Agent skill

Python Helper

by shepherdjerred in shepherdjerred/monorepo

Current Python development guidance for versions, uv and pip, packaging, typing, asyncio, pytest, Ruff, security, and runtime boundaries.

GPL-3.0Auto-check passedTesting & QA

Install Python Helper

skills CLI
$ npx skills add shepherdjerred/monorepo --skill python-helper -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install shepherdjerred/monorepo python-helper --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/shepherdjerred/monorepo.git skills-src && mkdir -p .claude/skills && cp -r skills-src/packages/dotfiles/dot_agents/skills/python-helper .claude/skills/python-helper && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
python-helper
GitHub stars
112
Token cost
~2.3k tokens
SKILL.md length
991 words
Files
5 (incl. references)
Skills in repo
63
Repo updated
First seen
Licence
GPL-3.0

At a glance

Current Python development guidance for versions, uv and pip, packaging, typing, asyncio, pytest, Ruff, security, and runtime boundaries.

  • Reviewing Python
  • SKILL.md covers Current baseline, Command authority, uv projects and pip boundaries, plus 6 more sections
  • Calls uv, python and pip
  • Dependency workflows

What it does

Python Helper is an agent skill from shepherdjerred/monorepo. Current Python development guidance for versions, uv and pip, packaging, typing, asyncio, pytest, Ruff, security, and runtime boundaries. Use when writing or reviewing Python, pyproject.toml, Python CI, tests, dependency workflows, or Python upgrades.

Its SKILL.md is about 2.3k tokens, which your agent loads only when the skill is triggered. The skill folder holds 5 other files, including reference files (for example `references/releases.md`, `references/testing-and-concurrency.md` and `references/tooling-and-packaging.md`).

It sits in Testing & QA, covering Linting and formatting and Unit testing. It works with Python, Ruff and pytest. The repository describes itself as: Monorepo for all of my projects. The licence is GPL-3.0.

When your agent uses it

  • Reviewing Python
  • Dependency workflows
  • Python upgrades

Example prompts

  • “/python-helper”

Requirements

  • Python 3

What it can do on your machine

Read from SKILL.md and the folder at commit 46ddf2f. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • uv
    • python
    • pip
    • ruff

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use uv and pip, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Python Helper loads about 2.3k tokens when it runs, and up to ~6.1k if it reads all its reference files. Until then it costs about 66 tokens; SKILL.md has 991 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~66
When it runs · the whole SKILL.md, loaded when a task matches
~2.3k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~6.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from shepherdjerred/monorepo at commit 46ddf2f, republished under its GPL-3.0 licence (© shepherdjerred). 991 words, ~2,263 tokens.

Download SKILL.mdSave it as .claude/skills/python-helper/SKILL.md (or your agent's skills folder). This skill also uses 4 other files; get the full folder from GitHub.
name
python-helper
description
Current Python development guidance for versions, uv and pip, packaging, typing, asyncio, pytest, Ruff, security, and runtime boundaries. Use when writing or reviewing Python, pyproject.toml, Python CI, tests, dependency workflows, or Python upgrades.

Python Helper

Follow the project's declared Python version and dependency workflow. Validate runtime data, make async ownership explicit, and distinguish read-only checks, local mutations, and external publication.

Current baseline

Verified 2026-08-03:

LineStatus
Python 3.14.6Current stable; 3.14 and 3.13 are bugfix branches
Python 3.12, 3.11, 3.10Security-only branches
Python 3.15.0b4Prerelease; RC1 was scheduled for 2026-08-04 and final for 2026-10-01

Python 3.14.7 was scheduled for the day after this verification. Check live status before repeating a patch number:

bash
python --version
uv --version

The project's requires-python is the syntax and standard-library ceiling. Do not use a current interpreter to justify APIs outside that declared range.

Read references/releases.md for the 48-page research ledger and 3.14/3.15 features. Read references/tooling-and-packaging.md for uv, pip, publishing, Ruff, and type-checkers. Read references/testing-and-concurrency.md for pytest, asyncio, TaskGroup, interpreters, and free threading. Read references/types-and-security.md for typed boundaries, deferred annotations, subprocesses, archives, and secrets.

Command authority

Read-only or check-oriented commands:

bash
python --version
uv --version
uv python list
uv tree --locked
uv run --locked ruff check .
uv run --locked ruff format --check .
uv run --locked pytest --collect-only
uv run --locked mypy .
uv run --locked pyright

For a uv-managed project, run project-installed tools through uv run --locked so checks use the versions selected by uv.lock and fail on lock drift. For another dependency workflow, use its verified project environment rather than whichever global tool happens to be on PATH.

Local mutations include uv add, uv sync, uv python install, uv python pin, ruff check --fix, and ruff format. Ruff unsafe fixes can change runtime behavior or remove comments; require an explicit diff review and focused tests.

uv publish mutates an external registry. Require explicit artifacts, registry, credentials, and publication authorization.

uv projects

Use uv's project interface for a uv-managed application or package:

bash
uv sync --locked
uv run --locked pytest
uv add httpx
uv add --dev pytest ruff
  • Commit uv.lock; it is a universal exact-resolution lockfile.
  • --locked checks that project metadata and lock agree.
  • --frozen uses the lock without checking whether project metadata changed; it is not the stricter CI option.
  • Development tools belong in [dependency-groups].dev.
  • [project.optional-dependencies] defines consumer-installable extras.
  • uv pip is the lower-level environment interface, not the default project/lock workflow.
  • uv --version reports the uv binary. uv version reads or can update the project version.

pip boundaries

Use python -m pip inside a verified virtual environment when a project uses pip. pip freeze is an environment snapshot, not a portable lock or secure supply-chain workflow. pip lock remains experimental and its pylock.toml is specific to the current Python/platform.

Secure requirements installs need complete hashes and may disallow source distributions:

bash
python -m pip install --require-hashes --only-binary :all: -r requirements.txt

Type and validate boundaries

Avoid bare dict and list[dict]; they introduce imprecise values. Use dataclasses, TypedDict, Pydantic models, or precise mappings according to whether runtime validation is needed.

python
from pydantic import BaseModel, TypeAdapter


class User(BaseModel):
    id: int
    email: str


Users = TypeAdapter(list[User])
users = Users.validate_python(response.json())

Check HTTP status before parsing. A type annotation does not validate JSON, environment variables, database results, cache values, or deserialized files.

Any disables static checking and is not an escape hatch for repository code. Use precise protocols, generics, or object plus boundary validation instead. Use Never for exhaustiveness.

TypeIs narrows both branches and requires the narrowed type to be a subtype. TypeGuard remains necessary for some invariant-container or otherwise non-subtype narrowing. Neither is universally preferred.

Async and concurrency

Use TaskGroup when sibling cancellation and grouped failures are the intended semantics. asyncio.gather() does not cancel sibling awaitables merely because one fails. return_exceptions=True turns exceptions into results and must not silently normalize failure.

Reuse clients so connection pooling works:

python
import asyncio

import httpx


async def fetch_all(urls: list[str]) -> list[str]:
    async with httpx.AsyncClient() as client:
        async with asyncio.TaskGroup() as group:
            tasks = [group.create_task(fetch_text(client, url)) for url in urls]
    return [task.result() for task in tasks]


async def fetch_text(client: httpx.AsyncClient, url: str) -> str:
    response = await client.get(url)
    response.raise_for_status()
    return response.text

Own the event loop at the application boundary. Do not monkey-patch it with archived nest_asyncio; use top-level await in notebooks or refactor nested asyncio.run() calls.

Subinterpreters have separate execution contexts and GILs but are not security boundaries. Free-threaded Python is supported in 3.14, yet extensions can re-enable the GIL and shared state still requires synchronization.

Show full SKILL.md (415 more words)Show less

Tests

Current pytest documentation is 9.1.1. Avoid embedding volatile minimum-version pins unless compatibility requires them.

  • Use exact state, value, status, body, and side-effect assertions.
  • Do not skip “not implemented” behavior or xfail known bugs to make the suite green.
  • Use controlled servers or HTTP fakes instead of example.com.
  • Prefer --import-mode=importlib for new projects and a src layout where appropriate.
  • Use pytest-asyncio auto only when asyncio is the suite's sole async framework; use strict mode for plugin coexistence.
  • -n auto is pytest-xdist, and coverage flags are pytest-cov, not core pytest.

Ruff and type-checkers

Let Ruff infer target-version from requires-python or set the true minimum. Formatting is best-effort against line length; E501 can still report a formatted line. Use safe fixes by default and note that Ruff is pre-1.0, so minor releases can contain breaking changes.

Choose mypy or Pyright from the repository's existing configuration, plugin needs, editor integration, and intended strictness. Do not suppress missing imports globally or claim one checker is categorically the “CI” or “fast” choice.

Security

  • Use secrets, not random, for tokens and credential material.
  • Pass subprocess argument sequences; avoid shell=True with untrusted input.
  • Never unpickle untrusted data.
  • Keep tarfile's safer data filter and inspect untrusted archives even on Python 3.14.
  • Audit with uv run --locked --with pip-audit pip-audit, not the nonexistent pip audit / uv pip audit commands. Use uv run --locked --with, not uvx: uvx pip-audit runs pip-audit in its own isolated tool environment and audits pip-audit's dependencies, not the project's; uv run --locked --with pip-audit layers pip-audit onto the project's synced environment so it inspects the project's actual installed packages. uv audit remains a preview-only subcommand (behind --preview) and is absent entirely in older uv releases, so don't rely on it as a stable, version-independent option.
  • Fail on missing required environment configuration; do not silently switch databases.
  • Prefer trusted publishing and pinned container artifacts over static tokens and latest tags.
  • Open text files with an explicit encoding while Python 3.14 remains platform-sensitive by default.

Review checklist

  • Verify Python, uv, and the project's requires-python range.
  • Separate read-only checks, local mutations, and external publication.
  • Commit and enforce the lock with --locked in CI.
  • Validate external data before returning domain types.
  • Keep async failure and cancellation semantics explicit.
  • Reuse network clients and check response status.
  • Use exact tests without skips, weak assertions, or real public-network dependencies.
  • Keep Ruff fixes safe unless an unsafe fix is explicitly reviewed.
  • Avoid archived monkey patches and unqualified performance claims.
  • Check security-sensitive serialization, subprocess, archive, secret, and publishing boundaries.

© shepherdjerred, GPL-3.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 4 other files (references) in packages/dotfiles/dot_agents/skills/python-helper of shepherdjerred/monorepo.

  • SKILL.md
  • references/releases.md
  • references/testing-and-concurrency.md
  • references/tooling-and-packaging.md
  • references/types-and-security.md

Open the folder on GitHubat commit 46ddf2f

Compare with similar skills

Python Helper next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Python Helper compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Python Helper this skillshepherdjerred/monorepo112—~2.3kAutomated safety check: PassGPL-3.0
Simple Modern Uvjlevy/simple-modern-uv301—~1.9kAutomated safety check: PassMIT
Kedro Babysitkedro-org/kedro11k—~4kAutomated safety check: PassCustom licence
Checkav1155/houndarr292—~366Automated safety check: PassAGPL-3.0
Modern Pythonantoinebou12/uml-mcp105—~1kAutomated safety check: PassMIT
Specx Project Toolingmaksimzayats/specx202—~965Automated safety check: PassMIT

Similar skills

  • Simple Modern Uv

    jlevy/simple-modern-uv

    Start, selectively modernize, fully migrate, or update Python projects using simple-modern-uv practices: uv, ruff, BasedPyright, pytest, GitHub Actions CI, and tag-driven PyPI publishing.

    301 GitHub stars~1.9k tokensUpdated 1 mo ago
    Testing & QAAuto-check passed
  • Kedro Babysit

    kedro-org/kedro

    Run Kedro's local lint / format / type-check / tests on changed files (uses the project's pre-commit hooks, ruff, mypy, pytest, lint-imports, detect-secrets, Make targets — in the right venv), or…

    11k GitHub stars~4k tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Check

    av1155/houndarr

    Run Houndarr's full quality gate (ruff lint, ruff format check, mypy, bandit, pytest) and report results in a single table.

    292 GitHub stars~366 tokensUpdated 2 days ago
    Testing & QAAuto-check passed
  • Modern Python

    antoinebou12/uml-mcp

    Modern Python tooling and best practices using uv, ruff, ty, and pytest.

    105 GitHub stars~1k tokensUpdated today
    DevelopmentAuto-check passed
  • Specx Project Tooling

    maksimzayats/specx

    Add strict Python project tooling for a specx service. An agent skill from maksimzayats/specx.

    202 GitHub stars~965 tokensUpdated 2 mo ago
    DevelopmentAuto-check passed
  • Python

    alinaqi/maggy

    Python development with ruff, mypy, pytest - TDD and type safety

    707 GitHub stars~1.1k tokensUpdated 13 days ago
    DevelopmentAuto-check passed

More from shepherdjerred/monorepo

All 63 skills in this repo
  • Bun Runtime Best Practices

    shepherdjerred/monorepo

    Bun runtime APIs and current operational patterns for files, processes, modules, networking, databases, tests, and deployment.

    112 GitHub stars~2k tokensUpdated today
    Auto-check passed
  • Bun Test Patterns

    shepherdjerred/monorepo

    Current Bun test runner guidance for discovery, isolation, parallelism, sharding, changed tests, mocks, timers, snapshots, coverage, DOM Testing Library, and integration teardown.

    112 GitHub stars~2k tokensUpdated today
    Auto-check passed
  • Bun Workspaces

    shepherdjerred/monorepo

    Current Bun workspace guidance for isolated and hoisted linkers, catalogs, filters, scripts, dependency classes, lockfiles, lifecycle trust, caches, publishing, TypeScript package exports, and…

    112 GitHub stars~2.2k tokensUpdated today
    Auto-check passed
  • Deep Research

    shepherdjerred/monorepo

    This skill should be used when the user asks to "deep research", "research this topic", "investigate thoroughly", "do a deep dive on", "comprehensive research on", "find everything about", "survey…

    112 GitHub stars~4.7k tokensUpdated today
    Auto-check: notes
  • Figma Use

    shepherdjerred/monorepo

    This skill should be used when the user asks to "create a Figma design", "design in Figma", "make a Figma mockup", "create an app icon", "design UI", "render JSX to Figma", "export from Figma"…

    112 GitHub stars~946 tokensUpdated today
    Auto-check passed
  • Fish Helper

    shepherdjerred/monorepo

    Current Fish shell scripting, functions, abbreviations, completions, variables, events, configuration, plugins, testing, and safety guidance.

    112 GitHub stars~2k tokensUpdated today
    Auto-check passed

Questions about Python Helper

What does Python Helper do?

Current Python development guidance for versions, uv and pip, packaging, typing, asyncio, pytest, Ruff, security, and runtime boundaries. Python Helper is an agent skill from shepherdjerred/monorepo. Current Python development guidance for versions, uv and pip, packaging, typing, asyncio, pytest, Ruff, security, and runtime boundaries.

When should I use Python Helper?

Python Helper fits situations like: reviewing Python; dependency workflows; Python upgrades.

How do I install Python Helper in Claude Code?

Run `npx skills add shepherdjerred/monorepo --skill python-helper -a claude-code`. Or copy the skill folder (packages/dotfiles/dot_agents/skills/python-helper in shepherdjerred/monorepo) into .claude/skills/python-helper in your project. Claude Code loads it when a task matches its description.

How do I install Python Helper in Codex?

Run `npx skills add shepherdjerred/monorepo --skill python-helper -a codex`. Or copy the skill folder (packages/dotfiles/dot_agents/skills/python-helper in shepherdjerred/monorepo) into .agents/skills/python-helper in your project. Codex loads it when a task matches its description.

Can I use Python Helper in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add shepherdjerred/monorepo --skill python-helper -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/python-helper, .gemini/skills/python-helper, .github/skills/python-helper and .opencode/skills/python-helper in your project.

What does Python Helper need to run?

Going by SKILL.md and its folder, Python Helper needs the command-line tools its instructions call (uv, python, pip and ruff). Our summary lists: Python 3.

Does Python Helper access the network?

SKILL.md contains no URLs. Its commands use uv and pip, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Python Helper safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Python Helper use?

Python Helper is published under the GPL-3.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Python Helper use?

About 2.3k tokens (SKILL.md is roughly 9.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 3.9k tokens, read only when the agent opens those files.

What are the alternatives to Python Helper?

Skills that share tags, products or a category with Python Helper: Simple Modern Uv (jlevy/simple-modern-uv, 301 stars), Kedro Babysit (kedro-org/kedro, 11k stars), Check (av1155/houndarr, 292 stars) and Modern Python (antoinebou12/uml-mcp, 105 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Python Helper?

shepherdjerred (a GitHub user) maintains it in shepherdjerred/monorepo, which has 112 GitHub stars. The repository holds 63 skills in this directory. The repository was last updated on October 7, 2026.

Source: shepherdjerred/monorepo on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.