Configuring Horizon
coollabsio/coolify
A skill your agent uses whenever the user mentions Horizon by name in a Laravel context.
Maintain VERSION, release targets, versioned artifacts, GoReleaser packaging, and publication.
$ npx skills add greenpau/caddy-security --skill release-and-versioning -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install greenpau/caddy-security release-and-versioning --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/greenpau/caddy-security.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.codex/skills/release-and-versioning .claude/skills/release-and-versioning && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "release-and-versioning" agent skill from https://github.com/greenpau/caddy-security/tree/main/.codex/skills/release-and-versioning into .claude/skills/release-and-versioning/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "release-and-versioning", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/greenpau/caddy-security/tree/main/.codex/skills/release-and-versioningType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add greenpau/caddy-security --skill release-and-versioning -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install greenpau/caddy-security release-and-versioning --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/greenpau/caddy-security.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.codex/skills/release-and-versioning .agents/skills/release-and-versioning && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "release-and-versioning" agent skill from https://github.com/greenpau/caddy-security/tree/main/.codex/skills/release-and-versioning into .agents/skills/release-and-versioning/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "release-and-versioning", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add greenpau/caddy-security --skill release-and-versioning -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install greenpau/caddy-security release-and-versioning --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/greenpau/caddy-security.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.codex/skills/release-and-versioning .cursor/skills/release-and-versioning && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "release-and-versioning" agent skill from https://github.com/greenpau/caddy-security/tree/main/.codex/skills/release-and-versioning into .cursor/skills/release-and-versioning/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "release-and-versioning", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/greenpau/caddy-security.git --path .codex/skills/release-and-versioning--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add greenpau/caddy-security --skill release-and-versioning -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install greenpau/caddy-security release-and-versioning --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/greenpau/caddy-security.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.codex/skills/release-and-versioning .gemini/skills/release-and-versioning && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "release-and-versioning" agent skill from https://github.com/greenpau/caddy-security/tree/main/.codex/skills/release-and-versioning into .gemini/skills/release-and-versioning/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "release-and-versioning", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install greenpau/caddy-security release-and-versioningInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add greenpau/caddy-security --skill release-and-versioning -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/greenpau/caddy-security.git skills-src && mkdir -p .github/skills && cp -r skills-src/.codex/skills/release-and-versioning .github/skills/release-and-versioning && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "release-and-versioning" agent skill from https://github.com/greenpau/caddy-security/tree/main/.codex/skills/release-and-versioning into .github/skills/release-and-versioning/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "release-and-versioning", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add greenpau/caddy-security --skill release-and-versioning -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install greenpau/caddy-security release-and-versioning --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/greenpau/caddy-security.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.codex/skills/release-and-versioning .opencode/skills/release-and-versioning && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "release-and-versioning" agent skill from https://github.com/greenpau/caddy-security/tree/main/.codex/skills/release-and-versioning into .opencode/skills/release-and-versioning/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "release-and-versioning", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
release-and-versioningMaintain VERSION, release targets, versioned artifacts, GoReleaser packaging, and publication.
Release And Versioning is an agent skill from greenpau/caddy-security. Maintain VERSION, release targets, versioned artifacts, GoReleaser packaging, and publication. Use for release preparation, version checks, and explicitly requested releases; dependency refresh is separate.
Its SKILL.md is about 2.5k tokens, which your agent loads only when the skill is triggered. The skill folder holds 5 other files, including reference files (for example `agents/openai.yaml`, `references/ci-and-packaging.md` and `references/final-qualification.md`).
It sits in Backend & APIs. The repository describes itself as: 🔐 Authentication, Authorization, and Accounting (AAA) App and Plugin for Caddy v2. 💎 Implements Form-Based, Basic, Local, LDAP, OpenID Connect, OAuth 2.0 (Github, Google…. The licence is Apache-2.0.
4 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit a48553d. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
makegogitFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use git, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Release And Versioning loads about 2.5k tokens when it runs, and up to ~6.7k if it reads all its reference files. Until then it costs about 57 tokens; SKILL.md has 1,241 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from greenpau/caddy-security at commit a48553d, republished under its Apache-2.0 licence (© greenpau). 1,241 words, ~2,486 tokens.
.claude/skills/release-and-versioning/SKILL.md (or your agent's skills folder). This skill also uses 3 other files; get the full folder from GitHub.Follow the repository scope. Version edits, dependency refreshes, commits, tags, and publication apply only to caddy-security. Read sibling versions/history as inputs; do not bump, sync, fetch into, tag, or release a sibling to unblock this module. Missing upstream releases are separate work. Keep chosen snapshot and report destinations here.
VERSION owns the caddy-security release number. Preserve the existing
1.<minor>.<patch> release line, with no v in the file and v<VERSION> for
the Git tag. A feature change or dependency update alone does not request a
version bump or publication. Read current values from the checkout instead of
copying versions from examples or the sibling repository.
Keep these version surfaces distinct:
Makefile reads VERSION into PLUGIN_VERSION; release recipes read it
again for the commit subject and annotated tag.assets/scripts/generate_downloads.sh projects VERSION into README Caddy
download URLs. It separately hard-codes the caddy-trace version. Verify its
Download Caddy with the plugins enabled insertion marker exists before
regenerating links, and inspect their placement afterward. The macOS branch
requires gsed as well as BSD sed.go.mod selects the go-authcrunch dependency version; ../go-authcrunch/VERSION
is the sibling library's release number. Neither sets this module's version.
make sync updates dependency references and removes local replacements; it
is a separate dependency refresh, not caddy-security version synchronization.cmd/authcrunch/main.go delegates to Caddy. It has no application version
fallback declarations to synchronize. The Makefile does not inject its
PLUGIN_VERSION with linker flags, so bin/authcrunch version alone does not
establish this module's release identity.bin/authcrunch security version reads the linked go-authcrunch module from
embedded Go build metadata. It retains pseudo-versions and shows replacements,
including (devel) for unversioned local paths. This is dependency identity,
distinct from Caddy's version and this repository's release number; see
security dependency version.cmd/caddy-authenticator/main.go initializes *versioned.PackageManager with
a literal fallback for ordinary go install builds. make build injects
VERSION into main.appVersion; caddy-authenticator version prints its
banner. GoReleaser builds separate platform archives and injects release/snapshot
version, commit and build metadata; see CI and packaging.
Keep the fallback synchronized using make version-sync after an
explicit VERSION change. Sync validates VERSION first and changes only the
existing fallback; it neither bumps the release nor stages files.make version-check validates the fixed-major namespace through
assets/scripts/version.py without rewriting files. It accepts a single
optional trailing newline, rejects leading zeros and prerelease/build suffixes,
and bounds components for versioned. check --tag additionally requires the
exact v<VERSION> tag. It does not validate README link placement or contents.
The check also rejects a missing, ambiguous or stale authenticator fallback;
artifact identity validation enforces the same consistency without rewriting it.
make artifact-id validates the version and produces
v<VERSION>_<UTC YYYYMMDDTHHMMSSZ>_<12-character SHA> for branch/PR/manual builds.
An exact v<VERSION> tag produces v<VERSION>; another tag fails. GITHUB_SHA
provides the checked CI revision (including PR merge commits), with local HEAD
as fallback. Validated version and artifact_id values go to GITHUB_OUTPUT.
make release increments the patch; make minor-release increments the minor
and resets the patch to zero. Both preserve the major release line.
assets/scripts/version.py next --kind patch|minor computes the candidate
without writing files and rejects an increment beyond the supported range.
version-sync projects VERSION into the authenticator fallback only.
Read the current Makefile before executing release operations. The targets
have different side effects:
| Target | Actual behavior |
|---|---|
make release-git-check | Read-only local check of main, a clean worktree/index including untracked files, and synchronized version values. Does not check the remote or run the quality gate. |
make release | Runs assets/scripts/release.sh patch for the complete checked patch release. |
make minor-release | Runs the same script with minor, resetting the patch to zero. |
make fast-release | Runs the patch workflow with --skip-tests, skipping local make ci-check. |
make fast-minor-release | Runs the minor workflow with --skip-tests, skipping local make ci-check. |
make release-update-version, make release-git-commit | Fail with instructions to use a complete release target; partial publication paths are disabled. |
The shared script serializes checks, bump, synchronization, download generation,
make ci-check, commit, tag, and push even under parallel Make. It requires
main with no tracked, staged, or untracked changes, fetches origin/main,
rejects behind/diverged history and an existing candidate tag locally or on
origin, and checks the README marker and macOS gsed prerequisite before bumping.
The pinned go tool versioned command comes from go.mod; release operations
do not depend on a globally installed versioned executable.
For regular releases, the gate runs once against the bumped version, including
the binary build. Fast releases skip the entire local gate (automation tests,
Go tests/reports, and build); GitHub release validation still runs before
GoReleaser publication. All version/Git checks, synchronization, download
generation, staging restrictions and atomic publication remain in place.
Use a fast target only when the user requests it; release-git-check does not
accept --skip-tests.
Only VERSION, README.md, and cmd/caddy-authenticator/main.go are staged.
Unexpected staged, other tracked, or untracked changes stop publication.
The commit subject is ops: released v<VERSION> and the exact tag is annotated.
One atomic push publishes HEAD:refs/heads/main and that tag to origin; unrelated
local tags are excluded. There is no fallback to separate pushes.
For a status check, start with read-only evidence: git status --short --untracked-files=all, git branch --show-current, git diff,
git diff --cached, VERSION, and existing tags. make release-git-check adds
the local preflight without modifying files. Release preparation can inspect
and validate without executing a bump or publishing target.
For an actual release, carry forward the user's existing authorization and:
main checkout, clean index/worktree including
untracked files, intended remote, remote branch state, and absence of the
intended tag locally and remotely. Do not rely on stale remote-tracking refs
or let unrelated staged changes enter the release commit.make dep to resolve pinned tools and
dependencies. Review any source changes before proceeding; validation itself
must not rewrite them.make release or make minor-release once. The script
bumps, synchronizes projections, runs the complete gate, commits and tags the
validated contents, and publishes the two explicit refs atomically.
When a fast release is requested, use make fast-release or
make fast-minor-release; only the local gate is skipped.Only bump, tag, push, or dispatch a publishing workflow within the user's requested scope. A request to explain or port release guidance is not a request to execute a release. Do not ask again for actions already authorized.
If any step fails, inspect the worktree, index, release commit/tag, and remote refs before continuing. A transport failure can leave the outcome uncertain. Preserve that evidence and report the last completed step. Do not rerun the entire release, bump again, reset changes, delete tags, or retract a version as automatic recovery.
For release CI, artifact identity, dependency changelogs, toolchains, and packaging validation, read CI and packaging. It distinguishes the current workflow from release gates that would need implementation. For complete Caddy target builds, source/artifact vulnerability evidence, stripped-symbol limitations and unresolved official OP outcomes, use final integration qualification.
For automation changes, exercise success and failure paths in disposable repositories with local bare remotes. Include dirty/untracked state, wrong branch, an existing tag, unrelated local tags, failed validation, and rejected pushes as relevant to the change. Never test release automation by publishing this repository. For skill-only edits, validate skill metadata, links, and claims against source; no release, version bump, or Go build is needed.
© greenpau, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 3 other files (references) in .codex/skills/release-and-versioning of greenpau/caddy-security.
Open the folder on GitHubat commit a48553d
Release And Versioning next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Release And Versioning this skillgreenpau/caddy-security | 2.3k | — | ~2.5k | Automated safety check: Pass | Apache-2.0 | |
| Configuring Horizoncoollabsio/coolify | 63k | 4 repos | ~898 | Automated safety check: Pass | MIT | |
| Nestjs Best Practicesrolling-scopes/rsschool-app | 10k | 6 repos | ~1.2k | Automated safety check: Pass | MIT | |
| Sub2API AdminWei-Shaw/sub2api | 44k | 1 repos | ~717 | Automated safety check: Pass | LGPL-3.0 | |
| Firecrawl Build Onboardingfirecrawl/firecrawl | 190k | 1 repos | ~1.4k | Automated safety check: Notes | ISC | |
| Obsidian BasesAtmosphere/atmosphere | 3.8k | 22 repos | ~3.2k | Automated safety check: Pass | Apache-2.0 |
coollabsio/coolify
A skill your agent uses whenever the user mentions Horizon by name in a Laravel context.
rolling-scopes/rsschool-app
NestJS best practices and architecture patterns for building production-ready applications.
Wei-Shaw/sub2api
Manages a Sub2API deployment from the command line: accounts, redeem and invitation codes, groups, proxies, imports, exports and raw admin API calls.
firecrawl/firecrawl
Gets Firecrawl working in a project: signs you in through the browser, saves FIRECRAWL_API_KEY to .env and picks the first SDK or REST path.
Atmosphere/atmosphere
Create and edit Obsidian Bases (.base files) with views, filters, formulas, and summaries.
coollabsio/coolify
ACTIVATE when the user works on authentication in Laravel. An agent skill from coollabsio/coolify.
greenpau/caddy-security
Build or troubleshoot portal JSON/native login clients, refresh, profile and admin APIs, and public JWKS.
greenpau/caddy-security
Implement or review caddy-security Go code, Caddy modules, parsers, lifecycle, and HTTP delegation.
greenpau/caddy-security
Build or review caddy-security Caddyfiles and select focused configuration skills.
greenpau/caddy-security
Configure portal/policy JWT keys, token names and lifetimes, key loading and generation, public-key discovery, and System API encryption keys.
greenpau/caddy-security
Mount authenticate and authorize handlers, separate portal and protected routes, align auth URLs, and preserve trusted proxy metadata.
greenpau/caddy-security
Configure durable AuthCrunch runtime state, exclusive storage ownership, stop/start persistence, reload rejection, and recovery.
Categories
Maintain VERSION, release targets, versioned artifacts, GoReleaser packaging, and publication. Release And Versioning is an agent skill from greenpau/caddy-security. Maintain VERSION, release targets, versioned artifacts, GoReleaser packaging, and publication.
Release And Versioning fits situations like: release preparation; explicitly requested releases; dependency refresh is separate.
Run `npx skills add greenpau/caddy-security --skill release-and-versioning -a claude-code`. Or copy the skill folder (.codex/skills/release-and-versioning in greenpau/caddy-security) into .claude/skills/release-and-versioning in your project. Claude Code loads it when a task matches its description.
Run `npx skills add greenpau/caddy-security --skill release-and-versioning -a codex`. Or copy the skill folder (.codex/skills/release-and-versioning in greenpau/caddy-security) into .agents/skills/release-and-versioning in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add greenpau/caddy-security --skill release-and-versioning -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/release-and-versioning, .gemini/skills/release-and-versioning, .github/skills/release-and-versioning and .opencode/skills/release-and-versioning in your project.
Going by SKILL.md and its folder, Release And Versioning needs the command-line tools its instructions call (make, go and git).
SKILL.md contains no URLs. Its commands use git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Release And Versioning is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.5k tokens (SKILL.md is roughly 9.9k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 4.2k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Release And Versioning: Configuring Horizon (coollabsio/coolify, 63k stars), Nestjs Best Practices (rolling-scopes/rsschool-app, 10k stars), Sub2API Admin (Wei-Shaw/sub2api, 44k stars) and Firecrawl Build Onboarding (firecrawl/firecrawl, 190k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
greenpau (a GitHub user) maintains it in greenpau/caddy-security, which has 2,252 GitHub stars. The repository holds 29 skills in this directory. The repository was last updated on October 5, 2026.
Source: greenpau/caddy-security on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.