Agent skill

Cm Check

by kingxiaozhe in kingxiaozhe/cm-workflow

用户说“检查工作流是否安装正确”“为什么找不到 cm 命令”时使用。默认查询 npm 稳定版,有新版自动升级已管理的 CM 安装,再检查插件、核心 Skills、兼容包装与模板引用;不测试或修改业务代码。

MITAuto-check passedDevelopment

Install Cm Check

skills CLI
$ npx skills add kingxiaozhe/cm-workflow --skill cm-check -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install kingxiaozhe/cm-workflow cm-check --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/kingxiaozhe/cm-workflow.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/cm-check .claude/skills/cm-check && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
cm-check
GitHub stars
104
Token cost
~1.3k tokens
SKILL.md length
290 words
Files
2 (incl. references)
Skills in repo
23
Repo updated
First seen
Licence
MIT

At a glance

用户说“检查工作流是否安装正确”“为什么找不到 cm 命令”时使用。默认查询 npm 稳定版,有新版自动升级已管理的 CM 安装,再检查插件、核心 Skills、兼容包装与模板引用;不测试或修改业务代码。

  • Works in 8 steps: Codex 入口(按 installMode… → 共享真相:十个核心 Skill 引用 runtime/… → 流程链路:cm-ai 的 N1–N8 引用全部存在;cm-prd 的… → …
  • Development work in your project
  • SKILL.md covers 默认先检查更新, 升级后检查, 语义检查 and 输出
  • Calls node

What it does

Cm Check is an agent skill from kingxiaozhe/cm-workflow. 用户说“检查工作流是否安装正确”“为什么找不到 cm 命令”时使用。默认查询 npm 稳定版,有新版自动升级已管理的 CM 安装,再检查插件、核心 Skills、兼容包装与模板引用;不测试或修改业务代码。

Its SKILL.md is about 1.3k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files, including reference files (for example `references/js-host.md`).

It sits in Development. It works with npm, macOS, Git and Bash. The repository describes itself as: Codex-native, spec-driven AI Agent workflow with Claude Code compatibility, independent review, QA, fixes, and refactors. The licence is MIT.

When your agent uses it

  • Development work in your project

Example prompts

  • “检查工作流是否安装正确”
  • “为什么找不到 cm 命令”
  • “/cm-check”

Workflow steps

8 steps, taken from the first numbered list in SKILL.md.

  1. Codex 入口(按 installMode 分流):cm-idea/cm-init/cm-prd/cm-ai/cm-test/cm-security/cm-fix/cm-refactor/cm-check/cm-runtime 十个核心 Skill 与独立…
  2. 共享真相:十个核心 Skill 引用 runtime/ 合同;external-expert 引用共享外部专家合同;compat/claude-commands/cm-*.md 只是 macOS/Linux 旧入口薄包装,不再复制业务规则。
  3. 流程链路:cm-ai 的 N1–N8 引用全部存在;cm-prd 的 greenfield/brownfield/change-mode 全部存在;cm-idea 引用 idea-to-prd;cm-prd/cm-ai/cm-test/cm-qa-engineer 共用…
  4. 角色链路:N3 引用的 cm-*-engineer/manager/expert Skill 存在;Claude agents/ 中每个兼容角色能找到对应工种 Skill。Codex 不依赖这些 .md agent 文件;配套完整性核对用户级 runtimes.yml…
  5. 状态与审查:.cm-specs-status、.cm-status.json、.cm-run.json、tasks.md、可选 test-cases.json、METRICS.md、LESSONS.md、运行日志.jsonl 及 .reviews/…
  6. 模板路径:所有 {CM_WORKFLOW_ROOT}/templates/... 引用都对应真实文件,重点核对 templates/rules/、templates/ui-lens/、templates/hooks/、templates/refactor/。
  7. 版本(按 installMode 分流):plugin 模式核对根 VERSION 与 .codex-plugin/plugin.json 一致,并核对根 README.md 不宣称不存在的入口或安装路径;claude-compat 模式的版本标志是…
  8. 私有调用清零:Codex 核心 Skill 不得残留 TaskCreate、TodoWrite、codex:review、~/.claude/commands;兼容包装中出现 /cm:* 是合法的 macOS/Linux 旧入口。

What it can do on your machine

Read from SKILL.md and the folder at commit 82d43f0. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • node

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Cm Check loads about 1.3k tokens when it runs, and up to ~2.6k if it reads all its reference files. Until then it costs about 28 tokens; SKILL.md has 290 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~28
When it runs · the whole SKILL.md, loaded when a task matches
~1.3k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~2.6k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from kingxiaozhe/cm-workflow at commit 82d43f0, republished under its MIT licence (© kingxiaozhe). 290 words, ~1,328 tokens.

Download SKILL.mdSave it as .claude/skills/cm-check/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.
name
cm-check
description
用户说“检查工作流是否安装正确”“为什么找不到 cm 命令”时使用。默认查询 npm 稳定版,有新版自动升级已管理的 CM 安装,再检查插件、核心 Skills、兼容包装与模板引用;不测试或修改业务代码。

cm-check — 双运行时一致性自检

执行前读取 ../../runtime/project-context.md 与 ../../runtime/logging.md。Codex 入口为 $cm-check;Claude Code 跨平台入口为 /cm-check,macOS/Linux 另有历史别名 /cm:check。

默认先检查更新

从当前 Skill 路径解析 {CM_WORKFLOW_ROOT}。每次完整 cm-check,在启动检查控制器前执行一次:

bash
node "{CM_WORKFLOW_ROOT}/scripts/cm-check-update.mjs" \
  --skill-dir "{CM_WORKFLOW_ROOT}/skills/cm-check" --runtime codex

Claude Code 将 --runtime 改为 claude。默认发现 npm latest 稳定新版就升级, 无需 --upgrade 或再问一次;固定包为 @aibyzero/cm-workflow,复用现有安装器的 --yes、范围限制和失败回滚。只更新 CM 的已管理文件,不安装业务依赖或改业务项目。 当前还有 CM 开发、审查或发布任务在运行时,先完成或暂停该任务,不能并发替换其运行时。 用户明确说“只检查,不升级”时跳过此前置步骤,并注明未查询更新。

按 JSON 结果处理,不把退出码 0 一律解释成最新版:

  • updated:已升级并回读版本;使用返回的 workflowRoot,重新读取其中的本 Skill 和 references/js-host.md,直接进入下方检查,不再次运行更新步骤。其他 Skills 在新会话加载。
  • current / ahead:检查返回的管理目录;若当前会话仍引用旧缓存,重新读取该目录的 Skill/接线文档,提醒新开会话。不降级比 npm 更新的版本。
  • offline:继续当前本地检查,报告“无法确认最新版”;本地 PASSED 不代表版本最新。
  • unmanaged:源码仓库、Pi/BYZ 或其他管理器安装仅报告本地/远程版本,不改其源码或 改换安装方式;明确说明自动升级未执行,沿用当前根检查。
  • blocked / 非零退出 / 无有效结果:停止并报告原因,不绕过失败继续宣布通过。

当前自动安装支持 macOS Codex 的个人本地市场安装,以及 macOS/Linux Claude 安装。 Windows 或其他安装方式有新版时,明确提示使用原平台安装器;不伪称已更新。 查询有时限,联网只查询公共包版本并下载指定包,不发送项目代码或配置。

升级后检查

按选定根目录的JS 会话入口启动控制器:

bash
node "{CM_WORKFLOW_ROOT}/scripts/cm-check-host.mjs" serve \
  --skill-dir "{CM_WORKFLOW_ROOT}/skills/cm-check" --project "$PWD" --runtime codex

Claude Code 将 --runtime 改为 claude。这一项说明本次检查跑在哪个运行时, 机械检查用它给 coder/reviewer 打标;不传则记 未判定,不对是否派发下结论。

用户说「快速检查」「只看装没装对」「别跑全套」时追加 --quick:更新与机械检查照常跑, 机械通过后直接收口,不进八组语义检查。结论为 MECHANICAL_ONLY,不是 PASSED—— 语义八组一组没读,不得据此宣称安装完整无断链。机械失败仍照常报 FAILED/BLOCKED, 快速模式不跳过任何失败。默认(不带该参数)仍是完整检查。 耗时差别很大:更新约 1 秒、机械检查约 12 秒,其余时间几乎全在语义八组逐文件取证上。

如果配置文件不在项目根目录,可额外传 --config {CONFIG_PATH};不传时会读取项目根 目录的 .cm-workflow.yml / .yaml / .json。

不要启动前另跑一遍机械检查。收到check_runtime时按原平台入口执行一次:macOS/Linux/WSL和Git Bash用cm-check-runtime.sh,Windows PowerShell用cm-check-runtime.ps1;原cm-check-entry.mjs仍保留为单独机械检查入口。PowerShell仍依赖CLAUDE_CODE_GIT_BASH_PATH或Git for Windows Bash,缺失如实阻断,不跳过、不自动安装。 invocation.args 已包含 --print-effective,宿主须原样执行,以保留有效配置检查;不要把此参数加到 serve 命令上。 原实际结果回传后,JS在机械失败时保留输出并停止;通过才发check_semantic,在该请求内执行以下八组检查,再由JS校验覆盖和汇总。

语义检查

  1. Codex 入口(按 installMode 分流):cm-idea/cm-init/cm-prd/cm-ai/cm-test/cm-security/cm-fix/cm-refactor/cm-check/cm-runtime 十个核心 Skill 与独立 external-expert Skill 均有合法 frontmatter,两种模式都查。plugin 模式另查 .codex-plugin/plugin.json 的 skills 指向 ./skills/;claude-compat 模式没有该清单文件(安装器不生成),这一半记 not_applicable 并说明,不记 blocked。
  2. 共享真相:十个核心 Skill 引用 runtime/ 合同;external-expert 引用共享外部专家合同;compat/claude-commands/cm-*.md 只是 macOS/Linux 旧入口薄包装,不再复制业务规则。
  3. 流程链路:cm-ai 的 N1–N8 引用全部存在;cm-prd 的 greenfield/brownfield/change-mode 全部存在;cm-idea 引用 idea-to-prd;cm-prd/cm-ai/cm-test/cm-qa-engineer 共用 runtime/test-contract.md;cm-prd/cm-ai/cm-test/cm-security/cm-fix/cm-refactor/external-expert 共用 runtime/logging.md 与统一 writer;cm-test --generate-cases 生成校验后的 inferred 草稿并硬停止。
  4. 角色链路:N3 引用的 cm-*-engineer/manager/expert Skill 存在;Claude agents/ 中每个兼容角色能找到对应工种 Skill。Codex 不依赖这些 .md agent 文件;配套完整性核对用户级 runtimes.yml 的安装器/cm-runtime 生成方与 cm-workflow-config 消费方,cm-runtime 是独立工具、不配工种。
  5. 状态与审查:.cm-specs-status、.cm-status.json、.cm-run.json、tasks.md、可选 test-cases.json、METRICS.md、LESSONS.md、运行日志.jsonl 及 .reviews/ 的生成方与消费方配对;项目日志保持权威,全局日志只是私有可重建镜像;N4 凭证头包含 reviewer/independent/task/round/at/scope;cm-fix 收口前机械检查修后审查凭证;.external/ 不得冒充 N4/N5 凭证。
  6. 模板路径:所有 {CM_WORKFLOW_ROOT}/templates/... 引用都对应真实文件,重点核对 templates/rules/、templates/ui-lens/、templates/hooks/、templates/refactor/。
  7. 版本(按 installMode 分流):plugin 模式核对根 VERSION 与 .codex-plugin/plugin.json 一致,并核对根 README.md 不宣称不存在的入口或安装路径;claude-compat 模式的版本标志是 templates/cm-VERSION,根 VERSION 与根 README.md 均不由安装器生成(install.sh 只写 templates/cm-VERSION),这两项记 not_applicable 并说明,不记 blocked。
  8. 私有调用清零:Codex 核心 Skill 不得残留 TaskCreate、TodoWrite、codex:review、~/.claude/commands;兼容包装中出现 /cm:* 是合法的 macOS/Linux 旧入口。

传入 --project 时机械检查额外输出「运行时声明对照」:按项目 > 用户级默认 > 未声明读取 runtimes.available,声明的一家若本机 CLI 不可解析只打 WARN(可解析≠配额可用,不算失败); 并逐行打印 coder/reviewer 的 route_state,declared-adapter 标「已声明未派发」。这是诊断,不是授权。 route_state 相对当前运行时才有意义:按 --runtime > CM_RUNTIME 取值,两者都没有时 记 未判定,不得把未指定运行时读成「审查通道没派出去」。

外部能力只做降级提示,不应导致插件自检失败:状态条、后台定时更新器、子代理、隔离 CLI 审查通道与 external-expert 浏览器 transport 都是可选增强。浏览器不可用时必须能输出 手工 handoff packet,不能把可选通道缺失报成核心运行时失败。

输出

text
🔍 cm-check  (plugin v{X.Y.Z})
版本更新: {已升级 旧版 → 新版 / 已是最新 / 本地领先 / 无法确认 / 未执行及原因}
Codex 入口: {通过/失败}
Claude 兼容: {通过/失败}
流程与角色: {通过/断链清单}
状态与审查: {通过/断链清单}
模板与版本: {通过/不一致清单}
可选增强: {已配置/降级项}
结论: PASSED / FAILED ({N} 处) / BLOCKED(附未查完的组) / MECHANICAL_ONLY(--quick,未做语义检查)

第 1、7 组的 not_applicable 只适用于另一种安装模式独有的产物,且必须写明缺的是哪个文件、为何本模式不该有; 其余各组以及本模式确实拥有的产物,证据不足一律记 blocked,不得借 not_applicable 放行。

除上述安装升级外,只报告可复现的断链,不自动修复项目文件或配置。 独立的 cm-check-host.mjs、cm-check-entry.mjs、cm-check-runtime.sh/.ps1 仍只检查, 不会联网升级;CI、安装器与发版校验调用这些入口,不递归触发更新。

代码漏洞扫描请使用相邻 ../cm-security/SKILL.md;cm-check 的安装/结构检查不代替漏洞扫描。

© kingxiaozhe, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 1 other file (references) in skills/cm-check of kingxiaozhe/cm-workflow.

  • SKILL.md
  • references/js-host.md

Open the folder on GitHubat commit 82d43f0

Compare with similar skills

Cm Check next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Cm Check compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Cm Check this skillkingxiaozhe/cm-workflow104—~1.3kAutomated safety check: PassMIT
Gridbash Panesjasonsuhari/gridbash134—~1.5kAutomated safety check: PassMIT
Oh My PoshJanDeDobbeleer/oh-my-posh24k—~319Automated safety check: PassMIT
Tapd Iteration InitTencentBlueKing/bk-bcs840—~1.3kAutomated safety check: PassCustom licence
Dirextalk DeployerYingSuiAI/dirextalk-deployer457—~7.2kAutomated safety check: PassMIT
Bash LinuxxenitV1/Antigravity-Workflows1309 repos~1kAutomated safety check: NotesMIT

Similar skills

  • Gridbash Panes

    jasonsuhari/gridbash

    Coordinate with sibling agent panes from inside a GridBash grid — list panes and their roles, read what a pane is currently doing, prompt one pane or every other pane, and rename pane titles so the…

    134 GitHub stars~1.5k tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Oh My Posh

    JanDeDobbeleer/oh-my-posh

    Install, configure, or troubleshoot Oh My Posh/ohmyposh: shell init, themes, segments, Nerd Font icons, and prompt setup on PowerShell, zsh, bash, or fish.

    24k GitHub stars~319 tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Tapd Iteration Init

    TencentBlueKing/bk-bcs

    迭代执行流水线启动器。分三个阶段执行:信息检查(验证 git 环境、获取迭代信息、 解析迭代分支)→ 恢复检测(已有状态文件时判定恢复策略)→ 新流程初始化(创建分支、 迭代目录和 iteration-state.json)。

    840 GitHub stars~1.3k tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Dirextalk Deployer

    YingSuiAI/dirextalk-deployer

    Deploy, resume, verify, update, recover, reset, or destroy production Dirextalk services and nodes on AWS, and wire local agent runtimes.

    457 GitHub stars~7.2k tokensUpdated 1 mo ago
    DevelopmentAuto-check passed
  • Bash Linux

    xenitV1/Antigravity-Workflows

    Bash/Linux terminal patterns. An agent skill from xenitV1/Antigravity-Workflows.

    130 GitHub starsUsed in 9 repos~1k tokens
    Auto-check: notes
  • Code Change Verification

    openai/openai-agents-python

    Official

    Run the required final formatting, lint, type, and test checks after eligible SDK changes pass review.

    30k GitHub stars~1.4k tokensUpdated yesterday
    DevelopmentAuto-check passed

More from kingxiaozhe/cm-workflow

All 23 skills in this repo
  • Cm Fix

    kingxiaozhe/cm-workflow

    用户说“修复这个可复现 bug”或要求根据失败报告修代码时使用。执行红灯测试、根因定位、最小修复、独立审查和回归;尚未确认的问题先用 cm-test,新功能和架构重设计转交 cm-prd。

    104 GitHub starsUsed in 1 repo~2.5k tokens
    Auto-check passed
  • Cm Idea

    kingxiaozhe/cm-workflow

    用户说“我有个点子”“帮我梳理产品”或需要先聊清目标时使用。通过逐题访谈整理为可交给 cm-prd 的 PRD;已有明确需求文档时改用 cm-prd,不写代码、不拆开发任务。

    104 GitHub starsUsed in 1 repo~419 tokens
    Auto-check passed
  • Cm Refactor

    kingxiaozhe/cm-workflow

    用户明确要求“只整理结构,不改变行为”时使用。执行边界分流、行为判官、分批重构和独立审查;缺陷修复转交 cm-fix,新增或变化的业务行为转交 cm-prd。

    104 GitHub starsUsed in 1 repo~2.7k tokens
    Auto-check passed
  • Cm Security

    kingxiaozhe/cm-workflow

    用户运行 cm-security,或要求代码安全扫描、漏洞检查、密钥泄露排查、依赖漏洞检查时使用。默认检查当前分支相对主分支及已跟踪未提交修改,结合业务地图复核;--all 检查全部已跟踪文件。只报告问题,不自动修复、安装、升级或发布。安装自检用 cm-check,功能测试与覆盖率用 cm-test。

    104 GitHub starsUsed in 1 repo~744 tokens
    Auto-check passed
  • Cm AI

    kingxiaozhe/cm-workflow

    用户明确说“规格已确认,开始实现”或要求按已审批 CM specs 开发时使用。新任务默认由 JS workflow 驱动 N1-N8,完成开发、独立审查、QA 与文档同步;模糊点子、未审规格和单独一句“继续”不能触发编码批准。

    104 GitHub stars~1.3k tokensUpdated yesterday
    Auto-check passed
  • Cm Init

    kingxiaozhe/cm-workflow

    用户说“第一次接管这个项目”“分析仓库并生成项目规则”时使用。分析已有代码并生成 Codex AGENTS.md 与 CM/Claude 兼容规则;仅适用于非空存量项目,不创建脚手架、不承接普通代码修改。

    104 GitHub stars~1.9k tokensUpdated yesterday
    Auto-check passed

Categories

Questions about Cm Check

What does Cm Check do?

用户说“检查工作流是否安装正确”“为什么找不到 cm 命令”时使用。默认查询 npm 稳定版,有新版自动升级已管理的 CM 安装,再检查插件、核心 Skills、兼容包装与模板引用;不测试或修改业务代码。. Cm Check is an agent skill from kingxiaozhe/cm-workflow.

When should I use Cm Check?

Cm Check fits situations like: development work in your project.

How do I install Cm Check in Claude Code?

Run `npx skills add kingxiaozhe/cm-workflow --skill cm-check -a claude-code`. Or copy the skill folder (skills/cm-check in kingxiaozhe/cm-workflow) into .claude/skills/cm-check in your project. Claude Code loads it when a task matches its description.

How do I install Cm Check in Codex?

Run `npx skills add kingxiaozhe/cm-workflow --skill cm-check -a codex`. Or copy the skill folder (skills/cm-check in kingxiaozhe/cm-workflow) into .agents/skills/cm-check in your project. Codex loads it when a task matches its description.

Can I use Cm Check in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add kingxiaozhe/cm-workflow --skill cm-check -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/cm-check, .gemini/skills/cm-check, .github/skills/cm-check and .opencode/skills/cm-check in your project.

What does Cm Check need to run?

Going by SKILL.md and its folder, Cm Check needs the command-line tools its instructions call (node).

Does Cm Check access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Cm Check safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Cm Check use?

Cm Check is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Cm Check use?

About 1.3k tokens (SKILL.md is roughly 5.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 1.3k tokens, read only when the agent opens those files.

What are the alternatives to Cm Check?

Skills that share tags, products or a category with Cm Check: Gridbash Panes (jasonsuhari/gridbash, 134 stars), Oh My Posh (JanDeDobbeleer/oh-my-posh, 24k stars), Tapd Iteration Init (TencentBlueKing/bk-bcs, 840 stars) and Dirextalk Deployer (YingSuiAI/dirextalk-deployer, 457 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Cm Check?

kingxiaozhe (a GitHub user) maintains it in kingxiaozhe/cm-workflow, which has 104 GitHub stars. The repository holds 23 skills in this directory. The repository was last updated on October 8, 2026.

Source: kingxiaozhe/cm-workflow on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.