Agent skill

Hax Managed Files

by haxtheweb in haxtheweb/haxcms-php

Know which HAXcms files are generated (rebuild, do not hand-edit) vs authored, and the protective rules around builds.

Apache-2.0Auto-check passedDevelopment

Install Hax Managed Files

skills CLI
$ npx skills add haxtheweb/haxcms-php --skill hax-managed-files -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install haxtheweb/haxcms-php hax-managed-files --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/haxtheweb/haxcms-php.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.well-known/agent-skills/hax-managed-files .claude/skills/hax-managed-files && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
hax-managed-files
GitHub stars
130
Token cost
~1.3k tokens
SKILL.md length
559 words
Files
1
Skills in repo
18
Repo updated
First seen
Licence
Apache-2.0

At a glance

Know which HAXcms files are generated (rebuild, do not hand-edit) vs authored, and the protective rules around builds.

  • An agent is about to edit a managed file
  • SKILL.md covers When to Use, Authored files (safe to edit…, Managed files (generated —… and Protective build rules, plus 3 more sections
  • Calls yarn and npx
  • Pick which CLI command to use

What it does

Hax Managed Files is an agent skill from haxtheweb/haxcms-php. Know which HAXcms files are generated (rebuild, do not hand-edit) vs authored, and the protective rules around builds. Use when an agent is about to edit a managed file, run a build, or pick which CLI command to use. Prevents the common footguns: hand-editing generated artifacts, running the ubiquity script, running a top-level monorepo build, or using npx instead of the local hax CLI. Protective skill — load before modifying files or running builds on a HAX site or deployment.

Its SKILL.md is about 1.3k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Development, covering Monorepo tooling. The repository describes itself as: HAX + CMS to manage your microsite universe with PHP backend. The licence is Apache-2.0.

When your agent uses it

  • An agent is about to edit a managed file
  • Pick which CLI command to use

Example prompts

  • “/hax-managed-files”

Requirements

  • Node.js

What it can do on your machine

Read from SKILL.md and the folder at commit 3542096. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • yarn
    • npx

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use yarn and npx, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Hax Managed Files loads about 1.3k tokens when it runs. Until then it costs about 125 tokens; SKILL.md has 559 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~125
When it runs · the whole SKILL.md, loaded when a task matches
~1.3k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from haxtheweb/haxcms-php at commit 3542096, republished under its Apache-2.0 licence (© haxtheweb). 559 words, ~1,265 tokens.

Download SKILL.mdSave it as .claude/skills/hax-managed-files/SKILL.md (or your agent's skills folder).
name
hax-managed-files
description
Know which HAXcms files are generated (rebuild, do not hand-edit) vs authored, and the protective rules around builds. Use when an agent is about to edit a managed file, run a build, or pick which CLI command to use. Prevents the common footguns: hand-editing generated artifacts, running the ubiquity script, running a top-level monorepo build, or using npx instead of the local hax CLI. Protective skill — load before modifying files or running builds on a HAX site or deployment.
version
1.0.0
license
Apache-2.0
metadata.author
haxtheweb
metadata.tags
hax, haxcms, managed-files, build, ubiquity, cli, safety

HAX Managed Files

HAXcms distinguishes authored files (human/tool-controlled, safe to edit) from managed files (generated artifacts, rebuilt by tooling, never hand-edited). This skill lists both and the protective build rules. It exists to stop an agent from corrupting a site by editing generated output or running forbidden builds.

When to Use

  • Before editing any file in a HAX site or HAXcms deployment.
  • When deciding whether to run a build command.
  • When choosing between the local hax CLI and npx.
  • When a generated file looks wrong and the instinct is to "just fix it in place."

Authored files (safe to edit directly)

  • site.json — structure and metadata. Edit via the hax CLI, not by hand, to avoid production issues. metadata.site.name must stay aligned with the site folder name.
  • pages/<item-id>/index.html — page content. This is where authored HTML lives.
  • files/ — static assets (images, pdfs, uploads).
  • theme/ — custom theme (theme.css + assets). For theme classes inheriting from HAXCMSLitElement, run yarn run build after changes; do not manually edit custom-elements.json.
  • custom/ — custom build layer (custom.es6.js) when present.
  • docs/ — documentation (on the HAXcms docs site).

Managed files (generated — rebuild, never hand-edit)

These are produced by rebuildManagedFiles() and the ubiquity build. Editing them in place is futile (the next rebuild overwrites them) and can corrupt a site.

  • SEO / discovery: llms.txt, robots.txt, sitemap.xml, sitemap-index.xml, rss.xml, atom.xml.
  • Search: lunrSearchIndex.json.
  • PWA: manifest.json, service-worker.js, push-manifest.json, browserconfig.xml, offline.html.
  • Registry / autoloader: wc-registry.json (built by ubiquity), build.js, build-haxcms.js.
  • Static fallbacks: index.html, 404.html, ghpages.html, assets/upgrade-browser.html.
  • well-known: .well-known/security.txt, .well-known/api-catalog, .well-known/agent-skills/index.json and the agent-skills skill files.
  • Config / tooling: package.json, web-dev-server.haxcms.config.cjs, .htaccess, files/.htaccess.
  • Backend (PHP/Node): index.php, config.php (PHP); SCORM imsmanifest.xml + the *.xsd files.

When a managed file is wrong, fix the source it is generated from, then rebuild:

  • llms.txt / robots.txt / sitemap / lunrSearchIndex — regenerate via rebuildManagedFiles (triggered by save operations or the hax CLI).
  • wc-registry.json / build*.js / minified build/ assets — fix in the webcomponents monorepo source, verify locally, then the user runs the ubiquity build (see below).
Show full SKILL.md (244 more words)Show less

Protective build rules

  • Never run the ubiquity script. It builds the CDN registry and distribution. The user runs it; an agent must not, under any circumstances.
  • Never run a build at the top of the webcomponents monorepo.
  • Do not run traditional build commands in the monorepo — they are not used.
  • Do not modify files in build/ or node_modules/ — change the underlying source instead.
  • When fixing minified build-directory issues in the PHP or NodeJS HAXcms backends, fix the problem in the webcomponents monorepo first. After local verification, the user runs the ubiquity build.
  • When writing new HAXcms backend code (PHP/NodeJS), repurpose core data-model loading code rather than writing new abstractions. Prefer reusing existing methods over new file-path resolution abstractions.

Use the local hax CLI, not npx

  • Use the local/global hax command. Do not use npx hax — it resolves to a different package and may be stale. The local copy is always the latest (or experimental) because the source starts on this machine.
  • When automating, pass --y --no-i (and --auto / --quiet / --skip as needed) so no prompts are asked and no new window/process launches. Without these, a command that displays the site can open a new window and hang.

New elements

  • All new elements in the monorepo must be created with the hax webcomponent CLI command (not manually) to ensure uniform demo/packaging/distribution files.

References

  • Related skills: hax-site-structure (what the files are), hax-content-authoring (editing page content), hax-site-building (creating sites).
  • PRAW RULES.md: canonical ecosystem rules by Rule ID.

© haxtheweb, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .well-known/agent-skills/hax-managed-files of haxtheweb/haxcms-php.

Open the folder on GitHubat commit 3542096

Compare with similar skills

Hax Managed Files next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Hax Managed Files compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Hax Managed Files this skillhaxtheweb/haxcms-php130—~1.3kAutomated safety check: PassApache-2.0
Nx Importnrwl/nx29k6 repos~3.5kAutomated safety check: PassMIT
Nx Workspacenomcopter/react-mosaic4.8k8 repos~1.9kAutomated safety check: PassCustom licence
Electron Multi-Process ArchitectureiOfficeAI/AionUi33k1 repos~1.8kAutomated safety check: PassApache-2.0
Nx Run Tasksnomcopter/react-mosaic4.8k8 repos~613Automated safety check: PassCustom licence
Astro Developerwithastro/astro63k1 repos~1.5kAutomated safety check: PassCustom licence

Similar skills

  • Nx Import

    nrwl/nx

    Import, merge, or combine repositories into an Nx workspace using nx import.

    29k GitHub starsUsed in 6 repos~3.5k tokens
    DevelopmentAuto-check passed
  • Nx Workspace

    nomcopter/react-mosaic

    Explore and understand Nx workspaces. An agent skill from nomcopter/react-mosaic.

    4.8k GitHub starsUsed in 8 repos~1.9k tokens
    DevelopmentAuto-check passed
  • Tells the agent where new code belongs in an Electron multi-process project and which APIs each process may use, with rules for new bridges, services, agents and workers.

    33k GitHub starsUsed in 1 repo~1.8k tokens
    DevelopmentAuto-check passed
  • Nx Run Tasks

    nomcopter/react-mosaic

    Helps with running tasks in an Nx workspace. An agent skill from nomcopter/react-mosaic.

    4.8k GitHub starsUsed in 8 repos~613 tokens
    DevelopmentAuto-check passed
  • Astro Developer

    withastro/astro

    Official

    Comprehensive guide for developing in the Astro monorepo. An agent skill from withastro/astro.

    63k GitHub starsUsed in 1 repo~1.5k tokens
    DevelopmentAuto-check passed
  • Moves a package from another TryGhost repository into Ghost as an internal workspace package while keeping its Git history, with checkpoints for the steps that need an administrator.

    56k GitHub stars~3.8k tokensUpdated today
    DevelopmentAuto-check passed

More from haxtheweb/haxcms-php

All 18 skills in this repo
  • Ddev

    haxtheweb/haxcms-php

    DDEV local development environment guidance for Docker-based PHP/Node projects.

    130 GitHub stars~1.6k tokensUpdated today
    Auto-check passed
  • Hax Design System

    haxtheweb/haxcms-php

    Apply the DDD (Design, Develop, Destroy) design system and manage SimpleColors legacy usage.

    130 GitHub stars~836 tokensUpdated today
    Auto-check passed
  • Hax Ubd Backward Design

    haxtheweb/haxcms-php

    Design HAX course units via Understanding by Design (UbD) backward design — start from desired results, derive acceptable evidence, then plan learning experiences.

    130 GitHub stars~2.2k tokensUpdated today
    Auto-check passed
  • Hax Udl Audit

    haxtheweb/haxcms-php

    READ-ONLY diagnostic: review a HAX site/page against Universal Design for Learning (UDL) 3.0 — multiple means of Engagement, Representation, and Action & Expression — and emit a report with…

    130 GitHub stars~3.7k tokensUpdated today
    Auto-check passed
  • Haxcms Lrs Rater

    haxtheweb/haxcms-php

    Run BookLooky's Looky Rating System (LRS) content rating and minimum-age recommendation on a HAXcms site's aggregated content — either a local site checkout or a live published URL like btopro.com —…

    130 GitHub stars~2.2k tokensUpdated today
    Auto-check passed
  • Oerschema Integration Finder

    haxtheweb/haxcms-php

    READ-ONLY diagnostic: scan HAX webcomponents, themes, CMS backends (PHP/NodeJS HAXcms), the VitePress plugin, and the Google Apps Script add-on for code surfaces that render or consume pedagogical…

    130 GitHub stars~4.1k tokensUpdated today
    Auto-check passed

Categories

Questions about Hax Managed Files

What does Hax Managed Files do?

Know which HAXcms files are generated (rebuild, do not hand-edit) vs authored, and the protective rules around builds. Hax Managed Files is an agent skill from haxtheweb/haxcms-php. Know which HAXcms files are generated (rebuild, do not hand-edit) vs authored, and the protective rules around builds.

When should I use Hax Managed Files?

Hax Managed Files fits situations like: an agent is about to edit a managed file; pick which CLI command to use.

How do I install Hax Managed Files in Claude Code?

Run `npx skills add haxtheweb/haxcms-php --skill hax-managed-files -a claude-code`. Or copy the skill folder (.well-known/agent-skills/hax-managed-files in haxtheweb/haxcms-php) into .claude/skills/hax-managed-files in your project. Claude Code loads it when a task matches its description.

How do I install Hax Managed Files in Codex?

Run `npx skills add haxtheweb/haxcms-php --skill hax-managed-files -a codex`. Or copy the skill folder (.well-known/agent-skills/hax-managed-files in haxtheweb/haxcms-php) into .agents/skills/hax-managed-files in your project. Codex loads it when a task matches its description.

Can I use Hax Managed Files in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add haxtheweb/haxcms-php --skill hax-managed-files -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/hax-managed-files, .gemini/skills/hax-managed-files, .github/skills/hax-managed-files and .opencode/skills/hax-managed-files in your project.

What does Hax Managed Files need to run?

Going by SKILL.md and its folder, Hax Managed Files needs the command-line tools its instructions call (yarn and npx). Our summary lists: Node.js.

Does Hax Managed Files access the network?

SKILL.md contains no URLs. Its commands use npx, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Hax Managed Files safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Hax Managed Files use?

Hax Managed Files is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Hax Managed Files use?

About 1.3k tokens (SKILL.md is roughly 5.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Hax Managed Files?

Skills that share tags, products or a category with Hax Managed Files: Nx Import (nrwl/nx, 29k stars), Nx Workspace (nomcopter/react-mosaic, 4.8k stars), Electron Multi-Process Architecture (iOfficeAI/AionUi, 33k stars) and Nx Run Tasks (nomcopter/react-mosaic, 4.8k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Hax Managed Files?

haxtheweb (a GitHub organization) maintains it in haxtheweb/haxcms-php, which has 130 GitHub stars. The repository holds 18 skills in this directory. The repository was last updated on October 10, 2026.

Source: haxtheweb/haxcms-php on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.