Comprehensive guide to GPG commit signing. An agent skill from Prorise-cool/Claude-Code-Multi-Agent.

No licenceAuto-check: warningsBackend & APIs

Install Gpg Signing

The automated check flagged lines worth reading first. See the safety section below.

skills CLI
$ npx skills add Prorise-cool/Claude-Code-Multi-Agent --skill gpg-signing -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install Prorise-cool/Claude-Code-Multi-Agent gpg-signing --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/Prorise-cool/Claude-Code-Multi-Agent.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/github-specialist/gpg-signing .claude/skills/gpg-signing && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
gpg-signing
GitHub stars
306
Token cost
~3.9k tokens
SKILL.md length
1,024 words
Files
8 (incl. references)
Skills in repo
55
Repo updated
First seen
Licence
None found

At a glance

Comprehensive guide to GPG commit signing. An agent skill from Prorise-cool/Claude-Code-Multi-Agent.

  • Works in 3 steps: Export public key → Add to GitHub → Verify email matches
  • Working with Git commit signing
  • SKILL.md covers Table of Contents, Overview, When to Use This Skill and Quick Start, plus 8 more sections
  • Calls git, apt and winget; reaches github.com and gpg4win.org; needs CORRECT_KEY_ID

What it does

Gpg Signing is an agent skill from Prorise-cool/Claude-Code-Multi-Agent. Comprehensive guide to GPG commit signing. Set up, configure, and troubleshoot GPG commit signing. Fix GPG signing errors, configure passphrase caching, verify commit signatures. Use when working with Git commit signing, GPG keys, commit verification, signature verification, GPG configuration, or when encountering GPG signing errors. Covers Windows (Gpg4win), macOS (GPG Suite), Linux (gnupg), and WSL installation and setup.

Its SKILL.md is about 3.9k tokens, which your agent loads only when the skill is triggered. The skill folder holds 8 other files, including reference files (for example `references/passphrase-caching.md`, `references/quick-reference.md` and `references/security-best-practices.md`).

It sits in Backend & APIs, covering Caching, Commit messages and Webhooks. It works with Linux, GitHub, macOS and Git. The repository describes itself as: Claude-Code-Multi-Agent驱动的新一代AI编程助手生态系统,基于Claude Code构建的智能代理协调工作空间,实现从需求到交付的全流程自动化开发.

When your agent uses it

  • Working with Git commit signing
  • Commit verification
  • Signature verification
  • GPG configuration

Example prompts

  • “/gpg-signing”

Requirements

  • Pre-approved tools (allowed-tools): Read, Bash, Glob, Grep

Workflow steps

3 steps, taken from the first numbered list in SKILL.md.

  1. Export public key
  2. Add to GitHub
  3. Verify email matches

What it can do on your machine

Read from SKILL.md and the folder at commit 0dc1305. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Read
    • Bash
    • Glob
    • Grep

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • git
    • apt
    • winget
    • brew
    • dnf

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • github.com
    • gpg4win.org
    • gpgtools.org

    Also links to:

    • docs.github.com
    • gnupg.org
    • git-scm.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • CORRECT_KEY_ID

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Gpg Signing loads about 3.9k tokens when it runs, and up to ~25k if it reads all its reference files. Until then it costs about 110 tokens; SKILL.md has 1,024 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~110
When it runs · the whole SKILL.md, loaded when a task matches
~3.9k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~25k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: warnings

The automated check found patterns that need a careful read before installing.

  • WarningMentions a credentials file (SSH keys, cloud or package-manager tokens)SKILL.md:51
    - Working with `.gnupg/gpg-agent.conf` configuration
  • NoteRuns commands with sudoSKILL.md:115
    sudo apt update && sudo apt install gnupg
  • NoteRuns commands with sudoSKILL.md:118
    sudo dnf install gnupg2
  • NoteRuns commands with sudoSKILL.md:121
    sudo pacman -S gnupg
  • WarningMentions a credentials file (SSH keys, cloud or package-manager tokens)SKILL.md:200
    ls ~/.gnupg/gpg-agent.conf
  • WarningMentions a credentials file (SSH keys, cloud or package-manager tokens)SKILL.md:203
    **Create or edit** `~/.gnupg/gpg-agent.conf`:
  • WarningMentions a credentials file (SSH keys, cloud or package-manager tokens)SKILL.md:230
    - **Git Bash GPG:** `~/.gnupg/gpg-agent.conf` (resolves to `C:\Users\<Username>\.gnupg\gpg-agent.conf`)
  • WarningMentions a credentials file (SSH keys, cloud or package-manager tokens)SKILL.md:232
    **Common problem:** Configuring `~/.gnupg/gpg-agent.conf` (Git Bash GPG) when Git is configured to use Gpg4win. Result:
  • WarningMentions a credentials file (SSH keys, cloud or package-manager tokens)SKILL.md:345
    86)/GnuPG/bin/pinentry-basic.exe"' >> ~/.gnupg/gpg-agent.conf
  • WarningMentions a credentials file (SSH keys, cloud or package-manager tokens)SKILL.md:388
    # Windows (Git Bash): ~/.gnupg/gpg-agent.conf

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Without a licence we can't republish the file, so here is its outline and opening line. It has 1,024 words (~3,860 tokens).

“Comprehensive guidance for setting up, configuring, and troubleshooting GPG commit signing across all platforms.”

— opening of SKILL.md by Prorise-cool
name
gpg-signing
allowed-tools
Read, Bash, Glob, Grep

Read the full SKILL.md on GitHub

Files

SKILL.md and 7 other files (references) in .claude/skills/github-specialist/gpg-signing of Prorise-cool/Claude-Code-Multi-Agent.

  • SKILL.md
  • references/gpg-agent-config-example.conf
  • references/passphrase-caching.md
  • references/quick-reference.md
  • references/security-best-practices.md
  • references/test-scenarios.md
  • references/troubleshooting.md
  • references/windows-setup.md

Open the folder on GitHubat commit 0dc1305

Compare with similar skills

Gpg Signing next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Gpg Signing compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Gpg Signing this skillProrise-cool/Claude-Code-Multi-Agent306—~3.9kAutomated safety check: WarnNone
Commitmanhpham90vn/Deskhub133—~978Automated safety check: PassMIT
Neru Create PRy3owk1n/neru805—~1.9kAutomated safety check: PassMIT
Releasenotepadqq/notepadqq2.3k—~2kAutomated safety check: PassGPL-3.0
Agent Notifications777genius/agent-notifications816—~1.8kAutomated safety check: PassCustom licence
Compliance ScanAojdevStudio/Finance-Guru322—~2.6kAutomated safety check: NotesAGPL-3.0

Similar skills

  • Commit

    manhpham90vn/Deskhub

    Write a Deskhub commit message. An agent skill from manhpham90vn/Deskhub.

    133 GitHub stars~978 tokensUpdated today
    DevelopmentAuto-check passed
  • Neru Create PR

    y3owk1n/neru

    Commit working changes and open a Neru pull request the maintainer's way: conventional commit subjects, a PR title written for the changelog, the just ci gate, and the repo PR template filled…

    805 GitHub stars~1.9k tokensUpdated today
    DevelopmentAuto-check passed
  • Release

    notepadqq/notepadqq

    Release a new Notepadqq version. An agent skill from notepadqq/notepadqq.

    2.3k GitHub stars~2k tokensUpdated 5 days ago
    MobileAuto-check passed
  • Agent Notifications

    777genius/agent-notifications

    Send an Agent Notifications desktop notification when the user requests one, attention is needed, or a meaningful milestone warrants an alert during ongoing work.

    816 GitHub stars~1.8k tokensUpdated today
    Backend & APIsAuto-check passed
  • Compliance Scan

    AojdevStudio/Finance-Guru

    Privacy and security compliance scanner for the Finance Guru repo.

    322 GitHub stars~2.6k tokensUpdated yesterday
    Backend & APIsAuto-check: notes
  • Subspace Builds

    dallison/subspace

    Build and test Subspace across supported platforms and build systems.

    104 GitHub stars~990 tokensUpdated yesterday
    Backend & APIsAuto-check passed

More from Prorise-cool/Claude-Code-Multi-Agent

All 55 skills in this repo
  • Setup

    Prorise-cool/Claude-Code-Multi-Agent

    Complete guide to installing Git and performing basic configuration across all platforms (Windows, macOS, Linux, WSL).

    306 GitHub stars~3k tokensUpdated 25 days ago
    Auto-check: notes
  • Git Config

    Prorise-cool/Claude-Code-Multi-Agent

    Comprehensive Git configuration guide covering global settings, aliases, performance tuning, credential management, maintenance, .gitattributes, clone shortcuts, and troubleshooting.

    306 GitHub stars~4.4k tokensUpdated 25 days ago
    Auto-check: notes
  • Git Hooks

    Prorise-cool/Claude-Code-Multi-Agent

    Central authority on git hook implementations, modern best practices, and tooling for .NET/C, JavaScript/TypeScript, Python, and polyglot repositories.

    306 GitHub stars~3.6k tokensUpdated 25 days ago
    Auto-check: notes
  • GitHub Issues

    Prorise-cool/Claude-Code-Multi-Agent

    Query and search GitHub issues using gh CLI with web fallback.

    306 GitHub stars~2.2k tokensUpdated 25 days ago
    Auto-check: notes
  • Meeting Insights Analyzer

    Prorise-cool/Claude-Code-Multi-Agent

    分析会议记录和录音,以发现行为模式、沟通洞察和可行的反馈。识别您何时避免冲突、使用填充词、主导对话或错过倾听的机会。非常适合寻求提高沟通和领导技能的专业人士。

    306 GitHub starsUsed in 18 repos~2.5k tokens
    Auto-check passed
  • Lead Research Assistant

    Prorise-cool/Claude-Code-Multi-Agent

    通过分析您的业务、搜索目标公司并提供可行的联系策略,为您的产品或服务识别高质量潜在客户。非常适合销售、业务开发和营销专业人士。

    306 GitHub starsUsed in 18 repos~1.6k tokens
    Auto-check passed

Questions about Gpg Signing

What does Gpg Signing do?

Comprehensive guide to GPG commit signing. An agent skill from Prorise-cool/Claude-Code-Multi-Agent. Gpg Signing is an agent skill from Prorise-cool/Claude-Code-Multi-Agent. Comprehensive guide to GPG commit signing.

When should I use Gpg Signing?

Gpg Signing fits situations like: working with Git commit signing; commit verification; signature verification; GPG configuration.

How do I install Gpg Signing in Claude Code?

Run `npx skills add Prorise-cool/Claude-Code-Multi-Agent --skill gpg-signing -a claude-code`. Or copy the skill folder (.claude/skills/github-specialist/gpg-signing in Prorise-cool/Claude-Code-Multi-Agent) into .claude/skills/gpg-signing in your project. Claude Code loads it when a task matches its description.

How do I install Gpg Signing in Codex?

Run `npx skills add Prorise-cool/Claude-Code-Multi-Agent --skill gpg-signing -a codex`. Or copy the skill folder (.claude/skills/github-specialist/gpg-signing in Prorise-cool/Claude-Code-Multi-Agent) into .agents/skills/gpg-signing in your project. Codex loads it when a task matches its description.

Can I use Gpg Signing in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add Prorise-cool/Claude-Code-Multi-Agent --skill gpg-signing -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/gpg-signing, .gemini/skills/gpg-signing, .github/skills/gpg-signing and .opencode/skills/gpg-signing in your project.

What does Gpg Signing need to run?

Going by SKILL.md and its folder, Gpg Signing needs the command-line tools its instructions call (git, apt, winget, brew and dnf) and credentials named CORRECT_KEY_ID. Its frontmatter pre-approves these tools: Read, Bash, Glob, Grep.

Does Gpg Signing access the network?

SKILL.md names 6 domains. In commands or code: github.com, gpg4win.org and gpgtools.org; the agent is likely to contact these when it follows the instructions. As links in the text: docs.github.com, gnupg.org and git-scm.com. This is read from the text; nothing was executed.

Is Gpg Signing safe to install?

Our automated static check of SKILL.md flagged 7 warning(s): mentions a credentials file (ssh keys, cloud or package-manager tokens). Read the flagged lines before installing; the check is not a guarantee either way.

What licence does Gpg Signing use?

No licence was found for Gpg Signing or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.

How many tokens does Gpg Signing use?

About 3.9k tokens (SKILL.md is roughly 15k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 21k tokens, read only when the agent opens those files.

What are the alternatives to Gpg Signing?

Skills that share tags, products or a category with Gpg Signing: Commit (manhpham90vn/Deskhub, 133 stars), Neru Create PR (y3owk1n/neru, 805 stars), Release (notepadqq/notepadqq, 2.3k stars) and Agent Notifications (777genius/agent-notifications, 816 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Gpg Signing?

Prorise-cool (a GitHub user) maintains it in Prorise-cool/Claude-Code-Multi-Agent, which has 306 GitHub stars. The repository holds 55 skills in this directory. The repository was last updated on September 16, 2026.

Source: Prorise-cool/Claude-Code-Multi-Agent on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.