MCP Integration for Plugins
anthropics/claude-plugins-official
Explains how to bundle Model Context Protocol servers in a Claude Code plugin, covering config files, stdio, SSE, HTTP and WebSocket server types, and authentication.
Audit, score, and compare repositories containing portable Agent Plugins against the official Agent Plugins specification.
$ npx skills add fabricioctelles/skills --skill agent-plugin-eval -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install fabricioctelles/skills agent-plugin-eval --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/fabricioctelles/skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/agent-plugin-eval .claude/skills/agent-plugin-eval && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "agent-plugin-eval" agent skill from https://github.com/fabricioctelles/skills/tree/main/skills/agent-plugin-eval into .claude/skills/agent-plugin-eval/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "agent-plugin-eval", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/fabricioctelles/skills/tree/main/skills/agent-plugin-evalType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add fabricioctelles/skills --skill agent-plugin-eval -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install fabricioctelles/skills agent-plugin-eval --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/fabricioctelles/skills.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/agent-plugin-eval .agents/skills/agent-plugin-eval && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "agent-plugin-eval" agent skill from https://github.com/fabricioctelles/skills/tree/main/skills/agent-plugin-eval into .agents/skills/agent-plugin-eval/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "agent-plugin-eval", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add fabricioctelles/skills --skill agent-plugin-eval -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install fabricioctelles/skills agent-plugin-eval --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/fabricioctelles/skills.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/agent-plugin-eval .cursor/skills/agent-plugin-eval && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "agent-plugin-eval" agent skill from https://github.com/fabricioctelles/skills/tree/main/skills/agent-plugin-eval into .cursor/skills/agent-plugin-eval/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "agent-plugin-eval", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/fabricioctelles/skills.git --path skills/agent-plugin-eval--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add fabricioctelles/skills --skill agent-plugin-eval -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install fabricioctelles/skills agent-plugin-eval --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/fabricioctelles/skills.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/agent-plugin-eval .gemini/skills/agent-plugin-eval && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "agent-plugin-eval" agent skill from https://github.com/fabricioctelles/skills/tree/main/skills/agent-plugin-eval into .gemini/skills/agent-plugin-eval/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "agent-plugin-eval", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install fabricioctelles/skills agent-plugin-evalInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add fabricioctelles/skills --skill agent-plugin-eval -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/fabricioctelles/skills.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/agent-plugin-eval .github/skills/agent-plugin-eval && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "agent-plugin-eval" agent skill from https://github.com/fabricioctelles/skills/tree/main/skills/agent-plugin-eval into .github/skills/agent-plugin-eval/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "agent-plugin-eval", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add fabricioctelles/skills --skill agent-plugin-eval -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install fabricioctelles/skills agent-plugin-eval --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/fabricioctelles/skills.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/agent-plugin-eval .opencode/skills/agent-plugin-eval && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "agent-plugin-eval" agent skill from https://github.com/fabricioctelles/skills/tree/main/skills/agent-plugin-eval into .opencode/skills/agent-plugin-eval/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "agent-plugin-eval", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
agent-plugin-evalAudit, score, and compare repositories containing portable Agent Plugins against the official Agent Plugins specification.
Agent Plugin Eval is an agent skill from fabricioctelles/skills. Audit, score, and compare repositories containing portable Agent Plugins against the official Agent Plugins specification. Use when asked to review a plugin repo, check plugin.json or mcp.json conformance, assess bundled skills and MCP servers, produce an evidence-cited 0–100 plugin scorecard, identify release blockers, or compare two agent plugins side by side.
Its SKILL.md is about 2.1k tokens, which your agent loads only when the skill is triggered. The skill folder holds 11 other files, including scripts and reference files (for example `agents/default.yaml`, `references/jev-integration.md` and `references/output-template.md`).
It sits in Agent Workflows, covering Hooks and plugins. It works with Model Context Protocol and Git. The repository describes itself as: A collection of skills for AI agents (Kiro, Cursor, Windsurf, Claude Code, and others). Each skill is a reusable module that teaches the agent to perform complex tasks with… The licence is Apache-2.0.
8 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit f1de632. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Ships 3 files in scripts/ (Python), which the agent can run.
Shell commands in SKILL.md call:
python3From the folder's file list and the shell code blocks in SKILL.md.
Links to these hosts (documentation or services it may open):
github.comFrom URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Agent Plugin Eval loads about 2.1k tokens when it runs, and up to ~7.4k if it reads all its reference files. Until then it costs about 96 tokens; SKILL.md has 959 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.
The full file from fabricioctelles/skills at commit f1de632, republished under its Apache-2.0 licence (© fabricioctelles). 959 words, ~2,109 tokens.
.claude/skills/agent-plugin-eval/SKILL.md (or your agent's skills folder). This skill also uses 8 other files; get the full folder from GitHub.Treat the portable Agent Plugins specification as the authority. A client-native
manifest (e.g., .codex-plugin/plugin.json, .claude/settings.json,
.cursor/mcp.json) does not replace the required root plugin.json.
| Parameter | Description | Default |
|---|---|---|
target | Local repository/plugin path or Git URL | Ask if missing |
compare | Optional second path or Git URL | None |
output | Scorecard destination | Reply only; write only when requested |
spec_version | Agent Plugins version to evaluate | Version declared by plugin.json, or 1.0.0 |
Audit untrusted repositories statically. Do not run bundled executables, hooks,
install scripts, package managers, MCP servers, or networked tests unless the
user explicitly authorizes execution. Redact suspected secret values; report
only their location and kind. A secret-like key or value is a suspicion, not
confirmation: do not assign the FAIL gate without corroborating evidence such
as a recognized live credential format, a trusted secret scanner, repository
history/provenance, or user confirmation. Never test a credential against a
service merely to confirm it.
mktemp -d directory. A plugin root contains root
plugin.json; if a repo has zero or multiple candidates, report the
ambiguity instead of guessing. Done when every target maps to one explicit
plugin root.references/spec-checklist.md and
references/rubric.md. For Agent Plugins 1.0.0, use the bundled snapshot.
For another declared version, or when the user asks for the latest spec,
browse the canonical specification and schemas at agent-plugins.org and
record the evaluated version and retrieval date. The normative text wins if
it conflicts with JSON Schema.python3 scripts/inspect_plugin.py <plugin-root> --json. Treat its output as
evidence leads, not the final judgment. Confirm each reported issue in the
source and add file:line or JSON-pointer evidence. Never weaken a
normative finding merely because a client happens to accept it.skills/*/SKILL.md and every mcpServers entry. Validate Agent Skills
against their own specification. Assess instructions, resources, scripts,
MCP configuration, extension isolation, cohesion, and practical utility.
If skill-evaluation is available, it may deepen individual skill-quality
analysis, but it never replaces this plugin-level rubric.references/spec-checklist.md: PASS, PARTIAL, or FAIL. Keep client
compatibility separate from portable conformance. A client-specific feature
may be excellent for that client and still add zero portable coverage.references/rubric.md. Every score needs specific evidence; every N/A
needs a reason. Run scripts/score.py for the weighted result and gate cap;
do not calculate it by hand. Done when all criteria and all findings are
reconciled with the conformance status.references/output-template.md and emit that structure. Lead with the
verdict, distinguish blockers from recommendations, and provide concrete
fixes. When compare is set, evaluate both independently before computing
deltas; never force the same N/A set on both plugins.PASS: no normative violation found; no score cap.PARTIAL: non-fatal manifest deviation or invalid/skipped component; final
score capped at 59.FAIL: fatal manifest/package-root failure, root-manifest escape, or
confirmed embedded credential; final score capped at 39.Invoke the calculator with one criterion:score:weight triple per criterion:
python3 scripts/score.py --gate partial 1:90:3 2:80:3 3:NA:2When TypeSafe Jev is available, use it for subjective quality criteria. Jev provides calibrated probability judgments that augment the deterministic checks.
| Evaluation Type | Use Jev? | Method |
|---|---|---|
| Axes 1-3 conformance | No | Deterministic (inspect_plugin.py) |
| Axis 4 product quality | Yes | Score (UX, docs, errors) |
| Axis 2 quality criteria | Yes | Score (schema design, naming) |
| Gate classification | Yes | Noul (pass/fail categories) |
| Secret detection | Yes | Noul (suspected/not_suspected) |
| Quality checklist | Yes | Noul (present/missing) |
from typesafe import jev_available
if jev_available():
from typesafe import Score, Noul
# Use Jev for subjective criteria
else:
# Fall back to heuristic scoringQuestions are defined in scripts/jev_questions.json:
Score results (0.0-1.0) are averaged per axis and scaled to the rubric (0-25). Noul results provide categorical classifications for gates and checklists.
See references/jev-integration.md for full integration patterns and code
examples.
When Jev is used, the scorecard includes a jev section:
{
"jev": {
"available": true,
"quality_scores": { "ux_coherence": 0.72, ... },
"gate_classifications": { "G1": {"label": "conformant", "passed": true} },
"secret_findings": { "requires_review": false }
}
}skills/ or mcp.json is not an error. A present path of
the wrong filesystem kind is an invalid component type.${PLUGIN_ROOT} and ${PLUGIN_DATA} expand only in MCP args, env values,
and cwd; never in command, URLs, or headers.plugin.json is absent. Report both facts without averaging them away.FAIL gate.scripts/score.py© fabricioctelles, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 8 other files (scripts, references) in skills/agent-plugin-eval of fabricioctelles/skills.
Open the folder on GitHubat commit f1de632
Agent Plugin Eval next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Agent Plugin Eval this skillfabricioctelles/skills | 106 | — | ~2.1k | Automated safety check: Pass | Apache-2.0 | |
| MCP Integration for Pluginsanthropics/claude-plugins-official | 38k | 11 repos | ~3.1k | Automated safety check: Pass | Apache-2.0 | |
| Crush Configurationcharmbracelet/crush | 29k | — | ~3.7k | Automated safety check: Pass | Custom licence | |
| Agent Repo Initstudy8677/repobrain | 1.3k | 1 repos | ~404 | Automated safety check: Notes | MIT | |
| OpenpetsOpenPetsHQ/openpets | 1.3k | — | ~2.1k | Automated safety check: Pass | MIT | |
| Claude Automation Recommenderanthropics/claude-plugins-official | 38k | 3 repos | ~2.7k | Automated safety check: Notes | Apache-2.0 |
anthropics/claude-plugins-official
Explains how to bundle Model Context Protocol servers in a Claude Code plugin, covering config files, stdio, SSE, HTTP and WebSocket server types, and authentication.
charmbracelet/crush
Explains how to configure the Crush coding agent with crushrc or crush.json, covering providers, models, LSPs, MCP servers, hooks, permissions and config precedence.
study8677/repobrain
One-click initialization of a multi-agent repository from the RepoBrain template.
OpenPetsHQ/openpets
A skill your agent uses whenever the user wants to build, extend, debug, test, validate, locally load, package, or publish an OpenPets plugin; work with the OpenPets Plugin SDK v3, plugin manifest…
anthropics/claude-plugins-official
Scans a codebase and suggests which Claude Code hooks, subagents, skills, plugins and MCP servers fit its stack, without changing any files.
EveryInc/compound-engineering-plugin
Checks Compound Engineering plugin health and repo-local config, or scaffolds a Compound Pack when you ask for one by id.
fabricioctelles/skills
Produce a short motion-graphics video ad — a 15s Facebook/Instagram/TikTok spot — as a rendered MP4.
fabricioctelles/skills
Design well-structured agent loops with best-practice coaching and cross-model review gates before you run them.
fabricioctelles/skills
Automated iterative agent runner for spec-based development in Kiro.
fabricioctelles/skills
Runs security audits on codebases — full scans, diff reviews, threat models, vulnerability triage, remediation guidance, and finding tracking.
fabricioctelles/skills
Evaluate any agent skill against a merged framework — Anthropic's Claude Code best practices plus Matt Pocock's writing-great-skills methodology — across 4 axes (Trigger, Structure, Steering…
fabricioctelles/skills
Create, validate, and enrich Open Knowledge Format (OKF) bundles — the open spec for representing organizational knowledge as markdown files with YAML frontmatter.
Works with
Categories
Audit, score, and compare repositories containing portable Agent Plugins against the official Agent Plugins specification. Agent Plugin Eval is an agent skill from fabricioctelles/skills. Audit, score, and compare repositories containing portable Agent Plugins against the official Agent Plugins specification.
Agent Plugin Eval fits situations like: asked to review a plugin repo; check plugin.json; mcp.json conformance; assess bundled skills and MCP servers.
Run `npx skills add fabricioctelles/skills --skill agent-plugin-eval -a claude-code`. Or copy the skill folder (skills/agent-plugin-eval in fabricioctelles/skills) into .claude/skills/agent-plugin-eval in your project. Claude Code loads it when a task matches its description.
Run `npx skills add fabricioctelles/skills --skill agent-plugin-eval -a codex`. Or copy the skill folder (skills/agent-plugin-eval in fabricioctelles/skills) into .agents/skills/agent-plugin-eval in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add fabricioctelles/skills --skill agent-plugin-eval -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/agent-plugin-eval, .gemini/skills/agent-plugin-eval, .github/skills/agent-plugin-eval and .opencode/skills/agent-plugin-eval in your project.
Going by SKILL.md and its folder, Agent Plugin Eval needs Python for the scripts in its folder and the command-line tools its instructions call (python3). Our summary lists: Python 3.
SKILL.md names 1 domain. As links in the text: github.com. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.
Agent Plugin Eval is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.1k tokens (SKILL.md is roughly 8.4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 5.3k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Agent Plugin Eval: MCP Integration for Plugins (anthropics/claude-plugins-official, 38k stars), Crush Configuration (charmbracelet/crush, 29k stars), Agent Repo Init (study8677/repobrain, 1.3k stars) and Openpets (OpenPetsHQ/openpets, 1.3k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
fabricioctelles (a GitHub user) maintains it in fabricioctelles/skills, which has 106 GitHub stars. The repository holds 16 skills in this directory. The repository was last updated on October 4, 2026.
Source: fabricioctelles/skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.