Monorepo Tooling and Dependencies
pierrecomputer/pierre
Sets one monorepo's rules for toolchain pins, pnpm package operations, the shared dependency catalog and moon tasks, so the agent adds versions and scripts the right way.
Fix a Dependabot PR by updating all monorepo instances of the dependency, running bun install, and pushing
$ npx skills add remotion-dev/remotion --skill fix-dependabot -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install remotion-dev/remotion fix-dependabot --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/remotion-dev/remotion.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/fix-dependabot .claude/skills/fix-dependabot && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "fix-dependabot" agent skill from https://github.com/remotion-dev/remotion/tree/main/.agents/skills/fix-dependabot into .claude/skills/fix-dependabot/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "fix-dependabot", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/remotion-dev/remotion/tree/main/.agents/skills/fix-dependabotType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add remotion-dev/remotion --skill fix-dependabot -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install remotion-dev/remotion fix-dependabot --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/remotion-dev/remotion.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.agents/skills/fix-dependabot .agents/skills/fix-dependabot && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "fix-dependabot" agent skill from https://github.com/remotion-dev/remotion/tree/main/.agents/skills/fix-dependabot into .agents/skills/fix-dependabot/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "fix-dependabot", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add remotion-dev/remotion --skill fix-dependabot -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install remotion-dev/remotion fix-dependabot --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/remotion-dev/remotion.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.agents/skills/fix-dependabot .cursor/skills/fix-dependabot && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "fix-dependabot" agent skill from https://github.com/remotion-dev/remotion/tree/main/.agents/skills/fix-dependabot into .cursor/skills/fix-dependabot/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "fix-dependabot", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/remotion-dev/remotion.git --path .agents/skills/fix-dependabot--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add remotion-dev/remotion --skill fix-dependabot -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install remotion-dev/remotion fix-dependabot --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/remotion-dev/remotion.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.agents/skills/fix-dependabot .gemini/skills/fix-dependabot && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "fix-dependabot" agent skill from https://github.com/remotion-dev/remotion/tree/main/.agents/skills/fix-dependabot into .gemini/skills/fix-dependabot/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "fix-dependabot", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install remotion-dev/remotion fix-dependabotInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add remotion-dev/remotion --skill fix-dependabot -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/remotion-dev/remotion.git skills-src && mkdir -p .github/skills && cp -r skills-src/.agents/skills/fix-dependabot .github/skills/fix-dependabot && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "fix-dependabot" agent skill from https://github.com/remotion-dev/remotion/tree/main/.agents/skills/fix-dependabot into .github/skills/fix-dependabot/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "fix-dependabot", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add remotion-dev/remotion --skill fix-dependabot -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install remotion-dev/remotion fix-dependabot --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/remotion-dev/remotion.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.agents/skills/fix-dependabot .opencode/skills/fix-dependabot && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "fix-dependabot" agent skill from https://github.com/remotion-dev/remotion/tree/main/.agents/skills/fix-dependabot into .opencode/skills/fix-dependabot/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "fix-dependabot", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
fix-dependabotFix a Dependabot PR by updating all monorepo instances of the dependency, running bun install, and pushing
Fix Dependabot is an agent skill from remotion-dev/remotion, published by the product's own GitHub organization. Fix a Dependabot PR by updating all monorepo instances of the dependency, running bun install, and pushing
Its SKILL.md is about 510 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Development, covering Dependency management and Monorepo tooling. It works with Bun and npm. The repository describes itself as: 🎥 Make videos programmatically with React.
3 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit 1e4c5de. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
gitbunrgghFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use git and gh, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Fix Dependabot loads about 509 tokens when it runs. Until then it costs about 30 tokens; SKILL.md has 245 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
Its licence (Custom licence) doesn't allow us to republish the file, so here is its outline and opening line. It has 245 words (~509 tokens).
“Dependabot PRs only update one package.json and never run bun install, so the bun.lock file is out of date and other packages in the monorepo still reference the old version. This skill fixes both problems.”
Just SKILL.md in .agents/skills/fix-dependabot of remotion-dev/remotion.
Open the folder on GitHubat commit 1e4c5de
Fix Dependabot next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Fix Dependabot this skillremotion-dev/remotion | 62k | — | ~509 | Automated safety check: Pass | Custom licence | |
| Monorepo Tooling and Dependenciespierrecomputer/pierre | 6.2k | — | ~1.1k | Automated safety check: Pass | Apache-2.0 | |
| Bun Runtimespinspire/pocketbase-sveltekit-starter | 511 | 5 repos | ~653 | Automated safety check: Notes | MIT | |
| Linea Dependency MaintenanceConsensys-Incorporated/linea-attestation-registry | 177 | 1 repos | ~3.7k | Automated safety check: Warn | MIT | |
| Dependabot Alerts Updatelivesession/xyd | 114 | — | ~2k | Automated safety check: Pass | MIT | |
| Bun 1.4 Builtins Guidecode-yeongyu/senpi | 470 | — | ~1.3k | Automated safety check: Pass | MIT |
pierrecomputer/pierre
Sets one monorepo's rules for toolchain pins, pnpm package operations, the shared dependency catalog and moon tasks, so the agent adds versions and scripts the right way.
spinspire/pocketbase-sveltekit-starter
Bun as runtime, package manager, bundler, and test runner. An agent skill from spinspire/pocketbase-sveltekit-starter.
Consensys-Incorporated/linea-attestation-registry
Safely plan and execute dependency maintenance for JavaScript/TypeScript (npm, pnpm) and GitHub Actions, including npm lockfiles, pnpm workspaces, catalogs, overrides, SHA-pinned action versions…
livesession/xyd
Automatically fetch and fix Dependabot security alerts by querying GitHub REST API for open alerts, identifying vulnerable packages, researching secure versions, and updating package.json files…
code-yeongyu/senpi
Points the agent at Bun 1.4 built-in APIs before it installs an npm package, so image, browser, markdown, cron, PTY and test work uses what Bun already ships.
mweinbach/agent-coworker
Quick reference for using Bun to run TypeScript and JavaScript, install packages, bundle code, run tests and serve HTTP, with the key files and commands.
remotion-dev/remotion
Manages stacked PRs and splits multi-part work into reviewable branches with gh-stack.
remotion-dev/remotion
Rebuild, install, and reload the private Remotion Canvas Capture unpacked Chrome extension.
remotion-dev/remotion
Fix newly added optional parameters, optional React props, and optional type/interface members in Remotion monorepo diffs by converting internal APIs to required nullable values and updating call…
remotion-dev/remotion
Set up a Codex monitor for Vercel deployments and preview URLs.
remotion-dev/remotion
Guides for writing and editing Remotion documentation. An agent skill from remotion-dev/remotion.
remotion-dev/remotion
Audit and clean the Remotion GitHub masterplan hierarchy. An agent skill from remotion-dev/remotion.
Categories
Fix a Dependabot PR by updating all monorepo instances of the dependency, running bun install, and pushing. Fix Dependabot is an agent skill from remotion-dev/remotion, published by the product's own GitHub organization.
Fix Dependabot fits situations like: tasks that involve Dependency management; tasks that involve Monorepo tooling.
Run `npx skills add remotion-dev/remotion --skill fix-dependabot -a claude-code`. Or copy the skill folder (.agents/skills/fix-dependabot in remotion-dev/remotion) into .claude/skills/fix-dependabot in your project. Claude Code loads it when a task matches its description.
Run `npx skills add remotion-dev/remotion --skill fix-dependabot -a codex`. Or copy the skill folder (.agents/skills/fix-dependabot in remotion-dev/remotion) into .agents/skills/fix-dependabot in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add remotion-dev/remotion --skill fix-dependabot -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/fix-dependabot, .gemini/skills/fix-dependabot, .github/skills/fix-dependabot and .opencode/skills/fix-dependabot in your project.
Going by SKILL.md and its folder, Fix Dependabot needs the command-line tools its instructions call (git, bun, rg and gh).
SKILL.md contains no URLs. Its commands use git and gh, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Fix Dependabot has a licence file (the repository's licence) that doesn't match a standard licence. Read it on GitHub before reusing the skill.
About 509 tokens (SKILL.md is roughly 2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Fix Dependabot: Monorepo Tooling and Dependencies (pierrecomputer/pierre, 6.2k stars), Bun Runtime (spinspire/pocketbase-sveltekit-starter, 511 stars), Linea Dependency Maintenance (Consensys-Incorporated/linea-attestation-registry, 177 stars) and Dependabot Alerts Update (livesession/xyd, 114 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
remotion-dev (a GitHub organization, an official publisher) maintains it in remotion-dev/remotion, which has 62,235 GitHub stars. The repository holds 71 skills in this directory. The repository was last updated on October 7, 2026.
Source: remotion-dev/remotion on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.