Workflow AI Coding
w8123/EnterpriseAgentFramework
Edit, validate, debug, publish, and inspect ReachAI Workflow drafts through the Workflow AI Coding REST API.
Review Maple security across authentication, account isolation, local persistence, Tauri IPC and capabilities, OAuth and deep links, the Local OpenAI Proxy, Agent Mode tools and permissions, MCP…
$ npx skills add MaplePrivacyLabs/Maple --skill review-maple-security -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install MaplePrivacyLabs/Maple review-maple-security --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/MaplePrivacyLabs/Maple.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/review-maple-security .claude/skills/review-maple-security && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "review-maple-security" agent skill from https://github.com/MaplePrivacyLabs/Maple/tree/master/.agents/skills/review-maple-security into .claude/skills/review-maple-security/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "review-maple-security", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/MaplePrivacyLabs/Maple/tree/master/.agents/skills/review-maple-securityType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add MaplePrivacyLabs/Maple --skill review-maple-security -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install MaplePrivacyLabs/Maple review-maple-security --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/MaplePrivacyLabs/Maple.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.agents/skills/review-maple-security .agents/skills/review-maple-security && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "review-maple-security" agent skill from https://github.com/MaplePrivacyLabs/Maple/tree/master/.agents/skills/review-maple-security into .agents/skills/review-maple-security/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "review-maple-security", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add MaplePrivacyLabs/Maple --skill review-maple-security -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install MaplePrivacyLabs/Maple review-maple-security --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/MaplePrivacyLabs/Maple.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.agents/skills/review-maple-security .cursor/skills/review-maple-security && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "review-maple-security" agent skill from https://github.com/MaplePrivacyLabs/Maple/tree/master/.agents/skills/review-maple-security into .cursor/skills/review-maple-security/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "review-maple-security", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/MaplePrivacyLabs/Maple.git --path .agents/skills/review-maple-security--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add MaplePrivacyLabs/Maple --skill review-maple-security -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install MaplePrivacyLabs/Maple review-maple-security --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/MaplePrivacyLabs/Maple.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.agents/skills/review-maple-security .gemini/skills/review-maple-security && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "review-maple-security" agent skill from https://github.com/MaplePrivacyLabs/Maple/tree/master/.agents/skills/review-maple-security into .gemini/skills/review-maple-security/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "review-maple-security", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install MaplePrivacyLabs/Maple review-maple-securityInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add MaplePrivacyLabs/Maple --skill review-maple-security -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/MaplePrivacyLabs/Maple.git skills-src && mkdir -p .github/skills && cp -r skills-src/.agents/skills/review-maple-security .github/skills/review-maple-security && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "review-maple-security" agent skill from https://github.com/MaplePrivacyLabs/Maple/tree/master/.agents/skills/review-maple-security into .github/skills/review-maple-security/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "review-maple-security", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add MaplePrivacyLabs/Maple --skill review-maple-security -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install MaplePrivacyLabs/Maple review-maple-security --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/MaplePrivacyLabs/Maple.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.agents/skills/review-maple-security .opencode/skills/review-maple-security && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "review-maple-security" agent skill from https://github.com/MaplePrivacyLabs/Maple/tree/master/.agents/skills/review-maple-security into .opencode/skills/review-maple-security/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "review-maple-security", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
review-maple-securityReview Maple security across authentication, account isolation, local persistence, Tauri IPC and capabilities, OAuth and deep links, the Local OpenAI Proxy, Agent Mode tools and permissions, MCP…
Review Maple Security is an agent skill from MaplePrivacyLabs/Maple. Review Maple security across authentication, account isolation, local persistence, Tauri IPC and capabilities, OAuth and deep links, the Local OpenAI Proxy, Agent Mode tools and permissions, MCP, ACP, streaming concurrency, secrets, logging, and configurable API endpoints. Use for explicit security audits, threat modeling, security-sensitive code review, or regression assessment.
Its SKILL.md is about 7.1k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files (for example `agents/openai.yaml`).
It sits in Security, covering Threat modeling, REST APIs and Security review. It works with Tauri, Model Context Protocol and OpenAI. The repository describes itself as: Maple - Private AI Chat. The licence is MIT.
5 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit f8ab3e5. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
nixgitFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use git, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Review Maple Security loads about 7.1k tokens when it runs. Until then it costs about 101 tokens; SKILL.md has 3,359 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from MaplePrivacyLabs/Maple at commit f8ab3e5, republished under its MIT licence (© MaplePrivacyLabs). 3,359 words, ~7,096 tokens.
.claude/skills/review-maple-security/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.Review the current source, not remembered findings. Separate policy, consent, containment, and server authorization. Treat Maple as an open-source client of OpenSecret; discuss billing and feature flags only through their public API/configuration contracts.
Default to read-only investigation when asked to review, audit, diagnose, or threat-model. Do not implement, commit, push, open issues, or make incident claims unless the user separately authorizes the relevant action and the evidence supports it.
Read root AGENTS.md and apps/maple-research/AGENTS.md, the requested diff or files, nearby tests, and applicable docs.
Record git status --short --branch, git rev-parse HEAD, the comparison base, and whether the checkout has unrelated changes. Never clean or rewrite them.
Re-check current command and dependency sources: justfile, apps/maple-research/frontend/package.json, apps/maple-research/frontend/src-tauri/Cargo.toml, lockfiles, scripts/ci/, and .github/workflows/.
Identify whether the request is:
State the assets, attacker position, trust boundaries, and deployment assumptions before assigning severity.
Do not infer deployment state from repository source. Do not infer runtime behavior from a passing build. Do not infer authorization from hidden UI or a feature flag.
Label every material claim with the strongest evidence actually obtained:
Call something an incident, compromise, or production exposure only with live evidence. A source-confirmed risky primitive is not proof that it was exploited or deployed insecurely.
For each finding, report:
Omit speculative findings that cannot survive this structure. Record important
unknowns as task-local unverified boundaries. Keep findings in the current
task's review output or another destination the user explicitly authorizes.
Keep only durable security standards and review methodology in this skill and
apps/maple-research/AGENTS.md.
Trace data and authority across every boundary touched by the change:
user/browser or WebView
-> React state, storage, and OpenSecret SDK
-> Tauri IPC and plugin capabilities
-> native Rust state, filesystem, keyring, processes, and listeners
-> OpenSecret API and other configured public API endpoints
Agent prompt or remote content
-> Maple permission policy
-> Goose tool request
-> Maple developer tool, MCP process/server, or ACP caller
-> local files, shell, network, and credentialsTreat renderer input, model output, MCP output, ACP input, remote content, persisted JSON, URLs, paths, and environment values as untrusted at their receiving boundary. Validate again where authority is exercised.
Inspect these source areas when authentication, user state, native providers, logout, deletion, or account switching is relevant:
apps/maple-research/frontend/src/services/mapleApiAuthService.tsapps/maple-research/frontend/src/services/agentAuthLifecycle.tsapps/maple-research/frontend/src/services/agentOperationFence.tsapps/maple-research/frontend/src/services/agentRuntimeService.tsapps/maple-research/frontend/src-tauri/src/maple_api.rsapps/maple-research/frontend/src/components/RootRuntimeLayout.tsxRequire these invariants:
os.signOut() calls. Route sign-out, guest conversion, verification transitions, and deletion through one reviewed lifecycle sequence.localStorage and sessionStorage as sensitive client storage, not a native trust anchor or secure vault.Exercise success, cancellation, failure, timeout, token refresh during validation, wrong-user tokens, repeated logout, rapid account switching, and app exit/update. Check every await for stale account ownership before subsequent mutation.
Inspect where state is stored, who can read it, when it roams, and how precisely it is deleted.
0600 files and 0700 directories as defense in depth, not encrypted storage.Never include real tokens, passwords, prompts, private paths, encrypted user seeds, MCP secrets, or full credential-bearing URLs in tests, logs, screenshots, or reports. Use explicit non-secret fixtures.
Inspect:
apps/maple-research/frontend/src-tauri/src/lib.rsapps/maple-research/frontend/src-tauri/tauri.conf.jsonapps/maple-research/frontend/src-tauri/capabilities/*.json#[tauri::command]generate_handler! registration and its
cfg gates@tauri-apps/* imports and raw plugin:* callsRequire native validation for all renderer-controlled accounts, paths, URLs, ports, sizes, enum values, identifiers, and lifecycle capabilities. Frontend validation is user experience, not enforcement.
Ask whether the change:
connect-src, opener allowlist, filesystem scope, dialog access, deep-link handling, or mobile capabilities;Keep security-sensitive local effects in native Rust: process launch, MCP connection, filesystem mutation, local listeners, credential persistence, deep-link ingestion, updater/restart, and account-bound native sessions. Minimize capabilities rather than compensating with renderer checks.
Application-defined Rust commands and plugin commands are separate authority
paths. Under the repository's default Tauri build configuration,
generate_handler! registration exposes a custom command to local WebViews
independently of plugin capability entries. A filesystem plugin scope constrains
filesystem plugin calls; it does not constrain std::fs, Tokio filesystem, or
another local effect inside a custom Rust command. Require custom commands to
canonicalize and bound paths, verify account and lifecycle ownership, reject
unintended file types and sizes, and sanitize results in Rust. Add plugin
permissions only when the renderer needs that plugin API, and never cite a
plugin scope as proof that a custom command is contained.
Require focused native-validation and typed-caller tests. When no checked-in React-to-IPC integration test covers a privileged path, require a manual smoke through the exact application, real UI entry point, intended command, native effect, and a representative rejection case.
Treat untrusted Markdown and external URLs as a renderer boundary. Preserve sanitization before trusted transforms, suppress remote images unless intentionally supported, confirm external navigation, and review any sanitizer schema, raw HTML, KaTeX/highlight, CSP, or opener change together.
Read the current implementation and docs together:
apps/maple-research/frontend/src-tauri/src/agent.rsapps/maple-research/frontend/src-tauri/src/agent/apps/maple-research/frontend/src-tauri/src/agent_acp.rsapps/maple-research/frontend/src-tauri/src/agent_host.rsapps/maple-research/frontend/src-tauri/src/agent_tauri.rsapps/maple-research/docs/agent-mode-mcp.mdapps/maple-research/docs/agent-mode-acp.mdKeep these concepts separate:
Do not describe Read-only/SmartApprove, allowed project roots, Unix socket permissions, or process-group cleanup as an operating-system sandbox. A project-root grant is not per-tool filesystem confinement; enforce and test containment separately when it is part of the required policy.
Require these invariants:
read_image as a separate network boundary. Review URL
admission, redirects, credentials and private destinations, size and time
bounds, and downloader behavior; never infer that open_url policy applies.Preserve intended power features when they are product choices. Assess whether their consent and containment match the documented threat model rather than assuming intentional execution authority violates the design.
Inspect proxy/src/{config,lib,main,proxy}.rs,
proxy/{Cargo.toml,.env.example,Dockerfile,docker-compose.yml,justfile},
apps/maple-research/frontend/src-tauri/src/proxy.rs, apps/maple-research/frontend/src/services/proxyService.ts, the
settings UI, all startup/logout callers, and tests as one boundary. Keep the
reusable HTTP proxy's request and authentication rules distinct from Maple's
account-scoped Tauri lifecycle. The standalone crate, binary, and container do
not inherit protections implemented only by the Tauri wrapper.
Require these defaults unless an explicit product decision changes them:
When CORS is disabled, verify browser-controlled Origin and Sec-Fetch-Site requests are rejected before a saved key can be spent. Omitting CORS response headers alone is insufficient. When CORS is enabled for browser compatibility, require every inference request to provide its own bearer key and remove saved-key fallback.
Build a core-versus-Tauri regression matrix for CORS on/off, saved-key
present/absent, browser Origin/Sec-Fetch-Site headers, and per-request
bearer keys. Test the standalone router directly as well as the exact app;
passing wrapper tests does not establish the core policy.
Review the exact exposed routes and methods, request-size and concurrency
bounds, forwarded and stripped headers, response-cache bounds, setup and
stream-idle timeouts, cancellation, exactly one streaming terminator, upstream
status/body leakage, backend and PCR trust selection, bind/TLS policy, and
logs. Never log any portion of an API key, authorization header, encrypted or
decrypted request body, response body, or credential-bearing URL. /health
proves liveness only; exercise /v1/models, non-streaming chat, streaming chat,
and embeddings when their shared forwarding path changes.
Review host, port, CORS mode, saved credential, auto-start, owner account, and backend URL as one security object. Validate bind hosts and endpoints natively. Allow plaintext HTTP only for explicit loopback development; reject embedded URL credentials and unexpected path, query, or fragment components unless the API contract requires them.
Serialize start, save, stop, reset, and auto-start. Await listener teardown before rebinding. Fence API-key creation and delayed startup with account identity plus auth generation so logout/reset cannot be followed by a stale completion that restarts an old account's proxy. Scrub the local listener and credential before best-effort remote key revocation.
Treat non-loopback service exposure as a separate feature requiring explicit authentication, transport security, network threat modeling, and billing-abuse analysis. A warning label alone is not native enforcement.
Inspect both sides of every flow:
apps/maple-research/frontend/src/routes/auth.$provider.callback.tsx;apps/maple-research/frontend/src/components/AppleAuthProvider.tsx;apps/maple-research/frontend/src/components/DeepLinkHandler.tsx;Require exact scheme, authority, path, provider, parameter, and redirect validation. Bind completion atomically to a pending native-generated state, provider, PKCE verifier, expiry, and one-time use. Reject unsolicited, duplicate, stale, malformed, or cross-provider callbacks.
Never log raw callback URLs, single-instance argv, codes, access tokens, refresh tokens, state, nonce, or sensitive query strings. Prefer a short-lived one-use authorization code exchanged by the intended native client over bearer tokens in a custom URI. Treat custom schemes as interceptable on platforms where handler ownership is not cryptographically verified; prefer verified App/Universal Links when redesigning the flow.
Validate internal redirects independently and reject absolute, scheme-relative, backslash-confused, or normalized traversal forms. Do not treat safe navigation as proof that the authentication handoff itself is bound correctly.
Inspect the browser and native OpenSecret clients independently:
apps/maple-research/frontend/src/app.tsxapps/maple-research/frontend/src/ai/OpenAIContext.tsxapps/maple-research/frontend/src/services/mapleApiAuthService.tsapps/maple-research/frontend/src-tauri/src/maple_api.rsapps/maple-research/frontend/src-tauri/src/agent/provider.rssdk/src/ and sdk/rust/ when the SDK implementation or public protocol is
in scopePreserve the OpenSecret SDK's encrypted and attested transport. Do not replace aiCustomFetch or the native SDK client with raw browser/native fetch merely to make a request work. Avoid layering automatic client retries over Maple operations that may have server-side effects; keep retry ownership explicit.
Review development and production enclave URLs and PCR/attestation allowlists together. Reject an endpoint that is not HTTPS unless it is an explicit loopback development address. Reject URL credentials and unexpected paths, queries, or fragments at the native authority boundary. Treat source-configured PCR values as policy, not proof that a live enclave currently matches; perform live attestation before making deployment claims.
The SDK source is in this repository, but each consumer selects a published version or local source through its manifest and lockfile. Follow the SDK consumer version policy. Review SDK source changes and resolved application dependencies as distinct boundaries: a registry-pinned client does not exercise unpublished SDK edits. Verify the selected source and Cargo graph before claiming coverage. Do not assume the browser and native SDKs have identical features, request schemas, refresh behavior, attestation behavior, or error handling. For an OpenSecret API contract change, validate both clients. Keep decrypted upstream errors and response bodies out of logs and user-facing native errors; expose bounded categories unless safe detail is deliberately part of the public contract.
When backend confirmation is needed, inspect the current open-source OpenSecret repository and follow its AGENTS.md and relevant skills. Do not infer its authorization, transport, or deployment behavior solely from Maple's caller.
Search both sides of a changed boundary for console.*, Rust log::*, string interpolation, Tauri events, structured errors, telemetry, clipboard flows, URLs, process arguments, and child environments.
Use unique fake canary values in tests so accidental propagation is detectable without exposing real credentials.
Inspect ChatRuntimeContext, chatRuntimeStore, UnifiedChat, stream coalescing, retry recovery, Agent event routing, and any affected async service.
Require every request, stream, timer, retry, load, cancellation, and delayed callback to capture immutable owner identity plus generation/run token. Re-check ownership after every await before mutation.
Keep in the open-source OpenSecret backend:
Keep in Maple:
Do not use billing status, feature flags, hidden routes, or disabled controls as
authorization. Configure billing and feature flags as external dev/prod HTTP
API endpoints when a test needs them and assess only their public contracts.
Treat every VITE_* value as public build-time configuration, never a secret.
For coordinated changes, make the backend contract secure and backward-compatible first, then update Maple through the pinned OpenSecret SDK or a reviewed API adapter. Avoid duplicating backend authorization or provider behavior in the renderer.
Use $validate-maple for the complete test and exact-application workflow. During a security review, select focused tests first, then run the repository's CI-equivalent suites before declaring an implementation ready:
nix develop --no-update-lock-file .#ci -c ./scripts/ci/frontend.sh
nix develop --no-update-lock-file .#ci -c ./scripts/ci/rust.shRun dependency advisory checks only with available, trusted tooling and without changing lockfiles. Separate advisory presence, production reachability, exploitability, and accepted exceptions. Report when an audit tool or advisory database could not be refreshed.
Add boundary-specific proof:
Origin POST and Sec-Fetch-Site GET rejection; originless local success; CORS-on preflight with Authorization; no saved fallback; non-loopback rejection or explicit secure mode; invalid backend endpoints; start/stop/restart; auto-start; offline logout; delayed-start race.For native behavior, test the exact checkout-built binary or bundle identifier and verify its configured backend URL, executable path, proxy port, and listener PID before automation. Do not target an application only by the display name Maple. Distinguish unit tests, build success, runtime smoke, platform coverage, and deployment checks in the final report.
Lead with actionable findings ordered by severity. Use exact file/function references and concise attack narratives. Then list:
If no confirmed findings remain, say so plainly and report the boundaries not verified for this task. Never convert an intended power feature, dependency warning, or source-only hypothesis into a production incident claim.
© MaplePrivacyLabs, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 1 other file in .agents/skills/review-maple-security of MaplePrivacyLabs/Maple.
Open the folder on GitHubat commit f8ab3e5
Review Maple Security next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Review Maple Security this skillMaplePrivacyLabs/Maple | 100 | — | ~7.1k | Automated safety check: Pass | MIT | |
| Workflow AI Codingw8123/EnterpriseAgentFramework | 855 | — | ~3.7k | Automated safety check: Pass | MIT | |
| Store Submitzhitongblog/solomd | 1.2k | — | ~1.7k | Automated safety check: Notes | MIT | |
| Openmaopenma-ai/open-managed-agents | 316 | — | ~854 | Automated safety check: Pass | Apache-2.0 | |
| Cohesivityaiskillstore/marketplace | 430 | 2 repos | ~3.7k | Automated safety check: Pass | None | |
| Security Reviewjewbetcha/opentrace | 116 | 18 repos | ~3.1k | Automated safety check: Notes | MIT |
w8123/EnterpriseAgentFramework
Edit, validate, debug, publish, and inspect ReachAI Workflow drafts through the Workflow AI Coding REST API.
zhitongblog/solomd
Publish a SoloMD release to the stores that have no usable submission API — Google Play Console and Microsoft Partner Center — by driving them through the local Unzoo Browser REST API.
openma-ai/open-managed-agents
Use the openma platform to build, deploy, and manage AI agents.
aiskillstore/marketplace
Backend and infra for a project via Cohesivity (cohesivity.ai).
jewbetcha/opentrace
A skill your agent uses when adding authentication, handling user input, working with secrets, creating API endpoints, or implementing payment/sensitive features.
awslabs/cli-agent-orchestrator
Load the official MCP Apps builder skills (create-mcp-app, migrate-oai-app, add-app-to-server, convert-web-app) from github.com/modelcontextprotocol/ext-apps.
MaplePrivacyLabs/Maple
Prepare, publish, monitor, and verify a Maple release from current master.
MaplePrivacyLabs/Maple
Implement ordinary Research client features and fixes in React/Vite/Tauri, including its web, desktop, and mobile paths.
MaplePrivacyLabs/Maple
Develop and review the maple-proxy Rust crate, binary, container, and OpenAI-compatible HTTP behavior under Maple's proxy directory.
MaplePrivacyLabs/Maple
Develop and review the Maple TypeScript/React and Rust SDKs under Maple's sdk directory.
MaplePrivacyLabs/Maple
Review security-sensitive OpenSecret changes and claims. An agent skill from MaplePrivacyLabs/Maple.
MaplePrivacyLabs/Maple
Select and run Maple component checks, platform builds, and exact-runtime smoke evidence for the changed behavior.
Works with
Categories
Review Maple security across authentication, account isolation, local persistence, Tauri IPC and capabilities, OAuth and deep links, the Local OpenAI Proxy, Agent Mode tools and permissions, MCP…. Review Maple Security is an agent skill from MaplePrivacyLabs/Maple. Review Maple security across authentication, account isolation, local persistence, Tauri IPC and capabilities, OAuth and deep links, the Local OpenAI Proxy, Agent Mode tools and permissions, MCP, ACP, streaming concurrency, secrets, logging, and configurable API endpoints.
Review Maple Security fits situations like: explicit security audits; threat modeling; security-sensitive code review; regression assessment.
Run `npx skills add MaplePrivacyLabs/Maple --skill review-maple-security -a claude-code`. Or copy the skill folder (.agents/skills/review-maple-security in MaplePrivacyLabs/Maple) into .claude/skills/review-maple-security in your project. Claude Code loads it when a task matches its description.
Run `npx skills add MaplePrivacyLabs/Maple --skill review-maple-security -a codex`. Or copy the skill folder (.agents/skills/review-maple-security in MaplePrivacyLabs/Maple) into .agents/skills/review-maple-security in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add MaplePrivacyLabs/Maple --skill review-maple-security -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/review-maple-security, .gemini/skills/review-maple-security, .github/skills/review-maple-security and .opencode/skills/review-maple-security in your project.
Going by SKILL.md and its folder, Review Maple Security needs the command-line tools its instructions call (nix and git).
SKILL.md contains no URLs. Its commands use git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Review Maple Security is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 7.1k tokens (SKILL.md is roughly 28k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Review Maple Security: Workflow AI Coding (w8123/EnterpriseAgentFramework, 855 stars), Store Submit (zhitongblog/solomd, 1.2k stars), Openma (openma-ai/open-managed-agents, 316 stars) and Cohesivity (aiskillstore/marketplace, 430 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
MaplePrivacyLabs (a GitHub organization) maintains it in MaplePrivacyLabs/Maple, which has 100 GitHub stars. The repository holds 14 skills in this directory. The repository was last updated on October 9, 2026.
Source: MaplePrivacyLabs/Maple on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.