Official agent skill

Doca Programming Guide

by NVIDIA in NVIDIA/skills

A skill your agent uses when the user is writing their first DOCA app or asking a library-agnostic programming question — picking a shipped sample to copy and modify, wiring the canonical pkg-config…

OfficialApache-2.0Auto-check passed

Install Doca Programming Guide

skills CLI
$ npx skills add NVIDIA/skills --skill doca-programming-guide -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install NVIDIA/skills doca-programming-guide --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/NVIDIA/skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/doca-programming-guide .claude/skills/doca-programming-guide && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
doca-programming-guide
GitHub stars
3.5k
Token cost
~3.4k tokens
SKILL.md length
1,578 words
Files
7
Skills in repo
380
Repo updated
First seen
Licence
Apache-2.0

At a glance

A skill your agent uses when the user is writing their first DOCA app or asking a library-agnostic programming question — picking a shipped sample to copy and modify, wiring the canonical pkg-config…

  • Works in 3 steps: Read this SKILL.md first to confirm the… → **For the DOCA shape, the universal… → **For step-by-step programming workflows…
  • The user is writing their first DOCA app
  • SKILL.md covers Example questions this skill…, Audience, When to load this skill and What this skill provides, plus 3 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Doca Programming Guide is an agent skill from NVIDIA/skills, published by the product's own GitHub organization. Use this skill when the user is writing their first DOCA app or asking a library-agnostic programming question — picking a shipped sample to copy and modify, wiring the canonical pkg-config doca-{library} + meson build (or FFI from Rust / Go / Python against the public C ABI), walking the cfg-create → init → start → use → stop → destroy lifecycle, validating a spec before commit, or decoding a DOCAERROR return with docaerrorgetdescr(). Trigger even when the user does not say "DOCA programming guide" — implicit…

Its SKILL.md is about 3.4k tokens, which your agent loads only when the skill is triggered. The skill folder holds 7 other files (for example `BENCHMARK.md`, `CAPABILITIES.md` and `TASKS.md`). Compatibility notes: No DOCA install required to read this skill (it is an overlay loaded against any DOCA artifact skill); the validation steps within DO require a live DOCA…

It works with Rust and Python. The repository describes itself as: Agent Skills for NVIDIA products — install into Claude Code, Codex, and other coding agents to run Physical AI, robotics, simulation, CUDA, and RAG workflows end to end. The licence is Apache-2.0.

When your agent uses it

  • The user is writing their first DOCA app
  • Asking a library-agnostic programming question — picking a shipped sample to copy and modify
  • Wiring the canonical pkg-config doca-{library} + meson build (or FFI from Rust / Go / Python against the public C ABI)
  • Walking the cfg-create → init → start → use → stop → destroy lifecycle

Example prompts

  • “DOCA programming guide”
  • “write my first DOCA program”
  • “meson line for docardma”
  • “/doca-programming-guide”

Requirements

  • Python 3
  • Compatibility (from SKILL.md): No DOCA install required to read this skill (it is an overlay loaded against any DOCA artifact skill); the validation steps within DO require a live DOCA install at /opt/mellanox/doca.

Workflow steps

3 steps, taken from the first numbered list in SKILL.md.

  1. Read this SKILL.md first to confirm the user's question is a
  2. **For the DOCA shape, the universal lifecycle, the cross-library
  3. **For step-by-step programming workflows — configure, build,

What it can do on your machine

Read from SKILL.md and the folder at commit 0e0d506. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • github.com
    • docs.nvidia.com
    • catalog.ngc.nvidia.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

  • Compatibility

    No DOCA install required to read this skill (it is an overlay loaded against any DOCA artifact skill); the validation steps within DO require a live DOCA install at /opt/mellanox/doca.

    From compatibility in the SKILL.md frontmatter.

Context cost

Doca Programming Guide loads about 3.4k tokens when it runs. Until then it costs about 259 tokens; SKILL.md has 1,578 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~259
When it runs · the whole SKILL.md, loaded when a task matches
~3.4k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from NVIDIA/skills at commit 0e0d506, republished under its Apache-2.0 licence (© NVIDIA). 1,578 words, ~3,422 tokens.

Download SKILL.mdSave it as .claude/skills/doca-programming-guide/SKILL.md (or your agent's skills folder). This skill also uses 6 other files; get the full folder from GitHub.
name
doca-programming-guide
description
Use this skill when the user is writing their first DOCA app or asking a library-agnostic programming question — picking a shipped sample to copy and modify, wiring the canonical pkg-config doca-{library} + meson build (or FFI from Rust / Go / Python against the public C ABI), walking the cfg-create → init → start → use → stop → destroy lifecycle, validating a spec before commit, or decoding a DOCA_ERROR_* return with doca_error_get_descr(). Trigger even when the user does not say "DOCA programming guide" — implicit phrasings: "write my first DOCA program", "meson line for doca_rdma_*", "got DOCA_ERROR_BAD_STATE on my first call", "call DOCA from Rust without writing C", "built clean but nothing on the wire", "what order do doca_*_pipe calls go in". Refuse and route for install / hugepages / pkg-config not resolving doca-{library} (doca-setup), docs or version lookup (doca-public-knowledge-map), and library-internal API construction like Flow pipe topology or RDMA QP setup (matching library skill).
compatibility
No DOCA install required to read this skill (it is an overlay loaded against any DOCA artifact skill); the validation steps within DO require a live DOCA install at /opt/mellanox/doca.
license
Apache-2.0
metadata.kind
library

DOCA programming guide

Where to start: Read ## Audience to confirm the user is consuming DOCA, not contributing to it. Then jump to the H2 that matches the verb (## modify for first-app derivation, ## build for the canonical build pattern, ## test for the test loop, ## debug for the program-class debug ladder).

Example questions this skill answers well

These are the CLASSES of program-class questions the skill is built to answer, each with one worked example. Library-specific overlays (Flow / DMS / Caps / …) live in the matching library skill; this skill answers the library-agnostic shape.

  • "How do I write my first DOCA program for <any library>?" — worked example: "I want to write my first DOCA Flow application." Answered by the modify-a-shipped-sample workflow in TASKS.md ## modify plus the canonical build pattern in TASKS.md ## build.
  • "What's the right build line for any DOCA library?" — worked example: "How do I compile a program that calls doca_rdma_*?" Answered by the pkg-config doca-<library> pattern in TASKS.md ## build (C/C++ Track 1) and the FFI/bindings pattern in Track 2.
  • "What's the lifecycle every DOCA object follows?" — worked example: "What's the right order of doca_flow_pipe_* calls in my program?" Answered by the cfg-create / init / start / use / stop / destroy template in CAPABILITIES.md ## Capabilities and modes.
  • "DOCA_ERROR_* came back — what does it mean and what do I do?" — worked example: "My code got DOCA_ERROR_BAD_STATE." Answered by the cross-library doca_error_get_descr() rule in CAPABILITIES.md ## Error taxonomy
  • "My program built and started, but does nothing on the wire." — worked example: "My Flow program runs cleanly but no traffic is matched." Answered by the validate-before-commit rule in CAPABILITIES.md ## Safety policy and the layered program-class debug ladder in TASKS.md ## debug.
  • "What does <language> consumer of DOCA look like (FFI / bindings)?" — worked example: "How do I call DOCA Comch from Rust without writing C?" Answered by Track 2 of TASKS.md ## build (FFI against the public C ABI) and the language-neutral lifecycle in CAPABILITIES.md ## Capabilities and modes.
  • "How should I classify and build all the shipped DOCA samples and applications? What's the difference between a sample and an application?" — worked example: "I tried to build all DOCA apps and 20/159 failed — which ones are real regressions vs missing optional stacks?" Answered by the sample-vs-application model and the category / dependency / skip-vs-fail taxonomy in TASKS.md ## sample-and-app-categorization, which separates "the SDK is broken" from "the optional GPU / RMAX / MPI stack is not on this BlueField".

If the question is env-class (install / build env / hugepages / devices), route to doca-setup. If it is library-specific (Flow pipe topology, RDMA QP setup, DMS service deploy), layer the matching library skill on top.

Audience

This skill serves external developers building applications that consume DOCA libraries — i.e., users whose code calls one or more doca_<library>_* symbols (directly in C/C++, or through FFI / bindings from another language). It is programming with DOCA, not programming of DOCA: it is not for NVIDIA developers contributing to DOCA itself, and it does not assume access to the DOCA source tree, internal NVIDIA tooling, or any non-public information. The only inputs it ever points the agent at are the ones any external user has: the public docs at docs.nvidia.com/doca/sdk/, the public catalog at catalog.ngc.nvidia.com, the public GitHub repos under github.com/NVIDIA / github.com/NVIDIA-DOCA, the public developer forum, and the on-disk /opt/mellanox/doca tree that the public DOCA install (or the public NGC DOCA container, nvcr.io/nvidia/doca/doca) puts on the user's host. Where to find and how to install questions are routed elsewhere — see Related skills below.

Language scope. DOCA itself is a C library family; every shipped sample in /opt/mellanox/doca/samples/ and every shipped reference application in /opt/mellanox/doca/applications/ is C. C and C++ consumers are the canonical case for every prescriptive workflow in this skill. Other-language consumers (Rust, Go, Python, …) consume the same *.so libraries through FFI or language-specific bindings against the public C ABI; the skill keeps the lifecycle, capability, error, observability, and safety guidance language-neutral, and routes the language-specific build / FFI work back to the consumer's own toolchain without authoring wrappers.

When to load this skill

Load this skill when the user has DOCA installed and the env-class preconditions are already satisfied (i.e., doca-setup has produced a clean install where pkg-config doca-<library> resolves, hugepages are mounted, and devices are visible), and is now asking a question about how to actually program against DOCA in a library-agnostic way:

  • Understanding what DOCA's pieces are (libraries, apps, services, tools) and which side of the wire they run on.
  • The canonical pkg-config + meson build pattern any DOCA application follows, regardless of which library it consumes.
  • The universal derive a custom first application from a shipped sample workflow that every library skill extends with library-specific overrides — moved here from doca-setup because it is a programming verb, not an env verb.
  • The universal DOCA lifecycle (cfg-create → init → start → use → stop → destroy) and how it manifests across libraries.
  • The general DOCA_ERROR_* pattern, doca_error_t, and doca_error_get_descr() — the cross-library shape, not Flow- or RDMA-specific overlays.
  • The validate-before-commit rule and the program-side safety policy that every library skill inherits.
  • Programming patterns that apply to consumers in any language (C/C++ directly, FFI / bindings for Rust / Go / Python / …) — the skill keeps the patterns language-neutral and points the agent at the public C ABI as the authoritative surface.

Do not load this skill for:

  • "Is my install healthy? Why does pkg-config not find doca-flow? How do I mount hugepages? I don't have DOCA installed yet — can I use a container?" — env-class questions belong in doca-setup, which owns install verification, env preparation, env-class debugging, and the no-install → NGC container fallback path for any user on macOS, Windows, or Linux without DOCA.
  • "What is DOCA? Where is the Flow programming guide? Which package do I install?" — routing / orientation questions belong in doca-public-knowledge-map.
  • "How do I construct a Flow pipe / set up an RDMA queue / use Comch to send a message?" — library-internal API questions belong in the matching library skill (e.g. doca-flow).
Show full SKILL.md (604 more words)Show less

What this skill provides

This is a thin loader. The body keeps only the orientation needed to pick the right next file. The substantive material lives in two companion files:

  • CAPABILITIES.md — what every DOCA program looks like in the abstract: the shape of DOCA (host / DPU / switch, libraries / apps / services / tools, build flavor selection rationale), the universal program lifecycle, the unified version-compat rule that applies to any program linking DOCA, the cross-library DOCA_ERROR_* taxonomy, the program-side observability surface (DOCA logging, capability snapshots), and the program-side safety policy that every library skill inherits.
  • TASKS.md — step-by-step workflows for the six in-scope programming verbs: configure, build, modify, run, test, debug. The ## modify verb owns the universal derive a custom first app from a sample pattern that every DOCA library skill extends with library-specific overrides; the ## build verb owns the canonical pkg-config doca-<library> build pattern in two language tracks (C/C++ direct, non-C via FFI).

This skill assumes doca-setup has already produced a clean install. It does not cover env preparation; that is doca-setup's job, including the no-install → NGC container (nvcr.io/nvidia/doca/doca) fallback for users on macOS, Windows, or Linux without DOCA.

What this skill deliberately does not ship

This skill is agent guidance, not a samples or templates bundle. It deliberately does not contain — and pull requests should not add:

  • Pre-written DOCA application source code, in any language. This includes C / C++ files, Rust crates, Go packages, Python modules, and wrapper code for any other language. The DOCA API surface evolves between releases and code written from documentation prose cannot be verified without compiling / linking / FFI-loading it against the live library on a real install. The verified DOCA application source code is the shipped C samples on the user's installed system; the agent's job is to route the user to that file and prescribe a minimum-diff modification on it (TASKS.md ## modify) — for C/C++ users — or to route non-C users to the public C ABI surface that their bindings will call (TASKS.md ## build Track 2), not to author the wrapper.
  • Standalone build manifests (meson.build, CMakeLists.txt, Cargo.toml, setup.py, go.mod, …) parked inside the skill. The agent constructs the build manifest in the user's project directory against the user's installed DOCA, where pkg-config --modversion doca-<library> is the source of truth.
  • A samples/, bindings/, or reference/ subtree of any kind. A mock or incomplete artifact in this skill's tree, even one labeled "reference", is misleading: users will read it as buildable.

Loading order

  1. Read this SKILL.md first to confirm the user's question is a programming-class question (not env, not routing, not library-API).
  2. For the DOCA shape, the universal lifecycle, the cross-library error taxonomy, the program-side observability surface, and the safety policy that every library skill inherits, see CAPABILITIES.md.
  3. For step-by-step programming workflows — configure, build, modify, run, test, debug — see TASKS.md.

If the user is asking for a first app in a specific library, walk through TASKS.md ## modify for the universal copy-and-edit pattern, then hand off to the library skill (e.g. doca-flow) for the library-specific values to swap.

  • doca-public-knowledge-map — public DOCA documentation routing and the on-disk layout of an installed DOCA package. This skill defers all "where is X documented", "where on disk is Y", and "how do I check the installed version" questions to the knowledge-map.
  • doca-setup — env preparation, install verification, env-class debugging, and the I have no install yet procedure with the NGC container (nvcr.io/nvidia/doca/doca) as the universal Stage-1 fallback for any user on macOS, Windows, or Linux without DOCA. This skill assumes doca-setup's preconditions are already satisfied.
  • doca-flow — DOCA Flow on BlueField. Extends this skill's ## modify (universal first-app derivation) with the Flow-specific list of fields to swap.

© NVIDIA, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 6 other files in skills/doca-programming-guide of NVIDIA/skills.

  • SKILL.md
  • BENCHMARK.md
  • CAPABILITIES.md
  • TASKS.md
  • evals/evals.json
  • skill-card.md
  • skill.oms.sig

Open the folder on GitHubat commit 0e0d506

Compare with similar skills

Doca Programming Guide next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Doca Programming Guide compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Doca Programming Guide this skillNVIDIA/skills3.5k—~3.4kAutomated safety check: PassApache-2.0
Update V8 Versionopeninterpreter/openinterpreter69k2 repos~845Automated safety check: PassApache-2.0
Firecrawl Page Scrape Integrationfirecrawl/firecrawl189k1 repos~944Automated safety check: PassISC
Fory Releaseapache/fory4.6k—~2.9kAutomated safety check: PassApache-2.0
Apple Container Test RunnerRustPython/RustPython22k—~467Automated safety check: PassMIT
Release Skillsnexmoe/eve4213 repos~3.3kAutomated safety check: PassNone

Similar skills

  • Update V8 Version

    openinterpreter/openinterpreter

    Bumps the pinned v8 and rusty_v8 versions in Codex, validates the release-candidate path with the v8-canary check, and traces failures to upstream build changes.

    69k GitHub starsUsed in 2 repos~845 tokens
    DevOps & CloudAuto-check passed
  • Adds Firecrawl's /scrape endpoint to application code to pull markdown, HTML, links, screenshots or structured data from a single known URL.

    189k GitHub starsUsed in 1 repo~944 tokens
    Data & AnalyticsAuto-check passed
  • Fory Release

    apache/fory

    Prepare an Apache Fory release candidate from a clean release branch, including the version bump, RC tag, JVM staging, ASF source artifacts, SVN upload, and vote email.

    4.6k GitHub stars~2.9k tokensUpdated today
    Auto-check passed
  • Apple Container Test Runner

    RustPython/RustPython

    Runs RustPython tests inside a Linux container built with Apple's container CLI, so macOS users can compare Linux results with their local ones.

    22k GitHub stars~467 tokensUpdated today
    Testing & QAAuto-check passed
  • Release Skills

    nexmoe/eve

    Universal release workflow. An agent skill from nexmoe/eve.

    421 GitHub starsUsed in 3 repos~3.3k tokens
    DevelopmentAuto-check passed
  • RustPython C-API Expansion

    RustPython/RustPython

    Implements missing CPython C-API functions in RustPython's crates/capi, mapping each header to its module with the pyo3-ffi header split.

    22k GitHub stars~831 tokensUpdated today
    DevelopmentAuto-check passed

More from NVIDIA/skills

All 380 skills in this repo
  • Official

    A skill your agent uses when the user wants to deploy, run, debug, tear down, or call the REST API of the RTVI-CV 2D detection / tracking microservice.

    3.5k GitHub starsUsed in 1 repo~4.5k tokens
    Auto-check passed
  • Official

    Generates, validates, compares and explains HOLOLINK_def.svh macro files for the HSB IP, using bundled Python scripts and asking before it writes anything.

    3.5k GitHub stars~2.9k tokensUpdated today
    Auto-check passed
  • Official

    Runs and validates an end-to-end Mission Control demo in a locally installed Isaac Sim, with a Nova Carter robot driven through a Python server.

    3.5k GitHub stars~4.8k tokensUpdated today
    Auto-check passed
  • Orchestrates defect image generation for PCBA, metal surface and glass inspection with NVIDIA Cosmos AnomalyGen on OSMO, from cold-start Day 0 to real-photo Day 1 labeling.

    3.5k GitHub stars~5k tokensUpdated today
    Auto-check: notes
  • Orchestrates video data augmentation and auto-labeling workflows on OSMO, from flow selection and preflight checks to submission, monitoring and output download.

    3.5k GitHub stars~4.7k tokensUpdated today
    Auto-check: notes
  • Official

    Runs NVIDIA TAO Data Services KPI analysis on object detection results, comparing predictions to ground truth and writing per-class precision, recall and AP to a CSV.

    3.5k GitHub stars~2.7k tokensUpdated today
    Auto-check: notes

Works with

Questions about Doca Programming Guide

What does Doca Programming Guide do?

A skill your agent uses when the user is writing their first DOCA app or asking a library-agnostic programming question — picking a shipped sample to copy and modify, wiring the canonical pkg-config…. Doca Programming Guide is an agent skill from NVIDIA/skills, published by the product's own GitHub organization. Use this skill when the user is writing their first DOCA app or asking a library-agnostic programming question — picking a shipped sample to copy and modify, wiring the canonical pkg-config doca-{library} + meson build (or FFI from Rust / Go / Python against the public C ABI), walking the cfg-create → init → start → use → stop → destroy lifecycle, validating a spec before commit, or decoding a DOCAERROR return with docaerrorgetdescr().

When should I use Doca Programming Guide?

Doca Programming Guide fits situations like: the user is writing their first DOCA app; asking a library-agnostic programming question — picking a shipped sample to copy and modify; wiring the canonical pkg-config doca-{library} + meson build (or FFI from Rust / Go / Python against the public C ABI); walking the cfg-create → init → start → use → stop → destroy lifecycle.

How do I install Doca Programming Guide in Claude Code?

Run `npx skills add NVIDIA/skills --skill doca-programming-guide -a claude-code`. Or copy the skill folder (skills/doca-programming-guide in NVIDIA/skills) into .claude/skills/doca-programming-guide in your project. Claude Code loads it when a task matches its description.

How do I install Doca Programming Guide in Codex?

Run `npx skills add NVIDIA/skills --skill doca-programming-guide -a codex`. Or copy the skill folder (skills/doca-programming-guide in NVIDIA/skills) into .agents/skills/doca-programming-guide in your project. Codex loads it when a task matches its description.

Can I use Doca Programming Guide in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add NVIDIA/skills --skill doca-programming-guide -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/doca-programming-guide, .gemini/skills/doca-programming-guide, .github/skills/doca-programming-guide and .opencode/skills/doca-programming-guide in your project.

What does Doca Programming Guide need to run?

SKILL.md names no scripts, command-line tools or credentials: Doca Programming Guide is instructions for the agent only. Our summary lists: Python 3. Compatibility (from SKILL.md): No DOCA install required to read this skill (it is an overlay loaded against any DOCA artifact skill); the validation steps within DO require a live DOCA install at /opt/mellanox/doca. .

Does Doca Programming Guide access the network?

SKILL.md names 3 domains. As links in the text: github.com, docs.nvidia.com and catalog.ngc.nvidia.com. This is read from the text; nothing was executed.

Is Doca Programming Guide safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Doca Programming Guide use?

Doca Programming Guide is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Doca Programming Guide use?

About 3.4k tokens (SKILL.md is roughly 14k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Doca Programming Guide?

Skills that share tags, products or a category with Doca Programming Guide: Update V8 Version (openinterpreter/openinterpreter, 69k stars), Firecrawl Page Scrape Integration (firecrawl/firecrawl, 189k stars), Fory Release (apache/fory, 4.6k stars) and Apple Container Test Runner (RustPython/RustPython, 22k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Doca Programming Guide?

NVIDIA (a GitHub organization, an official publisher) maintains it in NVIDIA/skills, which has 3,534 GitHub stars. The repository holds 380 skills in this directory. The repository was last updated on October 7, 2026.

Source: NVIDIA/skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.