Agent skill

Safe Public Release

by serejaris in serejaris/personal-corp-os

A skill your agent uses when publishing, open-sourcing, exporting, sanitizing, or moving code, agent skills, prompts, templates, fixtures, datasets, workshop assets, or other artifacts from a…

MITAuto-check: notesSecurity

Install Safe Public Release

skills CLI
$ npx skills add serejaris/personal-corp-os --skill safe-public-release -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install serejaris/personal-corp-os safe-public-release --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/serejaris/personal-corp-os.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/safe-public-release .claude/skills/safe-public-release && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
safe-public-release
GitHub stars
229
Token cost
~3.4k tokens
SKILL.md length
1,321 words
Files
5 (incl. references)
Skills in repo
36
Repo updated
First seen
Licence
MIT

At a glance

A skill your agent uses when publishing, open-sourcing, exporting, sanitizing, or moving code, agent skills, prompts, templates, fixtures, datasets, workshop assets, or other artifacts from a…

  • Works in 12 steps: Capture the release intent → Inventory before copying → Classify every file → …
  • Workshop assets
  • SKILL.md covers Hard safety boundary, What this skill is for, What this skill is NOT for and Setup, plus 16 more sections
  • Calls rg, git and gitleaks; reaches github.com

What it does

Safe Public Release is an agent skill from serejaris/personal-corp-os. Use when publishing, open-sourcing, exporting, sanitizing, or moving code, agent skills, prompts, templates, fixtures, datasets, workshop assets, or other artifacts from a private repository, vendor/runtime environment, or mixed working directory into a public repository or registry. Builds a provenance inventory, license/security review, explicit allowlist, clean staging package, approval dry run, and fresh public clone/install smoke. Triggers on "open source this", "publish these skills", "make this repo…

Its SKILL.md is about 3.4k tokens, which your agent loads only when the skill is triggered. The skill folder holds 5 other files, including reference files (for example `README.md`, `README.ru.md` and `references/release-checklist.md`).

It sits in Security, covering Bug bounty and Security review. The repository describes itself as: Personal Corp OS — управление личной компанией через AI-агентов: задачи вне головы, отделы вместо памяти, недельное ретро. Открытые скиллы для Claude Code и Codex. The licence is MIT.

When your agent uses it

  • Workshop assets
  • Other artifacts from a private repository
  • Vendor/runtime environment
  • Mixed working directory into a public repository

Example prompts

  • “open source this”
  • “publish these skills”
  • “make this repo public”
  • “/safe-public-release”

Workflow steps

12 steps, taken from the step headings in SKILL.md.

  1. Capture the release intent
  2. Inventory before copying
  3. Classify every file
  4. Provenance gate
  5. License gate
  6. Security and privacy gate
  7. Build an explicit allowlist
  8. Documentation gate
  9. Release dry run
  10. Publish from the clean package
  11. Verify the public boundary
  12. Record evidence and maintenance

What it can do on your machine

Read from SKILL.md and the folder at commit 95e36c3. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • rg
    • git
    • gitleaks
    • rsync

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Safe Public Release loads about 3.4k tokens when it runs, and up to ~5k if it reads all its reference files. Until then it costs about 187 tokens; SKILL.md has 1,321 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~187
When it runs · the whole SKILL.md, loaded when a task matches
~3.4k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~5k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NoteMentions a .env fileSKILL.md:203
    - `.env*`, API keys, OAuth state, cookies, credentials;

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from serejaris/personal-corp-os at commit 95e36c3, republished under its MIT licence (© serejaris). 1,321 words, ~3,363 tokens.

Download SKILL.mdSave it as .claude/skills/safe-public-release/SKILL.md (or your agent's skills folder). This skill also uses 4 other files; get the full folder from GitHub.
name
safe-public-release
description
Use when publishing, open-sourcing, exporting, sanitizing, or moving code, agent skills, prompts, templates, fixtures, datasets, workshop assets, or other artifacts from a private repository, vendor/runtime environment, or mixed working directory into a public repository or registry. Builds a provenance inventory, license/security review, explicit allowlist, clean staging package, approval dry run, and fresh public clone/install smoke. Triggers on "open source this", "publish these skills", "make this repo public", "export and sanitize", "подготовь публичный релиз", "выложи скиллы", "опенсорсни", "санитизируй и опубликуй". NOT for ordinary upstream bugfix PRs, vulnerability disclosure, or creating a corp-* department.

Safe Public Release

Turn a private, vendor-provided, runtime-generated, or mixed artifact into a public package without leaking secrets, private state, or material that cannot be redistributed.

One pipeline:

intent → owner issue tree → inventory → provenance → license → security/privacy → allowlist → clean package → approval → publish → fresh public verification → maintenance

The skill is allowlist-first. Never copy a whole runtime/private directory and hope denylist cleanup finds everything.

Hard safety boundary

Publishing is an outward mutation. Before creating a public repository, changing visibility, pushing a release, or publishing to a registry:

  1. complete the inventory and release manifest;
  2. reach PACKAGE-READY with no unresolved provenance/license/security blockers;
  3. show the user the release dry run;
  4. receive explicit approval for the named public target and artifact set.

A request to "prepare" or "review" a release authorizes read-only analysis and private/internal artifacts, not public publication.

What this skill is for

  • public agent skills or plugin bundles;
  • prompts, templates, playbooks, starter kits, examples;
  • reusable source extracted from a private project;
  • workshop/course assets selected for public release;
  • benchmark fixtures or datasets;
  • demo repos derived from production/private work;
  • vendor/runtime exports with uncertain provenance;
  • moving an existing private repo or selected subtree to a public repo.

What this skill is NOT for

  • Upstream bugfix PR: use the repository's contribution/PR workflow and regression tests.
  • Security vulnerability disclosure: use the vendor's private security route.
  • Tool/product evaluation: route to the product/runtime owner; evaluation does not grant redistribution rights.
  • Creating a private corp- department:* use corp-new; it requires a separate approval dry run.
  • Simple public edit: when the source is already public, owner-authored, clearly licensed, and contains no mixed private/runtime state, use the normal repository workflow.

Setup

Resolve configuration from the user, project instructions, then defaults:

markdown
## Safe Public Release Config

- internal_owner_repo: owner/corp-opensource-or-project
- public_github_owner: owner
- staging_root: /tmp/safe-public-release
- allowed_public_licenses: MIT, Apache-2.0, BSD-2-Clause, BSD-3-Clause
- secret_scanners: gitleaks, trufflehog
- approval_mode: explicit-before-publish

Do not block preparation when optional scanners are unavailable. Record the limitation and keep the release blocked until equivalent manual and repository-native checks are completed. Never claim a scan ran when it did not.

Owner issue tree

Before extraction or packaging, find or create three scopes in the internal owner repo:

  1. Owner epic — intended release, audience, source, risk owner, definition of done.
  2. Inventory/review child — provenance, licenses, companion files, security classification, allowlist.
  3. Publish/verify child — public repo/package creation after approval, fresh-clone verification, maintenance.

Separate unrelated work:

  • product/tool smoke → product/runtime owner;
  • runner or CI provisioning → infrastructure owner;
  • launch content/distribution → media/community owner;
  • commercial negotiation → sales/CRM owner.

If the user has an issue-management skill such as manager, use it for the issue tree and cross-repo links.

Status model

Use exactly one current status:

Progress states
  • DISCOVERED
  • INVENTORY
  • PROVENANCE-CLEARED
  • LICENSE-CLEARED
  • SECURITY-CLEARED
  • PACKAGE-READY
  • APPROVED
  • PUBLISHED
  • VERIFIED
  • MAINTAINED
Block states
  • BLOCKED-PROVENANCE
  • BLOCKED-LICENSE
  • BLOCKED-SECURITY
  • BLOCKED-OWNER-APPROVAL
  • NO-GO-VENDOR-PROTECTED
  • NO-GO-MIXED-PRIVATE-DATA

Every blocked status needs one concrete unblock_event: source found, written permission, license clarified, secret removed and rotated, scope reduced, or owner approval.

Step 1 — Capture the release intent

Record:

  • intended public artifact/repository;
  • target audience and use case;
  • source environments/repositories/providers;
  • expected bundles;
  • intended public license;
  • owner who can approve publication;
  • maintenance owner after publication.

Do not create the public repository yet.

Step 2 — Inventory before copying

Create release-manifest.yaml using the bundled template.

For each candidate artifact record:

  • stable artifact ID;
  • source provider/owner;
  • source version, tag, commit, or product version;
  • source locator in an internal note; public manifest must not contain private absolute paths or internal URLs;
  • original license/terms;
  • redistribution basis;
  • whether it was modified and how;
  • complete companion-file bundle;
  • exclusions and reason;
  • current decision.

Visibility inside an application or runtime does not prove ownership or permission to redistribute.

Step 3 — Classify every file

ClassDefault decision
Owner-authored sourceCandidate after license/security review
Third-party redistributable sourceCandidate with preserved notices
Generated build artifactRegenerate from allowlisted source
Runtime state, cache, queue, sessionExclude
Logs, transcripts, historiesExclude or separate privacy review
Credentials, tokens, cookies, keysExclude; rotate if exposed
Customer, student, employee, user dataExclude; aggregate only under a separate privacy owner
Vendor-protected or unknown sourceBlock
Mixed bundleSplit before review
Symlink, submodule, archive, binaryInspect target/content and license before allowlist

Every file in the future public tree must be reachable from an explicit allowlist entry.

Step 4 — Provenance gate

For each candidate prove:

  • who authored/owns it;
  • which exact version is being released;
  • where companion files come from;
  • what modifications were made;
  • which public license will apply;
  • why redistribution is permitted.

Unknown provenance → BLOCKED-PROVENANCE.

Do not publish a "cleaned up" artifact whose origin cannot be explained.

Step 5 — License gate

Check:

  • root and per-file licenses/notices;
  • dependency and embedded asset licenses;
  • generated-output terms;
  • trademark/name restrictions;
  • copyleft/share-alike obligations;
  • redistribution/extraction restrictions;
  • compatibility between source license and intended public license.

Attribution is not permission. A missing, custom, or unclear license means BLOCKED-LICENSE until the artifact is excluded or permission is obtained.

The skill does not provide legal advice. When license interpretation changes material risk, record the evidence and route the decision to the appropriate owner or counsel.

Show full SKILL.md (529 more words)Show less

Step 6 — Security and privacy gate

Exclude at minimum:

  • .env*, API keys, OAuth state, cookies, credentials;
  • SSH/private keys, certificates, signing material;
  • logs, queues, caches, sessions, histories;
  • browser profiles/local storage;
  • private/customer/student/user data;
  • private absolute paths, internal hostnames, private repo/document links;
  • internal issue IDs when they expose confidential structure;
  • vendor binaries/assets without redistribution rights;
  • hidden files, archives, symlink targets not explicitly reviewed.

Run checks on the clean staging tree, not only the source directory:

bash
find . -type l -print
find . -type f -size +10M -print
rg -n --hidden -S '(api[_-]?key|secret|token|password|BEGIN [A-Z ]*PRIVATE KEY|Authorization: Bearer)' .
rg -n --hidden -S '(/Users/|/home/|C:\\Users\\|private-|corp-|localhost:[0-9]{2,5})' .
git diff --check

When approved tools are available:

bash
gitleaks detect --no-git --source .
trufflehog filesystem --no-update .

A scanner passing does not replace manual review. A live secret finding stops the release: remove it, rotate it, document internally, rerun all relevant checks.

Step 7 — Build an explicit allowlist

Never copy the whole source tree first.

  1. Derive allowlist.txt from the reviewed manifest.
  2. Include whole functional bundles: main file, references, examples, scripts, required notices.
  3. Regenerate generated files from allowlisted source when possible.
  4. Copy into a new clean staging directory.
  5. Compare the complete staged file list with the manifest.

Example:

bash
rm -rf "$STAGING_ROOT/package"
mkdir -p "$STAGING_ROOT/package"
rsync -a --files-from=allowlist.txt SOURCE_ROOT/ "$STAGING_ROOT/package/"
cd "$STAGING_ROOT/package"
find . -type f -print | sort

Orphaning a SKILL.md from its references/scripts is a failed package, even when the main file is safe.

Step 8 — Documentation gate

The package must contain or link to:

  • human-readable README.md;
  • install/use/verification command;
  • source attribution and preserved notices;
  • public license;
  • security contact;
  • compatibility/version information;
  • known limitations;
  • maintenance owner and update policy.

Do not claim compatibility that the public smoke test has not verified.

Step 9 — Release dry run

Use the bundled checklist. Show the user:

text
Release: <name>
Target: <public owner/repo or registry>
Allowed artifacts: <count and short list>
Blocked/excluded artifacts: <count and reasons>
Source licenses: <summary>
Security/privacy checks actually run: <commands and results>
Fresh-clone verification plan: <command>
Maintenance owner: <owner>
Open risks: <none or list>
Proposed outward action: create repo | change visibility | push | publish package

Stop and request explicit approval. Continue only for the exact target and artifact set approved.

Step 10 — Publish from the clean package

After approval:

  1. create/update the public repository or registry package from the staging tree;
  2. preserve public history; never force-push unrelated work;
  3. include the public license and notices;
  4. link the internal owner issue in the commit trailer when appropriate: refs owner/repo#N;
  5. verify visibility, default branch, public URL, and release metadata;
  6. never copy private issue bodies/comments into the public repository.

If the public target is different from the approved dry run, stop and re-approve.

Step 11 — Verify the public boundary

Test as an external user from a fresh directory:

bash
workdir=$(mktemp -d)
git clone --depth 1 https://github.com/OWNER/REPO.git "$workdir/repo"
cd "$workdir/repo"

Run the documented public command:

  • skill/plugin discovery;
  • package install/import;
  • CLI --help or bounded smoke;
  • example/test fixture;
  • public read/link access without authentication.

Repeat the relevant secret/private-path scans on the fresh clone. PUBLISHED becomes VERIFIED only after this passes.

Step 12 — Record evidence and maintenance

Write a release evidence card in the internal owner issue:

text
release_status: VERIFIED
public_url: https://github.com/OWNER/REPO
source_version: ...
manifest: release-manifest.yaml
license_basis: ...
security_checks: ...
publication_commit: ...
fresh_clone_command: ...
fresh_clone_result: PASS
maintenance_owner: ...
next_review: YYYY-MM-DD

After every release or blocked decision, add the new failure mode or rule to this skill or its references.

Failure without the skill → rule

FailureRule
Runtime folder copied wholesaleAllowlist-first clean staging
Attribution added, license still unknownAttribution is not permission; block
Main skill copied without references/scriptsRelease the complete functional bundle
Secret scan green, private path leakedManual classification plus private-path scan
Works in owner checkout, fails after cloneFresh public-boundary smoke is mandatory
Evaluation mixed with redistributionSeparate issues and risk owners
Public repo created before inventoryNo outward mutation before PACKAGE-READY and approval
Vendor asset visible in UI/runtimeVisibility does not imply redistribution rights
Release published with no ownerMaintenance owner and next review are required

Final response

Report only verified facts:

text
Prepared: <artifact/release>
Status: <state>
Public action: published | not published
Target: <URL or planned target>
Allowed: <count>
Blocked/excluded: <count + reasons>
Checks run: <summary>
Fresh public verification: PASS | NOT RUN | FAILED
Owner issue: <reference>
Next gate: <one concrete action>

© serejaris, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 4 other files (references) in skills/safe-public-release of serejaris/personal-corp-os.

  • SKILL.md
  • README.md
  • README.ru.md
  • references/release-checklist.md
  • references/release-manifest.example.yaml

Open the folder on GitHubat commit 95e36c3

Compare with similar skills

Safe Public Release next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Safe Public Release compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Safe Public Release this skillserejaris/personal-corp-os229—~3.4kAutomated safety check: NotesMIT
Wooyun Legacytanweai/wooyun-legacy1.8k—~1.9kAutomated safety check: PassCustom licence
Flounderadshao/flounder518—~9.2kAutomated safety check: PassAGPL-3.0
Security Analysismicrosoft/haste107—~1kAutomated safety check: PassMIT
Vulnerability Triage Brocardstrailofbits/skills7.5k—~2.2kAutomated safety check: PassCC-BY-SA-4.0
Security Specialistfabricioctelles/skills106—~2.8kAutomated safety check: PassApache-2.0

Similar skills

  • Wooyun Legacy

    tanweai/wooyun-legacy

    WooYun business logic vulnerability methodology — 22,132 real cases across 6 domains (authentication bypass, authorization bypass, payment tampering, information disclosure, logic flaws…

    1.8k GitHub stars~1.9k tokensUpdated 2 mo ago
    SecurityAuto-check passed
  • Flounder

    adshao/flounder

    Operates Flounder, an autonomous white-hat security auditor.

    518 GitHub stars~9.2k tokensUpdated 5 days ago
    SecurityAuto-check passed
  • Security Analysis

    microsoft/haste

    Official

    Dependabot and security analysis skill for HASTE. An agent skill from microsoft/haste.

    107 GitHub stars~1k tokensUpdated yesterday
    SecurityAuto-check passed
  • Official

    Screens vulnerability reports, CVEs and automated findings against seven rules of thumb to accept, dismiss or ask for more information before any deep analysis.

    7.5k GitHub stars~2.2k tokensUpdated yesterday
    SecurityAuto-check passed
  • Security Specialist

    fabricioctelles/skills

    Runs security audits on codebases — full scans, diff reviews, threat models, vulnerability triage, remediation guidance, and finding tracking.

    106 GitHub stars~2.8k tokensUpdated today
    SecurityAuto-check passed
  • Hack

    yaklang/hack-skills

    Entry P0 primary router and operating doctrine for HackSkills.

    2.4k GitHub stars~4.7k tokensUpdated 27 days ago
    SecurityAuto-check: notes

More from serejaris/personal-corp-os

All 36 skills in this repo
  • Weekly Planning

    serejaris/personal-corp-os

    A skill your agent uses when the user is transitioning from a completed retro into a weekly plan, choosing weekly outcomes, scheduling a full ISO week, or asking for "план на неделю", "weekly…

    229 GitHub stars~2.4k tokensUpdated 3 days ago
    Auto-check passed
  • Gh Issues

    serejaris/personal-corp-os

    A skill your agent uses when creating, searching, updating, or managing GitHub issues via CLI.

    229 GitHub stars~1.8k tokensUpdated 3 days ago
    Auto-check passed
  • Product Data Audit

    serejaris/personal-corp-os

    A skill your agent uses when auditing a product, business, or project ecosystem — analyzing data sources, decision loops, bottlenecks, and implementation contours.

    229 GitHub stars~1.3k tokensUpdated 3 days ago
    Auto-check passed
  • Tg Bot Ops

    serejaris/personal-corp-os

    A skill your agent uses when operating, debugging, deploying, or monitoring a Telegram bot or Telegram-to-agent gateway.

    229 GitHub stars~1.6k tokensUpdated 3 days ago
    Auto-check: notes
  • Audit Agent Rules

    serejaris/personal-corp-os

    Audits the agent rules in the current folder (AGENTS.md, nested AGENTS.md files) and the skill descriptions the agent sees at start, then reports what to cut, move or rewrite and edits only after…

    229 GitHub stars~2.3k tokensUpdated 3 days ago
    Auto-check passed
  • Make Landing

    serejaris/personal-corp-os

    Создаёт несколько вариантов дизайна 2D-поверхности (лендинг, герой, обложка, слайды): свой визуальный референс и автор на вариант, полный design.md с UTC/SHA-256 до кода, проверка в браузере…

    229 GitHub stars~2.1k tokensUpdated 3 days ago
    Auto-check passed

Categories

Questions about Safe Public Release

What does Safe Public Release do?

A skill your agent uses when publishing, open-sourcing, exporting, sanitizing, or moving code, agent skills, prompts, templates, fixtures, datasets, workshop assets, or other artifacts from a…. Safe Public Release is an agent skill from serejaris/personal-corp-os. Use when publishing, open-sourcing, exporting, sanitizing, or moving code, agent skills, prompts, templates, fixtures, datasets, workshop assets, or other artifacts from a private repository, vendor/runtime environment, or mixed working directory into a public repository or registry.

When should I use Safe Public Release?

Safe Public Release fits situations like: workshop assets; other artifacts from a private repository; vendor/runtime environment; mixed working directory into a public repository.

How do I install Safe Public Release in Claude Code?

Run `npx skills add serejaris/personal-corp-os --skill safe-public-release -a claude-code`. Or copy the skill folder (skills/safe-public-release in serejaris/personal-corp-os) into .claude/skills/safe-public-release in your project. Claude Code loads it when a task matches its description.

How do I install Safe Public Release in Codex?

Run `npx skills add serejaris/personal-corp-os --skill safe-public-release -a codex`. Or copy the skill folder (skills/safe-public-release in serejaris/personal-corp-os) into .agents/skills/safe-public-release in your project. Codex loads it when a task matches its description.

Can I use Safe Public Release in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add serejaris/personal-corp-os --skill safe-public-release -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/safe-public-release, .gemini/skills/safe-public-release, .github/skills/safe-public-release and .opencode/skills/safe-public-release in your project.

What does Safe Public Release need to run?

Going by SKILL.md and its folder, Safe Public Release needs the command-line tools its instructions call (rg, git, gitleaks and rsync).

Does Safe Public Release access the network?

SKILL.md names 1 domain. In commands or code: github.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.

Is Safe Public Release safe to install?

Our automated static check of SKILL.md found notes only (mentions a .env file), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Safe Public Release use?

Safe Public Release is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Safe Public Release use?

About 3.4k tokens (SKILL.md is roughly 13k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 1.7k tokens, read only when the agent opens those files.

What are the alternatives to Safe Public Release?

Skills that share tags, products or a category with Safe Public Release: Wooyun Legacy (tanweai/wooyun-legacy, 1.8k stars), Flounder (adshao/flounder, 518 stars), Security Analysis (microsoft/haste, 107 stars) and Vulnerability Triage Brocards (trailofbits/skills, 7.5k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Safe Public Release?

serejaris (a GitHub user) maintains it in serejaris/personal-corp-os, which has 229 GitHub stars. The repository holds 36 skills in this directory. The repository was last updated on October 7, 2026.

Source: serejaris/personal-corp-os on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.