Agent skill

Hosting Artifacts

by dxos in dxos/dxos

Put a demo video, screenshot, contact sheet, or log bundle where a reviewer can see it — a PR body, issue, or Linear ticket.

Custom licenceAuto-check: notesDevelopment

Install Hosting Artifacts

skills CLI
$ npx skills add dxos/dxos --skill hosting-artifacts -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install dxos/dxos hosting-artifacts --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/dxos/dxos.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/hosting-artifacts .claude/skills/hosting-artifacts && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
hosting-artifacts
GitHub stars
525
Token cost
~4.8k tokens
SKILL.md length
2,134 words
Files
2 (incl. scripts)
Skills in repo
41
Repo updated
First seen
Licence
Custom licence

At a glance

Put a demo video, screenshot, contact sheet, or log bundle where a reviewer can see it — a PR body, issue, or Linear ticket.

  • Tasks that involve Pull requests
  • SKILL.md covers The bucket, Credentials, Upload and Verify before you link, plus 4 more sections
  • Runs JavaScript scripts from its folder; calls gh, curl and wrangler; reaches pub-39066a86073446d7b77b1c157b660bb5.r2.dev and 950816f3f59b079880a1ae33fb0ec320.r2.cloudflarestorage.com; needs R2_ACCESS_KEY_ID and R2_SECRET_ACCESS_KEY
  • Tasks that involve Video production

What it does

Hosting Artifacts is an agent skill from dxos/dxos. Put a demo video, screenshot, contact sheet, or log bundle where a reviewer can see it — a PR body, issue, or Linear ticket. For images and videos in a PR or issue, prefer gh --attach (gh ≥ 2.99), which renders them inline (videos as a player); otherwise publish to the shared agent-artifacts R2 bucket and link it. Use INSTEAD of committing a binary to make it visible in a PR. The R2 route works in the cloud sandbox: it needs only R2ACCESSKEYID / R2SECRETACCESSKEY, no wrangler and no dependencies. For producing…

Its SKILL.md is about 4.8k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files, including scripts.

It sits in Development, covering Pull requests and Video production. It works with Cloudflare R2 and Cloudflare Workers. The repository describes itself as: TypeScript implementation of the DXOS protocols, SDK, toolchain and Composer.

When your agent uses it

  • Tasks that involve Pull requests
  • Tasks that involve Video production

Example prompts

  • “/hosting-artifacts”

Requirements

  • Node.js
  • A credential in R2_SECRET_ACCESS_KEY
  • A credential in CLOUDFLARE_API_TOKEN

What it can do on your machine

Read from SKILL.md and the folder at commit f0fc12a. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 1 file in scripts/ (JavaScript), which the agent can run.

    Shell commands in SKILL.md call:

    • gh
    • curl
    • wrangler
    • composer

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • pub-39066a86073446d7b77b1c157b660bb5.r2.dev
    • 950816f3f59b079880a1ae33fb0ec320.r2.cloudflarestorage.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • R2_ACCESS_KEY_ID
    • R2_SECRET_ACCESS_KEY
    • CLOUDFLARE_API_TOKEN

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Hosting Artifacts loads about 4.8k tokens when it runs. Until then it costs about 149 tokens; SKILL.md has 2,134 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~149
When it runs · the whole SKILL.md, loaded when a task matches
~4.8k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NoteMentions a .env fileSKILL.md:49
    resent locally in the repo's gitignored `.env`, so a
  • NoteMentions a .env fileSKILL.md:54
    `         | cloud sandbox **and** local `.env` | **works** — read, write, list, delete. Measured, not assumed
  • NoteMentions a .env fileSKILL.md:55
    | `CLOUDFLARE_API_TOKEN` (local `.env`)               | local only                         | works, but account-wide R2
  • NoteMentions a .env fileSKILL.md:61
    - **The `.env` comment above the `R2_*` pair calls the token "read-only" and scoped to
  • NoteMentions a .env fileSKILL.md:78
    r in `.secrets/` over one that lives in `.env` forever.
  • NoteMentions a .env fileSKILL.md:86
    set -a && . ./.env && set +a      # local only; the sandbox already has R2_* in the environment
  • NoteMentions a .env fileSKILL.md:250
    devtools panel or a `.env` open in an editor pane;
  • NoteMentions a .env fileSKILL.md:280
    ects it; locally you must `set -a && . ./.env && set +a` first

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

Its licence (Custom licence) doesn't allow us to republish the file, so here is its outline and opening line. It has 2,134 words (~4,767 tokens).

“SendUserFile reaches the human you are talking to. It does not reach a reviewer reading the PR on GitHub, and git is the wrong place for a 19 MB .webm. For an image or video in a PR or issue…”

— opening of SKILL.md by dxos, Custom licence
name
hosting-artifacts

Read the full SKILL.md on GitHub

Files

SKILL.md and 1 other file (scripts) in .agents/skills/hosting-artifacts of dxos/dxos.

  • SKILL.md
  • scripts/upload-artifact.mjs

Open the folder on GitHubat commit f0fc12a

Compare with similar skills

Hosting Artifacts next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Hosting Artifacts compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Hosting Artifacts this skilldxos/dxos525—~4.8kAutomated safety check: NotesCustom licence
Nullable New Paramsremotion-dev/remotion62k—~1kAutomated safety check: PassCustom licence
Mergeremotion-dev/remotion62k—~508Automated safety check: PassCustom licence
PR Nameremotion-dev/remotion62k—~1.1kAutomated safety check: PassCustom licence
Contributingkortix-ai/suna20k1 repos~3kAutomated safety check: WarnCustom licence
Pull Request Explainer Videoheygen-com/hyperframes59k2 repos~8.4kAutomated safety check: NotesApache-2.0

Similar skills

  • Nullable New Params

    remotion-dev/remotion

    Official

    Fix newly added optional parameters, optional React props, and optional type/interface members in Remotion monorepo diffs by converting internal APIs to required nullable values and updating call…

    62k GitHub stars~1k tokensUpdated today
    DevelopmentAuto-check passed
  • Merge

    remotion-dev/remotion

    Official

    Wait for a Remotion pull request to become mergeable, handle merge conflicts, distinguish genuine CI failures from flakes, rerun flaky checks through the flake skill, and merge the PR.

    62k GitHub stars~508 tokensUpdated today
    DevelopmentAuto-check passed
  • PR Name

    remotion-dev/remotion

    Official

    Review or correct a Remotion pull request title. An agent skill from remotion-dev/remotion.

    62k GitHub stars~1.1k tokensUpdated today
    DevelopmentAuto-check passed
  • Contributing

    kortix-ai/suna

    The pull request loop for this repo: branch → commit → verify in your own box (local tests + local stack) → PR into main → demo video recorded with agent-browser on the local stack → gh --attach →…

    20k GitHub starsUsed in 1 repo~3k tokens
    DevelopmentAuto-check: warnings
  • Pull Request Explainer Video

    heygen-com/hyperframes

    Turns a GitHub pull request into a code-change explainer video built from its diff, commits and files, rendered with HyperFrames.

    59k GitHub starsUsed in 2 repos~8.4k tokens
    Media & CreativeAuto-check: notes
  • CodFlow Change Workflow

    bighadj22/codflow

    A step-by-step workflow for changing the CodFlow repository: read the AGENTS.md contract, respect package boundaries, verify before claiming done and keep PRs small.

    346 GitHub stars~1.1k tokensUpdated 2 days ago
    DevelopmentAuto-check passed

More from dxos/dxos

All 41 skills in this repo
  • Run the rule-driven agentic code review — discover rule blocks in the repo's .mdl files, prepare per-rule review groups (full project by default; diff-only with --pr-only), spawn one focused Sonnet…

    525 GitHub stars~4.4k tokensUpdated today
    Auto-check passed
  • Forensically inspect and repair Composer browser profiles — offline (Chrome OPFS / SQLite extract) or live via /recovery.html debug port.

    525 GitHub stars~3.1k tokensUpdated today
    Auto-check passed
  • Migrate Oxfmt

    dxos/dxos

    Guide for migrating a project from Prettier or Biome to Oxfmt.

    525 GitHub starsUsed in 3 repos~2.2k tokens
    Auto-check passed
  • Moon

    dxos/dxos

    This skill should be used when the user asks to "configure moon", "set up moonrepo", "create moon tasks", "run moon commands", "configure moon workspace", "add moon project", "moon ci setup", "moon…

    525 GitHub stars~2.1k tokensUpdated today
    Auto-check passed
  • Reference for SubductionPolicy (the four hooks authorizeConnect, authorizeFetch, authorizePut, filterAuthorizedFetch passed via Subduction.hydrate(..., policy) or new Repo({ subductionPolicy })).

    525 GitHub stars~3.4k tokensUpdated today
    Auto-check passed
  • Autocue

    dxos/dxos

    Record a demo of the running app that the agent drives itself — a .mdl QA test or an ad-hoc walkthrough — as a captioned .webm (or a screenshot), trimmed of dead air and ready to attach.

    525 GitHub stars~12k tokensUpdated today
    Auto-check passed

Questions about Hosting Artifacts

What does Hosting Artifacts do?

Put a demo video, screenshot, contact sheet, or log bundle where a reviewer can see it — a PR body, issue, or Linear ticket. Hosting Artifacts is an agent skill from dxos/dxos. Put a demo video, screenshot, contact sheet, or log bundle where a reviewer can see it — a PR body, issue, or Linear ticket.

When should I use Hosting Artifacts?

Hosting Artifacts fits situations like: tasks that involve Pull requests; tasks that involve Video production.

How do I install Hosting Artifacts in Claude Code?

Run `npx skills add dxos/dxos --skill hosting-artifacts -a claude-code`. Or copy the skill folder (.agents/skills/hosting-artifacts in dxos/dxos) into .claude/skills/hosting-artifacts in your project. Claude Code loads it when a task matches its description.

How do I install Hosting Artifacts in Codex?

Run `npx skills add dxos/dxos --skill hosting-artifacts -a codex`. Or copy the skill folder (.agents/skills/hosting-artifacts in dxos/dxos) into .agents/skills/hosting-artifacts in your project. Codex loads it when a task matches its description.

Can I use Hosting Artifacts in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add dxos/dxos --skill hosting-artifacts -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/hosting-artifacts, .gemini/skills/hosting-artifacts, .github/skills/hosting-artifacts and .opencode/skills/hosting-artifacts in your project.

What does Hosting Artifacts need to run?

Going by SKILL.md and its folder, Hosting Artifacts needs JavaScript for the scripts in its folder, the command-line tools its instructions call (gh, curl, wrangler and composer) and credentials named R2_ACCESS_KEY_ID, R2_SECRET_ACCESS_KEY and CLOUDFLARE_API_TOKEN. Our summary lists: Node.js; A credential in R2_SECRET_ACCESS_KEY; A credential in CLOUDFLARE_API_TOKEN.

Does Hosting Artifacts access the network?

SKILL.md names 2 domains. In commands or code: pub-39066a86073446d7b77b1c157b660bb5.r2.dev and 950816f3f59b079880a1ae33fb0ec320.r2.cloudflarestorage.com; the agent is likely to contact these when it follows the instructions. This is read from the text; nothing was executed.

Is Hosting Artifacts safe to install?

Our automated static check of SKILL.md found notes only (mentions a .env file), nothing it rates as a warning. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Hosting Artifacts use?

Hosting Artifacts has a licence file (the repository's licence) that doesn't match a standard licence. Read it on GitHub before reusing the skill.

How many tokens does Hosting Artifacts use?

About 4.8k tokens (SKILL.md is roughly 19k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Hosting Artifacts?

Skills that share tags, products or a category with Hosting Artifacts: Nullable New Params (remotion-dev/remotion, 62k stars), Merge (remotion-dev/remotion, 62k stars), PR Name (remotion-dev/remotion, 62k stars) and Contributing (kortix-ai/suna, 20k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Hosting Artifacts?

dxos (a GitHub organization) maintains it in dxos/dxos, which has 525 GitHub stars. The repository holds 41 skills in this directory. The repository was last updated on October 8, 2026.

Source: dxos/dxos on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.