Agent skill

Domain

by notque in notque/vexjoy-agent

Domain-specific: SAP Commerce, OpenSearch detection, WordPress validation, enterprise search.

MITAuto-check: notesSecurity

Install Domain

skills CLI
$ npx skills add notque/vexjoy-agent --skill domain -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install notque/vexjoy-agent domain --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/notque/vexjoy-agent.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/domain/domain .claude/skills/domain && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
domain
GitHub stars
435
Token cost
~3.7k tokens
SKILL.md length
1,384 words
Files
15 (incl. references)
Skills in repo
61
Repo updated
First seen
Licence
MIT

At a glance

Domain-specific: SAP Commerce, OpenSearch detection, WordPress validation, enterprise search.

  • Works in 11 steps: DISCOVER → DISPATCH → AGGREGATE → …
  • Tasks that involve Security operations
  • SKILL.md covers Mode Detection, SAPCC Review, SAPCC Audit and OpenSearch Detection Engineering, plus 3 more sections
  • Calls go, git and make

What it does

Domain is an agent skill from notque/vexjoy-agent. Domain-specific: SAP Commerce, OpenSearch detection, WordPress validation, enterprise search.

Its SKILL.md is about 3.7k tokens, which your agent loads only when the skill is triggered. The skill folder holds 15 other files, including reference files (for example `references/opensearch-detection-engineering.md`, `references/opensearch-detection-safety-patterns.md` and `references/opensearch-incident-escalation.md`).

It sits in Security, covering Security operations. It works with OpenSearch and WordPress. The repository describes itself as: VexJoy AI Agent with Jev Intelligent Routing - /do routes plain-English requests to the right specialist agent and gates the work with reviews, tests, and a learning loop. The licence is MIT.

When your agent uses it

  • Tasks that involve Security operations

Example prompts

  • “/domain”

Requirements

  • Pre-approved tools (allowed-tools): Agent, Read, Write, Bash, Grep, Glob, Edit, Task, Skill, mcp__plugin_playwright_playwright__browser_navigate, mcp__plugin_playwright_playwright__browser_wait_for, mcp__plugin_playwright_playwright__browser_snapshot, mcp__plugin_playwright_playwright__browser_evaluate, mcp__plugin_playwright_playwright__browser_network_requests, mcp__plugin_playwright_playwright__browser_console_messages, mcp__plugin_playwright_playwright__browser_resize, mcp__plugin_playwright_playwright__browser_take_screenshot, mcp__chrome-devtools__navigate_page, mcp__chrome-devtools__take_screenshot, mcp__chrome-devtools__take_snapshot, mcp__chrome-devtools__list_console_messages, mcp__chrome-devtools__list_network_requests, mcp__chrome-devtools__lighthouse_audit, mcp__chrome-devtools__resize_page

Workflow steps

11 steps, taken from the step headings in SKILL.md.

  1. DISCOVER
  2. DISPATCH
  3. AGGREGATE
  4. FIX (only with --fix)
  5. DISCOVER
  6. DISPATCH
  7. COMPILE REPORT
  8. NAVIGATE
  9. VALIDATE
  10. RESPONSIVE CHECK
  11. REPORT

What it can do on your machine

Read from SKILL.md and the folder at commit 5218674. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Agent
    • Read
    • Write
    • Bash
    • Grep
    • Glob
    • Edit
    • Task
    • Skill
    • mcp__plugin_playwright_playwright__browser_navigate

    …and 14 more on the same allowed-tools line.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • go
    • git
    • make

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use git, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Domain loads about 3.7k tokens when it runs, and up to ~44k if it reads all its reference files. Until then it costs about 25 tokens; SKILL.md has 1,384 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~25
When it runs · the whole SKILL.md, loaded when a task matches
~3.7k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~44k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NotePre-approves every shell command (allowed-tools: Bash)SKILL.md
    allowed-tools: Agent, Read, Write, Bash, Grep, Glob, Edit, Task, Skill, mcp__plugin_playwright_playwright__browser_

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from notque/vexjoy-agent at commit 5218674, republished under its MIT licence (© notque). 1,384 words, ~3,665 tokens.

Download SKILL.mdSave it as .claude/skills/domain/SKILL.md (or your agent's skills folder). This skill also uses 14 other files; get the full folder from GitHub.
name
domain
description
Domain-specific: SAP Commerce, OpenSearch detection, WordPress validation, enterprise search.
allowed-tools
Agent, Read, Write, Bash, Grep, Glob, Edit, Task, Skill, mcp__plugin_playwright_playwright__browser_navigate, mcp__plugin_playwright_playwright__browser_wait_for, mcp__plugin_playwright_playwright__browser_snapshot, mcp__plugin_playwright_playwright__browser_evaluate, mcp__plugin_playwright_playwright__browser_network_requests, mcp__plugin_playwright_playwright__browser_console_messages, mcp__plugin_playwright_playwright__browser_resize, mcp__plugin_playwright_playwright__browser_take_screenshot, mcp__chrome-devtools__navigate_page, mcp__chrome-devtools__take_screenshot, mcp__chrome-devtools__take_snapshot, mcp__chrome-devtools__list_console_messages, mcp__chrome-devtools__list_network_requests, mcp__chrome-devtools__lighthouse_audit, mcp__chrome-devtools__resize_page
user-invocable
true
routing.not_for
general code review (use review), general security (use security)
routing.triggers
sapcc review, sapcc audit, sapcc compliance, sapcc standards, siem detection, sigma rule, mitre att&ck mapping, detection engineering, opensearch detection…
routing.force_route
false
routing.pairs_with
golang-general-engineer, opensearch-elasticsearch-engineer, programming
routing.category
domain

Domain-Specific Skills

Five domains: SAP Commerce Go review, SAP Commerce compliance audit, OpenSearch SIEM detection engineering, WordPress live validation, and enterprise search. Classify the request into one domain, then follow its section.

Mode Detection

DomainSignalAgent
SAPCC Reviewsapcc review, 10-specialist review, lead reviewgolang-general-engineer
SAPCC Auditsapcc audit, sapcc compliance, full repo auditgolang-general-engineer
OpenSearch DetectionSIEM, SIGMA, MITRE, detection engineering, SOC(this session)
WordPress Validationvalidate wordpress post, check live post, post rendering(this session)
Enterprise Searchsearch relevance, ranking, BM25, query understandingopensearch-elasticsearch-engineer

SAPCC Review

10-agent domain-specialist review. Each agent masters one rule domain and scans every package. Differs from SAPCC Audit: audit segments by package (generalist), review segments by rule domain (specialist, cross-package).

Phase 1: DISCOVER

Verify sapcc project and map the repo.

bash
head -5 go.mod && grep -c "sapcc" go.mod
find . -name "*.go" -not -path "*/vendor/*" | wc -l
find . -name "*.go" -not -path "*/vendor/*" | sed 's|/[^/]*$||' | sort | uniq -c | sort -rn

Check key imports: go-bits, go-api-declarations, gophercloud, gorilla/mux, database/sql.

Gate: Repo mapped. If no sapcc imports, warn but continue.

Phase 2: DISPATCH

Load references/sapcc-review-agent-dispatch-prompts.md for the 10 agent specs.

Dispatch all 10 in ONE message via Agent tool. Each agent gets: path to sapcc-code-patterns.md, assigned sections, domain-specific reference, all .go files to scan, finding output format.

Gate: All 10 dispatched in single message.

Phase 3: AGGREGATE

Run git status --short to capture modified and untracked files. Collect all findings. Deduplicate by file:line (keep higher severity). Apply severity boosts:

Pattern StrengthBoost
NON-NEGOTIABLE (4+ repos)+1 level
Strong Signal (2-3 repos)No change
Context-Specific (1 repo)-1 level

Mark quick wins (single-line, no behavioral change, low test risk). Write sapcc-review-report.md with: verdict, scorecard (10 domains x severity), quick wins, findings by severity, positives, systemic recommendations.

Phase 4: FIX (only with --fix)

Create worktree sapcc-review-fixes. Apply quick wins first. After each group: go build ./... && go vet ./... && make check 2>/dev/null || go test ./.... If fix breaks tests, revert and note. Commit as fix: apply sapcc-review findings (N fixes across M files).


SAPCC Audit

Full-repo compliance scan. Segments by package (generalist per package).

Phase 1: DISCOVER

Verify sapcc project (grep "sapcc" go.mod). Map packages: find . -name "*.go" -not -path "./vendor/*" | sed 's|/[^/]*$||' | sort -u. Count files per package. Plan 5-8 agents, 5-15 files each.

Gate: Packages mapped, agents planned.

Phase 2: DISPATCH

Load references/sapcc-audit-phase-2-dispatch-agents.md for the dispatch prompt (11 review areas: over-engineering, dead code, error messages, constructors, interface contracts, copy-paste, HTTP handlers, database patterns, type patterns, logging, mixed approaches). Dispatch all in one message via Task tool with subagent_type=golang-general-engineer.

Phase 3: COMPILE REPORT

Deduplicate by file:line. Write sapcc-audit-report.md with: verdict, must-fix/should-fix/nit counts, per-package summary table. Display verdict, must-fix count, and top 5 findings inline.

Finding format: [MUST-FIX/SHOULD-FIX/NIT]: summary with file:line, current code, correct code, and rationale.

Audit only: reads and reports. Does not modify code unless --fix.


OpenSearch Detection Engineering

SIEM detection authoring and validation on OpenSearch Security Analytics: SIGMA rules, query DSL translation, MITRE ATT&CK mapping, anomaly detection, correlation, and SOC incident escalation.

Hardcoded Behaviors
  • MITRE ATT&CK on every detection. Include technique ID (e.g., T1110.003)
    • tactic name + kill chain phase. Tactic alone is insufficient.
  • Field-existence check before rule creation. Run GET {index}/_mapping; confirm every rule field exists. Absent fields cause silent failure.
  • Concrete API commands. Provide PUT _mapping, POST _aliases, not abstract advice.
  • Escalation validation. Verify all 9 fields before escalation: ticket ID, alert link, MITRE mapping, timeline, investigation actions, impact analysis, evidence artifacts, containment recommendation, 5 Ws.
  • Severity tier = binding SLA. Not advisory targets.
  • Detection-owned index. When bootstrapping field aliases, recommend a dedicated index separate from the ingestion datastream.
Hard Gates
PatternFix
Rule field absent from index mappingGET {index}/_mapping; confirm or add field
MITRE mapping missing technique ID or tacticSpecify both T####.### and tactic
Escalation missing any of 9 fieldsComplete all fields per checklist
Chained findings monitor on high-frequency scheduleUse static query indices
Field alias bootstrap on shared datastreamCreate detection-owned index
Workflow
  1. Scope: Identify attack scenario, data source, severity tier. Map to MITRE ATT&CK. Confirm log source is ingested.
  2. Validate fields: GET {index}/_mapping for each rule field. Check cardinality for terms aggregations.
  3. Author: Write SIGMA rule (vendor-neutral), translate to OpenSearch DSL. Load references/opensearch-detection-engineering.md for translation patterns. Apply FP suppression (CIDR, service-account prefixes, time windows).
  4. Safety check: Check for index flood, alias bootstrap risk. Load references/opensearch-detection-safety-patterns.md for the full checklist.
  5. Document: 6-section use case (General Info, Context, Outcomes, Detection Logic, Continuous Improvement, Analyst Support). Load references/opensearch-incident-escalation.md for template and KPIs.
  6. Calibrate: Dry-run 5 business days, label TPs/FPs, adjust until FP rate <= 10%.
  7. Escalation (when alert fires): Build 9-field package, apply SLA, hand off per RACI.
Verification STOP Blocks

After authoring: "Have I verified every field via GET {index}/_mapping?" After escalation: "Does the package include all 9 fields?" After chained monitor: "Does this create a new query index per run?" After MITRE mapping: "Did I include both technique ID and tactic?"


WordPress Live Validation

Loads a published WordPress post in a headless browser and verifies rendering matches what was uploaded. The browser is the source of truth.

Browser backend: Playwright MCP (default). Chrome DevTools MCP when the user says "check in my browser" or wants Lighthouse/performance profiling.

Show full SKILL.md (552 more words)Show less
Constraints
  • Read-only. Never click, type, or modify the WordPress site.
  • Evidence-based. Every result references a DOM value, network response, or screenshot. No "looks fine."
  • Non-blocking. Failed validation produces a report; does not revert uploads.
  • Severity: BLOCKER (broken content), WARNING (degraded but functional), INFO (informational).
  • Requires Playwright MCP or Chrome DevTools MCP. If neither available, skip.
Phase 1: NAVIGATE

Load references/wordpress-phase-checks.md for the 4-step procedure. Navigate to URL, wait for content area (try selectors: article -> .entry-content -> .post-content -> main), remove cookie banners.

Gate: HTTP 200, content selector found. If 4xx/5xx or no selector: screenshot, FAIL, STOP.

Phase 2: VALIDATE

Load references/wordpress-validation-checks.md for severity rationale and edge cases. Load references/wordpress-playwright-tools.md for tool signatures.

Run all 7 checks:

CheckSeverity
Title matchBLOCKER
H2 structureWARNING
Image loadingBLOCKER
JS console errorsWARNING
OG tagsWARNING
Meta descriptionWARNING
Placeholder/draft textBLOCKER

Execute each check via browser tools. Do not reason about outcomes -- run the command and report observed results.

Gate: All 7 checks executed with severity and evidence.

Phase 3: RESPONSIVE CHECK

Test three viewports: mobile (375x812), tablet (768x1024), desktop (1440x900). Per viewport: resize, screenshot, check overflow, check container visibility. See references/wordpress-phase-checks.md for JS snippets.

Phase 4: REPORT

Output structured report:

LIVE VALIDATION: {url}
CONTENT INTEGRITY: [PASS/FAIL/WARN] per check with evidence
SEO / SOCIAL: OG tags, meta description with values
RESPONSIVE: per viewport with overflow status and screenshot path
RESULT: {PASS | FAIL - N blockers, M warnings}
Error Handling
ErrorResponse
Playwright MCP unavailableSkip report, do not retry
4xx/5xxScreenshot, report HTTP status, STOP at Phase 1
Content selector not foundScreenshot + DOM snapshot; attempt OG checks without selector
Image network timeoutReport; if all fail, note possible CDN issue
Cookie banner blocks contentPhase 1 attempts DOM removal; DOM checks still work

Search infrastructure: relevance tuning, query understanding, index management, quality measurement, performance optimization. Always specify target platform and version.

Sub-mode Detection
ModeSignalLoad
RELEVANCEBM25, boost, LTR, rankingreferences/search-relevance-tuning.md
QUERYintent, entity extraction, expansion, synonymsreferences/search-query-understanding.md
INDEXschema, mapping, analyzer, reindex, ILMreferences/search-index-management.md
QUALITYnDCG, MRR, judgments, A/B testreferences/search-search-quality.md
PERFORMANCEslow query, shard, cache, circuit breakerreferences/search-performance-optimization.md
ARCHITECTUREhybrid search, vector search, platform selectionLoad per sub-topic

Always load references/search-llm-search-failure-modes.md as a guardrail.

Shared Workflow Pattern
  1. Diagnose the problem class before acting.
  2. Baseline current metrics. No tuning without measurement.
  3. Change one variable at a time.
  4. Validate against baseline. Accept only statistically significant improvements.
Platform Conventions
PlatformQuery LanguageConfig
Elasticsearch 8.xQuery DSL (JSON)elasticsearch.yml
OpenSearch 2.xQuery DSL (JSON)opensearch.yml
Solr 9.xSolrQL / JSON Request APIsolrconfig.xml
VespaYQLservices.xml
TypesenseREST paramsCLI / JSON

Cross-platform traps: OpenSearch diverges from ES 7.10 on security/ML/alerting. ES _field_caps changed between 7.x and 8.x. Solr edismax != ES multi_match.

Output Rules
  • All query DSL in fenced blocks with platform + version annotation.
  • Every recommendation: what to change, why, expected effect, how to measure.
  • Configuration snippets must be copy-pasteable with comments.

Deep References

Load on demand when a phase needs detailed lookup data.

ContextReference
SAPCC Review Phase 2: 10 agent specsreferences/sapcc-review-agent-dispatch-prompts.md
SAPCC Audit Phase 2: dispatch promptreferences/sapcc-audit-phase-2-dispatch-agents.md
SIGMA authoring, DSL translation, MITRE catalogreferences/opensearch-detection-engineering.md
Detector failures, alias conflicts, index floodreferences/opensearch-detection-safety-patterns.md
Escalation checklist, severity SLAs, KPIsreferences/opensearch-incident-escalation.md
WordPress check specs, severities, edge casesreferences/wordpress-validation-checks.md
WordPress Playwright tool signaturesreferences/wordpress-playwright-tools.md
WordPress phase procedures with JS snippetsreferences/wordpress-phase-checks.md
Search relevance tuning, BM25, LTR, boostsreferences/search-relevance-tuning.md
Query understanding, intent, expansionreferences/search-query-understanding.md
Index management, schema, analyzers, ILMreferences/search-index-management.md
Search quality metrics, evaluation methodologyreferences/search-search-quality.md
Search performance, caching, shardingreferences/search-performance-optimization.md
LLM failure modes in search engineeringreferences/search-llm-search-failure-modes.md

© notque, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 14 other files (references) in skills/domain/domain of notque/vexjoy-agent.

  • SKILL.md
  • references/opensearch-detection-engineering.md
  • references/opensearch-detection-safety-patterns.md
  • references/opensearch-incident-escalation.md
  • references/sapcc-audit-phase-2-dispatch-agents.md
  • references/sapcc-review-agent-dispatch-prompts.md
  • references/search-index-management.md
  • references/search-llm-search-failure-modes.md
  • references/search-performance-optimization.md
  • references/search-query-understanding.md
  • references/search-relevance-tuning.md
  • references/search-search-quality.md
  • references/wordpress-phase-checks.md
  • references/wordpress-playwright-tools.md
  • references/wordpress-validation-checks.md

Open the folder on GitHubat commit 5218674

Compare with similar skills

Domain next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Domain compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Domain this skillnotque/vexjoy-agent435—~3.7kAutomated safety check: NotesMIT
Elasticsearch Auditaspectrr/deer405—~1.7kAutomated safety check: PassMIT
Dfirtransilienceai/communitytools559—~1.5kAutomated safety check: PassMIT
Keeljoseconti/declaracion-renta-espana190—~11kAutomated safety check: WarnGPL-3.0-or-later
Threat Database UpdateFlorianBruniaux/claude-code-ultimate-guide6.1k—~680Automated safety check: PassCC-BY-SA-4.0
Enrich Iocdandye/ai-runbooks127—~702Automated safety check: PassApache-2.0

Similar skills

  • Elasticsearch Audit

    aspectrr/deer

    Enable, configure, and query Elasticsearch security audit logs.

    405 GitHub stars~1.7k tokensUpdated 5 mo ago
    SecurityAuto-check passed
  • Dfir

    transilienceai/communitytools

    Digital forensics and incident response - Windows event log analysis, PCAP forensics, filesystem artifact analysis, AD attack detection, and timeline correlation.

    559 GitHub stars~1.5k tokensUpdated 2 mo ago
    SecurityAuto-check passed
  • Keel

    joseconti/declaracion-renta-espana

    A skill your agent uses for ANY new software project from idea to release — websites, WordPress/WooCommerce plugins, MCP servers, web apps, components, or libraries.

    190 GitHub stars~11k tokensUpdated 2 mo ago
    SecurityAuto-check: warnings
  • Threat Database Update

    FlorianBruniaux/claude-code-ultimate-guide

    Refreshes the guide's coding-agent and MCP security threat data through AgentSec Triage: research advisories, add tested records and synchronize the public feed.

    6.1k GitHub stars~680 tokensUpdated yesterday
    SecurityAuto-check passed
  • Enrich Ioc

    dandye/ai-runbooks

    Enrich an IOC (IP, domain, hash, URL) with threat intelligence.

    127 GitHub stars~702 tokensUpdated 1 mo ago
    SecurityAuto-check passed
  • Wordpress Security

    duracelltomi/gtm4wp

    Guide to maintain creating modern and secure code while developing WordPress plugins.

    174 GitHub stars~7.2k tokensUpdated yesterday
    SecurityAuto-check passed

More from notque/vexjoy-agent

All 61 skills in this repo
  • Game Asset Generator

    notque/vexjoy-agent

    Deterministic palette/matrix pixel art (not AI). An agent skill from notque/vexjoy-agent.

    435 GitHub stars~2.3k tokensUpdated 4 days ago
    Auto-check: notes
  • PR Workflow

    notque/vexjoy-agent

    Pull request lifecycle: commit, codex review, sync, review, fix, status, cleanup, and PR mining.

    435 GitHub stars~2.8k tokensUpdated 4 days ago
    Auto-check: notes
  • Architecture Deepening

    notque/vexjoy-agent

    Improve architecture across modules by deepening interfaces.

    435 GitHub stars~3.3k tokensUpdated 4 days ago
    Auto-check: notes
  • Code Quality

    notque/vexjoy-agent

    Code quality: cleanup, linting, formatting, quality gates. An agent skill from notque/vexjoy-agent.

    435 GitHub stars~1.5k tokensUpdated 4 days ago
    Auto-check: notes
  • Codebase Analyzer

    notque/vexjoy-agent

    Statistical rule discovery from Go codebase patterns. An agent skill from notque/vexjoy-agent.

    435 GitHub stars~2k tokensUpdated 4 days ago
    Auto-check: notes
  • Comment Quality

    notque/vexjoy-agent

    Review and fix temporal references in code comments. An agent skill from notque/vexjoy-agent.

    435 GitHub stars~2k tokensUpdated 4 days ago
    Auto-check: notes

Categories

Questions about Domain

What does Domain do?

Domain-specific: SAP Commerce, OpenSearch detection, WordPress validation, enterprise search. Domain is an agent skill from notque/vexjoy-agent. Domain-specific: SAP Commerce, OpenSearch detection, WordPress validation, enterprise search.

When should I use Domain?

Domain fits situations like: tasks that involve Security operations.

How do I install Domain in Claude Code?

Run `npx skills add notque/vexjoy-agent --skill domain -a claude-code`. Or copy the skill folder (skills/domain/domain in notque/vexjoy-agent) into .claude/skills/domain in your project. Claude Code loads it when a task matches its description.

How do I install Domain in Codex?

Run `npx skills add notque/vexjoy-agent --skill domain -a codex`. Or copy the skill folder (skills/domain/domain in notque/vexjoy-agent) into .agents/skills/domain in your project. Codex loads it when a task matches its description.

Can I use Domain in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add notque/vexjoy-agent --skill domain -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/domain, .gemini/skills/domain, .github/skills/domain and .opencode/skills/domain in your project.

What does Domain need to run?

Going by SKILL.md and its folder, Domain needs the command-line tools its instructions call (go, git and make). Its frontmatter pre-approves these tools: Agent, Read, Write, Bash, Grep, Glob, Edit, Task, Skill, mcp__plugin_playwright_playwright__browser_navigate, mcp__plugin_playwright_playwright__browser_wait_for, mcp__plugin_playwright_playwright__browser_snapshot, mcp__plugin_playwright_playwright__browser_evaluate, mcp__plugin_playwright_playwright__browser_network_requests, mcp__plugin_playwright_playwright__browser_console_messages, mcp__plugin_playwright_playwright__browser_resize, mcp__plugin_playwright_playwright__browser_take_screenshot, mcp__chrome-devtools__navigate_page, mcp__chrome-devtools__take_screenshot, mcp__chrome-devtools__take_snapshot, mcp__chrome-devtools__list_console_messages, mcp__chrome-devtools__list_network_requests, mcp__chrome-devtools__lighthouse_audit, mcp__chrome-devtools__resize_page.

Does Domain access the network?

SKILL.md contains no URLs. Its commands use git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Domain safe to install?

Our automated static check of SKILL.md found notes only (pre-approves every shell command (allowed-tools: bash)), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Domain use?

Domain is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Domain use?

About 3.7k tokens (SKILL.md is roughly 15k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 40k tokens, read only when the agent opens those files.

What are the alternatives to Domain?

Skills that share tags, products or a category with Domain: Elasticsearch Audit (aspectrr/deer, 405 stars), Dfir (transilienceai/communitytools, 559 stars), Keel (joseconti/declaracion-renta-espana, 190 stars) and Threat Database Update (FlorianBruniaux/claude-code-ultimate-guide, 6.1k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Domain?

notque (a GitHub user) maintains it in notque/vexjoy-agent, which has 435 GitHub stars. The repository holds 61 skills in this directory. The repository was last updated on October 3, 2026.

Source: notque/vexjoy-agent on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.