Agent skill

Mittwald

by HybridAIOne in HybridAIOne/hybridclaw

Read and inspect mittwald mStudio projects, apps, runtimes, databases, domains, mail, backups, files, containers, and access users through SecretRef-backed API requests.

MITAuto-check passedDevOps & Cloud

Install Mittwald

skills CLI
$ npx skills add HybridAIOne/hybridclaw --skill mittwald -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install HybridAIOne/hybridclaw mittwald --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/HybridAIOne/hybridclaw.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/mittwald .claude/skills/mittwald && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
mittwald
GitHub stars
159
Token cost
~2.7k tokens
SKILL.md length
580 words
Files
2
Skills in repo
72
Repo updated
First seen
Licence
MIT

At a glance

Read and inspect mittwald mStudio projects, apps, runtimes, databases, domains, mail, backups, files, containers, and access users through SecretRef-backed API requests.

  • Works in 8 steps: Read first. Use mittwald.cjs to generate… → Treat MITTWALD_API_TOKEN as a SecretRef… → For prompt/user testing, stop after plan… → …
  • Tasks that involve Backup and disaster recovery
  • SKILL.md covers Default Workflow, Command Contract, Working Rules and Validation
  • Runs JavaScript scripts from its folder; calls node and python3; reaches api.mittwald.de; needs MITTWALD_API_TOKEN and MITTWALD_MYSQL_PASSWORD

What it does

Mittwald is an agent skill from HybridAIOne/hybridclaw. Read and inspect mittwald mStudio projects, apps, runtimes, databases, domains, mail, backups, files, containers, and access users through SecretRef-backed API requests.

Its SKILL.md is about 2.7k tokens, which your agent loads only when the skill is triggered. The skill folder holds 1 other file.

It sits in DevOps & Cloud, covering Backup and disaster recovery. The repository describes itself as: Enterprise-ready self-hosted AI assistant runtime with sandboxed execution, secure credentials, approvals, and memory. The licence is MIT.

When your agent uses it

  • Tasks that involve Backup and disaster recovery

Example prompts

  • “/mittwald”

Requirements

  • Python 3
  • A credential in MITTWALD_API_TOKEN

Workflow steps

8 steps, taken from the first numbered list in SKILL.md.

  1. Read first. Use mittwald.cjs to generate allowlisted http_request
  2. Treat MITTWALD_API_TOKEN as a SecretRef only. The helper sets
  3. For prompt/user testing, stop after plan or helper http-request payload
  4. For live calls, stop after the first 401 or 403. Report a credential or API
  5. For 429 responses, report rate-limit guidance from Retry-After,
  6. For guarded writes, require exact F8/F14 operator approval for the named
  7. Account for eventual consistency after writes: mutating responses may return
  8. Do not use curl as the normal execution path when http_request is

What it can do on your machine

Read from SKILL.md and the folder at commit 8162701. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships script files (JavaScript), which the agent can run.

    Shell commands in SKILL.md call:

    • node
    • python3

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • api.mittwald.de

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • MITTWALD_API_TOKEN
    • MITTWALD_MYSQL_PASSWORD

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Mittwald loads about 2.7k tokens when it runs. Until then it costs about 45 tokens; SKILL.md has 580 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~45
When it runs · the whole SKILL.md, loaded when a task matches
~2.7k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from HybridAIOne/hybridclaw at commit 8162701, republished under its MIT licence (© HybridAIOne). 580 words, ~2,733 tokens.

Download SKILL.mdSave it as .claude/skills/mittwald/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.
name
mittwald
description
Read and inspect mittwald mStudio projects, apps, runtimes, databases, domains, mail, backups, files, containers, and access users through SecretRef-backed API requests.
user-invocable
true
requires.bins
node

mittwald

Use this skill for mittwald mStudio / Kundencenter production-platform work: project inventory, app/runtime inspection, deployment readiness, databases, domains/DNS/SSL/ingress, mail resources, backups, files, containers, SSH/SFTP users, and marketplace/license readouts.

Default Workflow

  1. Read first. Use mittwald.cjs to generate allowlisted http_request payloads and pass only the emitted httpRequest value to the built-in http_request tool.
  2. Treat MITTWALD_API_TOKEN as a SecretRef only. The helper sets bearerSecretName: "MITTWALD_API_TOKEN" so the gateway injects Authorization: Bearer ... server-side. Never ask the user to paste the token, inspect it, or write raw Authorization headers.
  3. For prompt/user testing, stop after plan or helper http-request payload generation. Do not call http_request unless live mittwald data is needed for the user's request.
  4. For live calls, stop after the first 401 or 403. Report a credential or API role setup problem and ask the operator to verify MITTWALD_API_TOKEN in this order: browser admin at the active /admin/secrets route, /secret set MITTWALD_API_TOKEN "<mittwald-api-token>" in browser /chat or TUI, then local console fallback hybridclaw secret set MITTWALD_API_TOKEN "<mittwald-api-token>".
  5. For 429 responses, report rate-limit guidance from Retry-After, X-RateLimit-Reset, X-RateLimit-Remaining, and X-RateLimit-Limit when present. Do not start retry loops.
  6. For guarded writes, require exact F8/F14 operator approval for the named target and pass --operator-grant only after that approval. The helper includes the target resource id in approval.requiredGrant.
  7. Account for eventual consistency after writes: mutating responses may return an etag event id. Run the emitted event-follow-up command with --event-id <etag> so the read uses if-event-reached before reporting completion.
  8. Do not use curl as the normal execution path when http_request is available.

The helper is read-first. Guarded write operations exist only for allowlisted mittwald API shapes and require exact F8/F14 approval: service actions, database creation, app installation creation, cronjob creation, domain project/nameserver/deletion changes, backup restore, delivery box creation, license-key validation, and extension ordering. App installation runtime actions are intentionally not exposed because the current mittwald OpenAPI marks that endpoint deprecated and non-functional. Do not create API tokens or use unlisted marketplace mutations.

Show full SKILL.md (250 more words)Show less

Command Contract

bash
node skills/mittwald/mittwald.cjs --help

Build core read requests:

bash
node skills/mittwald/mittwald.cjs --format json http-request whoami
node skills/mittwald/mittwald.cjs --format json http-request projects --limit 50
node skills/mittwald/mittwald.cjs --format json http-request project --project-id <project-id>
node skills/mittwald/mittwald.cjs --format json http-request apps --project-id <project-id> --limit 50
node skills/mittwald/mittwald.cjs --format json http-request domains --project-id <project-id> --limit 50
node skills/mittwald/mittwald.cjs --format json http-request backups --project-id <project-id> --limit 50

Build database and runtime requests:

bash
node skills/mittwald/mittwald.cjs --format json http-request databases --project-id <project-id>
node skills/mittwald/mittwald.cjs --format json http-request app-status --app-installation-id <app-installation-id>
node skills/mittwald/mittwald.cjs --format json http-request services --project-id <project-id> --limit 50
node skills/mittwald/mittwald.cjs --format json http-request service-logs --stack-id <stack-id> --service-id <service-id> --tail 200

Build operational inventory requests:

bash
node skills/mittwald/mittwald.cjs --format json http-request dns-zones --project-id <project-id>
node skills/mittwald/mittwald.cjs --format json http-request ingresses --project-id <project-id>
node skills/mittwald/mittwald.cjs --format json http-request cronjobs --project-id <project-id> --limit 50
node skills/mittwald/mittwald.cjs --format json http-request mail-addresses --project-id <project-id> --limit 50
node skills/mittwald/mittwald.cjs --format json http-request ssh-users --project-id <project-id> --limit 50
node skills/mittwald/mittwald.cjs --format json http-request sftp-users --project-id <project-id> --limit 50
node skills/mittwald/mittwald.cjs --format json http-request directory --project-id <project-id> --directory /html --max-depth 1

Plan a deployment readiness sweep:

bash
node skills/mittwald/mittwald.cjs --format json plan deploy-check --project-id <project-id>

Build guarded write requests after exact operator approval:

bash
node skills/mittwald/mittwald.cjs --format json http-request create-redis-database \
  --project-id <project-id> --description cache-prod --version 7.0 --operator-grant

node skills/mittwald/mittwald.cjs --format json http-request create-mysql-database \
  --project-id <project-id> --description app-prod --version 8.4 \
  --password-secret MITTWALD_MYSQL_PASSWORD --operator-grant

node skills/mittwald/mittwald.cjs --format json http-request service-action \
  --stack-id <stack-id> --service-id <service-id> --action restart --operator-grant

node skills/mittwald/mittwald.cjs --format json http-request update-domain-nameservers \
  --domain-id <domain-id> --nameserver ns1.example.com --nameserver ns2.example.com \
  --operator-grant

node skills/mittwald/mittwald.cjs --format json http-request restore-backup-path \
  --backup-id <backup-id> --source-path /html --target-path /html-restore \
  --operator-grant

node skills/mittwald/mittwald.cjs --format json http-request order-extension \
  --extension-id <extension-id> \
  --body-json '{"projectId":"<project-id>","consentedScopes":[]}' \
  --operator-grant

After a live write returns an etag header, build the consistency read:

bash
node skills/mittwald/mittwald.cjs --format json event-follow-up service-action \
  --stack-id <stack-id> --service-id <service-id> --event-id <etag>

Classify saved or live http_request failures:

bash
node skills/mittwald/mittwald.cjs --format json classify-response \
  --status 429 \
  --headers-json '{"X-RateLimit-Remaining":"0","X-RateLimit-Reset":"10"}'

Working Rules

  • The mStudio v2 API base URL is https://api.mittwald.de/v2/.
  • The helper only builds allowlisted endpoint shapes. Do not add arbitrary path passthrough for operator convenience.
  • databases emits two httpRequests items: MySQL databases and Redis databases. Send each item through http_request, then merge the results in the response.
  • Use domains, dns-zones, and ingresses together when checking domain/DNS/SSL/ingress state.
  • Use apps, app-status, app-system-software, services, stacks, and service-logs to summarize runtime health. Keep logs bounded with --tail.
  • Use backups, backup-path, and backup-database-dumps for backup readiness. Backup restore operations are red and require exact target approval.
  • Use extension-orders, extension-instances, and licenses for marketplace and license visibility. order-extension and license-key validation are guarded mutations and require exact F8/F14 approval.
  • For mutating operations that need complex request bodies, use --body-json only on that allowlisted operation. create-app-installation requires appVersionId, description, updatePolicy, and userInputs[]. create-cronjob requires description, interval, and target. restore-backup requires pathRestore or databaseRestores[]. order-extension requires consentedScopes[] plus exactly one of projectId or customerId.
  • Use <secret:NAME>-style placeholders via flags such as --password-secret and --license-key-secret; never put raw credentials in command arguments.
  • Optional companion workflows: the official mittwald CLI, SDKs, Terraform provider, and mittwald MCP docs can inform operator guidance, but they are not runtime dependencies for this bundled skill.

Validation

bash
python3 skills/skill-creator/scripts/quick_validate.py skills/mittwald
node skills/mittwald/mittwald.cjs --help

© HybridAIOne, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 1 other file in skills/mittwald of HybridAIOne/hybridclaw.

  • SKILL.md
  • mittwald.cjs

Open the folder on GitHubat commit 8162701

Compare with similar skills

Mittwald next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Mittwald compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Mittwald this skillHybridAIOne/hybridclaw159—~2.7kAutomated safety check: PassMIT
OmniRoute Backup and Sync CLIdiegosouzapw/OmniRoute75k—~948Automated safety check: PassMIT
Pymobiledevice3 Device Operatordoronz88/pymobiledevice32.9k—~1.8kAutomated safety check: NotesGPL-3.0
Myclaw BackupLeoYeAI/openclaw-backup659—~1.8kAutomated safety check: PassMIT
OmniRoute Database Backupsdiegosouzapw/OmniRoute75k—~395Automated safety check: PassMIT
Tempsgotempsh/temps831—~2kAutomated safety check: PassApache-2.0

Similar skills

  • OmniRoute Backup and Sync CLI

    diegosouzapw/OmniRoute

    Backup and restore OmniRoute data from the CLI. Trigger incremental snapshots, sync to cloud storage, manage backup schedules, and restore from archive files.

    75k GitHub stars~948 tokensUpdated today
    DevOps & CloudAuto-check passed
  • Pymobiledevice3 Device Operator

    doronz88/pymobiledevice3

    Operate iOS and iPadOS devices with pymobiledevice3, from a local checkout or straight from PyPI via uvx on a fresh workstation.

    2.9k GitHub stars~1.8k tokensUpdated 2 days ago
    DevOps & CloudAuto-check: notes
  • Myclaw Backup

    LeoYeAI/openclaw-backup

    Backup and restore all OpenClaw configuration, agent memory, skills, and workspace data.

    659 GitHub stars~1.8k tokensUpdated 7 mo ago
    DevOps & CloudAuto-check passed
  • OmniRoute Database Backups

    diegosouzapw/OmniRoute

    Trigger system backups, restore from backup files, and manage the SQLite database lifecycle. Supports export, import, and incremental snapshot strategies.

    75k GitHub stars~395 tokensUpdated today
    DevOps & CloudAuto-check passed
  • Temps

    gotempsh/temps

    Manage, deploy, operate, and instrument applications with Temps.

    831 GitHub stars~2k tokensUpdated today
    DevOps & CloudAuto-check passed
  • Hermes Offsite Backup

    OnlyTerp/hermes-optimization-guide

    Set up encrypted off-machine Hermes backups. An agent skill from OnlyTerp/hermes-optimization-guide.

    688 GitHub stars~772 tokensUpdated 17 days ago
    DevOps & CloudAuto-check passed

More from HybridAIOne/hybridclaw

All 72 skills in this repo
  • Hermes3000 Writing

    HybridAIOne/hybridclaw

    Use Hermes3000 to plan, draft, revise, save, check consistency, and export long-form manuscripts through the Hermes3000 AI writing portal API.

    159 GitHub stars~2.7k tokensUpdated yesterday
    Auto-check passed
  • Manim Video

    HybridAIOne/hybridclaw

    Plan, script, render, and stitch Manim Community Edition videos in Python.

    159 GitHub stars~4.7k tokensUpdated yesterday
    Auto-check: notes
  • Skill Creator

    HybridAIOne/hybridclaw

    Create and update SKILL.md-based skills with strong trigger metadata, lean docs, and reliable init, validate, package, and publish workflows.

    159 GitHub stars~2k tokensUpdated yesterday
    Auto-check passed
  • XLSX

    HybridAIOne/hybridclaw

    Create, edit, inspect, and analyze .xlsx spreadsheets and Excel workbooks.

    159 GitHub stars~1.7k tokensUpdated yesterday
    Auto-check passed
  • Excalidraw

    HybridAIOne/hybridclaw

    Create and revise editable .excalidraw diagrams as Excalidraw JSON for architecture diagrams, flowcharts, sequence diagrams, concept maps, and other hand-drawn explainers.

    159 GitHub stars~1.2k tokensUpdated yesterday
    Auto-check passed
  • Google Ads

    HybridAIOne/hybridclaw

    Manage Google Ads accounts with safe GAQL reporting, campaign planning, guarded mutations, and gateway-proxied REST API calls.

    159 GitHub stars~4k tokensUpdated yesterday
    Auto-check passed

Categories

Questions about Mittwald

What does Mittwald do?

Read and inspect mittwald mStudio projects, apps, runtimes, databases, domains, mail, backups, files, containers, and access users through SecretRef-backed API requests. Mittwald is an agent skill from HybridAIOne/hybridclaw. Read and inspect mittwald mStudio projects, apps, runtimes, databases, domains, mail, backups, files, containers, and access users through SecretRef-backed API requests.

When should I use Mittwald?

Mittwald fits situations like: tasks that involve Backup and disaster recovery.

How do I install Mittwald in Claude Code?

Run `npx skills add HybridAIOne/hybridclaw --skill mittwald -a claude-code`. Or copy the skill folder (skills/mittwald in HybridAIOne/hybridclaw) into .claude/skills/mittwald in your project. Claude Code loads it when a task matches its description.

How do I install Mittwald in Codex?

Run `npx skills add HybridAIOne/hybridclaw --skill mittwald -a codex`. Or copy the skill folder (skills/mittwald in HybridAIOne/hybridclaw) into .agents/skills/mittwald in your project. Codex loads it when a task matches its description.

Can I use Mittwald in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add HybridAIOne/hybridclaw --skill mittwald -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/mittwald, .gemini/skills/mittwald, .github/skills/mittwald and .opencode/skills/mittwald in your project.

What does Mittwald need to run?

Going by SKILL.md and its folder, Mittwald needs JavaScript for the scripts in its folder, the command-line tools its instructions call (node and python3) and credentials named MITTWALD_API_TOKEN and MITTWALD_MYSQL_PASSWORD. Our summary lists: Python 3; A credential in MITTWALD_API_TOKEN.

Does Mittwald access the network?

SKILL.md names 1 domain. In commands or code: api.mittwald.de; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.

Is Mittwald safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Mittwald use?

Mittwald is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Mittwald use?

About 2.7k tokens (SKILL.md is roughly 11k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Mittwald?

Skills that share tags, products or a category with Mittwald: OmniRoute Backup and Sync CLI (diegosouzapw/OmniRoute, 75k stars), Pymobiledevice3 Device Operator (doronz88/pymobiledevice3, 2.9k stars), Myclaw Backup (LeoYeAI/openclaw-backup, 659 stars) and OmniRoute Database Backups (diegosouzapw/OmniRoute, 75k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Mittwald?

HybridAIOne (a GitHub organization) maintains it in HybridAIOne/hybridclaw, which has 159 GitHub stars. The repository holds 72 skills in this directory. The repository was last updated on October 9, 2026.

Source: HybridAIOne/hybridclaw on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.