Agent skill

Sandbox XLSX

by nodetool-ai in nodetool-ai/nodetool

Read and write Excel workbooks in a Code node or CodeAct action, with exceljs running on the host

AGPL-3.0Auto-check passedDocuments & Office

Install Sandbox XLSX

skills CLI
$ npx skills add nodetool-ai/nodetool --skill sandbox-xlsx -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install nodetool-ai/nodetool sandbox-xlsx --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/nodetool-ai/nodetool.git skills-src && mkdir -p .claude/skills && cp -r skills-src/packages/sandbox-packs/sandbox-xlsx .claude/skills/sandbox-xlsx && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
sandbox-xlsx
GitHub stars
560
Token cost
~681 tokens
SKILL.md length
274 words
Files
2
Skills in repo
127
Repo updated
First seen
Licence
AGPL-3.0

At a glance

Read and write Excel workbooks in a Code node or CodeAct action, with exceljs running on the host

  • Tasks that involve Excel spreadsheets
  • SKILL.md covers parse — workbook bytes to…, write — records to workbook… and Gotchas
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Sandbox XLSX is an agent skill from nodetool-ai/nodetool. Read and write Excel workbooks in a Code node or CodeAct action, with exceljs running on the host

Its SKILL.md is about 680 tokens, which your agent loads only when the skill is triggered. The skill folder holds 1 other file (for example `package.json`).

It sits in Documents & Office, covering Excel spreadsheets. It works with Microsoft Excel. The repository describes itself as: Agent-first Creative Workspace. The licence is AGPL-3.0.

When your agent uses it

  • Tasks that involve Excel spreadsheets

Example prompts

  • “/sandbox-xlsx”

What it can do on your machine

Read from SKILL.md and the folder at commit 339f069. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md (its code samples are javascript).

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Sandbox XLSX loads about 681 tokens when it runs. Until then it costs about 28 tokens; SKILL.md has 274 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~28
When it runs · the whole SKILL.md, loaded when a task matches
~681

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from nodetool-ai/nodetool at commit 339f069, republished under its AGPL-3.0 licence (© nodetool-ai). 274 words, ~681 tokens.

Download SKILL.mdSave it as .claude/skills/sandbox-xlsx/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.
name
sandbox-xlsx
description
Read and write Excel workbooks in a Code node or CodeAct action, with exceljs running on the host

Excel workbooks in the sandbox

Specifier: @nodetool-ai/sandbox-xlsx. Import it at the top of the body.

exceljs is built on Node streams and ships its own zip layer; it will never be a guest module. This pack is a host module: the import resolves to a generated facade over NodeTool's own implementation.

parse — workbook bytes to records

js
import { parse } from "@nodetool-ai/sandbox-xlsx";

const bytes = await workspace.readBytes("report.xlsx");
const sheets = await parse(bytes);            // { "Sheet1": [...], "Costs": [...] }
const rows = await parse(bytes, { sheet: "Costs" });   // one sheet's rows
return { sheetNames: Object.keys(sheets), rows };

Options: sheet (name — returns that sheet's rows directly) and header (default true; false gives raw cell arrays). Formula cells yield their computed result, dates come back as ISO strings, and rich text is flattened.

Get the bytes from workspace.readBytes, or from a fetched body with await response.bytes().

write — records to workbook bytes

js
import { write } from "@nodetool-ai/sandbox-xlsx";

const bytes = await write({ Costs: inputs.rows, Notes: [{ note: "draft" }] });
await workspace.writeBytes("report.xlsx", bytes);

{sheetName: rows} is the short form. The long form is an array, one entry per sheet, which is where per-sheet options live:

js
const bytes = await write([
  {
    name: "Costs",
    rows: inputs.rows,
    columns: ["item", "usd"],                 // pin the column order
    styles: [
      { range: "A1:B1", bold: true, background: "FFE9A8" },
      { range: "B2:B999", numberFormat: "$#,##0.00" }
    ]
  }
]);

Rows are records by default, and the header is the union of their keys in first-seen order unless columns pins it. header: false takes arrays of cells instead and writes no header row. Column widths are fitted to the content; pass { autoFitColumns: false } to leave them alone. A style's range is A1 or A1:C20, and it takes bold, italic, size, color, background (hex, with or without #) and numberFormat.

Gotchas

  • Both exports are async.
  • 10 MB per workbook read. Larger input is refused by name.
  • A missing sheet name throws, and the error lists the sheets that exist.
  • write caps a workbook at 64 sheets and 250 000 cells.
  • Values that are not a number, string, boolean or date are stored as JSON text. A cell cannot hold bytes.
  • Nothing is saved for you. write returns bytes; workspace.writeBytes (or sandboxToAsset) is what puts them somewhere.

© nodetool-ai, AGPL-3.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 1 other file in packages/sandbox-packs/sandbox-xlsx of nodetool-ai/nodetool.

  • SKILL.md
  • package.json

Open the folder on GitHubat commit 339f069

Compare with similar skills

Sandbox XLSX next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Sandbox XLSX compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Sandbox XLSX this skillnodetool-ai/nodetool560—~681Automated safety check: PassAGPL-3.0
MarkitdownImCa0/just-laws78114 repos~3.2kAutomated safety check: NotesMIT
Data Table Managern8n-io/n8n207k—~2.3kAutomated safety check: PassCustom licence
Docx4jplutext/docx4j2.4k—~2.5kAutomated safety check: PassNone
Instrument Data To Allotropeaws-samples/amazon-bedrock-agents-healthcare-lifesciences2742 repos~2.7kAutomated safety check: PassApache-2.0
Cyber Pptcrazyykhllc-bit/CyberPPT1.8k—~10kAutomated safety check: PassMIT

Similar skills

  • Markitdown

    ImCa0/just-laws

    Convert files and office documents to Markdown. An agent skill from ImCa0/just-laws.

    781 GitHub starsUsed in 14 repos~3.2k tokens
    Documents & OfficeAuto-check: notes
  • Official

    Load before calling data-tables or parse-file. An agent skill from n8n-io/n8n.

    207k GitHub stars~2.3k tokensUpdated today
    Documents & OfficeAuto-check passed
  • Docx4j

    plutext/docx4j

    A skill your agent uses when writing Java code that creates, reads or edits Word (.docx), PowerPoint (.pptx) or Excel (.xlsx) files with docx4j — including generating documents, editing existing…

    2.4k GitHub stars~2.5k tokensUpdated today
    Documents & OfficeAuto-check passed
  • Instrument Data To Allotrope

    aws-samples/amazon-bedrock-agents-healthcare-lifesciences

    Official

    Convert laboratory instrument output files (PDF, CSV, Excel, TXT) to Allotrope Simple Model (ASM) JSON format or flattened 2D CSV.

    274 GitHub starsUsed in 2 repos~2.7k tokens
    Documents & OfficeAuto-check passed
  • Cyber Ppt

    crazyykhllc-bit/CyberPPT

    当用户需要把 DOCX、PDF、TXT、XLSX、研究报告、业务材料或原始数据转成高密度、可编辑、咨询风格 PPTX 时使用;也适用于需要 SCR 论证、视觉风格探索、详细图表和渲染质检的 PPT。

    1.8k GitHub stars~10k tokensUpdated 2 mo ago
    Documents & OfficeAuto-check passed
  • PDF

    zai-org/ZCode

    Professional PDF toolkit covering four production workflows: reports, creative visuals, academic LaTeX, and existing PDF processing.

    7.7k GitHub stars~18k tokensUpdated yesterday
    Documents & OfficeAuto-check: notes

More from nodetool-ai/nodetool

All 127 skills in this repo
  • Beat Sync Editing

    nodetool-ai/nodetool

    Cut a NodeTool timeline to music and shape its pacing — detect the beat grid, place cuts on phrases, pick a cut type, build speed ramps with time remap, and give the piece an arc.

    560 GitHub stars~2.6k tokensUpdated today
    Auto-check passed
  • Caption Titles

    nodetool-ai/nodetool

    Add and animate a consistent text layer on an existing NodeTool timeline.

    560 GitHub stars~1.9k tokensUpdated today
    Auto-check passed
  • Color Motion

    nodetool-ai/nodetool

    Choose and animate colour on a NodeTool timeline, including shape and text gradients, colour grades, 3D LUTs, and dither.

    560 GitHub stars~2.3k tokensUpdated today
    Auto-check passed
  • Commercial Beat Sheet

    nodetool-ai/nodetool

    Write a shootable, precisely timed commercial beat sheet and store it as a NodeTool storyboard, with a consistent entity roster behind every shot.

    560 GitHub stars~4.6k tokensUpdated today
    Auto-check passed
  • Elevenlabs Audio Prompting

    nodetool-ai/nodetool

    Direct ElevenLabs speech, dialogue, sound effects and music — the bracketed audio tags v3 acts on and why the voice decides whether a tag lands, stability as the delivery dial, punctuation instead…

    560 GitHub stars~1.9k tokensUpdated today
    Auto-check passed
  • Frame Composition

    nodetool-ai/nodetool

    Stage the frame on a NodeTool timeline — grids, focal placement, safe areas per aspect ratio, depth layers and parallax, camera moves, and where elements enter and leave.

    560 GitHub stars~3.5k tokensUpdated today
    Auto-check passed

Works with

Questions about Sandbox XLSX

What does Sandbox XLSX do?

Read and write Excel workbooks in a Code node or CodeAct action, with exceljs running on the host. Sandbox XLSX is an agent skill from nodetool-ai/nodetool.

When should I use Sandbox XLSX?

Sandbox XLSX fits situations like: tasks that involve Excel spreadsheets.

How do I install Sandbox XLSX in Claude Code?

Run `npx skills add nodetool-ai/nodetool --skill sandbox-xlsx -a claude-code`. Or copy the skill folder (packages/sandbox-packs/sandbox-xlsx in nodetool-ai/nodetool) into .claude/skills/sandbox-xlsx in your project. Claude Code loads it when a task matches its description.

How do I install Sandbox XLSX in Codex?

Run `npx skills add nodetool-ai/nodetool --skill sandbox-xlsx -a codex`. Or copy the skill folder (packages/sandbox-packs/sandbox-xlsx in nodetool-ai/nodetool) into .agents/skills/sandbox-xlsx in your project. Codex loads it when a task matches its description.

Can I use Sandbox XLSX in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add nodetool-ai/nodetool --skill sandbox-xlsx -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/sandbox-xlsx, .gemini/skills/sandbox-xlsx, .github/skills/sandbox-xlsx and .opencode/skills/sandbox-xlsx in your project.

What does Sandbox XLSX need to run?

SKILL.md names no scripts, command-line tools or credentials: Sandbox XLSX is instructions for the agent only.

Does Sandbox XLSX access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Sandbox XLSX safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Sandbox XLSX use?

Sandbox XLSX is published under the AGPL-3.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Sandbox XLSX use?

About 681 tokens (SKILL.md is roughly 2.7k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Sandbox XLSX?

Skills that share tags, products or a category with Sandbox XLSX: Markitdown (ImCa0/just-laws, 781 stars), Data Table Manager (n8n-io/n8n, 207k stars), Docx4j (plutext/docx4j, 2.4k stars) and Instrument Data To Allotrope (aws-samples/amazon-bedrock-agents-healthcare-lifesciences, 274 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Sandbox XLSX?

nodetool-ai (a GitHub organization) maintains it in nodetool-ai/nodetool, which has 560 GitHub stars. The repository holds 127 skills in this directory. The repository was last updated on October 10, 2026.

Source: nodetool-ai/nodetool on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.