Context7 Efficient
aiskillstore/marketplace
Token-efficient library documentation fetcher using Context7 MCP with 86.8% token savings through intelligent shell pipeline filtering.
Changing or adding a project setting / default value in RedAmon.
$ npx skills add samugit83/redamon --skill project-settings-cascade -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install samugit83/redamon project-settings-cascade --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/samugit83/redamon.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/project-settings-cascade .claude/skills/project-settings-cascade && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "project-settings-cascade" agent skill from https://github.com/samugit83/redamon/tree/master/skills/project-settings-cascade into .claude/skills/project-settings-cascade/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "project-settings-cascade", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/samugit83/redamon/tree/master/skills/project-settings-cascadeType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add samugit83/redamon --skill project-settings-cascade -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install samugit83/redamon project-settings-cascade --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/samugit83/redamon.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/project-settings-cascade .agents/skills/project-settings-cascade && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "project-settings-cascade" agent skill from https://github.com/samugit83/redamon/tree/master/skills/project-settings-cascade into .agents/skills/project-settings-cascade/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "project-settings-cascade", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add samugit83/redamon --skill project-settings-cascade -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install samugit83/redamon project-settings-cascade --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/samugit83/redamon.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/project-settings-cascade .cursor/skills/project-settings-cascade && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "project-settings-cascade" agent skill from https://github.com/samugit83/redamon/tree/master/skills/project-settings-cascade into .cursor/skills/project-settings-cascade/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "project-settings-cascade", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/samugit83/redamon.git --path skills/project-settings-cascade--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add samugit83/redamon --skill project-settings-cascade -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install samugit83/redamon project-settings-cascade --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/samugit83/redamon.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/project-settings-cascade .gemini/skills/project-settings-cascade && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "project-settings-cascade" agent skill from https://github.com/samugit83/redamon/tree/master/skills/project-settings-cascade into .gemini/skills/project-settings-cascade/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "project-settings-cascade", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install samugit83/redamon project-settings-cascadeInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add samugit83/redamon --skill project-settings-cascade -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/samugit83/redamon.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/project-settings-cascade .github/skills/project-settings-cascade && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "project-settings-cascade" agent skill from https://github.com/samugit83/redamon/tree/master/skills/project-settings-cascade into .github/skills/project-settings-cascade/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "project-settings-cascade", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add samugit83/redamon --skill project-settings-cascade -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install samugit83/redamon project-settings-cascade --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/samugit83/redamon.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/project-settings-cascade .opencode/skills/project-settings-cascade && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "project-settings-cascade" agent skill from https://github.com/samugit83/redamon/tree/master/skills/project-settings-cascade into .opencode/skills/project-settings-cascade/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "project-settings-cascade", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
project-settings-cascadeChanging or adding a project setting / default value in RedAmon.
Project Settings Cascade is an agent skill from samugit83/redamon. Changing or adding a project setting / default value in RedAmon. A single setting is duplicated across Prisma, two separate Python settings modules, the orchestrator defaults endpoint, and the frontend fallback; miss a layer and the UI shows one value while the backend uses another, and existing projects keep the old value forever. Trigger: editing a @default in webapp/prisma/schema.prisma; editing DEFAULTAGENTSETTINGS or fetchagentsettings in agentic/projectsettings.py, or DEFAULTSETTINGS or fetchprojectsettings…
Its SKILL.md is about 2.4k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Security, covering Penetration testing, ORMs and data access and Bug bounty. It works with Prisma, Python and Model Context Protocol. The repository describes itself as: Open-source, self-hosted AI penetration testing framework: maps your attack surface into a graph, autonomously exploits it from a Kali sandbox with human approval gates, and… The licence is MIT.
Read from SKILL.md and the folder at commit d90c940. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
dockerpython3npmFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use docker and npm, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Project Settings Cascade loads about 2.4k tokens when it runs. Until then it costs about 182 tokens; SKILL.md has 978 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from samugit83/redamon at commit d90c940, republished under its MIT licence (© samugit83). 978 words, ~2,394 tokens.
.claude/skills/project-settings-cascade/SKILL.md (or your agent's skills folder).This skill is the settings sub-pattern the tool/skill skills depend on; they link
here rather than restating it. For the surrounding tool wiring, see
agentic-tool-integration,
recon-tool-integration, or
builtin-agent-skill.
@default applies to new projects only. Existing rows keep their stored
value; changing behaviour for them needs an explicit SQL UPDATE (ask before
running it - it mutates every project).agentic/project_settings.py
and recon/project_settings.py are separate modules with their own default
dicts (DEFAULT_AGENT_SETTINGS vs DEFAULT_SETTINGS). A setting used by both
is declared in both.prisma migrate. This project is push-based:
docker compose exec webapp npx prisma db push.snake_case (via @map()),
Prisma field + frontend + API camelCase, Python key SCREAMING_SNAKE_CASE.
A mismatch means fetch_*_settings reads None and silently falls back to the default.onChange a fallback equal to the Python/Prisma
default, so a project saved before the field existed does not write undefined.python3 tooling/scripts/extract_recon_registry.py to draft the entry, EDIT
IT, then python3 recon_settings/build.py. The draft is a starting point: no
extraction can tell whether a meaning is true or a bound is right.registry.json. It is a build artifact, written to two
places (recon_settings/ for Python, webapp/src/lib/reconSettings/ for
TypeScript) by one build, and build.py --check fails the gate when either is
stale. Edit the YAML.roe_capped: true. An rps field with
traffic: active and no cap fails the build, because that gap is how three
rate limits shipped reachable over MCP and outside the engagement ceiling.mcp: settable is the normal answer, and a REAL bound is the control. The
form input and the MCP validator are both generated from the registry, so a
bound of 0..10000000 is a fake control on both doors at once.
bounds.test.ts fails any count or threads maximum above 100000; the
only way past it is a field whose SHIPPED default is already higher, named
individually in ABOVE_THE_FLAT_CEILING with its own maximum, and the test
refuses an entry whose default would fit under the ceiling anyway.values:, not validator: free_text.
That is what makes the form render a <select> and the write refuse an unknown
value instead of accepting it and having the runtime replace it silently.
bounds.test.ts also fails a bespoke control that renders a closed-value field
as anything but a <select>, because a text box over a closed set means the
form accepts what the save rejects.mcp: never needs a deny_reason the schema defines - identity,
internal, escalation, secret, upload-managed, engagement-record,
not-tuning or derived. There is no ALLOW/DENY table and no unbounded
reason; denying a tuning field "to be safe" makes the API the weaker of two
doors and fails parity.test.ts.form_section is joined from the tool's entry unless the field names its own,
and an explicit null means "no input anywhere" - which the parity test reads
to tell a deliberate omission from a forgotten one.0 means on any field that defaults to it. Several rates treat
0 as UNLIMITED, which makes it the FASTEST value rather than the safest. A
numeric defaulting to 0 without zero_means fails the build, and the meaning
has to repeat it in words.katanaTimeout)| Layer | File | Form |
|---|---|---|
| DB / schema | webapp/prisma/schema.prisma | katanaTimeout Int @default(3600) @map("katana_timeout") |
| Python default | recon/project_settings.py:21 DEFAULT_SETTINGS (or agentic/project_settings.py DEFAULT_AGENT_SETTINGS) | 'KATANA_TIMEOUT': 3600 |
| Fetch mapping | recon/project_settings.py:863 fetch_project_settings (or fetch_agent_settings in the agent module) | settings['KATANA_TIMEOUT'] = project.get('katanaTimeout', DEFAULT_SETTINGS['KATANA_TIMEOUT']) |
| Registry | recon_settings/registry.yaml | katanaTimeout: { tool: katana, runtime_key: KATANA_TIMEOUT, unit: seconds, phase: resource_enum, traffic: active, roe_capped: false, mcp: settable, bounds: {...}, meaning: ... } |
| Served defaults | recon_orchestrator/api.py /defaults | nothing to do: the payload and its exclusions are REGISTRY QUERIES now. A key with no column is excluded by source: internal, and the column name comes from the registry rather than a snake-to-camel guess (which could not recover an intercap, so nine settings never reached the form). |
| Frontend | the tool's ProjectForm section component | control with an onChange fallback equal to the default. Its min/max must not be WIDER than the registry bounds, or the form accepts a value the save refuses. |
Agent-only settings use DEFAULT_AGENT_SETTINGS + fetch_agent_settings; recon-only
use DEFAULT_SETTINGS + fetch_project_settings. There is no shared module.
This is the part that bites, because two of the three pick a change up on their own and the third does not:
| Service | How it gets the registry | After a registry change |
|---|---|---|
recon | volume-mounted, spawned per scan | nothing |
recon-orchestrator | read-only mount | docker compose restart recon-orchestrator |
agent | COPY-baked (agentic/Dockerfile) | docker compose build agent && docker compose up -d agent |
Rebuilding the agent is not optional after a registry change. build.py also
writes recon_settings/roe_parse_prompt.py, which embeds the SHA-256 of
registry.json, and /roe/parse compares that digest against the registry it
actually loaded. A stale agent image therefore returns 503 on every RoE
document upload, naming both digests, rather than parsing a document against a
field list that no longer matches what will validate the answer.
It fails closed on purpose: a stale prompt does not produce an error, it produces a confidently wrong configuration.
python3 tooling/scripts/extract_recon_registry.py # draft the registry entry for a new column
python3 recon_settings/build.py # rebuild the THREE artifacts (--check in the gate)
cd webapp && npm run docs:settings # regenerate the wiki settings registry
docker compose exec webapp npx prisma db push # apply schema; NEVER prisma migrate
docker compose build agent && docker compose up -d agent # REQUIRED after ANY registry change (see below)
docker compose restart recon-orchestrator # picks the registry up from its mount
# existing projects (ask first - mutates every row):
docker compose exec postgres psql -U redamon -d redamon -c "UPDATE projects SET katana_timeout = 3600 WHERE katana_timeout IS NULL;"agentic-tool-integration, recon-tool-integration, recon-ai-enrichment© samugit83, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in skills/project-settings-cascade of samugit83/redamon.
Open the folder on GitHubat commit d90c940
Project Settings Cascade next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Project Settings Cascade this skillsamugit83/redamon | 3k | — | ~2.4k | Automated safety check: Pass | MIT | |
| Context7 Efficientaiskillstore/marketplace | 430 | — | ~1.5k | Automated safety check: Pass | None | |
| Bug Bounty Campaign DriverEncod3d-Sec/TORCH | 329 | 1 repos | ~1.8k | Automated safety check: Pass | MIT | |
| Prisma CLIcurvenote/curvenote | 169 | — | ~1.6k | Automated safety check: Pass | MIT | |
| Context7 MCPrtadewald/skills | 180 | — | ~681 | Automated safety check: Pass | None | |
| Documentation Lookupaffaan-m/ECC | 275k | 1 repos | ~670 | Automated safety check: Pass | MIT |
aiskillstore/marketplace
Token-efficient library documentation fetcher using Context7 MCP with 86.8% token savings through intelligent shell pipeline filtering.
Encod3d-Sec/TORCH
Runs a bug-bounty engagement through a script that tracks the current pass, builds a board of rows from recon and prints the next required action each turn.
curvenote/curvenote
Prisma CLI commands reference covering all available commands, options, and usage patterns.
rtadewald/skills
This skill should be used when the user asks about libraries, frameworks, API references, or needs code examples.
affaan-m/ECC
通过 Context7 MCP 使用最新的库和框架文档,而非训练数据。当用户提出设置问题、API参考、代码示例或命名框架(例如 React、Next.js、Prisma)时激活。
danielvm-git/bigpowers
Fetch current library docs via Context7 MCP instead of training data.
samugit83/redamon
Adding a Community Agent Skill: a Markdown attack-workflow file that users import from the catalog, which then competes in the Intent Router and is injected into the agent's system prompt.
samugit83/redamon
Adding partial-recon support for a tool: running a single pipeline phase on demand from the workflow graph, reading its inputs from the existing Neo4j graph and merging results back.
samugit83/redamon
Wiring a new tool the AI agent can call (not the recon pipeline): the tool registry, the phase map, the hardcoded dispatch chokepoint, and the duplicated execution paths that make a tool work in…
samugit83/redamon
Adding a built-in Agent Skill (an attack technique like ssrf, xxe, rce) that ships hardcoded in RedAmon: classified by the Intent Router, injected into the agent prompt, toggled per project, badged…
samugit83/redamon
Writing to the Neo4j attack-surface graph in RedAmon: the tenant-isolation MERGE key every entity node must carry, where graph methods live (mixins, not the client), and the schema places that must…
samugit83/redamon
Adding an LLM provider to RedAmon: the credential boundary (keys must never reach scan containers), prefix-routed model ids, and the provider registry.
Works with
Changing or adding a project setting / default value in RedAmon. Project Settings Cascade is an agent skill from samugit83/redamon. Changing or adding a project setting / default value in RedAmon.
Project Settings Cascade fits situations like: tasks that involve Penetration testing; tasks that involve ORMs and data access; tasks that involve Bug bounty.
Run `npx skills add samugit83/redamon --skill project-settings-cascade -a claude-code`. Or copy the skill folder (skills/project-settings-cascade in samugit83/redamon) into .claude/skills/project-settings-cascade in your project. Claude Code loads it when a task matches its description.
Run `npx skills add samugit83/redamon --skill project-settings-cascade -a codex`. Or copy the skill folder (skills/project-settings-cascade in samugit83/redamon) into .agents/skills/project-settings-cascade in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add samugit83/redamon --skill project-settings-cascade -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/project-settings-cascade, .gemini/skills/project-settings-cascade, .github/skills/project-settings-cascade and .opencode/skills/project-settings-cascade in your project.
Going by SKILL.md and its folder, Project Settings Cascade needs the command-line tools its instructions call (docker, python3 and npm). Our summary lists: Python 3; Node.js; Docker.
SKILL.md contains no URLs. Its commands use docker and npm, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Project Settings Cascade is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 2.4k tokens (SKILL.md is roughly 9.6k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Project Settings Cascade: Context7 Efficient (aiskillstore/marketplace, 430 stars), Bug Bounty Campaign Driver (Encod3d-Sec/TORCH, 329 stars), Prisma CLI (curvenote/curvenote, 169 stars) and Context7 MCP (rtadewald/skills, 180 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
samugit83 (a GitHub user) maintains it in samugit83/redamon, which has 2,961 GitHub stars. The repository holds 15 skills in this directory. The repository was last updated on October 7, 2026.
Source: samugit83/redamon on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.