Official agent skill

Cut Release

by microsoft in microsoft/apm

A skill your agent uses to cut an APM release from the current worktree: assess whether the cycle since the last tag warrants a patch or minor bump (semver discipline against the…

OfficialMITAuto-check passedDevelopment

Install Cut Release

skills CLI
$ npx skills add microsoft/apm --skill cut-release -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install microsoft/apm cut-release --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/microsoft/apm.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.apm/skills/cut-release .claude/skills/cut-release && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
cut-release
GitHub stars
4k
Token cost
~2.5k tokens
SKILL.md length
1,229 words
Files
8 (incl. scripts, assets)
Skills in repo
27
Repo updated
First seen
Licence
MIT

At a glance

A skill your agent uses to cut an APM release from the current worktree: assess whether the cycle since the last tag warrants a patch or minor bump (semver discipline against the…

  • Works in 8 steps: ground state → enumerate merged PRs → pick the bump (B10 CHECKPOINT 1) → …
  • Cut an APM release from the current worktree: assess whether the cycle since the last tag warrants a patch
  • SKILL.md covers When to use, Companion primitives, Output charset rule and Procedure, plus 2 more sections
  • Runs Shell scripts from its folder; calls git and uv

What it does

Cut Release is an agent skill from microsoft/apm, published by the product's own GitHub organization. Use this skill to cut an APM release from the current worktree: assess whether the cycle since the last tag warrants a patch or minor bump (semver discipline against the merged-since-last-tag diff), sanitize the [Unreleased] CHANGELOG block into a dated version block with one concise "so what" entry per merged PR (drop internal-only churn, consolidate duplicates), bump pyproject.toml + uv.lock, run the CI-mirror lint chain, and open the release PR. Activate on "ship a release", "cut v0.x", "release prep", "bump…

Its SKILL.md is about 2.5k tokens, which your agent loads only when the skill is triggered. The skill folder holds 10 other files, including scripts and assets (for example `assets/entry-sanitizer.md`, `assets/pr-body-template.md` and `assets/semver-rubric.md`).

It sits in Development, covering Monitoring and alerting, Changelog and release notes and Linting and formatting. The repository describes itself as: Agent Package Manager. The licence is MIT.

When your agent uses it

  • Cut an APM release from the current worktree: assess whether the cycle since the last tag warrants a patch
  • Minor bump (semver discipline against the merged-since-last-tag diff)
  • Sanitize the [Unreleased] CHANGELOG block into a dated version block with one concise so what entry per merged PR (drop internal-only churn
  • Consolidate duplicates)

Example prompts

  • “so what”
  • “ship a release”
  • “cut v0.x”
  • “/cut-release”

Requirements

  • A Bash shell

Workflow steps

8 steps, taken from the step headings in SKILL.md.

  1. ground state
  2. enumerate merged PRs
  3. pick the bump (B10 CHECKPOINT 1)
  4. sanitize the changelog (B10 CHECKPOINT 2)
  5. bump version files
  6. verify lint mirror (S4 gate; B10 CHECKPOINT 3 on fail)
  7. commit, push, open PR
  8. update plan and exit

What it can do on your machine

Read from SKILL.md and the folder at commit 280b8a7. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 3 files in scripts/ (Shell), which the agent can run.

    Shell commands in SKILL.md call:

    • git
    • uv

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use git and uv, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Cut Release loads about 2.5k tokens when it runs. Until then it costs about 214 tokens; SKILL.md has 1,229 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~214
When it runs · the whole SKILL.md, loaded when a task matches
~2.5k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from microsoft/apm at commit 280b8a7, republished under its MIT licence (© microsoft). 1,229 words, ~2,452 tokens.

Download SKILL.mdSave it as .claude/skills/cut-release/SKILL.md (or your agent's skills folder). This skill also uses 7 other files; get the full folder from GitHub.
name
cut-release
description
Use this skill to cut an APM release from the current worktree: assess whether the cycle since the last tag warrants a patch or minor bump (semver discipline against the merged-since-last-tag diff), sanitize the [Unreleased] CHANGELOG block into a dated version block with one concise "so what" entry per merged PR (drop internal-only churn, consolidate duplicates), bump pyproject.toml + uv.lock, run the CI-mirror lint chain, and open the release PR. Activate on "ship a release", "cut v0.x", "release prep", "bump and PR", "open release PR", "what kind of release do we need", or any phrasing that ends in opening a release PR -- even when the user does not say "skill". Stops BEFORE tagging; tagging stays a human gate that triggers the release workflow. Refuses to bump to a major (>= 1.0.0) version without explicit operator confirmation.

cut-release -- assess, sanitize, bump, lint, open PR

This skill drives the release-cut workflow end-to-end on the current worktree. It STOPS at "PR open"; tagging is the human-gated trigger that fires the release workflow.

When to use

Trigger this skill on any of these intents:

  • "cut a release"
  • "ship v0.x" / "ship the release"
  • "release prep" / "prepare the release"
  • "bump and open the PR"
  • "open the release PR"
  • "what kind of release do we need now"
  • "we have enough merged for a release"
  • Any phrasing that ends in opening a release PR.

Do NOT trigger on:

  • "tag v0.16.0" -- tagging is the post-merge step the operator runs.
  • "publish a blog post" / "draft release notes for the website".
  • "what changed since v0.15.0" -- enumeration only, no release.
  • "regenerate uv.lock" / raw version-string edits.
  • "rollback to v0.15.0" -- release reversal is a different skill.

Companion primitives

The skill DEPENDS on these existing primitives in the same source tree. Do not duplicate their content; reference them.

  • .apm/skills/apm-strategy/SKILL.md -- versioning judgement and breaking-change lens. Auto-loads via its own trigger on CHANGELOG.md and release-pipeline edits. Treat it as the authoritative lens for "is this BREAKING" and "does this positioning change warrant a migration note".
  • .apm/instructions/linting.instructions.md -- canonical CI-mirror lint chain. Reference; do not re-derive ruff / pylint command lists in this skill.
  • .github/instructions/changelog.instructions.md -- Keep-a- Changelog format contract. Reference; do not redefine the format.

Output charset rule

Per .github/instructions/encoding.instructions.md, source files in this bundle (SKILL.md, assets, scripts) MUST stay in printable ASCII. The PR body and changelog entries this skill produces are also written to repo files (CHANGELOG.md, PR body), so they MUST stay ASCII too. Use -- for em dashes, [!] / [+] / [x] for status markers, and so on.

Procedure

Run these phases in order. Reload plan.md (the session memento) at the start of each phase and after every tool return.

Phase 0 -- ground state
  1. Read the current branch with git rev-parse --abbrev-ref HEAD. The skill assumes you are on a release-prep branch (or are willing to create one). If you are on main, STOP and ask the operator to put you on a branch.
  2. Resolve the last release tag with git describe --tags --abbrev=0.
  3. Persist the goal to plan.md:
    • Range: <last-tag>..HEAD.
    • Acceptance: release PR is open, lint mirror green, no version bumped beyond what the cycle warrants.
Phase 1 -- enumerate merged PRs

Run scripts/list-changes-since-tag.sh (no arguments). It emits JSON on stdout: one object per merged PR with fields pr, title, labels, author, paths_summary, is_user_facing_guess.

The script's heuristic for is_user_facing_guess is intentionally conservative -- it flags as INTERNAL only when the diff is fully contained in .apm/, .github/instructions/, tests/, docs/, or matches chore(repo). Treat the field as a HINT, not a verdict; the LLM makes the final call per assets/entry-sanitizer.md.

DO NOT rely on training-recalled PR titles. Truth #5: pretraining is frozen. Every PR title in the changelog must come from the script's stdout.

Phase 2 -- pick the bump (B10 CHECKPOINT 1)

Load assets/semver-rubric.md. Walk every PR from Phase 1 against the rubric. The rubric outputs PATCH, MINOR, or ESCALATE-TO-MAJOR.

Show the operator:

  • The chosen bump and the next version number.
  • Per-PR rationale (which signal fired).
  • The "why patch/minor" one-liner that will go into the PR body.

If the rubric outputs ESCALATE-TO-MAJOR (>= 1.0.0), STOP and surface the escalation per assets/semver-rubric.md "Major bump" section. Do not bump to 1.0.0 without explicit operator confirmation.

Wait for the operator's confirm before continuing.

Phase 3 -- sanitize the changelog (B10 CHECKPOINT 2)

Load assets/entry-sanitizer.md. For each PR classified as user-facing in Phase 1:

  1. Choose its section: Added (new feature, new command, new spec), Changed (behavior change in existing surface), Fixed (bug fix), Deprecated, Removed, Security, Performance.
  2. Write ONE entry per PR. Two-sentence cap. "So what" framing. PR number in parentheses at the end. Preserve by @author for external contributors.
  3. Consolidate any pre-existing Unreleased entries that point at the same PR.
  4. Drop INTERNAL PRs entirely (the script flagged most of them; the rubric in entry-sanitizer.md confirms).
  5. Mark BREAKING entries with **BREAKING:** prefix.

Rewrite the CHANGELOG.md [Unreleased] block in place:

## [Unreleased]

## [X.Y.Z] - YYYY-MM-DD

### Added
...
### Changed
...
### Fixed
...

Keep an empty [Unreleased] placeholder above the new version heading. The date is today (read from the operator's environment, not recall).

Show the operator the unified diff against CHANGELOG.md. Wait for confirm before continuing.

Phase 4 -- bump version files

Run scripts/bump-version.sh <new-version>. The script edits pyproject.toml (the version = "..." line in [project]) and runs uv lock to refresh uv.lock. It prints a unified diff to stdout for human review.

If the script exits non-zero, surface the error and STOP -- do not continue with a partial bump.

Show full SKILL.md (481 more words)Show less
Phase 5 -- verify lint mirror (S4 gate; B10 CHECKPOINT 3 on fail)

Run scripts/verify-lint-mirror.sh. It mirrors the four CI lint steps from .apm/instructions/linting.instructions.md verbatim (ruff check, ruff format --check, pylint R0801, auth-signals).

If it passes (exit 0), proceed to Phase 6.

If it fails (exit 1), STOP. Surface the failures to the operator. Common cures:

  • ruff diagnostics -- run uv run --extra dev ruff check src/ tests/ --fix and uv run --extra dev ruff format src/ tests/.
  • pylint R0801 -- duplication landed via a recent main commit; merge main first, then re-run.
  • auth-signals -- consult scripts/lint-auth-signals.sh output.

Do NOT push or open the PR until lint is green. The PR description will claim CI is green; that claim must hold.

Phase 6 -- commit, push, open PR
  1. git add CHANGELOG.md pyproject.toml uv.lock.
  2. git commit -m "chore: release vX.Y.Z" -m "<short body>". The body mirrors prior release commits (#1410, #1454, #1526): one paragraph naming what was bumped and the lint-mirror confirmation, plus the "post-merge: tag vX.Y.Z" reminder. Include the standard Co-authored-by trailer.
  3. git push -u origin HEAD.
  4. Compose the PR body from assets/pr-body-template.md, substituting {version} (unprefixed, e.g. 0.16.1 -- used by CHANGELOG.md and pyproject.toml), {tag} (v-prefixed, e.g. v0.16.1 -- used by the post-merge git tag block, since the release workflow's stable-release regex requires the v prefix per .github/workflows/build-release.yml), {date}, {bump_rationale}, and (if BREAKING) {breaking_summary}.
  5. gh pr create --base main --head <branch> --title "chore: release vX.Y.Z" --body-file <tmpfile>.
  6. Echo the PR URL.
  7. Surface the post-merge step explicitly: "Post-merge: tag vX.Y.Z to trigger the release workflow." Do NOT tag.
Phase 7 -- update plan and exit

Mark each plan.md todo as done. The session ends here. Tagging is the operator's decision and lives outside this skill.

Anti-patterns this skill refuses

  • TAGGING. Tagging is a separate, human-gated step. If asked to tag inside this session, decline and remind the operator that the release workflow expects git tag vX.Y.Z && git push --tags after PR merge.
  • BUMP-TO-MAJOR-UNPROMPTED. 0.x -> 1.0.0 is a positioning decision. ESCALATE per assets/semver-rubric.md.
  • HAND-ROLLED PR TITLES. Every changelog entry must be backed by a PR title from scripts/list-changes-since-tag.sh stdout. No recall.
  • CHATTY GATE. Three operator checkpoints, no more (version pick, sanitized changelog, lint-fail recovery). Do not ask per-PR or per-section.
  • PARTIAL PUSH. If lint fails, do not push. The release PR asserts green CI; pushing red breaks the contract.
  • SKIPPED LINT. Do not skip Phase 5 even if the diff looks trivial. The lint mirror catches code-duplication drift on the merge commit, which is invisible to a local diff inspection.

Boundary

This skill does NOT:

  • Tag the release.
  • Run the test suite or build PyInstaller binaries.
  • Publish a GitHub Release body, blog post, or announcement.
  • Decide whether a release should happen -- the operator decided that by activating this skill.
  • Bump to >= 1.0.0 without explicit operator confirmation.
  • Review code quality or test coverage (use autopilot-pr-review-worker before activating this skill if a recent PR needs review).

© microsoft, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 7 other files (scripts, assets) in .apm/skills/cut-release of microsoft/apm.

  • SKILL.md
  • assets/entry-sanitizer.md
  • assets/pr-body-template.md
  • assets/semver-rubric.md
  • evals/evals.json
  • scripts/bump-version.sh
  • scripts/list-changes-since-tag.sh
  • scripts/verify-lint-mirror.sh

Open the folder on GitHubat commit 280b8a7

Compare with similar skills

Cut Release next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Cut Release compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Cut Release this skillmicrosoft/apm4k—~2.5kAutomated safety check: PassMIT
PR Pushicebear0828/codex-proxy1.8k—~2.2kAutomated safety check: NotesCustom licence
PR Pushicebear0828/codex-proxy1.8k—~2.3kAutomated safety check: NotesCustom licence
Releasexin2017338/lynx-proxy502—~1.1kAutomated safety check: PassMIT
Swig Conventionsswig/swig6.3k—~2.7kAutomated safety check: PassCustom licence
Releasehyhmrright/brooks-lint1.5k—~1.2kAutomated safety check: PassMIT

Similar skills

  • PR Push

    icebear0828/codex-proxy

    Package the current working changes into a standards-compliant codex-proxy pull request: branch hygiene, commit message linting, CHANGELOG prompt, conventional commit, push, and gh pr create against…

    1.8k GitHub stars~2.2k tokensUpdated yesterday
    DevelopmentAuto-check: notes
  • PR Push

    icebear0828/codex-proxy

    Package the current working changes into a standards-compliant codex-proxy pull request: branch hygiene, commit message linting, CHANGELOG prompt, conventional commit, push, and gh pr create against…

    1.8k GitHub stars~2.3k tokensUpdated yesterday
    DevelopmentAuto-check: notes
  • Release

    xin2017338/lynx-proxy

    Publish a new release version of Lynx Proxy. An agent skill from xin2017338/lynx-proxy.

    502 GitHub stars~1.1k tokensUpdated 22 days ago
    DevelopmentAuto-check passed
  • SWIG source and contribution conventions: clang-format / code formatting, C/C++ comment style (quotes, widths, function header blocks), parser.y new-code rules, alphabetical ordering of makefile…

    6.3k GitHub stars~2.7k tokensUpdated today
    DevelopmentAuto-check passed
  • Release

    hyhmrright/brooks-lint

    Cut a brooks-lint release: set the version in package.json, propagate it across all four plugin manifests and every version-bearing text file (README badges, docs site metadata), write the CHANGELOG…

    1.5k GitHub stars~1.2k tokensUpdated 2 days ago
    DevelopmentAuto-check passed
  • Bench Baton

    nooga/let-go

    Coordinate heavy local workloads across worktrees, processes, and subagents — benchmarks and timing-sensitive gates run exclusively on a quiesced machine, while builds, test suites, regeneration…

    568 GitHub stars~821 tokensUpdated today
    DevelopmentAuto-check passed

More from microsoft/apm

All 27 skills in this repo
  • Docs Corpus Audit

    microsoft/apm

    Official

    A skill your agent uses to run a holistic regrounding pass on the entire microsoft/apm documentation corpus against current source code, page-by-page, and emit surgical fixes for stale claims.

    4k GitHub stars~2.6k tokensUpdated yesterday
    Auto-check passed
  • Official

    A skill your agent uses to verify CLAIM-LEVEL grounding of a documentation page (or set of pages) against the source code.

    4k GitHub stars~1.9k tokensUpdated yesterday
    Auto-check passed
  • Official

    A skill your agent uses to write the PR description (PR body) for any pull request opened against microsoft/apm.

    4k GitHub stars~4.1k tokensUpdated yesterday
    Auto-check passed
  • Official

    A skill your agent uses to implement ONE microsoft/apm issue already selected by autopilot-issue-delivery-scheduler.

    4k GitHub stars~1.7k tokensUpdated yesterday
    Auto-check passed
  • Official

    Drive ONE already selected open pull request in microsoft/apm to mergeable.

    4k GitHub stars~3.4k tokensUpdated yesterday
    Auto-check passed
  • Apm Spec Guardian

    microsoft/apm

    Official

    A skill your agent uses to run a four-panel adversarial advisory review on any pull request that touches the OpenAPM specification artifact (docs/src/content/docs/specs/openapm-.md), its inline /…

    4k GitHub stars~4.9k tokensUpdated yesterday
    Auto-check passed

Categories

Questions about Cut Release

What does Cut Release do?

A skill your agent uses to cut an APM release from the current worktree: assess whether the cycle since the last tag warrants a patch or minor bump (semver discipline against the…. Cut Release is an agent skill from microsoft/apm, published by the product's own GitHub organization.lock, run the CI-mirror lint chain, and open the release PR.

When should I use Cut Release?

Cut Release fits situations like: cut an APM release from the current worktree: assess whether the cycle since the last tag warrants a patch; minor bump (semver discipline against the merged-since-last-tag diff); sanitize the [Unreleased] CHANGELOG block into a dated version block with one concise so what entry per merged PR (drop internal-only churn; consolidate duplicates).

How do I install Cut Release in Claude Code?

Run `npx skills add microsoft/apm --skill cut-release -a claude-code`. Or copy the skill folder (.apm/skills/cut-release in microsoft/apm) into .claude/skills/cut-release in your project. Claude Code loads it when a task matches its description.

How do I install Cut Release in Codex?

Run `npx skills add microsoft/apm --skill cut-release -a codex`. Or copy the skill folder (.apm/skills/cut-release in microsoft/apm) into .agents/skills/cut-release in your project. Codex loads it when a task matches its description.

Can I use Cut Release in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add microsoft/apm --skill cut-release -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/cut-release, .gemini/skills/cut-release, .github/skills/cut-release and .opencode/skills/cut-release in your project.

What does Cut Release need to run?

Going by SKILL.md and its folder, Cut Release needs a shell for the scripts in its folder and the command-line tools its instructions call (git and uv). Our summary lists: A Bash shell.

Does Cut Release access the network?

SKILL.md contains no URLs. Its commands use git and uv, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Cut Release safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Cut Release use?

Cut Release is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Cut Release use?

About 2.5k tokens (SKILL.md is roughly 9.8k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Cut Release?

Skills that share tags, products or a category with Cut Release: PR Push (icebear0828/codex-proxy, 1.8k stars), PR Push (icebear0828/codex-proxy, 1.8k stars), Release (xin2017338/lynx-proxy, 502 stars) and Swig Conventions (swig/swig, 6.3k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Cut Release?

microsoft (a GitHub organization, an official publisher) maintains it in microsoft/apm, which has 3,968 GitHub stars. The repository holds 27 skills in this directory. The repository was last updated on October 6, 2026.

Source: microsoft/apm on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.