Agent skill

Supercheck Execution Engine

by supercheck-io in supercheck-io/supercheck

Work on Supercheck BullMQ queues, schedulers, capacity management, Playwright or k6 execution, monitors, dynamic locations, cancellation, Redis, Kubernetes Jobs, gVisor, or app-worker execution…

AGPL-3.0Auto-check passedTesting & QA

Install Supercheck Execution Engine

skills CLI
$ npx skills add supercheck-io/supercheck --skill supercheck-execution-engine -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install supercheck-io/supercheck supercheck-execution-engine --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/supercheck-io/supercheck.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/execution-engine .claude/skills/supercheck-execution-engine && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
supercheck-execution-engine
GitHub stars
215
Token cost
~1.2k tokens
SKILL.md length
487 words
Files
1
Skills in repo
12
Repo updated
First seen
Licence
AGPL-3.0

At a glance

Work on Supercheck BullMQ queues, schedulers, capacity management, Playwright or k6 execution, monitors, dynamic locations, cancellation, Redis, Kubernetes Jobs, gVisor, or app-worker execution…

  • Tasks that involve Load testing
  • SKILL.md covers Workload model, Capacity and idempotency, Redis and BullMQ and Payloads, secrets, and artifacts, plus 3 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • Tasks that involve Container orchestration

What it does

Supercheck Execution Engine is an agent skill from supercheck-io/supercheck. Work on Supercheck BullMQ queues, schedulers, capacity management, Playwright or k6 execution, monitors, dynamic locations, cancellation, Redis, Kubernetes Jobs, gVisor, or app-worker execution contracts.

Its SKILL.md is about 1.2k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Testing & QA, covering Load testing, Container orchestration and Browser testing. It works with Redis, Playwright and Kubernetes. The repository describes itself as: Open-Source Testing, Monitoring, and AI SRE — as Code. The licence is AGPL-3.0.

When your agent uses it

  • Tasks that involve Load testing
  • Tasks that involve Container orchestration
  • Tasks that involve Browser testing

Example prompts

  • “/supercheck-execution-engine”

What it can do on your machine

Read from SKILL.md and the folder at commit 1989526. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md (its code samples are mermaid).

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Supercheck Execution Engine loads about 1.2k tokens when it runs. Until then it costs about 58 tokens; SKILL.md has 487 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~58
When it runs · the whole SKILL.md, loaded when a task matches
~1.2k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from supercheck-io/supercheck at commit 1989526, republished under its AGPL-3.0 licence (© supercheck-io). 487 words, ~1,154 tokens.

Download SKILL.mdSave it as .claude/skills/supercheck-execution-engine/SKILL.md (or your agent's skills folder).
name
supercheck-execution-engine
description
Work on Supercheck BullMQ queues, schedulers, capacity management, Playwright or k6 execution, monitors, dynamic locations, cancellation, Redis, Kubernetes Jobs, gVisor, or app-worker execution contracts.

Supercheck execution engine

mermaid
flowchart LR
  TRIGGER[Manual, schedule, webhook, CLI] --> GATE[Atomic capacity reservation]
  GATE --> Q[(Regional or global BullMQ queue)]
  Q --> W[NestJS worker]
  W --> JOB[Kubernetes Job]
  JOB --> GV[gVisor sandbox]
  GV --> RESULT[Database and object storage]
  RESULT --> RELEASE[Terminal state and capacity release]

Workload model

  • App routes/actions/schedulers admit and enqueue Playwright, k6, and monitor work.
  • Scheduler processors execute in the app tier so scheduled work passes through central capacity policy. Workers must not consume scheduler payloads.
  • Worker processors under worker/src/execution, worker/src/k6, and worker/src/monitor run independently from the app release.
  • Regional queues target configured locations; global queues are used only when any eligible worker may process the job.
  • Queue constants, payload types, status enums, retries, timeout meanings, IDs, and result contracts must remain in app/worker parity.

Capacity and idempotency

  • Organization-level admission is the capacity source of truth. Running and queued reservations use atomic Redis operations and fail closed if capacity state cannot be trusted.
  • Reserve before dispatch. Release exactly once on every terminal path: completion, terminal failure, cancellation, timeout, dispatch failure, and unrecoverable worker loss.
  • Retryable BullMQ attempts retain the reservation until the job becomes terminal.
  • Duplicate delivery, scheduler overlap, API retries, and webhook retries must not create duplicate executions or double-release capacity.
  • Keep configured app capacity, worker replicas, per-processor concurrency, and Kubernetes resource ceilings coherent.

Redis and BullMQ

  • Redis must use maxmemory-policy noeviction; evicting queue keys can lose or corrupt jobs.
  • General queue operations may share appropriate base connections.
  • Every QueueEvents consumer uses an independent duplicated connection because blocking XREAD cannot share a normal command connection.
  • Do not set commandTimeout on shared options inherited by QueueEvents. Keep bounded connection establishment while allowing intentional failover reconnection.
  • Monitor connection count across app replicas, workers, schedulers, dashboards, and event streams.

Payloads, secrets, and artifacts

  • Queue payloads contain trusted identifiers and bounded safe execution inputs—not decrypted tenant secrets.
  • Workers resolve current scoped variables immediately before execution and redact values from output.
  • Large scripts/results/artifacts belong in bounded payload/storage paths, not oversized Redis values or unbounded process memory.
  • Artifact upload failures have explicit timeout/retry behavior and cannot leave runs permanently active.
Show full SKILL.md (182 more words)Show less

Cancellation and failures

  • Cancellation is idempotent: mark intent, stop queued work or signal active work, terminate the execution Job when necessary, persist one terminal state, and release capacity once.
  • Let BullMQ retry eligible failures; do not swallow processor errors after marking an intermediate state.
  • Stalled-job policy is bounded and aligned with execution duration/lock settings.
  • Worker shutdown drains or safely relinquishes work and does not orphan Jobs or reservations.

Production sandbox

  • Production execution runs in a dedicated namespace with runtimeClassName: gvisor and fails closed if required isolation is unavailable.
  • EXECUTION_RUNTIME_CLASS_NAME=none is local-development only.
  • Jobs use the zero-permission execution service account, non-root identity, read-only root filesystem, dropped capabilities, no privilege escalation, bounded writable storage, CPU/memory/ephemeral limits, and deadline/cleanup settings.
  • Namespace LimitRange/ResourceQuota and worker-configured ceilings stay aligned.
  • NetworkPolicy denies by default and allows only required DNS/egress. Application SSRF protection remains required even with network isolation.

Verification

  • Test races at capacity boundaries, duplicate dispatch, retries, cancellation timing, Redis loss/recovery, worker loss, timeout, upload failure, and cleanup.
  • Test rolling app/worker compatibility and location normalization/routing.
  • Render the actual Kubernetes Job and security policy; source-template review alone is insufficient.

© supercheck-io, AGPL-3.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .agents/skills/execution-engine of supercheck-io/supercheck.

Open the folder on GitHubat commit 1989526

Compare with similar skills

Supercheck Execution Engine next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Supercheck Execution Engine compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Supercheck Execution Engine this skillsupercheck-io/supercheck215—~1.2kAutomated safety check: PassAGPL-3.0
Demo Cnpg Local Web Ngcarverauto/serviceradar921—~672Automated safety check: PassApache-2.0
Fieldsurvey Local Web Ngcarverauto/serviceradar921—~785Automated safety check: PassApache-2.0
Mail Timeveliovgroup/mail-time143—~1kAutomated safety check: PassBSD-3-Clause
Tgf Server Devthkhxm/tgf128—~1.3kAutomated safety check: NotesMIT
E2E Testingredis/RedisInsight8.9k—~5.1kAutomated safety check: PassCustom licence

Similar skills

  • Demo Cnpg Local Web Ng

    carverauto/serviceradar

    Run ServiceRadar web-ng locally against the live Kubernetes demo CNPG database for dashboard, SRQL, services, and UI testing.

    921 GitHub stars~672 tokensUpdated today
    DevOps & CloudAuto-check passed
  • Fieldsurvey Local Web Ng

    carverauto/serviceradar

    Run ServiceRadar web-ng locally against the Kubernetes demo namespace FieldSurvey data, including CNPG NodePort access, NATS Object Store artifact access, authenticated browser checks, and…

    921 GitHub stars~785 tokensUpdated today
    DevOps & CloudAuto-check passed
  • Mail Time

    veliovgroup/mail-time

    A skill your agent uses when building, wiring, reviewing, or debugging MailTime and ostrio:mailer email queues for horizontally scaled Node.js, Bun, or Meteor apps.

    143 GitHub stars~1k tokensUpdated 7 days ago
    DatabasesAuto-check passed
  • Tgf Server Dev

    thkhxm/tgf

    基于 tgf v2(github.com/thkhxm/tgf/v2)用确定性的 tgfctl 工作流创建、验证和维护 Go 游戏服务器项目。

    128 GitHub stars~1.3k tokensUpdated 2 mo ago
    DatabasesAuto-check: notes
  • E2E Testing

    redis/RedisInsight

    Official

    Playwright end-to-end testing standards for RedisInsight: page object models, test structure, fixtures, navigation patterns, and flaky-test prevention.

    8.9k GitHub stars~5.1k tokensUpdated 2 days ago
    Testing & QAAuto-check passed
  • E2E

    openathleteorg/openathlete

    Run, debug or extend the OpenAthlete Playwright end-to-end tests, which exercise the production Docker images (API, worker, web, PostgreSQL, Redis) through the API and a real browser on desktop and…

    100 GitHub stars~675 tokensUpdated yesterday
    Testing & QAAuto-check passed

More from supercheck-io/supercheck

All 12 skills in this repo
  • Supercheck Security Auth

    supercheck-io/supercheck

    Work on Supercheck authentication, RBAC, tenant isolation, sessions, API and trigger keys, invitations, project membership, project variables, OAuth, super-admin behavior, SSRF, or…

    215 GitHub stars~1.2k tokensUpdated today
    Auto-check passed
  • Supercheck Architecture

    supercheck-io/supercheck

    Work on Supercheck system architecture, Next.js routes and actions, React data hooks, Drizzle schemas and migrations, app-worker boundaries, or cross-package contracts.

    215 GitHub stars~1.3k tokensUpdated today
    Auto-check passed
  • Supercheck Code Review

    supercheck-io/supercheck

    Review Supercheck staged, unstaged, commit, branch, or pull-request changes for correctness, regressions, security, tenancy, architecture, tests, docs, licensing, and commit/merge/release readiness.

    215 GitHub stars~1k tokensUpdated today
    Auto-check passed
  • Supercheck Data Storage

    supercheck-io/supercheck

    Work on Supercheck PostgreSQL data, S3 or MinIO artifacts, signed URLs and asset proxying, retention cleanup, dashboard/report queries, exports, or audit logging.

    215 GitHub stars~942 tokensUpdated today
    Auto-check passed
  • Supercheck Feature Implementation

    supercheck-io/supercheck

    Implement a new or changed Supercheck feature end to end across schema, auth/RBAC, services, routes/actions, UI, queues/workers, CLI/recorder, tests, docs, and deployment contracts.

    215 GitHub stars~1.1k tokensUpdated today
    Auto-check passed
  • Supercheck Infrastructure Deployment

    supercheck-io/supercheck

    Work on Supercheck Docker Compose, K3s, Kubernetes manifests, gVisor, OpenTofu/Hetzner, secrets, external services, autoscaling, backups, disaster recovery, DNS/TLS, or production deployment.

    215 GitHub stars~1.4k tokensUpdated today
    Auto-check: notes

Questions about Supercheck Execution Engine

What does Supercheck Execution Engine do?

Work on Supercheck BullMQ queues, schedulers, capacity management, Playwright or k6 execution, monitors, dynamic locations, cancellation, Redis, Kubernetes Jobs, gVisor, or app-worker execution…. Supercheck Execution Engine is an agent skill from supercheck-io/supercheck. Work on Supercheck BullMQ queues, schedulers, capacity management, Playwright or k6 execution, monitors, dynamic locations, cancellation, Redis, Kubernetes Jobs, gVisor, or app-worker execution contracts.

When should I use Supercheck Execution Engine?

Supercheck Execution Engine fits situations like: tasks that involve Load testing; tasks that involve Container orchestration; tasks that involve Browser testing.

How do I install Supercheck Execution Engine in Claude Code?

Run `npx skills add supercheck-io/supercheck --skill supercheck-execution-engine -a claude-code`. Or copy the skill folder (.agents/skills/execution-engine in supercheck-io/supercheck) into .claude/skills/supercheck-execution-engine in your project. Claude Code loads it when a task matches its description.

How do I install Supercheck Execution Engine in Codex?

Run `npx skills add supercheck-io/supercheck --skill supercheck-execution-engine -a codex`. Or copy the skill folder (.agents/skills/execution-engine in supercheck-io/supercheck) into .agents/skills/supercheck-execution-engine in your project. Codex loads it when a task matches its description.

Can I use Supercheck Execution Engine in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add supercheck-io/supercheck --skill supercheck-execution-engine -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/supercheck-execution-engine, .gemini/skills/supercheck-execution-engine, .github/skills/supercheck-execution-engine and .opencode/skills/supercheck-execution-engine in your project.

What does Supercheck Execution Engine need to run?

SKILL.md names no scripts, command-line tools or credentials: Supercheck Execution Engine is instructions for the agent only.

Does Supercheck Execution Engine access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Supercheck Execution Engine safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Supercheck Execution Engine use?

Supercheck Execution Engine is published under the AGPL-3.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Supercheck Execution Engine use?

About 1.2k tokens (SKILL.md is roughly 4.6k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Supercheck Execution Engine?

Skills that share tags, products or a category with Supercheck Execution Engine: Demo Cnpg Local Web Ng (carverauto/serviceradar, 921 stars), Fieldsurvey Local Web Ng (carverauto/serviceradar, 921 stars), Mail Time (veliovgroup/mail-time, 143 stars) and Tgf Server Dev (thkhxm/tgf, 128 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Supercheck Execution Engine?

supercheck-io (a GitHub organization) maintains it in supercheck-io/supercheck, which has 215 GitHub stars. The repository holds 12 skills in this directory. The repository was last updated on October 7, 2026.

Source: supercheck-io/supercheck on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.