Open Source Maintainer
numman-ali/n-skills
End-to-end GitHub repository maintenance for open-source projects.
Rules for working behind Iron Proxy: connect external accounts without handling raw tokens, treat blocked requests as policy outcomes, and never claim a connection before it works.
$ npx skills add nanocoai/nanoclaw --skill iron-proxy-gateway -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install nanocoai/nanoclaw iron-proxy-gateway --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/nanocoai/nanoclaw.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway .claude/skills/iron-proxy-gateway && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "iron-proxy-gateway" agent skill from https://github.com/nanocoai/nanoclaw/tree/main/.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway into .claude/skills/iron-proxy-gateway/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "iron-proxy-gateway", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/nanocoai/nanoclaw/tree/main/.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gatewayType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add nanocoai/nanoclaw --skill iron-proxy-gateway -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install nanocoai/nanoclaw iron-proxy-gateway --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/nanocoai/nanoclaw.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway .agents/skills/iron-proxy-gateway && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "iron-proxy-gateway" agent skill from https://github.com/nanocoai/nanoclaw/tree/main/.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway into .agents/skills/iron-proxy-gateway/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "iron-proxy-gateway", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add nanocoai/nanoclaw --skill iron-proxy-gateway -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install nanocoai/nanoclaw iron-proxy-gateway --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/nanocoai/nanoclaw.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway .cursor/skills/iron-proxy-gateway && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "iron-proxy-gateway" agent skill from https://github.com/nanocoai/nanoclaw/tree/main/.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway into .cursor/skills/iron-proxy-gateway/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "iron-proxy-gateway", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/nanocoai/nanoclaw.git --path .claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add nanocoai/nanoclaw --skill iron-proxy-gateway -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install nanocoai/nanoclaw iron-proxy-gateway --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/nanocoai/nanoclaw.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway .gemini/skills/iron-proxy-gateway && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "iron-proxy-gateway" agent skill from https://github.com/nanocoai/nanoclaw/tree/main/.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway into .gemini/skills/iron-proxy-gateway/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "iron-proxy-gateway", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install nanocoai/nanoclaw iron-proxy-gatewayInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add nanocoai/nanoclaw --skill iron-proxy-gateway -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/nanocoai/nanoclaw.git skills-src && mkdir -p .github/skills && cp -r skills-src/.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway .github/skills/iron-proxy-gateway && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "iron-proxy-gateway" agent skill from https://github.com/nanocoai/nanoclaw/tree/main/.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway into .github/skills/iron-proxy-gateway/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "iron-proxy-gateway", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add nanocoai/nanoclaw --skill iron-proxy-gateway -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install nanocoai/nanoclaw iron-proxy-gateway --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/nanocoai/nanoclaw.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway .opencode/skills/iron-proxy-gateway && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "iron-proxy-gateway" agent skill from https://github.com/nanocoai/nanoclaw/tree/main/.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway into .opencode/skills/iron-proxy-gateway/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "iron-proxy-gateway", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
iron-proxy-gatewayRules for working behind Iron Proxy: connect external accounts without handling raw tokens, treat blocked requests as policy outcomes, and never claim a connection before it works.
In a session that uses Iron Proxy, all outbound HTTP and HTTPS traffic passes through the proxy. A request that needs a credential waits for human approval before the proxy inserts the real secret, and the agent only ever sees a placeholder. To connect an account, the agent runs the shared `ncl groups connect` command for the API hostname you named, returns the exact `connect_url` and describes its action.
An `operator_console` result means the operator must set up the credential, grant and destination in the gateway, and it is not an OAuth link; an `unsupported` result means no flow should be invented. A bare 403 does not show which layer refused, so the agent reports the hostname and error and asks for a host-side check, and a 401 may simply mean the stored token is invalid. Clients such as `gh` may use the non-secret `gateway-managed` placeholder, real tokens are never typed, and no MCP server is added just to connect an account.
Read from SKILL.md and the folder at commit 66f0823. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
No scripts in the folder and no shell commands in SKILL.md (its code samples are bash).
From the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names these keys or tokens, usually read from environment variables:
GH_TOKENFrom names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Requires HTTP_PROXY, HTTPS_PROXY, and the Iron Proxy CA injected by NanoClaw.
From compatibility in the SKILL.md frontmatter.
Iron Proxy Gateway Rules loads about 598 tokens when it runs. Until then it costs about 58 tokens; SKILL.md has 300 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from nanocoai/nanoclaw at commit 66f0823, republished under its MIT licence (© nanocoai). 300 words, ~598 tokens.
.claude/skills/iron-proxy-gateway/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.Your outbound HTTP and HTTPS requests pass through your session's Iron Proxy. A policy-selected credential request waits for human approval before the proxy inserts a credential. You receive only a useless placeholder.
A bare 403 does not prove which layer rejected the request. It may be the destination rule, credential grant, human approval, or upstream API. Respect the block, report the hostname and observed error, and request a host-side check instead of guessing that credentials were never injected.
Run the shared command for the API hostname requested by the user:
ncl groups connect --host <API hostname>Return the exact connect_url and describe its action. An operator_console
handoff requires the operator to configure the credential, grant, and destination
in the gateway; it is not an OAuth link. Do not invent a connection flow when the
result is unsupported. The command does not grant access or change policy.
Use the user's requested CLI or a direct HTTP client. Do not add an MCP server
merely to connect an account. Clients requiring local authentication may use
gateway-managed as a non-secret placeholder (for example GH_TOKEN for gh).
Never use a real token in the client. Never run a local login to store credentials.
Request approval and account connection are separate. A 401 is not proof that injection did not happen: the stored token may itself be invalid. Report the observed result, follow the shared handoff, and verify with a credentialed request after the operator completes configuration. Never claim connected before success.
© nanocoai, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 1 other file in .claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway of nanocoai/nanoclaw.
Open the folder on GitHubat commit 66f0823
Iron Proxy Gateway Rules next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Iron Proxy Gateway Rules this skillnanocoai/nanoclaw | 31k | — | ~598 | Automated safety check: Pass | MIT | |
| Open Source Maintainernumman-ali/n-skills | 1.1k | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | |
| Highlight Imagesrweekly/rweekly.org | 826 | — | ~1.9k | Automated safety check: Notes | None | |
| GitHub Copilot CLI DelegationCherryHQ/cherry-studio | 52k | — | ~365 | Automated safety check: Pass | AGPL-3.0 | |
| Do Issueathola/claude-night-market | 341 | — | ~1.5k | Automated safety check: Pass | MIT | |
| Secure GitHub Actionsvechain/x-app-template | 450 | — | ~1.2k | Automated safety check: Pass | MIT |
numman-ali/n-skills
End-to-end GitHub repository maintenance for open-source projects.
rweekly/rweekly.org
Find, download, resize, and embed images for the three Highlight links in draft.md.
CherryHQ/cherry-studio
Runs GitHub Copilot CLI non-interactively on a repository task and reads its JSONL output, denying tools by default so nothing changes unless you ask.
athola/claude-night-market
Implements GitHub or GitLab issues via parallel subagents with review gates between task batches.
vechain/x-app-template
Secure GitHub Actions workflows against supply-chain, privilege, and shell-injection risks.
no-human-ai/no_human
Run the nohuman review gate (fresh-session adversarial reviewer + tamper guard) over the current branch or a GitHub pull request, with no server, no database, and no onboarding, and relay the…
nanocoai/nanoclaw
Installs or refreshes Iron Proxy and its Iron Control web console for NanoClaw, with a local Docker setup, database, credentials and a human approval bridge.
nanocoai/nanoclaw
Installs or refreshes OneCLI as the gateway provider for NanoClaw, copying the adapter files, registering the provider and running the setup script.
nanocoai/nanoclaw
Drives a web browser from the shell with the agent-browser CLI: open pages, read an element snapshot, click and fill by reference, grab text and screenshots.
nanocoai/nanoclaw
Guides a conversational migration from an OpenClaw install to NanoClaw v2, carrying over identity, channel credentials, scheduled tasks and workspace files.
nanocoai/nanoclaw
Wires up an additional phone number onto an already-installed Dial channel, so one NanoClaw install answers SMS and AI voice calls on more than one line.
nanocoai/nanoclaw
Installs the `dial` CLI and a credential in NanoClaw agent containers so chosen agents can send SMS, place AI voice calls and receive verification codes.
Works with
Categories
Rules for working behind Iron Proxy: connect external accounts without handling raw tokens, treat blocked requests as policy outcomes, and never claim a connection before it works. In a session that uses Iron Proxy, all outbound HTTP and HTTPS traffic passes through the proxy. A request that needs a credential waits for human approval before the proxy inserts the real secret, and the agent only ever sees a placeholder.
Iron Proxy Gateway Rules fits situations like: connecting GitHub through gh in a NanoClaw agent session; diagnosing a 403 or 401 on an external API call behind the proxy; requesting access to a new external API without exposing a token.
Run `npx skills add nanocoai/nanoclaw --skill iron-proxy-gateway -a claude-code`. Or copy the skill folder (.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway in nanocoai/nanoclaw) into .claude/skills/iron-proxy-gateway in your project. Claude Code loads it when a task matches its description.
Run `npx skills add nanocoai/nanoclaw --skill iron-proxy-gateway -a codex`. Or copy the skill folder (.claude/skills/add-iron-proxy/payload/container/skills/iron-proxy-gateway in nanocoai/nanoclaw) into .agents/skills/iron-proxy-gateway in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add nanocoai/nanoclaw --skill iron-proxy-gateway -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/iron-proxy-gateway, .gemini/skills/iron-proxy-gateway, .github/skills/iron-proxy-gateway and .opencode/skills/iron-proxy-gateway in your project.
Going by SKILL.md and its folder, Iron Proxy Gateway Rules needs credentials named GH_TOKEN. Our summary lists: HTTP_PROXY, HTTPS_PROXY and the Iron Proxy CA injected by NanoClaw. Compatibility (from SKILL.md): Requires HTTP_PROXY, HTTPS_PROXY, and the Iron Proxy CA injected by NanoClaw..
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Iron Proxy Gateway Rules is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 598 tokens (SKILL.md is roughly 2.4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Iron Proxy Gateway Rules: Open Source Maintainer (numman-ali/n-skills, 1.1k stars), Highlight Images (rweekly/rweekly.org, 826 stars), GitHub Copilot CLI Delegation (CherryHQ/cherry-studio, 52k stars) and Do Issue (athola/claude-night-market, 341 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
nanocoai (a GitHub organization) maintains it in nanocoai/nanoclaw, which has 30,902 GitHub stars. The repository holds 59 skills in this directory. The repository was last updated on October 6, 2026.
Source: nanocoai/nanoclaw on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.