Search, read, upload, download, move, rename, delete, restore, and share Box content; manage comments and metadata.

CC0-1.0Auto-check passed

Install Box

skills CLI
$ npx skills add asgeirtj/system_prompts_leaks --skill box -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install asgeirtj/system_prompts_leaks box --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/asgeirtj/system_prompts_leaks.git skills-src && mkdir -p .claude/skills && cp -r skills-src/Meta/muse-agent/skills/box .claude/skills/box && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
box
GitHub stars
69k
Token cost
~1.1k tokens
SKILL.md length
330 words
Files
3
Skills in repo
128
Repo updated
First seen
Licence
CC0-1.0

At a glance

Search, read, upload, download, move, rename, delete, restore, and share Box content; manage comments and metadata.

  • SKILL.md covers Connect and Use
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Box is an agent skill from asgeirtj/system_prompts_leaks. Search, read, upload, download, move, rename, delete, restore, and share Box content; manage comments and metadata.

Its SKILL.md is about 1.1k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files (for example `connector_auth_config.yaml` and `manifest.yaml`).

The repository describes itself as: Documented system prompts from Anthropic - Claude Fable 5.1, Opus 5.5, Claude Design, Claude Code. OpenAI - ChatGPT GPT-6-Astra, Codex. Google - Gemini 3.8 Flash, 3.1 Pro… The licence is CC0-1.0.

Example prompts

  • “/box”

What it can do on your machine

Read from SKILL.md and the folder at commit 60d44cc. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md (its code samples are bash).

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Box loads about 1.1k tokens when it runs. Until then it costs about 30 tokens; SKILL.md has 330 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~30
When it runs · the whole SKILL.md, loaded when a task matches
~1.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from asgeirtj/system_prompts_leaks at commit 60d44cc, republished under its CC0-1.0 licence (© asgeirtj). 330 words, ~1,053 tokens.

Download SKILL.mdSave it as .claude/skills/box/SKILL.md (or your agent's skills folder). This skill also uses 2 other files; get the full folder from GitHub.
name
box
description
Search, read, upload, download, move, rename, delete, restore, and share Box content; manage comments and metadata.
icon
box
metadata.includeInPrompt
false

Box

Use /opt/hatch/bin/box-cli to access Box.

Connect

Run /opt/hatch/bin/box-cli status. If disconnected, run /opt/hatch/bin/box-cli authorize-url and share the returned connect_url as Connect Box. A fresh connection requests read-only access. Wait for browser consent, then check status again.

Before an operation that may need broader Box access, run /opt/hatch/bin/box-cli status --for-command <command-or-method>. For a hosted MCP operation, pass its exact tool name instead of call-tool. When scope_status is not_granted, copy the returned scope_add_url exactly and post it on its own line as
[Additional Box access](<scope_add_url>) so the client renders the native access button. Wait for consent, then retry the original operation. Never construct an authorization URL or substitute a raw Box scope. The operation also fails closed with the same method-bound link if its required scope is absent. OAuth access does not replace Muse approval.

Use

Run list-tools for available MCP tools, their argument schemas, and Muse permissions. Use those schemas and IDs returned by Box in call-tool. get_file_content reads document text. Downloads and changes ask for Muse approval by default.

sh
/opt/hatch/bin/box-cli list-tools
/opt/hatch/bin/box-cli call-tool --name who_am_i --arguments-json '{}'

# Browse the root folder.
/opt/hatch/bin/box-cli call-tool --name list_folder_content_by_folder_id \
  --arguments-json '{"folder_id":"0","limit":20}'

# Search for PDFs.
/opt/hatch/bin/box-cli call-tool --name search_files_keyword \
  --arguments-json '{"query":"project plan","file_extensions":["pdf"],"limit":10}'

# Inspect file metadata.
/opt/hatch/bin/box-cli call-tool --name get_file_details \
  --arguments-json '{"file_id":"<file_id>","fields":["name","size","permissions"]}'

# Read document text.
/opt/hatch/bin/box-cli call-tool --name get_file_content \
  --arguments-json '{"file_id":"<file_id>"}'

# Create a folder.
/opt/hatch/bin/box-cli call-tool --name create_folder \
  --arguments-json '{"name":"Project notes","parent_folder_id":"<folder_id>"}'

# Upload a text file.
/opt/hatch/bin/box-cli call-tool --name upload_file \
  --arguments-json '{"file_name":"notes.txt","file_content":"Meeting notes","parent_folder_id":"<folder_id>"}'

# Post a comment.
/opt/hatch/bin/box-cli call-tool --name create_file_comment \
  --arguments-json '{"file_id":"<file_id>","message":"Ready for review."}'

Use the file commands below for local-file uploads, full downloads, moves, renames, and deletion. update-folder and delete-folder take --folder-id. Use upload-version to replace an existing file's contents; its required --name also renames the file. Run <command> --help for options.

sh
/opt/hatch/bin/box-cli download --file-id <file_id> --output workspace/report.pdf
/opt/hatch/bin/box-cli upload --input workspace/report.pdf --name report.pdf --parent-folder-id <folder_id>
/opt/hatch/bin/box-cli update-file --file-id <file_id> --name renamed.pdf --parent-folder-id <folder_id>
/opt/hatch/bin/box-cli delete-file --file-id <file_id>

Downloads overwrite the output file. Deletion is permanent when Box trash is disabled; deleting a nonempty folder requires --recursive. list-trash returns retained items; pass next_marker as --marker to page. Use restore-file or restore-folder to recover them. Their --fallback-parent-folder-id applies only if the original parent no longer exists.

Downloads report the saved path and byte count; other results appear under result. ok: false means the operation failed. REST commands make one attempt: retry a download later if Box returns HTTP 202 (file not ready), and run refresh on HTTP 401 before retrying. Check whether a failed change was applied before retrying it. Do not retry an access-denied operation through another command.

/opt/hatch/bin/box-cli refresh refreshes the connection. /opt/hatch/bin/box-cli disconnect disconnects Box from Muse.

© asgeirtj, CC0-1.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 2 other files in Meta/muse-agent/skills/box of asgeirtj/system_prompts_leaks.

  • SKILL.md
  • connector_auth_config.yaml
  • manifest.yaml

Open the folder on GitHubat commit 60d44cc

Compare with similar skills

Box next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Box compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Box this skillasgeirtj/system_prompts_leaks69k—~1.1kAutomated safety check: PassCC0-1.0
Fal Restorenexu-io/open-design100k—~302Automated safety check: PassApache-2.0
File Uploadsdavila7/claude-code-templates33k4 repos~238Automated safety check: PassMIT
File Upload Accessibilitythedaviddias/Front-End-Checklist74k—~418Automated safety check: PassMIT
Box Automationdavepoon/buildwithclaude3.6k7 repos~3.1kAutomated safety check: PassMIT
Video Downloadernexu-io/open-design100k—~339Automated safety check: PassApache-2.0

Similar skills

  • Fal Restore

    nexu-io/open-design

    Restore and fix image quality — deblur, denoise, fix faces, and restore old documents using fal.ai's hosted restoration models.

    100k GitHub stars~302 tokensUpdated today
    Media & CreativeAuto-check passed
  • File Uploads

    davila7/claude-code-templates

    Expert at handling file uploads and cloud storage. An agent skill from davila7/claude-code-templates.

    33k GitHub starsUsed in 4 repos~238 tokens
    Backend & APIsAuto-check passed
  • File Upload Accessibility

    thedaviddias/Front-End-Checklist

    A skill your agent uses when reviewing templates, rendered HTML, or shared components related to Make file uploads accessible.

    74k GitHub stars~418 tokensUpdated 4 days ago
    Backend & APIsAuto-check passed
  • Box Automation

    davepoon/buildwithclaude

    Automate Box cloud storage operations including file upload/download, search, folder management, sharing, collaborations, and metadata queries via Rube MCP (Composio).

    3.6k GitHub starsUsed in 7 repos~3.1k tokens
    Productivity & AutomationAuto-check passed
  • Video Downloader

    nexu-io/open-design

    Download videos from YouTube and other platforms for offline viewing, editing, or archival with support for various formats and quality options.

    100k GitHub stars~339 tokensUpdated today
    Media & CreativeAuto-check passed
  • Video Download

    calesthio/OpenMontage

    Download video and audio from YouTube and 1000+ sites using yt-dlp.

    66k GitHub stars~885 tokensUpdated 6 days ago
    Media & CreativeAuto-check passed

More from asgeirtj/system_prompts_leaks

All 128 skills in this repo
  • Fleet Manager for Agent Sessions

    asgeirtj/system_prompts_leaks

    Shows one digest of coding-agent sessions across your connected machines and lets you open, read, steer, approve, stop and close them, over Herdr, tmux or MSP.

    69k GitHub stars~2.5k tokensUpdated today
    Auto-check passed
  • Muse Code Product Doctor

    asgeirtj/system_prompts_leaks

    Diagnoses a Muse Code installation's own failures from binary and session evidence, instead of treating the report as an ordinary repository bug.

    69k GitHub stars~3.5k tokensUpdated today
    Auto-check passed
  • DOCX

    asgeirtj/system_prompts_leaks

    A skill your agent uses whenever the user wants to create, read, edit, or manipulate Word documents (.docx) or Word templates (.dotx).

    69k GitHub stars~1.9k tokensUpdated today
    Auto-check passed
  • Agents Project Coordinator

    asgeirtj/system_prompts_leaks

    Runs a goal as a project in which the agent coordinates separate agent threads, judging when to split the work, and interviews you first when nothing can be verified.

    69k GitHub stars~2.9k tokensUpdated today
    Auto-check passed
  • Muse Plugin Creator

    asgeirtj/system_prompts_leaks

    Creates and validates a new native Muse plugin package in the current workspace, limited to five capability families, and leaves installation to you.

    69k GitHub stars~1.8k tokensUpdated today
    Auto-check passed
  • Deep Research

    asgeirtj/system_prompts_leaks

    A skill your agent uses when the user's prompt requires (1) researching a topic across multiple sources, comparing options or alternatives, analyzing trends or history, understanding markets or…

    69k GitHub stars~3.3k tokensUpdated today
    Auto-check passed

Questions about Box

What does Box do?

Search, read, upload, download, move, rename, delete, restore, and share Box content; manage comments and metadata. Box is an agent skill from asgeirtj/system_prompts_leaks. Search, read, upload, download, move, rename, delete, restore, and share Box content; manage comments and metadata.

How do I install Box in Claude Code?

Run `npx skills add asgeirtj/system_prompts_leaks --skill box -a claude-code`. Or copy the skill folder (Meta/muse-agent/skills/box in asgeirtj/system_prompts_leaks) into .claude/skills/box in your project. Claude Code loads it when a task matches its description.

How do I install Box in Codex?

Run `npx skills add asgeirtj/system_prompts_leaks --skill box -a codex`. Or copy the skill folder (Meta/muse-agent/skills/box in asgeirtj/system_prompts_leaks) into .agents/skills/box in your project. Codex loads it when a task matches its description.

Can I use Box in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add asgeirtj/system_prompts_leaks --skill box -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/box, .gemini/skills/box, .github/skills/box and .opencode/skills/box in your project.

What does Box need to run?

SKILL.md names no scripts, command-line tools or credentials: Box is instructions for the agent only.

Does Box access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Box safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Box use?

Box is published under the CC0-1.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Box use?

About 1.1k tokens (SKILL.md is roughly 4.2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Box?

Skills that share tags, products or a category with Box: Fal Restore (nexu-io/open-design, 100k stars), File Uploads (davila7/claude-code-templates, 33k stars), File Upload Accessibility (thedaviddias/Front-End-Checklist, 74k stars) and Box Automation (davepoon/buildwithclaude, 3.6k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Box?

asgeirtj (a GitHub user) maintains it in asgeirtj/system_prompts_leaks, which has 69,280 GitHub stars. The repository holds 128 skills in this directory. The repository was last updated on October 10, 2026.

Source: asgeirtj/system_prompts_leaks on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.