Agent skill

Utility Update Pm Skills

by product-on-purpose in product-on-purpose/pm-skills

Validates internet access, compares the locally installed pm-skills version against the latest public release, and updates local files with conflict-aware overwrite-or-skip options.

Apache-2.0Auto-check: warnings

Install Utility Update Pm Skills

The automated check flagged lines worth reading first. See the safety section below.

skills CLI
$ npx skills add product-on-purpose/pm-skills --skill utility-update-pm-skills -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install product-on-purpose/pm-skills utility-update-pm-skills --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/product-on-purpose/pm-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/docs/internal/efforts/F-24-update-pm-skills/_discovery/2026-04-09_claude-web-session/skills/utility-update-pm-skills .claude/skills/utility-update-pm-skills && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
utility-update-pm-skills
GitHub stars
716
Token cost
~3.1k tokens
SKILL.md length
1,552 words
Files
3 (incl. references)
Skills in repo
68
Repo updated
First seen
Licence
Apache-2.0

At a glance

Validates internet access, compares the locally installed pm-skills version against the latest public release, and updates local files with conflict-aware overwrite-or-skip options.

  • Works in 9 steps: Validate Internet Access → Determine Local Version → Fetch Latest Public Release → …
  • You want to bring a local pm-skills installation up to date
  • SKILL.md covers When to Use, When NOT to Use, Instructions and Degraded Mode, plus 3 more sections
  • Calls git and gh

What it does

Utility Update Pm Skills is an agent skill from product-on-purpose/pm-skills. Validates internet access, compares the locally installed pm-skills version against the latest public release, and updates local files with conflict-aware overwrite-or-skip options. Produces an update report listing changed files, skipped files, and new capabilities. Use when you want to bring a local pm-skills installation up to date.

Its SKILL.md is about 3.1k tokens, which your agent loads only when the skill is triggered. The skill folder holds 3 other files, including reference files (for example `references/EXAMPLE.md` and `references/TEMPLATE.md`).

It works with GitHub. The repository describes itself as: 68 plug-and-play, best-practice product management skills for AI agents: 30 Triple Diamond phase + 11 foundation + 12 utility + 15 tool (Foundation Sprint + Design Sprint). Plus… The licence is Apache-2.0.

When your agent uses it

  • You want to bring a local pm-skills installation up to date

Example prompts

  • “Use the utility-update-pm-skills skill to validate internet access, compares the locally installed pm-skills version against the latest public…”
  • “/utility-update-pm-skills”

Workflow steps

9 steps, taken from the step headings in SKILL.md.

  1. Validate Internet Access
  2. Determine Local Version
  3. Fetch Latest Public Release
  4. Compare Versions
  5. Scan for Local Modifications
  6. Fetch and Apply Updates
  7. Post-Update Validation
  8. Generate Update Report
  9. Present Next Steps

What it can do on your machine

Read from SKILL.md and the folder at commit 1cef1a9. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • git
    • gh

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use git and gh, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Utility Update Pm Skills loads about 3.1k tokens when it runs, and up to ~5.9k if it reads all its reference files. Until then it costs about 91 tokens; SKILL.md has 1,552 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~91
When it runs · the whole SKILL.md, loaded when a task matches
~3.1k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~5.9k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: warnings

The automated check found patterns that need a careful read before installing.

  • WarningContains instruction-override wording (e.g. “without asking the user”)SKILL.md:293
    - Overwrite locally modified files without user consent

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from product-on-purpose/pm-skills at commit 1cef1a9, republished under its Apache-2.0 licence (© product-on-purpose). 1,552 words, ~3,134 tokens.

Download SKILL.mdSave it as .claude/skills/utility-update-pm-skills/SKILL.md (or your agent's skills folder). This skill also uses 2 other files; get the full folder from GitHub.
name
utility-update-pm-skills
description
Validates internet access, compares the locally installed pm-skills version against the latest public release, and updates local files with conflict-aware overwrite-or-skip options. Produces an update report listing changed files, skipped files, and new capabilities. Use when you want to bring a local pm-skills installation up to date.
classification
utility
version
1.0.0
updated
2026-04-09
license
Apache-2.0
metadata.category
coordination
metadata.frameworks
triple-diamond
metadata.author
product-on-purpose
<!-- PM-Skills | https://github.com/product-on-purpose/pm-skills | Apache 2.0 -->

PM Skills Updater

This skill updates a local pm-skills installation to the latest public release. It validates connectivity, compares versions, detects local modifications, gives the user control over conflict resolution, and produces a structured update report documenting every change.

The updater operates in three phases:

  • Pre-flight -- validate internet access and determine version delta.
  • Update -- fetch the latest release and apply changes with conflict-aware overwrite-or-skip logic.
  • Report -- generate a markdown report summarizing what changed, what was skipped, and what new capabilities are available.

When to Use

  • When you want to update your local pm-skills to the latest release
  • After a new pm-skills version is announced and you want to pull it in
  • When you're unsure whether your local copy is current
  • When onboarding to a team that uses pm-skills and you want the latest version
  • When you want a structured summary of what changed between your version and the latest

When NOT to Use

  • To create or edit individual skills -> use /pm-skill-builder or /pm-skill-iterate
  • To validate skills against conventions -> use /pm-skill-validate
  • If you are a maintainer working directly on the pm-skills repo (use git instead)
  • If you need to pin a specific older version (this skill always targets the latest release)

Instructions

When asked to update pm-skills, follow these steps:

Step 1: Validate Internet Access

Before attempting any remote operations, confirm connectivity to GitHub.

How to validate:

  1. Attempt to reach the GitHub API or the public repository URL: https://github.com/product-on-purpose/pm-skills
  2. Use any available method: curl, wget, fetch, GitHub CLI (gh), or the GitHub MCP tools.

If connectivity fails:

  • Report the failure clearly with the error details.
  • Suggest troubleshooting steps: check network, proxy settings, VPN, or firewall rules.
  • Stop execution. Do not proceed to Step 2.

If connectivity succeeds:

  • Report: "Internet access validated. Connected to GitHub."
  • Proceed to Step 2.
Step 2: Determine Local Version

Read the local version from these sources (in priority order):

  1. .claude-plugin/plugin.json -- version field
  2. marketplace.json -- plugins[0].version field
  3. CHANGELOG.md -- most recent version header
  4. Git tags -- most recent v* tag

Record:

  • Local version: the version string (e.g., 2.8.2)
  • Local version source: which file provided the version

If no version can be determined, warn the user and default to 0.0.0 (treat as a fresh install requiring full update).

Step 3: Fetch Latest Public Release

Query the public repository for the latest release:

Methods (try in order):

  1. GitHub API: GET /repos/product-on-purpose/pm-skills/releases/latest
  2. GitHub CLI: gh release list --repo product-on-purpose/pm-skills --limit 1
  3. Git: git ls-remote --tags https://github.com/product-on-purpose/pm-skills.git

Record:

  • Latest version: the version string from the latest release
  • Release date: when the release was published
  • Release notes URL: link to the release page
  • Release notes body: the release description (for capability diff in Step 8)
Step 4: Compare Versions

Compare the local version against the latest public version.

If local version >= latest version:

  • Report: "Your pm-skills installation is up to date (v{local})."
  • Offer to generate a version report anyway (skip to Step 8 with no changes to report).
  • Stop execution unless the user requests a forced update.

If local version < latest version:

  • Report the version delta:
    Local version:  v{local}
    Latest version: v{latest}
    Update type:    {major | minor | patch}
  • If the update is a major version bump, warn: "This is a major version update. It may include breaking changes to skill contracts. Review the release notes before proceeding."
  • Ask: "Proceed with update? [yes / no]"
  • If no, stop execution.
Step 5: Scan for Local Modifications

Before fetching new files, scan the local installation for user modifications. This protects customizations from being silently overwritten.

How to detect modifications:

  1. If the local install is a git repo (preferred):

    • Run git status --porcelain to find uncommitted changes.
    • Run git diff HEAD to see the actual modifications.
    • Any file with local changes is flagged as "locally modified."
  2. If the local install is NOT a git repo (downloaded release):

    • Compare file checksums (SHA-256) against a manifest if available.
    • If no manifest is available, skip modification detection and note this limitation in the report.

Record a list of locally modified files with their modification type:

  • modified -- content differs from the installed version
  • added -- file exists locally but not in the original release
  • deleted -- file was removed locally

Present the findings:

Locally modified files detected: {n}
- {status} | {file-path}
- {status} | {file-path}
...

If no modifications are detected, report: "No local modifications detected. Safe to update all files."

Step 6: Fetch and Apply Updates

Fetch the latest release content and apply updates file by file.

Update method (try in order):

  1. Git pull/merge (if local is a git repo):

    • git fetch origin
    • git merge origin/main (or the tagged release)
    • If merge conflicts arise, handle per the conflict resolution rules below.
  2. Release archive download (if not a git repo):

    • Download the release archive (.tar.gz or .zip).
    • Extract to a temporary directory.
    • Copy files to the local installation per the rules below.

File-by-file application rules:

For each file in the update:

Local statusActionUser prompt
UnmodifiedOverwrite silentlyNone
Locally modifiedPrompt user"File {path} has local changes. [overwrite / skip / diff]"
New file (not in local)Add silentlyNone
Deleted locallyPrompt user"File {path} was deleted locally but exists in the update. [restore / skip]"

Conflict resolution options:

  • overwrite: Replace the local file with the upstream version. The original is backed up to {path}.local-backup before overwriting.
  • skip: Keep the local version. Record as skipped in the report.
  • diff: Show a side-by-side or unified diff of the local vs. upstream version, then re-prompt with [overwrite / skip].
  • restore: Add the file back from the upstream version.
  • overwrite-all: Apply overwrite to all remaining conflicts without further prompting.
  • skip-all: Apply skip to all remaining conflicts without further prompting.
Show full SKILL.md (636 more words)Show less
Step 7: Post-Update Validation

After applying updates, run a quick health check:

  1. Version consistency: Verify that .claude-plugin/plugin.json, marketplace.json, and CHANGELOG.md all reflect the new version.
  2. File integrity: Confirm that key files exist:
    • AGENTS.md
    • skills/ directory with expected skill count
    • commands/ directory
    • _workflows/ directory
  3. Skill count delta: Compare the number of skills before and after the update. Report any additions or removals.

If validation fails, warn the user with specific details about what looks wrong. Do not roll back automatically -- the user may want to investigate.

Step 8: Generate Update Report

Produce the update report using the template in references/TEMPLATE.md. This is the primary output artifact.

The report includes:

  1. Version summary: local (before) -> latest (after), update type.
  2. Files changed: every file that was updated, with a one-line summary of what changed.
  3. Files skipped: files the user chose to skip due to local modifications, with the reason.
  4. Files added: new files not present in the previous version.
  5. Files removed: files present in the old version but not in the new one.
  6. New capabilities: skills added, skills updated (with version deltas), workflows added, and any breaking changes -- derived from release notes and file diff analysis.
  7. Skipped file recovery: instructions for how to manually update any files that were skipped.

Report delivery:

  • Display the report in the conversation.
  • Offer to save it as a file: updates/update-{from}-to-{to}-{date}.md (e.g., updates/update-v2.8.2-to-v2.9.0-2026-04-09.md).
Step 9: Present Next Steps

After the update completes, suggest next steps:

## Next Steps

- Review the update report for any skipped files
- Run `/pm-skill-validate --all` to verify skill integrity
- Run local CI: `bash scripts/lint-skills-frontmatter.sh`
- Check the release notes for any migration steps: {release-url}
- If you skipped files with local changes, consider merging manually

Degraded Mode

If running in an environment without direct file system or network access (e.g., MCP or embedded environment):

  1. No network access: Cannot perform the update. Report the limitation and provide the user with manual update instructions:
    • Link to the latest release page
    • List the steps to download and extract manually
  2. No file system access: Cannot scan for local modifications or write updated files. Provide:
    • Version comparison (if the user pastes their local version info)
    • Capability diff from release notes
    • A checklist of files the user should update manually
  3. Partial access: Do what you can. Clearly note which steps were skipped and why in the report.

Output Contract

The updater MUST produce an update report following the format in references/TEMPLATE.md.

The report:

  • Uses the exact section headings defined in the template
  • Includes version information for both local and upstream
  • Lists every file with its disposition (updated, skipped, added, removed)
  • Describes new capabilities derived from the version delta
  • Provides recovery instructions for any skipped files

The updater MUST:

  • Validate internet access before attempting any remote operations
  • Determine the local version before comparing against upstream
  • Never silently overwrite a locally modified file
  • Back up locally modified files before overwriting (if user chooses overwrite)
  • Present a clear prompt for each conflict with diff capability
  • Support batch conflict resolution (overwrite-all / skip-all)
  • Run post-update validation to confirm a healthy state

The updater MUST NOT:

  • Proceed without internet access confirmation
  • Overwrite locally modified files without user consent
  • Delete local files that don't exist in the upstream release
  • Auto-rollback on validation failure (inform the user instead)
  • Modify files outside the pm-skills directory

Quality Checklist

Before delivering the update report, verify:

  • Internet access was validated before any remote operations
  • Local version was correctly identified from available sources
  • Latest public version was fetched and compared
  • User was warned about major version updates (if applicable)
  • All locally modified files were detected and presented
  • User was prompted for each file conflict (or batch mode was used)
  • Backups were created for overwritten locally modified files
  • Post-update validation passed (or failures were reported)
  • Update report follows the template format exactly
  • New capabilities section accurately reflects the version delta
  • Skipped file recovery instructions are provided
  • Next steps are presented

Examples

See references/EXAMPLE.md for a completed update report demonstrating a minor version update with local modifications, conflict resolution, and new capability discovery.

© product-on-purpose, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 2 other files (references) in docs/internal/efforts/F-24-update-pm-skills/_discovery/2026-04-09_claude-web-session/skills/utility-update-pm-skills of product-on-purpose/pm-skills.

  • SKILL.md
  • references/EXAMPLE.md
  • references/TEMPLATE.md

Open the folder on GitHubat commit 1cef1a9

Compare with similar skills

Utility Update Pm Skills next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Utility Update Pm Skills compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Utility Update Pm Skills this skillproduct-on-purpose/pm-skills716—~3.1kAutomated safety check: WarnApache-2.0
PR Babysitteropeninterpreter/openinterpreter69k3 repos~4.2kAutomated safety check: PassApache-2.0
Greplooponyx-dot-app/onyx32k4 repos~3.3kAutomated safety check: PassMIT
GitHub Deep Researchbytedance/deer-flow84k4 repos~1.3kAutomated safety check: PassMIT
Diagnosing Superpowers Sessionsobra/superpowers297k3 repos~1.7kAutomated safety check: PassMIT
Update V8 Versionopeninterpreter/openinterpreter69k2 repos~845Automated safety check: PassApache-2.0

Similar skills

  • PR Babysitter

    openinterpreter/openinterpreter

    Watches an open GitHub pull request until it merges, handling review comments, diagnosing CI failures and retrying flaky checks along the way.

    69k GitHub starsUsed in 3 repos~4.2k tokens
    DevelopmentAuto-check passed
  • Greploop

    onyx-dot-app/onyx

    Iteratively improves a PR (GitHub), MR (GitLab), or shelved changelist (Perforce) until Greptile gives it a 5/5 confidence score with zero unresolved comments.

    32k GitHub starsUsed in 4 repos~3.3k tokens
    DevelopmentAuto-check passed
  • GitHub Deep Research

    bytedance/deer-flow

    Researches a GitHub repository over four rounds using the GitHub API and web search, then writes a structured markdown report with timeline, metrics and Mermaid diagrams.

    84k GitHub starsUsed in 4 repos~1.3k tokens
    Research & ScienceAuto-check passed
  • Investigates a session where Superpowers went wrong, reads the transcripts on disk and produces an evidence-cited report, optionally prepared as a bug report for the maintainers.

    297k GitHub starsUsed in 3 repos~1.7k tokens
    Agent WorkflowsAuto-check passed
  • Update V8 Version

    openinterpreter/openinterpreter

    Bumps the pinned v8 and rusty_v8 versions in Codex, validates the release-candidate path with the v8-canary check, and traces failures to upstream build changes.

    69k GitHub starsUsed in 2 repos~845 tokens
    DevOps & CloudAuto-check passed
  • Last30days

    mvanhorn/last30days-skill

    Research what people actually say about any topic in the last 30 days.

    64k GitHub stars~7.9k tokensUpdated yesterday
    Research & ScienceAuto-check: notes

More from product-on-purpose/pm-skills

All 68 skills in this repo
  • Define Hypothesis

    product-on-purpose/pm-skills

    Defines a testable hypothesis with clear success metrics and a validation approach.

    716 GitHub stars~966 tokensUpdated 3 days ago
    Auto-check passed
  • Define Jtbd Canvas

    product-on-purpose/pm-skills

    Creates a Jobs to be Done canvas capturing the functional, emotional, and social dimensions of a customer job.

    716 GitHub stars~1.1k tokensUpdated 3 days ago
    Auto-check passed
  • Define Opportunity Tree

    product-on-purpose/pm-skills

    Creates an opportunity solution tree connecting a desired outcome to customer opportunities and candidate solutions, preventing solution-first jumps in continuous discovery.

    716 GitHub stars~1.1k tokensUpdated 3 days ago
    Auto-check passed
  • Define Problem Statement

    product-on-purpose/pm-skills

    Creates a clear problem framing document with user impact, business context, and success criteria.

    716 GitHub stars~932 tokensUpdated 3 days ago
    Auto-check passed
  • Deliver Acceptance Criteria

    product-on-purpose/pm-skills

    Generates structured Given/When/Then acceptance criteria for a user story or feature slice, covering the happy path, key failure scenarios, and non-functional expectations in testable form.

    716 GitHub stars~1k tokensUpdated 3 days ago
    Auto-check passed
  • Deliver Launch Checklist

    product-on-purpose/pm-skills

    Creates a cross-functional pre-launch checklist covering engineering, design, marketing, support, legal, and operations readiness, with owners, dates, and go/no-go criteria so nothing is missed…

    716 GitHub stars~970 tokensUpdated 3 days ago
    Auto-check passed

Works with

Questions about Utility Update Pm Skills

What does Utility Update Pm Skills do?

Validates internet access, compares the locally installed pm-skills version against the latest public release, and updates local files with conflict-aware overwrite-or-skip options. Utility Update Pm Skills is an agent skill from product-on-purpose/pm-skills. Validates internet access, compares the locally installed pm-skills version against the latest public release, and updates local files with conflict-aware overwrite-or-skip options.

When should I use Utility Update Pm Skills?

Utility Update Pm Skills fits situations like: you want to bring a local pm-skills installation up to date.

How do I install Utility Update Pm Skills in Claude Code?

Run `npx skills add product-on-purpose/pm-skills --skill utility-update-pm-skills -a claude-code`. Or copy the skill folder (docs/internal/efforts/F-24-update-pm-skills/_discovery/2026-04-09_claude-web-session/skills/utility-update-pm-skills in product-on-purpose/pm-skills) into .claude/skills/utility-update-pm-skills in your project. Claude Code loads it when a task matches its description.

How do I install Utility Update Pm Skills in Codex?

Run `npx skills add product-on-purpose/pm-skills --skill utility-update-pm-skills -a codex`. Or copy the skill folder (docs/internal/efforts/F-24-update-pm-skills/_discovery/2026-04-09_claude-web-session/skills/utility-update-pm-skills in product-on-purpose/pm-skills) into .agents/skills/utility-update-pm-skills in your project. Codex loads it when a task matches its description.

Can I use Utility Update Pm Skills in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add product-on-purpose/pm-skills --skill utility-update-pm-skills -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/utility-update-pm-skills, .gemini/skills/utility-update-pm-skills, .github/skills/utility-update-pm-skills and .opencode/skills/utility-update-pm-skills in your project.

What does Utility Update Pm Skills need to run?

Going by SKILL.md and its folder, Utility Update Pm Skills needs the command-line tools its instructions call (git and gh).

Does Utility Update Pm Skills access the network?

SKILL.md contains no URLs. Its commands use git and gh, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Utility Update Pm Skills safe to install?

Our automated static check of SKILL.md flagged 1 warning(s): contains instruction-override wording (e.g. “without asking the user”). Read the flagged lines before installing; the check is not a guarantee either way.

What licence does Utility Update Pm Skills use?

Utility Update Pm Skills is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Utility Update Pm Skills use?

About 3.1k tokens (SKILL.md is roughly 13k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 2.7k tokens, read only when the agent opens those files.

What are the alternatives to Utility Update Pm Skills?

Skills that share tags, products or a category with Utility Update Pm Skills: PR Babysitter (openinterpreter/openinterpreter, 69k stars), Greploop (onyx-dot-app/onyx, 32k stars), GitHub Deep Research (bytedance/deer-flow, 84k stars) and Diagnosing Superpowers Sessions (obra/superpowers, 297k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Utility Update Pm Skills?

product-on-purpose (a GitHub organization) maintains it in product-on-purpose/pm-skills, which has 716 GitHub stars. The repository holds 68 skills in this directory. The repository was last updated on October 8, 2026.

Source: product-on-purpose/pm-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.