Agent skill

Verify Identity Contracts

by shm11C3 in shm11C3/HardwareVisualizer

Verify the id/key contract between backend producers and frontend consumers before implementing any change that joins, selects, persists, or attributes entities keyed by backend-produced ids (GPUs…

GPL-3.0Auto-check passedTesting & QA

Install Verify Identity Contracts

skills CLI
$ npx skills add shm11C3/HardwareVisualizer --skill verify-identity-contracts -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install shm11C3/HardwareVisualizer verify-identity-contracts --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/shm11C3/HardwareVisualizer.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/verify-identity-contracts .claude/skills/verify-identity-contracts && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
verify-identity-contracts
GitHub stars
183
Token cost
~1.7k tokens
SKILL.md length
986 words
Files
1
Skills in repo
6
Repo updated
First seen
Licence
GPL-3.0

At a glance

Verify the id/key contract between backend producers and frontend consumers before implementing any change that joins, selects, persists, or attributes entities keyed by backend-produced ids (GPUs…

  • Works in 5 steps: Write The Contract Table Before Any… → Fixtures Must Reproduce The Namespace… → One Resolution Rule, One Owner → …
  • Adding a selector
  • SKILL.md covers When This Fires, 1. Write The Contract Table…, 2. Fixtures Must Reproduce The… and Frontend Consumption, plus 4 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Verify Identity Contracts is an agent skill from shm11C3/HardwareVisualizer. Verify the id/key contract between backend producers and frontend consumers before implementing any change that joins, selects, persists, or attributes entities keyed by backend-produced ids (GPUs, storage devices, sensors, processes). Use when adding a selector, attribution UI, persistence of a selected id, a join across two data sources, or an e2e fixture for multi-source data.

Its SKILL.md is about 1.7k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Testing & QA, covering End-to-end testing. The repository describes itself as: A cross-platform hardware monitor with real-time metrics, local history, and customizable dashboards. The licence is GPL-3.0.

When your agent uses it

  • Adding a selector
  • Persistence of a selected id
  • A join across two data sources
  • An e2e fixture for multi-source data

Example prompts

  • “/verify-identity-contracts”

Workflow steps

5 steps, taken from the step headings in SKILL.md.

  1. Write The Contract Table Before Any Consuming Code
  2. Fixtures Must Reproduce The Namespace Split
  3. One Resolution Rule, One Owner
  4. Persistence And Migration
  5. Surface Parity For Resolution States

What it can do on your machine

Read from SKILL.md and the folder at commit fc54f73. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Verify Identity Contracts loads about 1.7k tokens when it runs. Until then it costs about 102 tokens; SKILL.md has 986 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~102
When it runs · the whole SKILL.md, loaded when a task matches
~1.7k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from shm11C3/HardwareVisualizer at commit fc54f73, republished under its GPL-3.0 licence (© shm11C3). 986 words, ~1,680 tokens.

Download SKILL.mdSave it as .claude/skills/verify-identity-contracts/SKILL.md (or your agent's skills folder).
name
verify-identity-contracts
description
Verify the id/key contract between backend producers and frontend consumers before implementing any change that joins, selects, persists, or attributes entities keyed by backend-produced ids (GPUs, storage devices, sensors, processes). Use when adding a selector, attribution UI, persistence of a selected id, a join across two data sources, or an e2e fixture for multi-source data.

Verify Identity Contracts

When This Fires

Any of these, whether or not the change is UI work:

  • an entity is read from more than one data source — a one-shot inventory fetch, the live monitor stream, the archive, or a persisted store key;
  • a surface selects, attributes, or names an entity keyed by a backend-produced id;
  • an id is persisted and restored across sessions;
  • a fixture, factory, or seed supplies ids for any of the above.

Each step names the boundary it guards, and applies exactly when the change crosses it — no more:

StepApplies when
1. Contractalways, in any layer
2. Fixture realismthe change supplies fixture, factory, or seed ids, in any layer
3. Resolution ownersrc/ derives which entity is effective
4. Persistence and migrationan id is stored, restored, or changes namespace
5. Surface paritya surface renders a resolution state

So a Core change that only produces ids owes the contract and, if it ships a fixture, fixture realism — not a React hook. Attribution UI that persists nothing owes the contract, the resolution owner, and surface parity — not a migration.

Within its own boundary no trigger is exempt. Attribution UI and fixture work are covered rather than incidental: the contract is what makes an attribution honest, and a fixture is where a wrong contract gets certified as correct.

The motivating failure: the getHardwareInfo inventory and the monitor stream key GPUs in different id namespaces on every platform (ADR 0016). Building a selector on an assumed shared namespace produced eleven review rounds of consequence bugs, all discoverable up front by reading the producers.

1. Write The Contract Table Before Any Consuming Code

Applies to every trigger, in every layer.

For every id the change consumes or produces — including one that only a fixture supplies — read the producing code (or the change itself, when it is the producer) and record: the source, the per-platform id shape, and whether any two sources share a namespace. When they do not, name the join key the sources actually share (typically the reported name) and state where the join must refuse (ambiguity: the key matches more than one entry on either side).

Record it at the smallest durable owner that fits the change, per the decision-preservation rule in AGENTS.md: a focused test or a code comment next to the join for an implementation-level fact, commit or PR context for a change-local why, and an ADR only when the contract itself is an architecturally significant decision. A local change that ships no PR still needs the reading — it does not need paperwork.

Do not infer the contract from fixtures, tests, or frontend types — those can encode the same wrong assumption the change is about to build on.

2. Fixtures Must Reproduce The Namespace Split

Applies wherever the change supplies ids — a Rust test fixture can flatten a namespace exactly as an e2e one can.

A fixture may share one id across two sources only if production does, and its ids take their shapes from the contract table — nvapi:12345 beside 12345 — not two arbitrary strings that merely differ. One that flattens a real namespace difference certifies broken joins: the classic GPU selector shipped non-functional on real hardware while its e2e passed, because GPU_FIXTURES used one id for both sources.

Frontend Consumption

The remaining steps describe how src/ consumes a contract. Each applies only when the change crosses that step's boundary; a change that produces or persists ids in core/ or src-tauri/ keeps the fact where its layer owns it rather than moving it into the frontend.

Show full SKILL.md (393 more words)Show less

3. One Resolution Rule, One Owner

Applies when the change derives which entity is effective.

Grep every consumer of the shared selection atom or key. The question "which entity is effective" must be answered in exactly one place — a hook or derived atom — that every surface consumes. If resolution logic already exists in two components, centralize it in this change before adding a third. Duplicated resolvers are how one surface labels an entity while another surface renders a different entity's values.

Subscriptions to per-sample atoms belong in the component that renders the value, never in a screen parent (ADR 0010 rendering-cost rule).

4. Persistence And Migration

Applies when the change stores, restores, or re-namespaces an id; skip it only when it does none of those.

State: which namespace is stored today, which namespace shipped versions stored, and what translates one to the other. An id persisted for the first time has no shipped value — state that, and the translation work is done. The migration must run at an always-mounted boundary (an app-level hook), never inside a screen — some navigation layouts never mount that screen. It must fetch its own inputs, because a restart can land on a view that fetches nothing.

Migration is one-way. Cover both cases that exist: a legacy value translates to the current namespace, and a value already in the current namespace is left unchanged — including one that is simply absent this session, which is intent to preserve rather than a value to rewrite. Do not build or test a reverse translation; writing the selection back into the obsolete namespace is the failure, not the fallback.

5. Surface Parity For Resolution States

Applies when the change renders a resolution state.

List every surface that renders the value. Every state the resolution can produce — unavailable, ambiguous, not-yet-measured — must render on each of them; a blank on one surface reads as idle, not as missing.

Exit Checklist

Check the boxes whose boundary the change crosses; the first is always one of them.

  • Contract recorded at its smallest durable owner, sourced from producer code
  • Fixture ids differ across sources wherever production's do (supplies ids)
  • Exactly one resolution owner; other consumers import it (derives an effective entity)
  • Migration at an always-mounted boundary; legacy values translate and current values stay unchanged (persists an id)
  • Each resolution state asserted on each surface (renders a resolution state)

© shm11C3, GPL-3.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .agents/skills/verify-identity-contracts of shm11C3/HardwareVisualizer.

Open the folder on GitHubat commit fc54f73

Compare with similar skills

Verify Identity Contracts next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Verify Identity Contracts compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Verify Identity Contracts this skillshm11C3/HardwareVisualizer183—~1.7kAutomated safety check: PassGPL-3.0
Web Application Testinganthropics/skills180k51 repos~966Automated safety check: PassApache-2.0
Agentic TDDreticlehq/reticle1.2k—~1.2kAutomated safety check: PassApache-2.0
Handsontable Visual Test Demoshandsontable/handsontable22k—~1.3kAutomated safety check: PassCustom licence
E2E Testingericrisco/rsc-harness180—~3.2kAutomated safety check: PassMIT
TDD WorkflowhellangleZ/burn-in-cceverywhere-ralph11211 repos~2.4kAutomated safety check: PassNone

Similar skills

  • Web Application Testing

    anthropics/skills

    Official

    Tests local web applications with Python Playwright scripts, checking frontend behavior, capturing screenshots and reading browser console logs.

    180k GitHub starsUsed in 51 repos~966 tokens
    Testing & QAAuto-check passed
  • Agentic TDD

    reticlehq/reticle

    Applies red-green TDD to behavior unit tests cannot reach, by stating the expected outcome against the running app with Reticle before writing the feature.

    1.2k GitHub stars~1.2k tokensUpdated yesterday
    Testing & QAAuto-check passed
  • Handsontable Visual Test Demos

    handsontable/handsontable

    Explains how to add or change the demo pages that Handsontable's visual regression suite photographs, including per-feature routes in the js demo and the shared grid.

    22k GitHub stars~1.3k tokensUpdated today
    Testing & QAAuto-check passed
  • E2E Testing

    ericrisco/rsc-harness

    A skill your agent uses when writing or stabilizing Playwright tests that drive a real browser through multi-step journeys — durable locators, web-first assertions, storageState auth, trace/retries…

    180 GitHub stars~3.2k tokensUpdated yesterday
    Testing & QAAuto-check passed
  • TDD Workflow

    hellangleZ/burn-in-cceverywhere-ralph

    A skill your agent uses when writing new features, fixing bugs, or refactoring code.

    112 GitHub starsUsed in 11 repos~2.4k tokens
    Testing & QAAuto-check passed
  • Uloop Replay Input

    kurotu/VRCQuestTools

    Replay recorded PlayMode keyboard and mouse input. An agent skill from kurotu/VRCQuestTools.

    373 GitHub starsUsed in 3 repos~615 tokens
    Testing & QAAuto-check passed

More from shm11C3/HardwareVisualizer

  • Capture Project Learning

    shm11C3/HardwareVisualizer

    Turn a HardwareVisualizer maintainer correction, repeated failure, surprising invariant, or costly investigation into an evidence-backed learning record and the right durable guardrail.

    183 GitHub stars~858 tokensUpdated yesterday
    Auto-check passed
  • Change Kind Naming

    shm11C3/HardwareVisualizer

    Decide the correct change kind and semantically align branch names, PR titles, commit prefixes, and PR template types.

    183 GitHub stars~994 tokensUpdated yesterday
    Auto-check passed
  • Gh AI Review Triage

    shm11C3/HardwareVisualizer

    Triage and optionally address AI-generated GitHub PR review feedback from Copilot, CodeRabbit, or similar bots.

    183 GitHub stars~1.1k tokensUpdated yesterday
    Auto-check passed
  • Deliver Pull Request

    shm11C3/HardwareVisualizer

    Deliver a focused HardwareVisualizer change as a pull request, then address its CI and review feedback to completion.

    183 GitHub stars~1.9k tokensUpdated yesterday
    Auto-check passed
  • Hardwarevisualizer Design Review

    shm11C3/HardwareVisualizer

    Review or shape HardwareVisualizer product and architecture changes against the maintainer's design principles.

    183 GitHub stars~1k tokensUpdated yesterday
    Auto-check passed

Questions about Verify Identity Contracts

What does Verify Identity Contracts do?

Verify the id/key contract between backend producers and frontend consumers before implementing any change that joins, selects, persists, or attributes entities keyed by backend-produced ids (GPUs…. Verify Identity Contracts is an agent skill from shm11C3/HardwareVisualizer. Verify the id/key contract between backend producers and frontend consumers before implementing any change that joins, selects, persists, or attributes entities keyed by backend-produced ids (GPUs, storage devices, sensors, processes).

When should I use Verify Identity Contracts?

Verify Identity Contracts fits situations like: adding a selector; persistence of a selected id; A join across two data sources; an e2e fixture for multi-source data.

How do I install Verify Identity Contracts in Claude Code?

Run `npx skills add shm11C3/HardwareVisualizer --skill verify-identity-contracts -a claude-code`. Or copy the skill folder (.agents/skills/verify-identity-contracts in shm11C3/HardwareVisualizer) into .claude/skills/verify-identity-contracts in your project. Claude Code loads it when a task matches its description.

How do I install Verify Identity Contracts in Codex?

Run `npx skills add shm11C3/HardwareVisualizer --skill verify-identity-contracts -a codex`. Or copy the skill folder (.agents/skills/verify-identity-contracts in shm11C3/HardwareVisualizer) into .agents/skills/verify-identity-contracts in your project. Codex loads it when a task matches its description.

Can I use Verify Identity Contracts in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add shm11C3/HardwareVisualizer --skill verify-identity-contracts -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/verify-identity-contracts, .gemini/skills/verify-identity-contracts, .github/skills/verify-identity-contracts and .opencode/skills/verify-identity-contracts in your project.

What does Verify Identity Contracts need to run?

SKILL.md names no scripts, command-line tools or credentials: Verify Identity Contracts is instructions for the agent only.

Does Verify Identity Contracts access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Verify Identity Contracts safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Verify Identity Contracts use?

Verify Identity Contracts is published under the GPL-3.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Verify Identity Contracts use?

About 1.7k tokens (SKILL.md is roughly 6.7k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Verify Identity Contracts?

Skills that share tags, products or a category with Verify Identity Contracts: Web Application Testing (anthropics/skills, 180k stars), Agentic TDD (reticlehq/reticle, 1.2k stars), Handsontable Visual Test Demos (handsontable/handsontable, 22k stars) and E2E Testing (ericrisco/rsc-harness, 180 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Verify Identity Contracts?

shm11C3 (a GitHub user) maintains it in shm11C3/HardwareVisualizer, which has 183 GitHub stars. The repository holds 6 skills in this directory. The repository was last updated on October 9, 2026.

Source: shm11C3/HardwareVisualizer on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.