Agent skill

Always Verify GCP

by rominirani in rominirani/antigravity-skills

A workflow for Google Cloud changes: pick gcloud, bq or gsutil, check the command against official docs, preview with a dry run and ask for approval before executing.

No licenceAuto-check passedDevOps & Cloud

Install Always Verify GCP

skills CLI
$ npx skills add rominirani/antigravity-skills --skill always-verify-gcp -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install rominirani/antigravity-skills always-verify-gcp --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/rominirani/antigravity-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/gemini-cli-skills/always-verify-gcp .claude/skills/always-verify-gcp && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
always-verify-gcp
GitHub stars
592
Token cost
~804 tokens
SKILL.md length
434 words
Files
4 (incl. references)
Skills in repo
5
Repo updated
First seen
Licence
None found

At a glance

A workflow for Google Cloud changes: pick gcloud, bq or gsutil, check the command against official docs, preview with a dry run and ask for approval before executing.

  • Works in 8 steps: Select the Correct CLI Tool → Identify the Specific Command → Verify Command with Official Documentation → …
  • Creating, deleting or modifying Google Cloud resources from the command line
  • SKILL.md covers Overview and Workflow: Verifying and…
  • Calls gcloud, bq and gsutil

What it does

This skill puts a verification process in front of every Google Cloud create, delete or modify request. The agent first picks the right command-line tool, gcloud, bq or gsutil, using references/tool_selection_guide.md, then identifies the specific command, for example bq mk, gsutil mb or gcloud compute instances delete.

It then checks the command against official documentation by calling search_documents on the Developer Knowledge MCP server, falling back to running the command with --help when the docs are ambiguous. Missing parameters are collected with the ask_user tool, and the final command is assembled.

Before running anything, it looks for a dry-run or preview mode such as gcloud's --dry-run, runs it, shows what would change (for example the instances that would be deleted) and asks for a second explicit approval. If there is no dry run it explains that and presents the command for your approval. A reference file, error_handling_playbook.md, supports diagnosing common errors.

When your agent uses it

  • Creating, deleting or modifying Google Cloud resources from the command line
  • Choosing between gcloud, bq and gsutil for a task
  • Previewing the impact of a destructive GCP command before running it

Example prompts

  • “Delete the idle compute instances in my staging project, but preview the change first.”
  • “Create a Cloud Storage bucket for backups and check the command against the docs.”
  • “Which tool should I use to create a BigQuery dataset, bq or gcloud?”

Requirements

  • The gcloud, bq or gsutil CLI, depending on the task
  • The Developer Knowledge MCP server, for documentation search

Workflow steps

8 steps, taken from the step headings in SKILL.md.

  1. Select the Correct CLI Tool
  2. Identify the Specific Command
  3. Verify Command with Official Documentation
  4. Gather Missing Information
  5. Formulate the Final Command
  6. Perform a Dry Run (If Available)
  7. Propose and Execute
  8. Diagnose Errors Intelligently

What it can do on your machine

Read from SKILL.md and the folder at commit 731acca. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • gcloud
    • bq
    • gsutil

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use gcloud, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Always Verify GCP loads about 804 tokens when it runs, and up to ~1.6k if it reads all its reference files. Until then it costs about 71 tokens; SKILL.md has 434 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~71
When it runs · the whole SKILL.md, loaded when a task matches
~804
With references · SKILL.md plus every file in references/, read only if the agent opens them
~1.6k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Without a licence we can't republish the file, so here is its outline and opening line. It has 434 words (~804 tokens).

“This skill establishes a rigorous, multi-step process for handling all Google Cloud resource management requests. Its goal is to maximize safety and accuracy by ensuring the correct tool is used, its commands are verified, its impact is previewed, and common…”

— opening of SKILL.md by rominirani
name
always-verify-gcp

Read the full SKILL.md on GitHub

Files

SKILL.md and 3 other files (references) in gemini-cli-skills/always-verify-gcp of rominirani/antigravity-skills.

  • SKILL.md
  • README.md
  • references/error_handling_playbook.md
  • references/tool_selection_guide.md

Open the folder on GitHubat commit 731acca

Compare with similar skills

Always Verify GCP next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Always Verify GCP compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Always Verify GCP this skillrominirani/antigravity-skills592—~804Automated safety check: PassNone
Terravision Cloud Diagramspatrickchugh/terravision1.6k—~5.6kAutomated safety check: NotesAGPL-3.0-only
Spotinfoalexei-led/spotinfo164—~1.8kAutomated safety check: PassApache-2.0
Google Cloud Filestore Auditinggoogle/skills21k—~3.8kAutomated safety check: PassApache-2.0
Google Cloud Solution Guided Gke AI Migrationgoogle/skills21k—~8.3kAutomated safety check: PassApache-2.0
Create Secretharness/harness-skills115—~1.7kAutomated safety check: PassApache-2.0

Similar skills

  • Terravision Cloud Diagrams

    patrickchugh/terravision

    Draw cloud architecture diagrams for AWS, Azure or GCP with the official provider icon sets, using TerraVision.

    1.6k GitHub stars~5.6k tokensUpdated 4 days ago
    DevOps & CloudAuto-check: notes
  • Spotinfo

    alexei-led/spotinfo

    Query Spot/preemptible VM prices, savings and interruption risk across AWS, GCP and Azure with the spotinfo CLI.

    164 GitHub stars~1.8k tokensUpdated 5 days ago
    DevOps & CloudAuto-check passed
  • Official

    Audits Filestore instances on Google Cloud across projects for disaster recovery readiness (missing or stale backups), security access governance (overly permissive NFS export rules, 0.0.0.0/0…

    21k GitHub stars~3.8k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Guides the migration of existing AI workloads (Cloud Run, Gemini API, Gemini Enterprise Agent Platform) to self-hosted GKE inference using gcloud and kubectl.

    21k GitHub stars~8.3k tokensUpdated yesterday
    DevOps & CloudAuto-check passed
  • Create Secret

    harness/harness-skills

    Generate Harness Secret definitions and manage secrets via MCP v2 tools.

    115 GitHub stars~1.7k tokensUpdated 4 days ago
    DevOps & CloudAuto-check passed
  • Alloydb Basics

    google/skills

    Official

    Manages clusters, instances, and backups for AlloyDB for PostgreSQL, and integrates with AlloyDB Model Context Protocol (MCP) tools for automated database operations.

    21k GitHub stars~1.7k tokensUpdated yesterday
    DatabasesAuto-check passed

More from rominirani/antigravity-skills

  • SQL Schema Policy Validator

    rominirani/antigravity-skills

    Validates SQL schema files for compliance with internal safety and naming policies.

    592 GitHub stars~264 tokensUpdated 3 mo ago
    Auto-check passed
  • Git Commit Formatter

    rominirani/antigravity-skills

    Makes the agent write every git commit message in the Conventional Commits format, with a type, optional scope, short description and breaking-change footer.

    592 GitHub stars~311 tokensUpdated 3 mo ago
    Auto-check passed
  • License Header Adder

    rominirani/antigravity-skills

    Adds the standard open-source license header to new source files. Use involves creating new code files that require copyright attribution.

    592 GitHub stars~294 tokensUpdated 3 mo ago
    Auto-check passed
  • JSON To Pydantic

    rominirani/antigravity-skills

    Converts JSON data snippets into Python Pydantic data models.

    592 GitHub stars~249 tokensUpdated 3 mo ago
    Auto-check passed

Categories

Questions about Always Verify GCP

What does Always Verify GCP do?

A workflow for Google Cloud changes: pick gcloud, bq or gsutil, check the command against official docs, preview with a dry run and ask for approval before executing. This skill puts a verification process in front of every Google Cloud create, delete or modify request.md, then identifies the specific command, for example bq mk, gsutil mb or gcloud compute instances delete.

When should I use Always Verify GCP?

Always Verify GCP fits situations like: creating, deleting or modifying Google Cloud resources from the command line; choosing between gcloud, bq and gsutil for a task; previewing the impact of a destructive GCP command before running it.

How do I install Always Verify GCP in Claude Code?

Run `npx skills add rominirani/antigravity-skills --skill always-verify-gcp -a claude-code`. Or copy the skill folder (gemini-cli-skills/always-verify-gcp in rominirani/antigravity-skills) into .claude/skills/always-verify-gcp in your project. Claude Code loads it when a task matches its description.

How do I install Always Verify GCP in Codex?

Run `npx skills add rominirani/antigravity-skills --skill always-verify-gcp -a codex`. Or copy the skill folder (gemini-cli-skills/always-verify-gcp in rominirani/antigravity-skills) into .agents/skills/always-verify-gcp in your project. Codex loads it when a task matches its description.

Can I use Always Verify GCP in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add rominirani/antigravity-skills --skill always-verify-gcp -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/always-verify-gcp, .gemini/skills/always-verify-gcp, .github/skills/always-verify-gcp and .opencode/skills/always-verify-gcp in your project.

What does Always Verify GCP need to run?

Going by SKILL.md and its folder, Always Verify GCP needs the command-line tools its instructions call (gcloud, bq and gsutil). Our summary lists: The gcloud, bq or gsutil CLI, depending on the task; The Developer Knowledge MCP server, for documentation search.

Does Always Verify GCP access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Always Verify GCP safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Always Verify GCP use?

No licence was found for Always Verify GCP or its repository. Without one, default copyright applies: ask the author before reusing or redistributing it.

How many tokens does Always Verify GCP use?

About 804 tokens (SKILL.md is roughly 3.2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 788 tokens, read only when the agent opens those files.

What are the alternatives to Always Verify GCP?

Skills that share tags, products or a category with Always Verify GCP: Terravision Cloud Diagrams (patrickchugh/terravision, 1.6k stars), Spotinfo (alexei-led/spotinfo, 164 stars), Google Cloud Filestore Auditing (google/skills, 21k stars) and Google Cloud Solution Guided Gke AI Migration (google/skills, 21k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Always Verify GCP?

rominirani (a GitHub user) maintains it in rominirani/antigravity-skills, which has 592 GitHub stars. The repository holds 5 skills in this directory. The repository was last updated on June 27, 2026.

Source: rominirani/antigravity-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.