Agent skill

Analyze Permissions

by haacked in haacked/dotfiles

Analyze accumulated permissions and suggest smart wildcard patterns.

No licenceAuto-check passedDevelopment

Install Analyze Permissions

skills CLI
$ npx skills add haacked/dotfiles --skill analyze-permissions -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install haacked/dotfiles analyze-permissions --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/haacked/dotfiles.git skills-src && mkdir -p .claude/skills && cp -r skills-src/ai/skills/analyze-permissions .claude/skills/analyze-permissions && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
analyze-permissions
GitHub stars
134
Token cost
~1.2k tokens
SKILL.md length
448 words
Files
2 (incl. scripts)
Skills in repo
30
Repo updated
First seen
Licence
None found

At a glance

Analyze accumulated permissions and suggest smart wildcard patterns.

  • Works in 5 steps: Read Current Permissions → Analyze Patterns → Present Analysis → …
  • Explicitly runs /analyze-permissions
  • SKILL.md covers Arguments (parsed from user… and Your Task
  • Runs Shell scripts from its folder; calls git and docker

What it does

Analyze Permissions is an agent skill from haacked/dotfiles. Analyze accumulated permissions and suggest smart wildcard patterns. Only invoke when the user explicitly runs /analyze-permissions or asks to analyze their Claude Code permissions.

Its SKILL.md is about 1.2k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files, including scripts (for example `scripts/cleanup-settings-local.sh`). Compatibility notes: Designed for Claude Code (or similar products)

It sits in Development. It works with Bash and Docker. The repository describes itself as: My dotfiles and scripts I use on dev machines.

When your agent uses it

  • Explicitly runs /analyze-permissions
  • Asks to analyze their Claude Code permissions

Example prompts

  • “/analyze-permissions”

Requirements

  • A Bash shell
  • Docker
  • Compatibility (from SKILL.md): Designed for Claude Code (or similar products)

Workflow steps

5 steps, taken from the step headings in SKILL.md.

  1. Read Current Permissions
  2. Analyze Patterns
  3. Present Analysis
  4. Handle Actions
  5. Update Shared Config (if applying)

What it can do on your machine

Read from SKILL.md and the folder at commit 2d00b66. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 1 file in scripts/ (Shell), which the agent can run.

    Shell commands in SKILL.md call:

    • git
    • docker

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use git and docker, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

  • Compatibility

    Designed for Claude Code (or similar products)

    From compatibility in the SKILL.md frontmatter.

Context cost

Analyze Permissions loads about 1.2k tokens when it runs. Until then it costs about 50 tokens; SKILL.md has 448 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~50
When it runs · the whole SKILL.md, loaded when a task matches
~1.2k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

Without a licence we can't republish the file, so here is its outline and opening line. It has 448 words (~1,212 tokens).

“Analyze accumulated permissions in settings.local.json and suggest smart wildcard patterns to add to the shared configuration.”

— opening of SKILL.md by haacked
name
analyze-permissions
compatibility
Designed for Claude Code (or similar products)
argument-hint
analyze|apply|cleanup
model
sonnet
metadata.execution-tier
balanced

Read the full SKILL.md on GitHub

Files

SKILL.md and 1 other file (scripts) in ai/skills/analyze-permissions of haacked/dotfiles.

  • SKILL.md
  • scripts/cleanup-settings-local.sh

Open the folder on GitHubat commit 2d00b66

Compare with similar skills

Analyze Permissions next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Analyze Permissions compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Analyze Permissions this skillhaacked/dotfiles134—~1.2kAutomated safety check: PassNone
Aspiremicrosoft/aspire.dev1954 repos~1.1kAutomated safety check: PassMIT
Rtk Skillsopaco/deepwiki-rs3.1k—~1.4kAutomated safety check: PassMIT
New Mac Setupswyxio/skills176—~4.3kAutomated safety check: PassMIT
Skillshare DevcontainerJetBrains/skills3661 repos~2kAutomated safety check: PassNone
FisiLeoYeAI/openclaw-master-skills2.2k—~5.3kAutomated safety check: NotesMIT

Similar skills

  • Aspire

    microsoft/aspire.dev

    Official

    Orchestrates Aspire distributed applications using the Aspire CLI for running, debugging, and managing distributed apps.

    195 GitHub starsUsed in 4 repos~1.1k tokens
    DevOps & CloudAuto-check passed
  • Rtk Skill

    sopaco/deepwiki-rs

    A skill your agent uses when running shell commands that produce verbose output (git, test, build, lint, package managers, docker).

    3.1k GitHub stars~1.4k tokensUpdated 25 days ago
    DevOps & CloudAuto-check passed
  • New Mac Setup

    swyxio/skills

    Fully automated new Mac setup for fullstack web developers and AI engineers.

    176 GitHub stars~4.3k tokensUpdated 5 days ago
    DevOps & CloudAuto-check passed
  • Skillshare Devcontainer

    JetBrains/skills

    Official

    Run CLI commands, tests, and debugging inside the skillshare devcontainer.

    366 GitHub starsUsed in 1 repo~2k tokens
    Frontend & DesignAuto-check passed
  • Fisi

    LeoYeAI/openclaw-master-skills

    Fachinformatiker für Systemintegration - Unterstützung bei allen Themen der FiSi-Ausbildung/Umschulung.

    2.2k GitHub stars~5.3k tokensUpdated 2 mo ago
    DevOps & CloudAuto-check: notes
  • Headless Codex CLI Automation

    XiaomiMiMo/MiMo-Code

    Runs OpenAI Codex CLI as a non-interactive worker for CI, Docker, Kubernetes or remote servers, with sandbox modes and JSONL-friendly output.

    14k GitHub stars~2.7k tokensUpdated today
    DevOps & CloudAuto-check passed

More from haacked/dotfiles

All 30 skills in this repo
  • Support

    haacked/dotfiles

    Support hero workflow — start a ticket investigation with auto-organized notes, find existing notes, or generate the weekly highlights log.

    134 GitHub stars~2.9k tokensUpdated today
    Auto-check passed
  • Followup

    haacked/dotfiles

    Capture a follow-up item mid-session in seconds, list open items, close one, or run a review pass.

    134 GitHub stars~1.1k tokensUpdated today
    Auto-check passed
  • Handoff

    haacked/dotfiles

    Write or resume a handoff document so the next agent session can pick up the current work.

    134 GitHub stars~2.1k tokensUpdated today
    Auto-check passed
  • Note

    haacked/dotfiles

    Capture complex technical discoveries into structured, reusable notes.

    134 GitHub stars~1.1k tokensUpdated today
    Auto-check passed
  • Quarterly Planning

    haacked/dotfiles

    Draft quarterly goals for a PostHog team (defaults to Feature Flags), clustering open issues into themes and producing goals in PostHog's HOGS format.

    134 GitHub stars~3.1k tokensUpdated today
    Auto-check passed
  • Ran

    haacked/dotfiles

    Show which workflow steps have run against the current branch and which are missing or stale.

    134 GitHub stars~1.6k tokensUpdated today
    Auto-check passed

Works with

Categories

Questions about Analyze Permissions

What does Analyze Permissions do?

Analyze accumulated permissions and suggest smart wildcard patterns. Analyze Permissions is an agent skill from haacked/dotfiles. Analyze accumulated permissions and suggest smart wildcard patterns.

When should I use Analyze Permissions?

Analyze Permissions fits situations like: explicitly runs /analyze-permissions; asks to analyze their Claude Code permissions.

How do I install Analyze Permissions in Claude Code?

Run `npx skills add haacked/dotfiles --skill analyze-permissions -a claude-code`. Or copy the skill folder (ai/skills/analyze-permissions in haacked/dotfiles) into .claude/skills/analyze-permissions in your project. Claude Code loads it when a task matches its description.

How do I install Analyze Permissions in Codex?

Run `npx skills add haacked/dotfiles --skill analyze-permissions -a codex`. Or copy the skill folder (ai/skills/analyze-permissions in haacked/dotfiles) into .agents/skills/analyze-permissions in your project. Codex loads it when a task matches its description.

Can I use Analyze Permissions in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add haacked/dotfiles --skill analyze-permissions -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/analyze-permissions, .gemini/skills/analyze-permissions, .github/skills/analyze-permissions and .opencode/skills/analyze-permissions in your project.

What does Analyze Permissions need to run?

Going by SKILL.md and its folder, Analyze Permissions needs a shell for the scripts in its folder and the command-line tools its instructions call (git and docker). Our summary lists: A Bash shell; Docker. Compatibility (from SKILL.md): Designed for Claude Code (or similar products).

Does Analyze Permissions access the network?

SKILL.md contains no URLs. Its commands use git and docker, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Analyze Permissions safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Analyze Permissions use?

No licence was found for Analyze Permissions or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.

How many tokens does Analyze Permissions use?

About 1.2k tokens (SKILL.md is roughly 4.8k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Analyze Permissions?

Skills that share tags, products or a category with Analyze Permissions: Aspire (microsoft/aspire.dev, 195 stars), Rtk Skill (sopaco/deepwiki-rs, 3.1k stars), New Mac Setup (swyxio/skills, 176 stars) and Skillshare Devcontainer (JetBrains/skills, 366 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Analyze Permissions?

haacked (a GitHub user) maintains it in haacked/dotfiles, which has 134 GitHub stars. The repository holds 30 skills in this directory. The repository was last updated on October 9, 2026.

Source: haacked/dotfiles on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.