills/init-script-contract && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "init-script-contract" agent skill from https://github.com/Archive228/loopkit/tree/main/skills/init-script-contract into .cursor/skills/init-script-contract/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "init-script-contract", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/Archive228/loopkit.git --path skills/init-script-contract--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add Archive228/loopkit --skill init-script-contract -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install Archive228/loopkit init-script-contract --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Archive228/loopkit.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/init-script-contract .gemini/skills/init-script-contract && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "init-script-contract" agent skill from https://github.com/Archive228/loopkit/tree/main/skills/init-script-contract into .gemini/skills/init-script-contract/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "init-script-contract", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install Archive228/loopkit init-script-contractInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add Archive228/loopkit --skill init-script-contract -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/Archive228/loopkit.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/init-script-contract .github/skills/init-script-contract && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "init-script-contract" agent skill from https://github.com/Archive228/loopkit/tree/main/skills/init-script-contract into .github/skills/init-script-contract/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "init-script-contract", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add Archive228/loopkit --skill init-script-contract -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install Archive228/loopkit init-script-contract --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Archive228/loopkit.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/init-script-contract .opencode/skills/init-script-contract && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "init-script-contract" agent skill from https://github.com/Archive228/loopkit/tree/main/skills/init-script-contract into .opencode/skills/init-script-contract/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "init-script-contract", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
init-script-contractAuthor idempotent init.sh under 120s plus sibling test.sh, stop.sh, reset.sh, serve.sh with fixed names the harness relies on.
Init Script Contract is an agent skill from Archive228/loopkit. Author idempotent init.sh under 120s plus sibling test.sh, stop.sh, reset.sh, serve.sh with fixed names the harness relies on.
Its SKILL.md is about 1.2k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
The repository describes itself as: 33 battle-tested skills + minimal .claude harness for any coding agent (Claude Code, Cursor, Codex, Gemini CLI). The licence is MIT.
8 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit 5ae033e. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
npmgityarnFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use npm, git and yarn, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Init Script Contract loads about 1.2k tokens when it runs. Until then it costs about 37 tokens; SKILL.md has 648 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from Archive228/loopkit at commit 5ae033e, republished under its MIT licence (© Archive228). 648 words, ~1,224 tokens.
.claude/skills/init-script-contract/SKILL.md (or your agent's skills folder).Every coding session in a multi-session project starts by bringing the dev server up. If the entry point is named differently each time, or takes four minutes, or prompts for input, you burn tokens and wall-clock on every single session. The fix is a fixed set of script names at the project root with a hard contract. The initializer agent writes them once; every downstream session relies on them.
The names are load-bearing — [[shift-notes]] and [[broken-window-check]] both refer to them by name. Do not invent your own.
| Script | Contract |
|---|---|
init.sh | Clean clone → dev server up on localhost. Idempotent. Under 120s. Zero prompts. |
serve.sh | Start the dev server only. Written when init.sh cannot fit under 120s. |
test.sh | Run the full test suite. Exit non-zero on any failure. |
stop.sh | Cleanly kill the dev server. Sessions run this before exiting. |
reset.sh | Wipe local DB and ephemeral state. Leave code untouched. Used by [[broken-window-check]]. |
init.sh to run end-to-end from an empty clone. Pin every dependency (lockfile, ==, Pipfile.lock). Answer every prompt non-interactively (-y, --yes, DEBIAN_FRONTEND=noninteractive).time ./init.sh on a clean clone. If it exceeds 120s, split — move one-time setup into init.sh and server launch into serve.sh. Have init.sh call serve.sh at the end so single-command startup still works../init.sh twice back-to-back. If the second run errors or duplicates state, guard each step with existence checks (if [ ! -d node_modules ], createdb --if-not-exists, etc.).stop.sh to kill by PID file or port, not by process name grep. Grep kills sibling agents on shared sandboxes.test.sh with a single end-to-end smoke test that proves init.sh produced a serving app. No feature tests — those belong to future sessions.reset.sh to drop and recreate the DB, clear caches, wipe /tmp artifacts. Never touch tracked files.git clean -fdx && ./init.sh && ./test.sh && ./stop.sh. Every script exits 0.bootstrap.sh, setup.sh, dev.sh. Downstream sessions grep for the fixed names. A cute alias silently disables the harness.yarn install asking about peer deps, createdb asking for a password, npm audit waiting for input. Every prompt is a stall the session cannot answer.npm install foo without a lockfile means the next session gets a different transitive graph. See the Feb 2026 incident where an agent ran npm update --save and broke twelve sessions.pkill node. Kills every node process in the sandbox. Use a PID file written by serve.sh.init.sh create files outside the project directory. Sandbox will reject it and the failure mode is opaque.reset.sh because "the DB is fine". [[broken-window-check]] needs it to isolate a bad commit from stale state.init.sh prints "Press Y to continue" anywhere in its output.init.sh twice leaves migrations doubled or ports bound.stop.sh exits 0 but lsof -i :3000 still shows the server.Single-session scripts and one-shot demos. The contract exists to amortize setup cost across many sessions; a one-off run does not need it.
init.sh succeeds.init.sh then reset.sh when reverting a bad feature.Inspiration: Prithvi's March 2026 planner/generator/evaluator write-up, where the fixed harness entry points let the evaluator persona re-verify any generator session from scratch without re-learning the launch procedure.
© Archive228, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in skills/init-script-contract of Archive228/loopkit.
Open the folder on GitHubat commit 5ae033e
Init Script Contract next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Init Script Contract this skillArchive228/loopkit | 756 | — | ~1.2k | Automated safety check: Pass | MIT | |
| Initasgeirtj/system_prompts_leaks | 69k | — | ~5.5k | Automated safety check: Pass | CC0-1.0 | |
| Initasgeirtj/system_prompts_leaks | 69k | — | ~602 | Automated safety check: Pass | CC0-1.0 | |
| Hermes Agent Skill AuthoringNousResearch/hermes-agent | 252k | — | ~3.6k | Automated safety check: Pass | MIT | |
| Configuring Oauth2 Authorization Flowmukul975/Anthropic-Cybersecurity-Skills | 34k | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | |
| Authoring Skillsvercel/next.js | 143k | — | ~1k | Automated safety check: Pass | MIT |
asgeirtj/system_prompts_leaks
Initialize new CLAUDE.md file(s) and optional skills/hooks with codebase documentation
asgeirtj/system_prompts_leaks
Initialize a new CLAUDE.md file with codebase documentation. An agent skill from asgeirtj/system_prompts_leaks.
NousResearch/hermes-agent
Author in-repo SKILL.md files: frontmatter and structure. An agent skill from NousResearch/hermes-agent.
mukul975/Anthropic-Cybersecurity-Skills
Configures secure OAuth 2.0 authorization flows, including Authorization Code with PKCE, Client Credentials, and Device Authorization Grant, covering flow selection, PKCE implementation, token…
vercel/next.js
How to create and maintain agent skills in .agents/skills/. An agent skill from vercel/next.js.
abpframework/abp
ABP permission system - PermissionDefinitionProvider, [Authorize] attribute, CheckPolicyAsync, IsGrantedAsync, ICurrentUser, IPermissionManager, multi-tenancy side.
Archive228/loopkit
Escalate blocked runs to a human via configured channel or fallback to BLOCKED.md and exit the loop.
Archive228/loopkit
Get JSON out of the model reliably. An agent skill from Archive228/loopkit.
Archive228/loopkit
A skill your agent uses when starting any conversation in a loopkit-enabled project - establishes how to find and use loopkit's 49 skills, requiring skill invocation before ANY response including…
Archive228/loopkit
Before compaction Loopkit extracts decisions into claude-decisions.json (machine-readable).
Archive228/loopkit
Build a repeatable eval loop that grades agent output with an LLM judge, so prompt/skill changes get scored against a baseline instead of eyeballed.
Archive228/loopkit
Enumerate every end-to-end feature as strict JSON entries with passes:false, editable-passes-only discipline, and priority order.
Author idempotent init.sh under 120s plus sibling test.sh, stop.sh, reset.sh, serve.sh with fixed names the harness relies on. Init Script Contract is an agent skill from Archive228/loopkit.sh with fixed names the harness relies on.
Run `npx skills add Archive228/loopkit --skill init-script-contract -a claude-code`. Or copy the skill folder (skills/init-script-contract in Archive228/loopkit) into .claude/skills/init-script-contract in your project. Claude Code loads it when a task matches its description.
Run `npx skills add Archive228/loopkit --skill init-script-contract -a codex`. Or copy the skill folder (skills/init-script-contract in Archive228/loopkit) into .agents/skills/init-script-contract in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add Archive228/loopkit --skill init-script-contract -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/init-script-contract, .gemini/skills/init-script-contract, .github/skills/init-script-contract and .opencode/skills/init-script-contract in your project.
Going by SKILL.md and its folder, Init Script Contract needs the command-line tools its instructions call (npm, git and yarn). Our summary lists: Node.js; Docker.
SKILL.md contains no URLs. Its commands use npm and git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Init Script Contract is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.2k tokens (SKILL.md is roughly 4.9k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Init Script Contract: Init (asgeirtj/system_prompts_leaks, 69k stars), Init (asgeirtj/system_prompts_leaks, 69k stars), Hermes Agent Skill Authoring (NousResearch/hermes-agent, 252k stars) and Configuring Oauth2 Authorization Flow (mukul975/Anthropic-Cybersecurity-Skills, 34k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
Archive228 (a GitHub user) maintains it in Archive228/loopkit, which has 756 GitHub stars. The repository holds 43 skills in this directory. The repository was last updated on July 14, 2026.
Source: Archive228/loopkit on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.