A skill your agent uses when deciding what lives in the ISSTA 18-page body versus the artifact and any appendix, covering the no-unlimited-appendix reality, what reviewers will and will not open…

MITAuto-check passedSecurity

Install Issta Supplementary

skills CLI
$ npx skills add brycewang-stanford/Awesome-Journal-Skills --skill issta-supplementary -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install brycewang-stanford/Awesome-Journal-Skills issta-supplementary --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/brycewang-stanford/Awesome-Journal-Skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/ISSTA-Skills/skills/issta-supplementary .claude/skills/issta-supplementary && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
issta-supplementary
GitHub stars
1.2k
Token cost
~1k tokens
SKILL.md length
444 words
Files
1
Skills in repo
2,387
Repo updated
First seen
Licence
MIT

At a glance

A skill your agent uses when deciding what lives in the ISSTA 18-page body versus the artifact and any appendix, covering the no-unlimited-appendix reality, what reviewers will and will not open…

  • Deciding what lives in the ISSTA 18-page body versus the artifact and any appendix
  • SKILL.md covers The split rule, What reviewers open, and what…, Anonymity of supplementary… and Vignette: splitting a…, plus 1 more section
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • Covering the no-unlimited-appendix reality

What it does

Issta Supplementary is an agent skill from brycewang-stanford/Awesome-Journal-Skills. Use when deciding what lives in the ISSTA 18-page body versus the artifact and any appendix, covering the no-unlimited-appendix reality, what reviewers will and will not open, splitting a testing/analysis paper between body and package, anonymity of supplementary material, and keeping decision-critical evidence inside the reviewed pages.

Its SKILL.md is about 1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Security. The repository describes itself as: Journal-specific Claude Code/Codex skill packs covering mainstream journals — AER, QJE, Nature, Cell, 管理世界, 经济研究 & 200+ more — your fast track to getting published. | 覆盖主流期刊的… The licence is MIT.

When your agent uses it

  • Deciding what lives in the ISSTA 18-page body versus the artifact and any appendix
  • Covering the no-unlimited-appendix reality
  • What reviewers will and will not open
  • Splitting a testing/analysis paper between body and package

Example prompts

  • “/issta-supplementary”

What it can do on your machine

Read from SKILL.md and the folder at commit 932eb23. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Issta Supplementary loads about 1k tokens when it runs. Until then it costs about 90 tokens; SKILL.md has 444 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~90
When it runs · the whole SKILL.md, loaded when a task matches
~1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from brycewang-stanford/Awesome-Journal-Skills at commit 932eb23, republished under its MIT licence (© brycewang-stanford). 444 words, ~1,026 tokens.

Download SKILL.mdSave it as .claude/skills/issta-supplementary/SKILL.md (or your agent's skills folder).
name
issta-supplementary
description
Use when deciding what lives in the ISSTA 18-page body versus the artifact and any appendix, covering the no-unlimited-appendix reality, what reviewers will and will not open, splitting a testing/analysis paper between body and package, anonymity of supplementary material, and keeping decision-critical evidence inside the reviewed pages.

ISSTA Supplementary

Use this when deciding where each piece of content belongs. ISSTA's 18-page limit counts appendices against the total, so there is no unlimited appendix to absorb overflow: the body must stand on its own, and the artifact — not a separate PDF supplement — is where extra material goes. Reopen the current call to confirm whether any in-PDF appendix or separate upload is permitted this cycle.

The split rule

  • Everything decision-critical lives inside the 18 pages: the threat model, the technique, the evaluation design, the headline results, and the threats to validity. If a reviewer needs it to judge the paper, it cannot live only in the artifact.
  • The artifact carries what supports but does not replace the argument: the full tool, complete per-subject tables, extra configurations, raw logs, and regeneration scripts.
  • Do not hide core method steps or primary results in an appendix or the artifact to make the body fit. Reviewers grade what is in the reviewed pages; buried evidence is invisible evidence.
  • Because appendix pages count against 18, a long appendix competes directly with the body. Prefer moving detail to the artifact over spending page budget on it.

What reviewers open, and what they do not

ContentWhere it belongsReviewer attention
Technique definition, threat modelBodyRead closely — graded for soundness
Headline results + statisticsBodyRead closely — graded for evaluation
Threats to validityBodyExpected; its absence is noticed
Full per-subject result tablesArtifactSkimmed if a body claim is contested
Raw fuzzing/analysis logsArtifactRarely opened; ship for completeness
The runnable toolArtifact (evaluated separately)Run by artifact evaluators, not always by PC

Assume a PC reviewer reads the 18 pages and dips into the artifact only to resolve a doubt. Design the body so no such dip is required to accept the paper.

Show full SKILL.md (145 more words)Show less

Anonymity of supplementary material

  • Keep the review-time artifact double-anonymous: no repository owner, commit authors, container labels, institution paths, or acknowledgements.
  • Verify archives open on a clean machine with no credentials, caches, or OS metadata baked in.
  • An anonymized public mirror or an anonymous upload is fine; a link to your named GitHub is a double-anonymous violation.

Vignette: splitting a static-analysis paper

A submission presenting a new taint-analysis with a soundness argument and a large evaluation: the body keeps the analysis rules, the soundness sketch, the evaluation protocol, and the two decision-critical result tables (precision/recall against ground truth, and a comparison to one established baseline); the artifact holds the full implementation, the complete per-benchmark tables, alternative sensitivity configurations, and the scripts that regenerate every table. Nothing needed to accept the paper lives only in the artifact, because artifact inspection by the PC is discretionary.

text
Body (<= 18 pp)          Artifact
- analysis rules          - full analyzer implementation
- soundness sketch        - complete per-benchmark tables
- evaluation protocol     - extra sensitivity configs
- 2 headline tables       - table-regeneration scripts + raw logs
- threats to validity     - pinned subjects (SHAs)

Output format

text
[Split status] Ready / Needs fixes / Not ready
[Body carries] <decision-critical items present in the 18 pages>
[Artifact carries] <supporting material>
[Page-budget risk] <appendix competing with the body?>
[Anonymity checks] passed / issues
[Main-paper dependency] <what breaks if the artifact is never opened>

© brycewang-stanford, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in ISSTA-Skills/skills/issta-supplementary of brycewang-stanford/Awesome-Journal-Skills.

Open the folder on GitHubat commit 932eb23

Compare with similar skills

Issta Supplementary next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Issta Supplementary compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Issta Supplementary this skillbrycewang-stanford/Awesome-Journal-Skills1.2k—~1kAutomated safety check: PassMIT
Deepsec Documentation Guidevercel-labs/deepsec8.1k—~956Automated safety check: PassApache-2.0
Skill Scannergetsentry/skills1k4 repos~2.5kAutomated safety check: WarnApache-2.0
Serenity Aleabitoreddityan-labs/serenity-aleabitoreddit4811 repos~3.3kAutomated safety check: PassNone
Security Alert Triageelastic/agent-skills5921 repos~3.5kAutomated safety check: NotesApache-2.0
Shiro Attack CLISummerSec/ShiroAttack22.6k—~945Automated safety check: PassMIT

Similar skills

  • Deepsec Documentation Guide

    vercel-labs/deepsec

    Official

    Points the agent at deepsec's own docs to answer questions about initializing, configuring, resuming, scanning with and extending the vulnerability scanner.

    8.1k GitHub stars~956 tokensUpdated 12 days ago
    SecurityAuto-check passed
  • Skill Scanner

    getsentry/skills

    Official

    Scan agent skills for security issues. An agent skill from getsentry/skills.

    1k GitHub starsUsed in 4 repos~2.5k tokens
    SecurityAuto-check: warnings
  • Serenity Aleabitoreddit

    yan-labs/serenity-aleabitoreddit

    Apply trader Serenity's (@aleabitoreddit) AI/semiconductor supply-chain analytical lens to US-stock ideas and market judgment.

    481 GitHub starsUsed in 1 repo~3.3k tokens
    SecurityAuto-check passed
  • Security Alert Triage

    elastic/agent-skills

    Official

    Triage Elastic Security alerts — gather context, classify threats, create cases, and acknowledge.

    592 GitHub starsUsed in 1 repo~3.5k tokens
    SecurityAuto-check: notes
  • Shiro Attack CLI

    SummerSec/ShiroAttack2

    当用户要求利用、检测或测试 Apache Shiro rememberMe 反序列化漏洞 (Shiro-550, CVE-2016-4437) 时使用。触发词包括 "Shiro"、"rememberMe"、"shiro attack"、"CVE-2016-4437"、"Shiro-550"、"爆破 Shiro key"、"利用 Shiro"、"Shiro…

    2.6k GitHub stars~945 tokensUpdated 4 mo ago
    SecurityAuto-check passed
  • Cve Remediation

    rundeck/rundeck

    Verify if a CVE affects the project and remediate it. An agent skill from rundeck/rundeck.

    6.3k GitHub stars~2.9k tokensUpdated yesterday
    SecurityAuto-check passed

More from brycewang-stanford/Awesome-Journal-Skills

All 2,387 skills in this repo
  • Aaag Data Analysis

    brycewang-stanford/Awesome-Journal-Skills

    A skill your agent uses when running and reporting the analysis for an Annals of the American Association of Geographers manuscript — spatial statistics and modeling, remote-sensing accuracy, or…

    1.2k GitHub stars~1.3k tokensUpdated 14 days ago
    Auto-check passed
  • Aaag Literature Positioning

    brycewang-stanford/Awesome-Journal-Skills

    A skill your agent uses when positioning an Annals of the American Association of Geographers manuscript in the literature — engaging geographic scholarship across the relevant area and the…

    1.2k GitHub stars~1.3k tokensUpdated 14 days ago
    Auto-check passed
  • Aaag Rebuttal

    brycewang-stanford/Awesome-Journal-Skills

    A skill your agent uses when responding to an Annals of the American Association of Geographers decision letter (major/minor revision) — building a point-by-point response to the subject editor and…

    1.2k GitHub stars~1.4k tokensUpdated 14 days ago
    Auto-check passed
  • Aaag Research Design

    brycewang-stanford/Awesome-Journal-Skills

    A skill your agent uses when defending the research design of an Annals of the American Association of Geographers manuscript — spatial/quantitative analysis and GIScience, remote-sensing and…

    1.2k GitHub stars~1.4k tokensUpdated 14 days ago
    Auto-check passed
  • Aaag Review Process

    brycewang-stanford/Awesome-Journal-Skills

    A skill your agent uses when you need to understand how the Annals of the American Association of Geographers evaluates a manuscript — double-anonymous review routed through a subject editor by…

    1.2k GitHub stars~1.3k tokensUpdated 14 days ago
    Auto-check passed
  • Aaag Submission

    brycewang-stanford/Awesome-Journal-Skills

    A skill your agent uses when running the final pre-submission preflight for the Annals of the American Association of Geographers via ScholarOne Manuscripts — area/article-type selection…

    1.2k GitHub stars~1.6k tokensUpdated 14 days ago
    Auto-check passed

Categories

Questions about Issta Supplementary

What does Issta Supplementary do?

A skill your agent uses when deciding what lives in the ISSTA 18-page body versus the artifact and any appendix, covering the no-unlimited-appendix reality, what reviewers will and will not open…. Issta Supplementary is an agent skill from brycewang-stanford/Awesome-Journal-Skills. Use when deciding what lives in the ISSTA 18-page body versus the artifact and any appendix, covering the no-unlimited-appendix reality, what reviewers will and will not open, splitting a testing/analysis paper between body and package, anonymity of supplementary material, and keeping decision-critical evidence inside the reviewed pages.

When should I use Issta Supplementary?

Issta Supplementary fits situations like: deciding what lives in the ISSTA 18-page body versus the artifact and any appendix; covering the no-unlimited-appendix reality; what reviewers will and will not open; splitting a testing/analysis paper between body and package.

How do I install Issta Supplementary in Claude Code?

Run `npx skills add brycewang-stanford/Awesome-Journal-Skills --skill issta-supplementary -a claude-code`. Or copy the skill folder (ISSTA-Skills/skills/issta-supplementary in brycewang-stanford/Awesome-Journal-Skills) into .claude/skills/issta-supplementary in your project. Claude Code loads it when a task matches its description.

How do I install Issta Supplementary in Codex?

Run `npx skills add brycewang-stanford/Awesome-Journal-Skills --skill issta-supplementary -a codex`. Or copy the skill folder (ISSTA-Skills/skills/issta-supplementary in brycewang-stanford/Awesome-Journal-Skills) into .agents/skills/issta-supplementary in your project. Codex loads it when a task matches its description.

Can I use Issta Supplementary in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add brycewang-stanford/Awesome-Journal-Skills --skill issta-supplementary -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/issta-supplementary, .gemini/skills/issta-supplementary, .github/skills/issta-supplementary and .opencode/skills/issta-supplementary in your project.

What does Issta Supplementary need to run?

SKILL.md names no scripts, command-line tools or credentials: Issta Supplementary is instructions for the agent only.

Does Issta Supplementary access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Issta Supplementary safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Issta Supplementary use?

Issta Supplementary is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Issta Supplementary use?

About 1k tokens (SKILL.md is roughly 4.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Issta Supplementary?

Skills that share tags, products or a category with Issta Supplementary: Deepsec Documentation Guide (vercel-labs/deepsec, 8.1k stars), Skill Scanner (getsentry/skills, 1k stars), Serenity Aleabitoreddit (yan-labs/serenity-aleabitoreddit, 481 stars) and Security Alert Triage (elastic/agent-skills, 592 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Issta Supplementary?

brycewang-stanford (a GitHub user) maintains it in brycewang-stanford/Awesome-Journal-Skills, which has 1,231 GitHub stars. The repository holds 2,387 skills in this directory. The repository was last updated on September 27, 2026.

Source: brycewang-stanford/Awesome-Journal-Skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.