Agent skill

Attack Conclusion

by happier-dev in happier-dev/happier

Adversarial self-review of your own conclusion, fix, or root-cause verdict before handoff — alternative causes, neighboring cases, blast radius, environment gap, hypothesis lock, subtraction, and a…

MITAuto-check passedAgent Workflows

Install Attack Conclusion

skills CLI
$ npx skills add happier-dev/happier --skill attack-conclusion -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install happier-dev/happier attack-conclusion --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/happier-dev/happier.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/attack-conclusion .claude/skills/attack-conclusion && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
attack-conclusion
GitHub stars
1.9k
Token cost
~2.1k tokens
SKILL.md length
1,090 words
Files
1
Skills in repo
28
Repo updated
First seen
Licence
MIT

At a glance

Adversarial self-review of your own conclusion, fix, or root-cause verdict before handoff — alternative causes, neighboring cases, blast radius, environment gap, hypothesis lock, subtraction, and a…

  • Works in 5 steps: Alternative cause or falsifier. Ask what… → Neighboring cases. The fix works for the… → Blast radius. What consumes what you… → …
  • Tasks that involve Root cause analysis
  • SKILL.md covers The standard attacks — in…, Architecture-impact attack, Fake-competence scan and Self-check and independent…, plus 2 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Attack Conclusion is an agent skill from happier-dev/happier. Adversarial self-review of your own conclusion, fix, or root-cause verdict before handoff — alternative causes, neighboring cases, blast radius, environment gap, hypothesis lock, subtraction, and a scan for fake-competence patterns. Use as a compact author check before non-trivial handoff and as a structured attack at substantial review or ship boundaries; pair with autoreview only when the selected boundary calls for it.

Its SKILL.md is about 2.1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Agent Workflows, covering Root cause analysis and Verification before completion. The repository describes itself as: Web, Desktop & Mobile client and orchestrator for Codex, Claude Code, OpenCode, Pi, Cursor, Grok, Antigravity, Kimi, Augment Code, Qwen, fully end-to-end encrypted. The licence is MIT.

When your agent uses it

  • Tasks that involve Root cause analysis
  • Tasks that involve Verification before completion

Example prompts

  • “/attack-conclusion”

Workflow steps

5 steps, taken from the first numbered list in SKILL.md.

  1. Alternative cause or falsifier. Ask what else could explain the same evidence. When the evidence supports a materially different…
  2. Neighboring cases. The fix works for the reproduced case. Run the case next door: the empty list, the second invocation, the other…
  3. Blast radius. What consumes what you changed? Search callers, readers, subscribers, tests, serialized forms. "Nothing else uses this" is a…
  4. Environment gap. Does the conclusion survive where the code actually runs, or only in the harness? Host tests encode the same assumptions…
  5. Hypothesis lock. Are you explaining the evidence, or explaining your first hypothesis? Re-read the raw evidence pretending you just…

What it can do on your machine

Read from SKILL.md and the folder at commit 493820f. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Attack Conclusion loads about 2.1k tokens when it runs. Until then it costs about 111 tokens; SKILL.md has 1,090 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~111
When it runs · the whole SKILL.md, loaded when a task matches
~2.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from happier-dev/happier at commit 493820f, republished under its MIT licence (© happier-dev). 1,090 words, ~2,067 tokens.

Download SKILL.mdSave it as .claude/skills/attack-conclusion/SKILL.md (or your agent's skills folder).
name
attack-conclusion
description
Adversarial self-review of your own conclusion, fix, or root-cause verdict before handoff — alternative causes, neighboring cases, blast radius, environment gap, hypothesis lock, subtraction, and a scan for fake-competence patterns. Use as a compact author check before non-trivial handoff and as a structured attack at substantial review or ship boundaries; pair with autoreview only when the selected boundary calls for it.

Attack Your Conclusion

Before handing over a conclusion, switch roles completely: you are no longer the author defending it, you are the reviewer paid to break it, with the same energy spent building it. Full doctrine: docs/agent-craft.md §6 and §8.

The test of whether you actually switched roles: did you go looking for evidence that would change your mind, or only re-inspect the evidence that formed the conclusion?

The standard attacks — in order of cheapness, each as a runnable check

  1. Alternative cause or falsifier. Ask what else could explain the same evidence. When the evidence supports a materially different candidate, name it and run the cheapest discriminating observation; when the mechanism is directly established, do not manufacture a second hypothesis—identify and run the cheapest observation that could falsify the conclusion instead.
  2. Neighboring cases. The fix works for the reproduced case. Run the case next door: the empty list, the second invocation, the other platform, the resumed session, the concurrent caller.
  3. Blast radius. What consumes what you changed? Search callers, readers, subscribers, tests, serialized forms. "Nothing else uses this" is a claim — re-derive it, don't assert it.
  4. Environment gap. Does the conclusion survive where the code actually runs, or only in the harness? Host tests encode the same assumptions the author had. For user-visible behavior, use the risk-appropriate browser/device gate in .agents/skills/happier-testing.
  5. Hypothesis lock. Are you explaining the evidence, or explaining your first hypothesis? Re-read the raw evidence pretending you just arrived and have no favorite.

Run the cheap attacks; an attack that is just worry is not an attack. If you cannot state what would falsify the conclusion, it is not a conclusion yet — it is a preference.

Architecture-impact attack

Apply root Scope-preserving solution economy during this attack: preserve the complete feature outcome, challenge unsupported implementation machinery rather than the feature itself, and try folding behavior into the canonical owner before accepting a split-brain or parallel path.

Run this only when the change establishes or moves an owner, crosses package boundaries, introduces persistence or concurrency, materially changes a public interface, or performs a substantial refactor. Skip it for routine local and mechanical work.

Build a compact complexity ledger from the diff and affected callers:

  • Added: domain concepts, interfaces or seams, dependencies, configuration, persisted state, modes or branches, failure paths, and facts callers must know.
  • Removed: duplicate decisions, special cases, invalid states, compatibility paths, direct bypasses, lockstep edits, and operational failure modes.

Then test whether the change improves total system locality, leverage, and code health. Added structure is justified when observed domain variation, lifecycle, ownership, or invariants require it and the result removes greater distributed complexity. A large coherent diff can pass this attack; a small local patch can fail it. Report the evidence, not a line-count verdict.

Run a subtraction attack on every material new mechanism, dependency, mode, configuration value, wrapper, fallback, abstraction, or parallel path: try removing it while preserving the complete authorized contract. If the behavior already holds, the canonical owner can enforce it more directly, or a standard/platform/existing package facility satisfies every affected surface with lower lifetime cost, the addition is unsupported complexity. Compare concepts, ownership, caller knowledge, invalid states, and failure paths—not lines, files, or tests; this is an in-place lens, not a new lane, report, or gate.

For a changed domain concept, run a split-brain attack: search the touched corridor for another active owner, decision, registry, parser/normalizer, reader/writer, bypass, or similar-but-different implementation. Search by the defect's mechanism, not only its name — the fix you just wrote is the search key, and every sibling caller, instance, and platform build of that concept is either fixed or explicitly exempt in writing. A pre-existing same-concept split-brain is a finding, not grandfathered debt. Verify that any remaining compatibility adapter only translates a historical shape and delegates decisions to the canonical owner.

For compatibility-sensitive changes, run a provenance attack using .agents/skills/happier-compatibility: re-derive each retained path from an exact released artifact/tag or applicable predecessor worktree basis, check every claimed reachable old/new direction, and identify shims or tests that preserve only an undeployed intermediary. Reject speculative matrices and fallbacks that are not tied to a reachable seam.

Show full SKILL.md (400 more words)Show less

Fake-competence scan

Check the deliverable against the patterns that read as skill and aren't (docs/agent-craft.md §8). The highest-frequency ones:

  • Thoroughness theater — exhaustive coverage of what was easy to check, presented as coverage of the risk. Where are the "if I'm wrong, it's here" spots in the report?
  • Green tests as proof — green means "didn’t break what we previously thought to check", not "correct". Check that the regression assertion has applicable meaningful RED evidence; use the testing skill’s sensitivity check when it does not, rather than repeating every prior mutation.
  • Defensive over-engineering — fallbacks for impossible states are unexamined uncertainty made permanent, and future split-brains.
  • Silent recovery — an error worked around and not mentioned discards the most informative event of the session.
  • Uniform hedging — everything marked uncertain so nothing can be wrong; commit where the evidence commits.

Self-check and independent review boundary

Schedule adversarial review with the work at the boundary defined by root AGENTS.md and .agents/skills/happier-review:

  • The author runs this compact self-attack in place before every non-trivial handoff and when a hypothesis changes. It creates no separate reviewer, workspace, report, approval gate, or durable status update; mention only changes it caused and unresolved risk in the normal handoff.
  • Formal independent review is normally batched at the fewest substantial integrated boundaries needed by the approved plan, plus explicit user-requested reviews and high-risk schema/data/security/user-visible/release triggers—not every lane, commit, gate, or microchange.
  • The reviewer is different from the author at those gates. Its brief is to refute: independently exercise the decision-material high-risk claims, inspect applicable primary evidence for the rest, and follow root validation-reuse rules rather than automatically repeating all suites.
  • Advisory review may inspect moving work. Before a boundary or ship verdict, reconcile only decision-material observations affected by concurrent changes. After accepted fixes, review the finding delta and affected corridor; repeat a full independent attack only when the approved contract, architecture, scope, boundary, or risk materially changed.

Output

For a formal independent review, record each material attack, what was run, and what it showed or why it was skipped. For routine author self-check, keep the record compact and include only landed changes, failed/skipped decision-material checks, and residual risk in the normal handoff. Any attack that landed goes to the top of the handoff (see .agents/skills/handoff-report), not the bottom.

Failure this prevents

Motivated reasoning shipping with a green checkmark on it — the review conducted by the same mind that made the mistake, finding nothing.

© happier-dev, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .agents/skills/attack-conclusion of happier-dev/happier.

Open the folder on GitHubat commit 493820f

Compare with similar skills

Attack Conclusion next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Attack Conclusion compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Attack Conclusion this skillhappier-dev/happier1.9k—~2.1kAutomated safety check: PassMIT
Context Modes0xNyk/lacp305—~313Automated safety check: PassMIT
Verification Before Completionforyourhealth111-pixel/Vibe-Skills3.6k—~1.1kAutomated safety check: PassApache-2.0
PUA High-Agency Governancetanweai/pua20k—~502Automated safety check: PassMIT
Octocode Code Researchbgauryy/octocode946—~1.5kAutomated safety check: PassMIT
PUA Persistence Enginetanweai/pua20k—~3.3kAutomated safety check: PassMIT

Similar skills

  • Context Modes

    0xNyk/lacp

    Structured work modes for agent sessions. An agent skill from 0xNyk/lacp.

    305 GitHub stars~313 tokensUpdated 15 days ago
    Agent WorkflowsAuto-check passed
  • Verification Before Completion

    foryourhealth111-pixel/Vibe-Skills

    Completion-evidence route used before claiming work is complete, fixed, passing, committed, or PR-ready.

    3.6k GitHub stars~1.1k tokensUpdated 1 mo ago
    Agent WorkflowsAuto-check passed
  • Pushes an agent to keep verifying and changing approach after repeated failures, using a diagnosis line, evidence-based completion and confirmation before risky edits.

    20k GitHub stars~502 tokensUpdated 28 days ago
    Agent WorkflowsAuto-check passed
  • Octocode Code Research

    bgauryy/octocode

    Researches code with evidence: traces callers, imports and cross-repo links, diagnoses failures and reports findings with exact file and line references and a confidence label.

    946 GitHub stars~1.5k tokensUpdated 4 days ago
    DevelopmentAuto-check passed
  • Pushes an agent that keeps failing or gives up to exhaust every option, using harsh corporate-pressure wording, a diagnosis line and a proactivity checklist.

    20k GitHub stars~3.3k tokensUpdated 28 days ago
    Agent WorkflowsAuto-check passed
  • Pushes an agent that keeps failing, gives up or claims unverified success into a diagnosis, evidence and verification loop, with a Pi extension for persistent mode.

    20k GitHub stars~569 tokensUpdated 28 days ago
    Agent WorkflowsAuto-check passed

More from happier-dev/happier

All 28 skills in this repo
  • Happier Review

    happier-dev/happier

    Conduct evidence-backed Happier code, plan-completeness, session, worktree, feature, commit, branch, PR, codebase, and release-readiness reviews with affected-corridor analysis, high-confidence…

    1.9k GitHub stars~4.5k tokensUpdated today
    Auto-check passed
  • Happier CI Stabilize

    happier-dev/happier

    Stabilize failing, flaky, slow, or repeatedly rerun Happier CI and nightlies by collecting all reachable failures from one exact attempt, correcting canonical causes in one batch, simplifying…

    1.9k GitHub stars~2.2k tokensUpdated today
    Auto-check passed
  • Happier Commit Worktree

    happier-dev/happier

    Reconnoiter, classify, validate, group, and commit a large or continuously changing Happier worktree as coherent, human-understandable commits while preserving concurrent work and excluding…

    1.9k GitHub stars~3.9k tokensUpdated today
    Auto-check passed
  • Happier Release

    happier-dev/happier

    Resolve Happier's private release authority and run an exact-SHA release or nightly through cheap admission, verified CI evidence, resumable immutable candidates, and terminal publication proof.

    1.9k GitHub stars~2.4k tokensUpdated today
    Auto-check passed
  • Happier Diagnose

    happier-dev/happier

    Diagnose and explain a Happier runtime, session, daemon, provider (Claude/Codex/OpenCode), authentication, or connectivity incident from logs, structured diagnostics, runtime state, and source…

    1.9k GitHub stars~2.1k tokensUpdated today
    Auto-check passed
  • Happier Implement

    happier-dev/happier

    Implement, change, build, fix, refactor, migrate, or apply accepted review findings in the Happier repositories with canonical-owner discovery, scope-preserving solution economy, TDD, efficient…

    1.9k GitHub stars~4.2k tokensUpdated today
    Auto-check passed

Questions about Attack Conclusion

What does Attack Conclusion do?

Adversarial self-review of your own conclusion, fix, or root-cause verdict before handoff — alternative causes, neighboring cases, blast radius, environment gap, hypothesis lock, subtraction, and a…. Attack Conclusion is an agent skill from happier-dev/happier. Adversarial self-review of your own conclusion, fix, or root-cause verdict before handoff — alternative causes, neighboring cases, blast radius, environment gap, hypothesis lock, subtraction, and a scan for fake-competence patterns.

When should I use Attack Conclusion?

Attack Conclusion fits situations like: tasks that involve Root cause analysis; tasks that involve Verification before completion.

How do I install Attack Conclusion in Claude Code?

Run `npx skills add happier-dev/happier --skill attack-conclusion -a claude-code`. Or copy the skill folder (.agents/skills/attack-conclusion in happier-dev/happier) into .claude/skills/attack-conclusion in your project. Claude Code loads it when a task matches its description.

How do I install Attack Conclusion in Codex?

Run `npx skills add happier-dev/happier --skill attack-conclusion -a codex`. Or copy the skill folder (.agents/skills/attack-conclusion in happier-dev/happier) into .agents/skills/attack-conclusion in your project. Codex loads it when a task matches its description.

Can I use Attack Conclusion in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add happier-dev/happier --skill attack-conclusion -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/attack-conclusion, .gemini/skills/attack-conclusion, .github/skills/attack-conclusion and .opencode/skills/attack-conclusion in your project.

What does Attack Conclusion need to run?

SKILL.md names no scripts, command-line tools or credentials: Attack Conclusion is instructions for the agent only.

Does Attack Conclusion access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Attack Conclusion safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Attack Conclusion use?

Attack Conclusion is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Attack Conclusion use?

About 2.1k tokens (SKILL.md is roughly 8.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Attack Conclusion?

Skills that share tags, products or a category with Attack Conclusion: Context Modes (0xNyk/lacp, 305 stars), Verification Before Completion (foryourhealth111-pixel/Vibe-Skills, 3.6k stars), PUA High-Agency Governance (tanweai/pua, 20k stars) and Octocode Code Research (bgauryy/octocode, 946 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Attack Conclusion?

happier-dev (a GitHub organization) maintains it in happier-dev/happier, which has 1,876 GitHub stars. The repository holds 28 skills in this directory. The repository was last updated on October 7, 2026.

Source: happier-dev/happier on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.