Caveman Gateway Setup
JuliusBrussee/caveman
Routes every LLM call in a repository through the Caveman Cloud gateway in record mode, so requests and costs are measured without changing behavior.
ANALYSIS SKILL — Manual-only audit of Anthropic Claude Opus 5.5 / Sonnet 5.5 and OpenAI GPT-6 / GPT-5.6 prompting guidance and APEX conventions.
$ npx skills add jonathan-vella/apex --skill apex-vendor-prompting -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install jonathan-vella/apex apex-vendor-prompting --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/jonathan-vella/apex.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.github/skills/apex-vendor-prompting .claude/skills/apex-vendor-prompting && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "apex-vendor-prompting" agent skill from https://github.com/jonathan-vella/apex/tree/main/.github/skills/apex-vendor-prompting into .claude/skills/apex-vendor-prompting/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "apex-vendor-prompting", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/jonathan-vella/apex/tree/main/.github/skills/apex-vendor-promptingType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add jonathan-vella/apex --skill apex-vendor-prompting -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install jonathan-vella/apex apex-vendor-prompting --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/jonathan-vella/apex.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.github/skills/apex-vendor-prompting .agents/skills/apex-vendor-prompting && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "apex-vendor-prompting" agent skill from https://github.com/jonathan-vella/apex/tree/main/.github/skills/apex-vendor-prompting into .agents/skills/apex-vendor-prompting/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "apex-vendor-prompting", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add jonathan-vella/apex --skill apex-vendor-prompting -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install jonathan-vella/apex apex-vendor-prompting --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/jonathan-vella/apex.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.github/skills/apex-vendor-prompting .cursor/skills/apex-vendor-prompting && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "apex-vendor-prompting" agent skill from https://github.com/jonathan-vella/apex/tree/main/.github/skills/apex-vendor-prompting into .cursor/skills/apex-vendor-prompting/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "apex-vendor-prompting", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/jonathan-vella/apex.git --path .github/skills/apex-vendor-prompting--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add jonathan-vella/apex --skill apex-vendor-prompting -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install jonathan-vella/apex apex-vendor-prompting --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/jonathan-vella/apex.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.github/skills/apex-vendor-prompting .gemini/skills/apex-vendor-prompting && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "apex-vendor-prompting" agent skill from https://github.com/jonathan-vella/apex/tree/main/.github/skills/apex-vendor-prompting into .gemini/skills/apex-vendor-prompting/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "apex-vendor-prompting", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install jonathan-vella/apex apex-vendor-promptingInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add jonathan-vella/apex --skill apex-vendor-prompting -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/jonathan-vella/apex.git skills-src && mkdir -p .github/skills && cp -r skills-src/.github/skills/apex-vendor-prompting .github/skills/apex-vendor-prompting && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "apex-vendor-prompting" agent skill from https://github.com/jonathan-vella/apex/tree/main/.github/skills/apex-vendor-prompting into .github/skills/apex-vendor-prompting/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "apex-vendor-prompting", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add jonathan-vella/apex --skill apex-vendor-prompting -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install jonathan-vella/apex apex-vendor-prompting --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/jonathan-vella/apex.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.github/skills/apex-vendor-prompting .opencode/skills/apex-vendor-prompting && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "apex-vendor-prompting" agent skill from https://github.com/jonathan-vella/apex/tree/main/.github/skills/apex-vendor-prompting into .opencode/skills/apex-vendor-prompting/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "apex-vendor-prompting", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
apex-vendor-promptingANALYSIS SKILL — Manual-only audit of Anthropic Claude Opus 5.5 / Sonnet 5.5 and OpenAI GPT-6 / GPT-5.6 prompting guidance and APEX conventions.
Apex Vendor Prompting is an agent skill from jonathan-vella/apex. ANALYSIS SKILL — Manual-only audit of Anthropic Claude Opus 5.5 / Sonnet 5.5 and OpenAI GPT-6 / GPT-5.6 prompting guidance and APEX conventions. WHEN: explicitly invoked as /apex-vendor-prompting for a vendor-specific prompt audit. DO NOT USE FOR: automatic authoring loads, routine edits covered by instructions, generic Markdown style.
Its SKILL.md is about 2.7k tokens, which your agent loads only when the skill is triggered. The skill folder holds 10 other files, including reference files and assets (for example `assets/audit-template.md`, `references/audit-procedure.md` and `references/checklists.md`).
It sits in DevOps & Cloud. It works with OpenAI. The repository describes itself as: APEX turns Azure platform engineering requirements into verified, deploy-ready IaC — powered by GitHub Copilot agents, real-time pricing, and built-in compliance. The licence is MIT.
6 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit d0d3f18. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
npmnodeFrom the folder's file list and the shell code blocks in SKILL.md.
Links to these hosts (documentation or services it may open):
platform.claude.comdevelopers.openai.comFrom URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Apex Vendor Prompting loads about 2.7k tokens when it runs, and up to ~13k if it reads all its reference files. Until then it costs about 91 tokens; SKILL.md has 992 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from jonathan-vella/apex at commit d0d3f18, republished under its MIT licence (© jonathan-vella). 992 words, ~2,744 tokens.
.claude/skills/apex-vendor-prompting/SKILL.md (or your agent's skills folder). This skill also uses 8 other files; get the full folder from GitHub.Manual-only: use /apex-vendor-prompting explicitly for this audit workflow.
Do not load this skill automatically or read its body to bypass the invocation flag.
The thin authoring instructions and required vendor validators remain mandatory without this skill.
Audit-grade reference for the prompting patterns published by Anthropic
(Claude Opus 5.5, Sonnet 5.5) and OpenAI (GPT-6, GPT-5.6), plus explicitly identified APEX conventions. Used to author and audit
.agent.md and .prompt.md files in this repository.
The machine-readable source of truth is
rules.json — every rule has an ID, source citation,
severity, applies-to, and validator-check binding. The skill prose, the
thin enforcement instruction
vendor-prompting.instructions.md,
and validate-agents.mjs all reference rule IDs from that file.
.agent.md or .prompt.md and wanting the right
vendor patterns up front.npm run lint:vendor-prompting —
every finding includes a ruleId that maps to a rule in
rules.json and back to a reference here.Do NOT load this skill for routine edits where the format is
already known. The thin instruction
vendor-prompting.instructions.md
auto-loads on *.agent.md / *.prompt.md edits and carries the
hard-rule shortlist.
I am editing or reviewing a *.agent.md / *.prompt.md ...
├── Which model is in the frontmatter?
│ ├── Claude Opus / Sonnet 5.5 → load references/claude-best-practices.md
│ ├── GPT-6 Sol / Luna (copilot) → load references/openai-prompting.md
│ ├── GPT-5.6 Terra (copilot) → load references/openai-prompting.md
│ ├── MAI-Code-1.1-Flash → reviewer-only; structural checks still run
│ └── Missing on prompt → resolve custom-agent or picker inheritance
│
├── Is this a .prompt.md (single string model:) or .agent.md (array)?
│ ├── prompt → load references/checklists.md "prompt" column
│ └── agent → load references/checklists.md "agent" column
│
└── Want the full audit procedure (5-15 min, produces written report)?
→ load references/audit-procedure.md and assets/audit-template.mdclassifyModel() lower-cases the model: value and matches it to a family
(claude-opus-5.5 / claude-sonnet-5.5 / gpt-6-sol / gpt-6-luna / gpt-5.6-terra / mai-code / unknown).
Retired labels classify as unknown. Validate every ordered fallback label and distinct family.
Classification does not authorize a label: ordinary labels must exactly match
the catalog. Only handoff overrides allow documented platform qualification.
Full match table, severity status per family (enforced / warn-only / reviewer-only /
out-of-scope), and rule subsets per family live in
references/family-support.md.
Load only the references your task needs. Most audits need 1-2.
| Reference | Load when |
|---|---|
| claude-best-practices.md | Authoring or auditing a Claude Opus 5.5 or Sonnet 5.5 agent |
| openai-prompting.md | Authoring or auditing a GPT-6 Sol/Luna or GPT-5.6 Terra agent |
| cross-model-rules.md | Handoff design, prompt↔agent sync, language calibration |
| family-support.md | Picking a model family for a new agent |
| checklists.md | Performing a manual pass-through audit |
| audit-procedure.md | Executing the full 6-step audit |
rules.json — every rule has an ID, severity, source citation,
applies-to, and validator-check binding; this skill prose only references it.## Role, and
nonempty <scope_fencing>, <output_contract> and <stop_conditions> XML blocks.vendor-prompting.instructions.md carries the hard-rule shortlist.npm run lint:vendor-prompting before opening a PR; every finding includes
a ruleId that maps to a rules.json entry.errors and ≤ 5 warns; otherwise NEEDS_REVISION with per-rule remediationmarkdown.instructions.md)This is the canonical audit procedure (full version with templates lives in audit-procedure.md).
.agent.md / .prompt.md.
Capture name, model, user-invocable, agents, handoffs[].node tools/scripts/validate-agents.mjs --only=vendor-prompting --format=json
and filter by file path. Capture rule IDs + severities.errors and ≤ 5 warns; otherwise NEEDS_REVISION
with per-rule remediation.Every rule in rules.json cites the upstream source by
source_id. All sources are live vendor docs fetched as Markdown (.md suffix):
OpenAI sources use model-pinned paths; latest-model without a model segment moves to the
next generation silently. Hashes and fetch timestamps live in rules.json sources[].
With explicit network authorization, run node tools/scripts/fetch-vendor-prompting-guides.mjs
to refresh snapshots and emit a drift report. The fetch script
(fetch-vendor-prompting-guides.mjs)
fetches each vendor Markdown page anonymously. Snapshots are a gitignored local cache: when
upstream is unavailable it falls back to a snapshot from an earlier successful run on the same
machine. A clean checkout has no cache, so an offline refresh fails (exit 2) rather than
falling back; rules.json hashes are the committed record.
Cached fallback preserves the last successful fetched_at and freshness date;
attempted_at and the failure reason record the separate refresh attempt.
Missing successful provenance remains unknown. An unchanged successful network
response may advance freshness; cached reuse cannot establish upstream currency.
Review actual source diffs before updating normalized references and rule citations. There is no digest-generation step. Offline audits reuse cached sources without changing hashes, fetched timestamps, or claiming refreshed evidence. Source history does not establish model release, capabilities, cost tiers, or native harness behavior.
© jonathan-vella, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 8 other files (references, assets) in .github/skills/apex-vendor-prompting of jonathan-vella/apex.
Open the folder on GitHubat commit d0d3f18
Apex Vendor Prompting next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Apex Vendor Prompting this skilljonathan-vella/apex | 217 | — | ~2.7k | Automated safety check: Pass | MIT | |
| Caveman Gateway SetupJuliusBrussee/caveman | 111k | 1 repos | ~2.6k | Automated safety check: Warn | Apache-2.0 | |
| Azure Architecture Autopilotgithub/awesome-copilot | 40k | 1 repos | ~1.9k | Automated safety check: Pass | MIT | |
| Youtubeeat-pray-ai/yutu | 699 | — | ~1.1k | Automated safety check: Pass | MIT | |
| Local Stack RuntimeOpenHands/OpenHands | 91k | — | ~375 | Automated safety check: Pass | MIT | |
| Telemetry AnalyticsOpenHands/OpenHands | 91k | — | ~305 | Automated safety check: Pass | MIT |
JuliusBrussee/caveman
Routes every LLM call in a repository through the Caveman Cloud gateway in record mode, so requests and costs are measured without changing behavior.
github/awesome-copilot
Designs Azure infrastructure from a natural-language description, or diagrams an existing resource group, then refines the design through conversation and deploys it with Bicep.
eat-pray-ai/yutu
A skill your agent uses whenever the user mentions YouTube, video uploads, channel management, playlists, video SEO, or any YouTube Data API operation.
OpenHands/OpenHands
This skill should be used when the user asks to "change the dev stack", "add a runtime service", "change the launcher", "update Docker", "bump Agent Server", "change ingress routing", or changes…
OpenHands/OpenHands
This skill should be used when the user asks to "add tracking", "add a PostHog event", "change telemetry consent", "instrument onboarding", "debug analytics", or changes telemetry.ts…
microsoft/GitHub-Copilot-for-Azure
Discovers available Azure OpenAI model capacity across regions and projects.
jonathan-vella/apex
WORKFLOW SKILL — Debug Azure production issues: Container Apps, Functions, App Service, AKS, VMs and messaging, with KQL log analysis.
jonathan-vella/apex
ANALYSIS SKILL — Azure Policy discovery: effective assignments (incl.
jonathan-vella/apex
UTILITY SKILL — Two-mode context-window management. An agent skill from jonathan-vella/apex.
jonathan-vella/apex
UTILITY SKILL — Python diagram generation for Azure architectures, WAF/cost/compliance charts, ERDs, swimlanes, timelines, and wireframes.
jonathan-vella/apex
WORKFLOW SKILL — Manual-only discovery and import of existing Azure resources into Terraform management.
jonathan-vella/apex
WORKFLOW SKILL — Creates, restructures, and audits GitHub Copilot .agent.md and .prompt.md files with correct frontmatter, handoffs, model policy, context budgets, and validation.
Works with
Categories
ANALYSIS SKILL — Manual-only audit of Anthropic Claude Opus 5.5 / Sonnet 5.5 and OpenAI GPT-6 / GPT-5.6 prompting guidance and APEX conventions. Apex Vendor Prompting is an agent skill from jonathan-vella/apex.6 prompting guidance and APEX conventions.
Apex Vendor Prompting fits situations like: : automatic authoring loads; routine edits covered by instructions; generic Markdown style.
Run `npx skills add jonathan-vella/apex --skill apex-vendor-prompting -a claude-code`. Or copy the skill folder (.github/skills/apex-vendor-prompting in jonathan-vella/apex) into .claude/skills/apex-vendor-prompting in your project. Claude Code loads it when a task matches its description.
Run `npx skills add jonathan-vella/apex --skill apex-vendor-prompting -a codex`. Or copy the skill folder (.github/skills/apex-vendor-prompting in jonathan-vella/apex) into .agents/skills/apex-vendor-prompting in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add jonathan-vella/apex --skill apex-vendor-prompting -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/apex-vendor-prompting, .gemini/skills/apex-vendor-prompting, .github/skills/apex-vendor-prompting and .opencode/skills/apex-vendor-prompting in your project.
Going by SKILL.md and its folder, Apex Vendor Prompting needs the command-line tools its instructions call (npm and node).
SKILL.md names 2 domains. As links in the text: platform.claude.com and developers.openai.com. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Apex Vendor Prompting is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.7k tokens (SKILL.md is roughly 11k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 11k tokens, read only when the agent opens those files.
Skills that share tags, products or a category with Apex Vendor Prompting: Caveman Gateway Setup (JuliusBrussee/caveman, 111k stars), Azure Architecture Autopilot (github/awesome-copilot, 40k stars), Youtube (eat-pray-ai/yutu, 699 stars) and Local Stack Runtime (OpenHands/OpenHands, 91k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
jonathan-vella (a GitHub user) maintains it in jonathan-vella/apex, which has 217 GitHub stars. The repository holds 39 skills in this directory. The repository was last updated on October 10, 2026.
Source: jonathan-vella/apex on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.