Agent skill

Policystack Init

by jamiedavenport in jamiedavenport/policystack

Scaffold PolicyStack in a project: run the @policystack/cli installer, then wire the single <PolicyStack provider (policy + consent).

Apache-2.0Auto-check passedLegal & Compliance

Install Policystack Init

skills CLI
$ npx skills add jamiedavenport/policystack --skill policystack-init -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install jamiedavenport/policystack policystack-init --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/jamiedavenport/policystack.git skills-src && mkdir -p .claude/skills && cp -r skills-src/plugin/skills/policystack-init .claude/skills/policystack-init && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
policystack-init
GitHub stars
164
Token cost
~788 tokens
SKILL.md length
302 words
Files
1
Skills in repo
4
Repo updated
First seen
Licence
Apache-2.0

At a glance

Scaffold PolicyStack in a project: run the @policystack/cli installer, then wire the single <PolicyStack provider (policy + consent).

  • Works in 4 steps: Run the installer → Fill in policystack.ts → Wire the provider → …
  • Adding a privacy/cookie policy
  • SKILL.md covers 1. Run the installer, 2. Fill in policystack.ts, 3. Wire the provider and 4. Verify
  • Calls npx

What it does

Policystack Init is an agent skill from jamiedavenport/policystack. Scaffold PolicyStack in a project: run the @policystack/cli installer, then wire the single <PolicyStack provider (policy + consent). Use when adding a privacy/cookie policy or a consent banner to a web app.

Its SKILL.md is about 790 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Legal & Compliance, covering Privacy and GDPR. It works with React. The repository describes itself as: Open Privacy Infrastructure. The licence is Apache-2.0.

When your agent uses it

  • Adding a privacy/cookie policy
  • A consent banner to a web app

Example prompts

  • “/policystack-init”

Requirements

  • Node.js

Workflow steps

4 steps, taken from the step headings in SKILL.md.

  1. Run the installer
  2. Fill in policystack.ts
  3. Wire the provider
  4. Verify

What it can do on your machine

Read from SKILL.md and the folder at commit fa2f297. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • npx

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use npx, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Policystack Init loads about 788 tokens when it runs. Until then it costs about 56 tokens; SKILL.md has 302 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~56
When it runs · the whole SKILL.md, loaded when a task matches
~788

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from jamiedavenport/policystack at commit fa2f297, republished under its Apache-2.0 licence (© jamiedavenport). 302 words, ~788 tokens.

Download SKILL.mdSave it as .claude/skills/policystack-init/SKILL.md (or your agent's skills folder).
name
policystack-init
description
Scaffold PolicyStack in a project: run the @policystack/cli installer, then wire the single <PolicyStack> provider (policy + consent). Use when adding a privacy/cookie policy or a consent banner to a web app.
<!-- Generated by @policystack/sdk renderSkillPack() — do not edit by hand. Run `vp run gen`. -->

policystack-init

Set PolicyStack up in an existing project. PolicyStack generates a privacy policy, a cookie policy, and the consent runtime from one typed defineConfig() call. It is not legal advice — a lawyer should review the output before publication.

1. Run the installer

sh
npx @policystack/cli@latest init

init detects the package manager and framework from package.json, installs @policystack/sdk plus the right framework integration, scaffolds a starter policystack.ts (src/policystack.ts when a src/ directory exists, else the project root), writes policystack.llms.txt next to it, and prints a setup prompt. Useful flags: --cwd, --pm, --skip-install, --dry-run, --yes, --out, --force.

If init cannot run, install by hand: @policystack/sdk always, plus @policystack/vite and the framework package (@policystack/react, …).

2. Fill in policystack.ts

Read the generated policystack.llms.txt — it is the type-accurate SDK reference (jurisdiction ids, lawful bases, presets) for this exact version. The canonical, commented reference config is examples/tanstack/src/policystack.ts.

jurisdictions is required and non-empty. Valid ids: br, ca, ch, eea, row, uk, us, us-ak, us-al, us-ar, us-az, us-ca, us-co, us-ct, us-de, us-fl, us-ga, us-hi, us-ia, us-id, us-il, us-in, us-ks, us-ky, us-la, us-ma, us-md, us-me, us-mi, us-mn, us-mo, us-ms, us-mt, us-nc, us-nd, us-ne, us-nh, us-nj, us-nm, us-nv, us-ny, us-oh, us-ok, us-or, us-pa, us-ri, us-sc, us-sd, us-tn, us-tx, us-ut, us-va, us-vt, us-wa, us-wi, us-wv, us-wy. All 50 US states use their ISO us-<state> code. Pick the codes that actually apply; policystack-jurisdiction explains the posture each implies.

3. Wire the provider

Wrap the app root once with the single provider — it supplies both the policy context and the consent store (derived from the same config):

tsx
import { PolicyStack } from "@policystack/react/provider";
import config from "./policystack";

export function App({ children }: { children: React.ReactNode }) {
	return <PolicyStack config={config}>{children}</PolicyStack>;
}

<PrivacyPolicy> / <CookiePolicy>, useConsent, and ConsentGate all read from it. Components ship unstyled and emit data-op-* attributes. For non-React frameworks use that framework's @policystack/<fw> package.

4. Verify

Run policystack-audit (policystack validate --json) and resolve every issue before shipping. Annotate real data flows with policystack-instrument so the policy reflects what the code actually does.

© jamiedavenport, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in plugin/skills/policystack-init of jamiedavenport/policystack.

Open the folder on GitHubat commit fa2f297

Compare with similar skills

Policystack Init next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Policystack Init compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Policystack Init this skilljamiedavenport/policystack164—~788Automated safety check: PassApache-2.0
C15tc15t/c15t1.9k1 repos~1.6kAutomated safety check: PassApache-2.0
Add Session Recordinggotempsh/temps822—~1.9kAutomated safety check: PassApache-2.0
HIPAA Safe Harbor Coverage Auditmaziyarpanahi/openmed5.5k—~1.7kAutomated safety check: PassApache-2.0
Korean Privacy Termskimlawtech/korean-privacy-terms586—~2.9kAutomated safety check: PassApache-2.0
Gdpr ComplianceSushegaad/Claude-Skills-Governance-Risk-and-Compliance9391 repos~3.9kAutomated safety check: PassMIT

Similar skills

  • C15t

    c15t/c15t

    Work with c15t consent management docs, APIs, and integrations for Next.js, React, and JavaScript.

    1.9k GitHub starsUsed in 1 repo~1.6k tokens
    Legal & ComplianceAuto-check passed
  • Add Session Recording

    gotempsh/temps

    Add privacy-aware session recording and replay to React applications using the Temps SDK.

    822 GitHub stars~1.9k tokensUpdated today
    Legal & ComplianceAuto-check passed
  • Checks OpenMed de-identified clinical text against the 18 HIPAA Safe Harbor identifier categories and reports gaps and residual re-identification risk.

    5.5k GitHub stars~1.7k tokensUpdated yesterday
    Legal & ComplianceAuto-check passed
  • Korean Privacy Terms

    kimlawtech/korean-privacy-terms

    처리방침·이용약관 자동 생성 스킬 패키지 (v4.0). An agent skill from kimlawtech/korean-privacy-terms.

    586 GitHub stars~2.9k tokensUpdated 1 mo ago
    Legal & ComplianceAuto-check passed
  • Gdpr Compliance

    Sushegaad/Claude-Skills-Governance-Risk-and-Compliance

    Expert GDPR compliance assistant covering all four core workflows: (1) auditing code and systems for GDPR violations, (2) drafting GDPR-compliant documents such as privacy policies, Data Processing…

    939 GitHub starsUsed in 1 repo~3.9k tokens
    Legal & ComplianceAuto-check passed
  • Hipaa Compliance

    Sushegaad/Claude-Skills-Governance-Risk-and-Compliance

    Expert HIPAA compliance assistant for healthcare and software contexts.

    939 GitHub starsUsed in 1 repo~2.3k tokens
    Legal & ComplianceAuto-check passed

More from jamiedavenport/policystack

  • Policystack Audit

    jamiedavenport/policystack

    Audit a policystack.ts config: run policystack validate --json, explain each issue code, propose a minimal config fix, then re-validate until clean.

    164 GitHub stars~1.4k tokensUpdated 27 days ago
    Auto-check passed
  • Policystack Jurisdiction

    jamiedavenport/policystack

    Explain the consent and policy-text posture (the §4.2 stance) implied by a set of declared PolicyStack jurisdictions.

    164 GitHub stars~1.4k tokensUpdated 27 days ago
    Auto-check passed
  • Policystack Instrument

    jamiedavenport/policystack

    Find un-annotated data collection and data egress in a codebase and add PolicyStack collecting() / sharing() / thirdParty() / defineCookie() call sites so the generated policy reflects what the code…

    164 GitHub stars~916 tokensUpdated 27 days ago
    Auto-check passed

Works with

Questions about Policystack Init

What does Policystack Init do?

Scaffold PolicyStack in a project: run the @policystack/cli installer, then wire the single <PolicyStack provider (policy + consent). Policystack Init is an agent skill from jamiedavenport/policystack. Scaffold PolicyStack in a project: run the @policystack/cli installer, then wire the single <PolicyStack provider (policy + consent).

When should I use Policystack Init?

Policystack Init fits situations like: adding a privacy/cookie policy; A consent banner to a web app.

How do I install Policystack Init in Claude Code?

Run `npx skills add jamiedavenport/policystack --skill policystack-init -a claude-code`. Or copy the skill folder (plugin/skills/policystack-init in jamiedavenport/policystack) into .claude/skills/policystack-init in your project. Claude Code loads it when a task matches its description.

How do I install Policystack Init in Codex?

Run `npx skills add jamiedavenport/policystack --skill policystack-init -a codex`. Or copy the skill folder (plugin/skills/policystack-init in jamiedavenport/policystack) into .agents/skills/policystack-init in your project. Codex loads it when a task matches its description.

Can I use Policystack Init in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add jamiedavenport/policystack --skill policystack-init -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/policystack-init, .gemini/skills/policystack-init, .github/skills/policystack-init and .opencode/skills/policystack-init in your project.

What does Policystack Init need to run?

Going by SKILL.md and its folder, Policystack Init needs the command-line tools its instructions call (npx). Our summary lists: Node.js.

Does Policystack Init access the network?

SKILL.md contains no URLs. Its commands use npx, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Policystack Init safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Policystack Init use?

Policystack Init is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Policystack Init use?

About 788 tokens (SKILL.md is roughly 3.2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Policystack Init?

Skills that share tags, products or a category with Policystack Init: C15t (c15t/c15t, 1.9k stars), Add Session Recording (gotempsh/temps, 822 stars), HIPAA Safe Harbor Coverage Audit (maziyarpanahi/openmed, 5.5k stars) and Korean Privacy Terms (kimlawtech/korean-privacy-terms, 586 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Policystack Init?

jamiedavenport (a GitHub user) maintains it in jamiedavenport/policystack, which has 164 GitHub stars. The repository holds 4 skills in this directory. The repository was last updated on September 10, 2026.

Source: jamiedavenport/policystack on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.