Agent skill

Pop CLI

by r0gue-io in r0gue-io/pop-cli

A skill your agent uses when running pop to develop or interact with ink!

GPL-3.0Auto-check passedBackend & APIs

Install Pop CLI

skills CLI
$ npx skills add r0gue-io/pop-cli --skill pop-cli -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install r0gue-io/pop-cli pop-cli --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/r0gue-io/pop-cli.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/pop-cli .claude/skills/pop-cli && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
pop-cli
GitHub stars
113
Token cost
~1.1k tokens
SKILL.md length
582 words
Files
1
Skills in repo
2
Repo updated
First seen
Licence
GPL-3.0

At a glance

A skill your agent uses when running pop to develop or interact with ink!

  • Running pop to develop
  • SKILL.md covers Global Rules and Command Guide
  • Calls cargo; needs PRIVATE_KEY
  • Interact with ink!

What it does

Pop CLI is an agent skill from r0gue-io/pop-cli. Use when running pop to develop or interact with ink! smart contracts and Polkadot SDK chains.

Its SKILL.md is about 1.1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Backend & APIs, covering Smart contracts. The repository describes itself as: The all-in-one tool for Polkadot development. The licence is GPL-3.0.

When your agent uses it

  • Running pop to develop
  • Interact with ink!

Example prompts

  • “/pop-cli”

Requirements

  • Docker
  • A credential in PRIVATE_KEY

What it can do on your machine

Read from SKILL.md and the folder at commit b0d3671. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • cargo

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names these keys or tokens, usually read from environment variables:

    • PRIVATE_KEY

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Pop CLI loads about 1.1k tokens when it runs. Until then it costs about 26 tokens; SKILL.md has 582 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~26
When it runs · the whole SKILL.md, loaded when a task matches
~1.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from r0gue-io/pop-cli at commit b0d3671, republished under its GPL-3.0 licence (© r0gue-io). 582 words, ~1,145 tokens.

Download SKILL.mdSave it as .claude/skills/pop-cli/SKILL.md (or your agent's skills folder).
name
pop-cli
description
Use when running `pop` to develop or interact with ink! smart contracts and Polkadot SDK chains.

Pop CLI Skill

Use this skill for workflows that run through pop.

Run pop --help for getting an overview.

Global Rules

  • Run plain pop commands only, one command per step.
  • Never use cargo-contract under any conditions. Use pop for all contract workflows.
  • Never chain commands or use shell wrappers/operators (&&, ;, |, command substitution, scripts/functions).
  • Exception: env expansion is allowed only for signer secret on --suri (example: --suri "$PRIVATE_KEY").
  • Prefer explicit flags over prompts (--path, --url, --args, --skip-confirm where supported).
  • Never print secrets.
  • Cleanup safety: always get explicit user approval before any cleanup that stops/removes local nodes, networks, or forks.

Command Guide

pop new contract
  • Use for new ink! contract scaffolding.
  • pop new contract --list for available contracts.
pop new chain
  • Use for new Polkadot SDK chain scaffolding.
  • pop new chain --list for available chains.
pop build --path <dir>
  • Use to build contracts or chains with explicit path input.
pop test --path <dir>
  • Use to run tests for contracts or chains with explicit path input.

For the following commands:

pop up ink-node ... --detach
pop up fork ... --detach
pop up network <zombie.json> --detach
pop up paseo --detach
pop up paseo --parachain asset-hub --detach
  • You MUST use a persistent terminal session.
  • After spawned/running output, you MUST wait 10 seconds before interacting.
  • Use the endpoint returned by Pop for follow-up calls. For pop up network use ws_uri values from generated zombie.json.
  • Treat endpoint verification as a hard gate before any dependent command.
  • Do not trust success banner alone; you MUST run:
    • pop call chain --url <ws-url> --metadata
  • Continue only if the metadata call succeeds (exit code 0 and pallet list output). If it fails, do not proceed with dependent calls.
pop up <contract-dir> --constructor <name> --args <arg>... --suri "$PRIVATE_KEY" --url <ws-url> --skip-confirm
  • --skip-confirm requires all constructor args via --args.
  • pop up <path> checks only the provided path; it does not recurse into subdirectories.
pop verify --path <contract-dir> --url <ws-url> --address <contract-address> --image <image-tag>
  • For deployed contract verification, first build with pop build --path . --verifiable, then deploy using pop up ... --skip-build, and verify with the exact same --image tag.
  • Run verifiable workflows from inside the project with --path . (not absolute host paths), because Docker path mapping can break cargo metadata.
Show full SKILL.md (219 more words)Show less
pop call chain --url <ws-url> --pallet <pallet> --function <snake_case_name> --args <arg>... --suri "$PRIVATE_KEY" --skip-confirm
  • First time calling a chain use pop call chain --metadata for which pallets, + --pallet <pallet_name> for pallet info.
  • Evaluate both exit code and output text of return.
  • Success requires exit code 0 and exact success output:
    • Call complete.
    • for extrinsics, also Extrinsic Submitted with hash:
  • --function use snake_case (example: transfer_keep_alive).
  • For calls expecting MultiAddress (example: Balances.transfer_keep_alive), pass destination as Id(0x...).
pop call contract --path <contract-dir> --contract 0x... --message <name> --args <arg>... --suri "$PRIVATE_KEY" --url <ws-url> --skip-confirm
  • Evaluate both exit code and output text.
  • Success requires exit code 0 and exact success output:
    • Call completed successfully!
    • Contract calling complete.
  • Default provide not only if user specifies otherwise --gas and --proof-size must be provided together; passing only one fails argument validation.
pop convert address <value>
  • Use for address format conversion utilities.
  • Do not assume strict round-trip string equality across families (SS58 -> EVM -> SS58 may return a different SS58 representation/prefix).
pop clean node
  • Requires explicit user approval (global cleanup safety rule).
  • Use targeted cleanup first when PIDs are known: --pid.
  • Use --all only when explicitly requested, since it can terminate unrelated local processes.
pop clean network
  • Requires explicit user approval (global cleanup safety rule).
  • Prefer targeted cleanup by base dir or zombie.json.
  • Use --all only when explicitly requested.

© r0gue-io, GPL-3.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .agents/skills/pop-cli of r0gue-io/pop-cli.

Open the folder on GitHubat commit b0d3671

Compare with similar skills

Pop CLI next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Pop CLI compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Pop CLI this skillr0gue-io/pop-cli113—~1.1kAutomated safety check: PassGPL-3.0
Fizz Convertpashov/skills1.2k2 repos~3.7kAutomated safety check: PassMIT
Solana Devsolana-foundation/solana-dev-skill574—~3.8kAutomated safety check: PassMIT
Feynman Auditor0xiehnnkta/nemesis-auditor2431 repos~11kAutomated safety check: PassMIT
Smart Contract Auditgreatpie/smart-contract-audit-skill101—~1.1kAutomated safety check: PassNone
RadarAuditware/radar154—~2.1kAutomated safety check: PassGPL-3.0

Similar skills

  • Fizz Convert

    pashov/skills

    Convert English-language properties in PROPERTIES.md (produced by the Fizz skill) into Solidity assertions inside the existing fuzz harness, then flip their checkboxes.

    1.2k GitHub starsUsed in 2 repos~3.7k tokens
    Backend & APIsAuto-check passed
  • Solana Dev

    solana-foundation/solana-dev-skill

    A skill your agent uses when user asks to "build a Solana dapp", "write an Anchor program", "create a token", "debug Solana errors", "set up wallet connection", "test my Solana program", "fuzz my…

    574 GitHub stars~3.8k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • Feynman Auditor

    0xiehnnkta/nemesis-auditor

    Deep business logic bug finder using the Feynman technique. An agent skill from 0xiehnnkta/nemesis-auditor.

    243 GitHub starsUsed in 1 repo~11k tokens
    Backend & APIsAuto-check passed
  • Smart Contract Audit

    greatpie/smart-contract-audit-skill

    Script-backed, out-of-box auditing workflow for Solidity/EVM repositories based on EVMbench detect/patch/exploit methodology.

    101 GitHub stars~1.1k tokensUpdated 7 mo ago
    Backend & APIsAuto-check passed
  • Radar

    Auditware/radar

    Use radar for smart contract security analysis, AST generation, and detection template development.

    154 GitHub stars~2.1k tokensUpdated 1 mo ago
    Backend & APIsAuto-check passed
  • Solidity Auditor

    Gabson0x/bountyforge

    Security audit of Solidity code while you develop. An agent skill from Gabson0x/bountyforge.

    443 GitHub stars~3.7k tokensUpdated 22 days ago
    Backend & APIsAuto-check passed

More from r0gue-io/pop-cli

  • Pop CLI Release

    r0gue-io/pop-cli

    A skill your agent uses when releasing Pop CLI versions, including version bump, changelog prep, publishing crates, and release announcements.

    113 GitHub stars~972 tokensUpdated 4 mo ago
    Auto-check passed

Categories

Questions about Pop CLI

What does Pop CLI do?

A skill your agent uses when running pop to develop or interact with ink! Pop CLI is an agent skill from r0gue-io/pop-cli. Use when running pop to develop or interact with ink!

When should I use Pop CLI?

Pop CLI fits situations like: running pop to develop; interact with ink!.

How do I install Pop CLI in Claude Code?

Run `npx skills add r0gue-io/pop-cli --skill pop-cli -a claude-code`. Or copy the skill folder (.agents/skills/pop-cli in r0gue-io/pop-cli) into .claude/skills/pop-cli in your project. Claude Code loads it when a task matches its description.

How do I install Pop CLI in Codex?

Run `npx skills add r0gue-io/pop-cli --skill pop-cli -a codex`. Or copy the skill folder (.agents/skills/pop-cli in r0gue-io/pop-cli) into .agents/skills/pop-cli in your project. Codex loads it when a task matches its description.

Can I use Pop CLI in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add r0gue-io/pop-cli --skill pop-cli -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/pop-cli, .gemini/skills/pop-cli, .github/skills/pop-cli and .opencode/skills/pop-cli in your project.

What does Pop CLI need to run?

Going by SKILL.md and its folder, Pop CLI needs the command-line tools its instructions call (cargo) and credentials named PRIVATE_KEY. Our summary lists: Docker; A credential in PRIVATE_KEY.

Does Pop CLI access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Pop CLI safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Pop CLI use?

Pop CLI is published under the GPL-3.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Pop CLI use?

About 1.1k tokens (SKILL.md is roughly 4.6k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Pop CLI?

Skills that share tags, products or a category with Pop CLI: Fizz Convert (pashov/skills, 1.2k stars), Solana Dev (solana-foundation/solana-dev-skill, 574 stars), Feynman Auditor (0xiehnnkta/nemesis-auditor, 243 stars) and Smart Contract Audit (greatpie/smart-contract-audit-skill, 101 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Pop CLI?

r0gue-io (a GitHub organization) maintains it in r0gue-io/pop-cli, which has 113 GitHub stars. The repository holds 2 skills in this directory. The repository was last updated on May 29, 2026.

Source: r0gue-io/pop-cli on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.