Agent skill

Develop Maple Proxy

by MaplePrivacyLabs in MaplePrivacyLabs/Maple

Develop and review the maple-proxy Rust crate, binary, container, and OpenAI-compatible HTTP behavior under Maple's proxy directory.

MITAuto-check passed

Install Develop Maple Proxy

skills CLI
$ npx skills add MaplePrivacyLabs/Maple --skill develop-maple-proxy -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install MaplePrivacyLabs/Maple develop-maple-proxy --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/MaplePrivacyLabs/Maple.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/develop-maple-proxy .claude/skills/develop-maple-proxy && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
develop-maple-proxy
GitHub stars
100
Token cost
~1.7k tokens
SKILL.md length
769 words
Files
1
Skills in repo
16
Repo updated
First seen
Licence
MIT

At a glance

Develop and review the maple-proxy Rust crate, binary, container, and OpenAI-compatible HTTP behavior under Maple's proxy directory.

  • Attested OpenSecret transport
  • SKILL.md covers Keep validation and routing…, Exercise the right runtime, Preserve publishing boundaries and Report
  • Calls cargo, nix and docker; needs GITHUB_TOKEN
  • Container builds

What it does

Develop Maple Proxy is an agent skill from MaplePrivacyLabs/Maple. Develop and review the maple-proxy Rust crate, binary, container, and OpenAI-compatible HTTP behavior under Maple's proxy directory. Use for proxy APIs, configuration, authentication, CORS, attested OpenSecret transport, tests, container builds, package versions, or an explicitly authorized crates.io or GHCR publishing handoff; use develop-maple for the Tauri lifecycle wrapper alone.

Its SKILL.md is about 1.7k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It works with Rust, Tauri and OpenAI. The repository describes itself as: Maple - Private AI Chat. The licence is MIT.

When your agent uses it

  • Attested OpenSecret transport
  • Container builds
  • Package versions
  • An explicitly authorized crates.io

Example prompts

  • “/develop-maple-proxy”

Requirements

  • Docker
  • A credential in GITHUB_TOKEN

What it can do on your machine

Read from SKILL.md and the folder at commit 82f0b06. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • cargo
    • nix
    • docker

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use docker, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • GITHUB_TOKEN

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Develop Maple Proxy loads about 1.7k tokens when it runs. Until then it costs about 102 tokens; SKILL.md has 769 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~102
When it runs · the whole SKILL.md, loaded when a task matches
~1.7k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from MaplePrivacyLabs/Maple at commit 82f0b06, republished under its MIT licence (© MaplePrivacyLabs). 769 words, ~1,697 tokens.

Download SKILL.mdSave it as .claude/skills/develop-maple-proxy/SKILL.md (or your agent's skills folder).
name
develop-maple-proxy
description
Develop and review the maple-proxy Rust crate, binary, container, and OpenAI-compatible HTTP behavior under Maple's proxy directory. Use for proxy APIs, configuration, authentication, CORS, attested OpenSecret transport, tests, container builds, package versions, or an explicitly authorized crates.io or GHCR publishing handoff; use develop-maple for the Tauri lifecycle wrapper alone.

Develop Maple Proxy

Work from the MaplePrivacyLabs/Maple repository root; the component source is under proxy/. Read the repository-root AGENTS.md, proxy/README.md, affected source and tests, and the root .github/workflows/proxy-*.yml files relevant to the change.

The source is part of Maple but keeps distinct public package and runtime boundaries:

  • proxy/ builds the maple-proxy crate and binary.
  • proxy/Cargo.toml uses a compatible maple-sdk registry requirement; proxy/Cargo.lock selects the standalone binary's version. Local SDK links are also supported during active development.
  • Research desktop and Maple Agent consume the in-tree proxy library and choose their SDK versions independently in their own Cargo manifests/locks. iOS and Android do not compile Research's proxy.
  • apps/maple-research/frontend/src-tauri/src/proxy.rs owns Maple's account-scoped listener, configuration, key storage, and lifecycle around the library. Do not move that application behavior into the reusable crate incidentally.

Follow the SDK consumer version policy. Keep the embedded proxy and its host on the same SDK source/version; avoid exact-pinning the reusable library in a way that forces all hosts to upgrade.

Do not commit, push, open a PR, publish, tag, release, or change live infrastructure unless the user authorizes that action.

Keep validation and routing aligned

Run the credential-free proxy checks through its pinned shell:

sh
nix develop --no-update-lock-file ./proxy -c bash -lc '
  set -euo pipefail
  cd proxy
  cargo fmt --all -- --check
  cargo clippy --locked --all-targets --all-features -- -D warnings
  cargo test --locked --all-features
  RUSTDOCFLAGS="-D warnings" cargo doc --locked --no-deps --all-features
  cargo machete
'

The repository pre-commit hook runs exactly these commands through proxy/.githooks/pre-commit in the proxy shell when proxy files are staged.

For Rust SDK or dependency-wiring changes, also prove Research resolves one SDK from its selected source and the in-tree proxy:

sh
nix develop --no-update-lock-file .#ci -c \
  ./scripts/ci/verify-local-rust-deps.sh

Root workflows own proxy Rust, daily supply-chain, non-publishing container, and native-release rehearsal checks. proxy/src/**, proxy/Cargo.toml, and unknown proxy build inputs are desktop application inputs; tests, examples, docs, the standalone lockfile, and container-only files do not by themselves route expensive Maple app builds. Rust SDK build inputs (sdk/rust/Cargo.toml, src/, build.rs, assets/) select proxy and desktop checks too, because the proxy and both desktops build sdk/rust from the tree. When a new input changes either graph, update scripts/ci/change_detection.py, its table-driven tests, and workflow paths in the same change.

Exercise the right runtime

Run the standalone proxy on a checkout-specific loopback port with an explicit backend and PCR0 environment. Keep API keys in ignored local configuration or the invoking process; never print or commit them. Exercise /health, /v1/models, streaming and non-streaming chat, embeddings, invalid authentication, timeout, and cancellation only as relevant to the change.

Container builds require the Maple repository root as context because the Dockerfile copies both proxy/ and sdk/rust:

sh
docker build -f proxy/Dockerfile -t maple-proxy:dev .

Use the configured container runtime from proxy/justfile when Docker is not the intended local engine. A successful image build is not proof that GHCR was published or that the service works against a live enclave.

For authentication, CORS, bind exposure, saved-key behavior, backend URL or PCR0 selection, request forwarding, logging, or timeout changes, load $review-maple-security. Preserve the core loopback and CORS-off defaults; treat container CORS-on configuration as a separate exposed mode. A configured default API key is for private/originless clients; browser-facing CORS mode must require each request's bearer key rather than spending the saved default. Never assume protections in the Tauri wrapper also exist in the standalone router. Never log any portion of an API key. Treat raw OpenAI request and response bodies as untrusted and potentially sensitive.

Show full SKILL.md (249 more words)Show less

Preserve publishing boundaries

Maple's GitHub Release workflow builds, checksums, attests, uploads, and re-verifies four native proxy archives. Maple v3.3.9 proved this integrated publication path for macOS arm64, Linux arm64, Linux x86_64, and Windows x86_64. Never create a proxy GitHub tag or Release; a proxy-only binary fix ships through a normal Maple patch release.

Crates.io publishing remains separately versioned and manual. On an authorized publish, inspect the exact package first:

sh
cargo package --locked --manifest-path proxy/Cargo.toml

If the proxy references a new maple-sdk version, publish that SDK crate first. Do not publish either crate from Maple's application Release workflow. Root proxy container CI builds without pushing. After a successful stable Maple Release, .github/workflows/proxy-publish.yml independently compares that release's proxy version with the previous stable Maple Release. Unchanged versions skip, including the unbackfilled 0.3.3 baseline. A strictly newer, previously unpublished version automatically publishes Linux AMD64/ARM64 to ghcr.io/mapleprivacylabs/maple-proxy with exact, minor, major, and latest tags. The workflow is serialized, rejects rollback and stale releases, verifies the public manifest, and supports manual retry from master. The transferred Maple repository uses its GITHUB_TOKEN to publish in MaplePrivacyLabs; the new package must be public and grant Maple Actions write access. Existing old-namespace images remain available but receive no updates. Treat any namespace, trigger, version policy, or package-access change as a separate production-authority decision.

Report

State the proxy behavior and public contract changed, SDK/application boundary, exact checks and runtime evidence, container or package inspection performed, version/publisher state left unchanged or deliberately updated, and every platform, live backend, registry, or release boundary not exercised.

© MaplePrivacyLabs, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .agents/skills/develop-maple-proxy of MaplePrivacyLabs/Maple.

Open the folder on GitHubat commit 82f0b06

Compare with similar skills

Develop Maple Proxy next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Develop Maple Proxy compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Develop Maple Proxy this skillMaplePrivacyLabs/Maple100—~1.7kAutomated safety check: PassMIT
Manage Skills Hubqufei1993/skills-hub1.7k—~3.2kAutomated safety check: PassMIT
Rgsm Gui Acceptancemcthesw/game-save-manager1.1k—~1.1kAutomated safety check: PassAGPL-3.0
Cut Releasedelexw/claude-code-trace3761 repos~1.4kAutomated safety check: PassMIT
Update TranslationsRaicuparta/rai-pal732—~839Automated safety check: PassGPL-3.0
Papr Rssl0ng-ai/papr539—~1.1kAutomated safety check: PassMIT

Similar skills

  • Manage Skills Hub

    qufei1993/skills-hub

    A skill your agent uses whenever an Agent needs to query, find, install, deploy, update, tag, adopt, diagnose, or safely remove Skills Hub content, including natural-language requests to manage…

    1.7k GitHub stars~3.2k tokensUpdated today
    Agent WorkflowsAuto-check passed
  • Rgsm Gui Acceptance

    mcthesw/game-save-manager

    Prepare change-specific RGSM GUI acceptance environments and short manual scenarios when the user wants to try a change locally.

    1.1k GitHub stars~1.1k tokensUpdated today
    Auto-check passed
  • Cut Release

    delexw/claude-code-trace

    Cuts a new versioned release of claude-code-trace end-to-end without asking any questions.

    376 GitHub starsUsed in 1 repo~1.4k tokens
    DevelopmentAuto-check passed
  • Update Translations

    Raicuparta/rai-pal

    A skill your agent uses when asked to update translations, localize strings, add new languages, fix missing translation keys, or sync language files in this project.

    732 GitHub stars~839 tokensUpdated yesterday
    Writing & ContentAuto-check passed
  • Papr Rss

    l0ng-ai/papr

    Read, search and triage the user's Papr RSS subscriptions from the shell via the papr CLI.

    539 GitHub stars~1.1k tokensUpdated 14 days ago
    Knowledge ManagementAuto-check passed
  • Desktop Release Sync Landing

    Eynzof/Hermes-CN-Desktop

    Use only for stable/public Hermes Agent CN Desktop releases that should be visible to all users.

    1.7k GitHub stars~1.3k tokensUpdated 16 days ago
    DevOps & CloudAuto-check passed

More from MaplePrivacyLabs/Maple

All 16 skills in this repo
  • Release Maple

    MaplePrivacyLabs/Maple

    Prepare, publish, monitor, and verify a Maple release from current master.

    100 GitHub stars~5.5k tokensUpdated today
    Auto-check passed
  • Develop Maple

    MaplePrivacyLabs/Maple

    Implement ordinary Research client features and fixes in React/Vite/Tauri, including its web, desktop, and mobile paths.

    100 GitHub stars~1.1k tokensUpdated today
    Auto-check: notes
  • Develop Opensecret SDK

    MaplePrivacyLabs/Maple

    Develop and review the Maple TypeScript/React and Rust SDKs under Maple's sdk directory.

    100 GitHub stars~1.8k tokensUpdated today
    Auto-check passed
  • Review Opensecret Security

    MaplePrivacyLabs/Maple

    Review security-sensitive OpenSecret changes and claims. An agent skill from MaplePrivacyLabs/Maple.

    100 GitHub stars~2.2k tokensUpdated today
    Auto-check passed
  • Validate Maple

    MaplePrivacyLabs/Maple

    Select and run Maple component checks, platform builds, and exact-runtime smoke evidence for the changed behavior.

    100 GitHub stars~1.2k tokensUpdated today
    Auto-check passed
  • Validate Opensecret

    MaplePrivacyLabs/Maple

    Select and run backend Rust, disposable database, encrypted client, provider, Nix, and EIF/PCR evidence matching an OpenSecret change.

    100 GitHub stars~1.1k tokensUpdated today
    Auto-check passed

Works with

Questions about Develop Maple Proxy

What does Develop Maple Proxy do?

Develop and review the maple-proxy Rust crate, binary, container, and OpenAI-compatible HTTP behavior under Maple's proxy directory. Develop Maple Proxy is an agent skill from MaplePrivacyLabs/Maple. Develop and review the maple-proxy Rust crate, binary, container, and OpenAI-compatible HTTP behavior under Maple's proxy directory.

When should I use Develop Maple Proxy?

Develop Maple Proxy fits situations like: attested OpenSecret transport; container builds; package versions; an explicitly authorized crates.io.

How do I install Develop Maple Proxy in Claude Code?

Run `npx skills add MaplePrivacyLabs/Maple --skill develop-maple-proxy -a claude-code`. Or copy the skill folder (.agents/skills/develop-maple-proxy in MaplePrivacyLabs/Maple) into .claude/skills/develop-maple-proxy in your project. Claude Code loads it when a task matches its description.

How do I install Develop Maple Proxy in Codex?

Run `npx skills add MaplePrivacyLabs/Maple --skill develop-maple-proxy -a codex`. Or copy the skill folder (.agents/skills/develop-maple-proxy in MaplePrivacyLabs/Maple) into .agents/skills/develop-maple-proxy in your project. Codex loads it when a task matches its description.

Can I use Develop Maple Proxy in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add MaplePrivacyLabs/Maple --skill develop-maple-proxy -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/develop-maple-proxy, .gemini/skills/develop-maple-proxy, .github/skills/develop-maple-proxy and .opencode/skills/develop-maple-proxy in your project.

What does Develop Maple Proxy need to run?

Going by SKILL.md and its folder, Develop Maple Proxy needs the command-line tools its instructions call (cargo, nix and docker) and credentials named GITHUB_TOKEN. Our summary lists: Docker; A credential in GITHUB_TOKEN.

Does Develop Maple Proxy access the network?

SKILL.md contains no URLs. Its commands use docker, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Develop Maple Proxy safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Develop Maple Proxy use?

Develop Maple Proxy is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Develop Maple Proxy use?

About 1.7k tokens (SKILL.md is roughly 6.8k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Develop Maple Proxy?

Skills that share tags, products or a category with Develop Maple Proxy: Manage Skills Hub (qufei1993/skills-hub, 1.7k stars), Rgsm Gui Acceptance (mcthesw/game-save-manager, 1.1k stars), Cut Release (delexw/claude-code-trace, 376 stars) and Update Translations (Raicuparta/rai-pal, 732 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Develop Maple Proxy?

MaplePrivacyLabs (a GitHub organization) maintains it in MaplePrivacyLabs/Maple, which has 100 GitHub stars. The repository holds 16 skills in this directory. The repository was last updated on October 7, 2026.

Source: MaplePrivacyLabs/Maple on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.