Agent skill

Gas Execution

by tanaikech in tanaikech/ggsrun

Guidelines for writing and executing Google Apps Script code using ggsrun and finding documentation via workspace-developer.

MITAuto-check passedAgent Workflows

Install Gas Execution

skills CLI
$ npx skills add tanaikech/ggsrun --skill gas-execution -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install tanaikech/ggsrun gas-execution --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/tanaikech/ggsrun.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/gas-execution .claude/skills/gas-execution && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
gas-execution
GitHub stars
173
Token cost
~2.5k tokens
SKILL.md length
1,321 words
Files
1
Skills in repo
1
Repo updated
First seen
Licence
MIT

At a glance

Guidelines for writing and executing Google Apps Script code using ggsrun and finding documentation via workspace-developer.

  • Works in 5 steps: searchfiles → filelist → download → …
  • Running GAS applications
  • SKILL.md covers Script Execution via ggsrun, Other ggsrun MCP Server Tools, Verifying GAS API Usage and Code Review & Security Checklist
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Gas Execution is an agent skill from tanaikech/ggsrun. Guidelines for writing and executing Google Apps Script code using ggsrun and finding documentation via workspace-developer. Use when developing or running GAS applications.

Its SKILL.md is about 2.5k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Agent Workflows, covering MCP servers. It works with Model Context Protocol, Go and Google Drive. The repository describes itself as: High-performance Google Drive CLI and Model Context Protocol (MCP) Server for LLM/AI agents. Natively execute Google Apps Script (GAS) under a secure whitelisted runtime sandbox… The licence is MIT.

When your agent uses it

  • Running GAS applications
  • Tasks that involve MCP servers

Example prompts

  • “Use the gas-execution skill to guideline for writing and executing Google Apps Script code using ggsrun and finding documentation via…”
  • “/gas-execution”

Workflow steps

5 steps, taken from the step headings in SKILL.md.

  1. searchfiles
  2. filelist
  3. download
  4. upload
  5. updateproject

What it can do on your machine

Read from SKILL.md and the folder at commit 63db6b5. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Gas Execution loads about 2.5k tokens when it runs. Until then it costs about 47 tokens; SKILL.md has 1,321 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~47
When it runs · the whole SKILL.md, loaded when a task matches
~2.5k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from tanaikech/ggsrun at commit 63db6b5, republished under its MIT licence (© tanaikech). 1,321 words, ~2,503 tokens.

Download SKILL.mdSave it as .claude/skills/gas-execution/SKILL.md (or your agent's skills folder).
name
gas-execution
description
Guidelines for writing and executing Google Apps Script code using ggsrun and finding documentation via workspace-developer. Use when developing or running GAS applications.

Google Apps Script Execution and Development Skill

Follow these guidelines when writing, reviewing, and executing Google Apps Script (GAS) applications:

Script Execution via ggsrun

  • Execution Tool (exe1): Always prefer the exe1 tool of the ggsrun MCP server to synchronize local code/directories and run the entry function in a single transaction.
  • Opt-in Log Retrieval (Default Off): To guarantee sub-second execution, ggsrun does not fetch logs from Cloud Logging by default. If you need to inspect Logger.log() or console.log() outputs, you must explicitly set the log: true parameter (or use the --log / -l flag in CLI mode). Note that enabling log retrieval adds a 5–10 second delay to allow Google's indexing.
  • Clock-Drift Immunity: ggsrun queries Cloud Logging using a wide past window (timestamp >= startTime - 60m) and completely omits any future upper bounds (timestamp <= ...). This makes the query completely immune to local clock drift (e.g., when the host machine's clock is minutes or hours behind the actual time). Do not worry about clock discrepancies when retrieving logs.
  • Post-Detection Multi-Poll Buffer: Due to Google's parallel logging nodes, console.log and Logger.log can index several seconds apart. Once ggsrun detects the first log entry for the current Apps Script process_id, it automatically queries 4 more times at 2.0-second intervals (providing an 8.0-second stabilization window) to capture all lagging streams.
  • TUI On-Demand Async Log Injection: When executing via the TUI (ggsrun fd), the execution result is displayed instantly without waiting. An overlay modal then prompts: "Do you want to retrieve execution logs from Cloud Logging?". If you select Yes, logs are fetched in a background goroutine and dynamically injected into the active text view.
  • In-Memory Sandbox (sandbox): For secure execution, pass the path of your whitelist configuration JSON (e.g. sandbox: "sandbox_config.json") to exe1. This instructs ggsrun to generate a separate sandbox guard file (_for_sandbox_gas.gs) containing the whitelists, which is evaluated first alphabetically by the GAS V8 engine. The user's execution scripts only undergo static token replacement (e.g., SpreadsheetApp -> _wrappedSpreadsheetApp), meaning their line numbers remain completely unchanged. If an error occurs, the line numbers in the stack trace will match your local source files exactly, allowing you to debug directly.
  • Auto-Cleanup & Resilient Rollback: ggsrun performs an in-memory backup of the remote project state (including all script files and the appsscript.json manifest). On execution completion, runtime sandboxing halts, or process interrupts (Ctrl+C), ggsrun automatically rolls back all file changes on the remote script project, leaving your codebase 100% clean and pristine. This cleanup behavior is enabled by default. To bypass this cleanup and leave the uploaded files in the remote project, use the undeleteScript: true option (or --undeleteScript / --ud flag in CLI mode).
  • Intelligent Manifest Merging: When executing scripts that require Advanced Services or custom dependencies, you can upload a local appsscript.json manifest. ggsrun will automatically merge your dependencies (e.g., enabledAdvancedServices or custom libraries) with the remote project's existing manifest without breaking critical configurations like executionApi or webapp needed for execution.
  • Self-Healing Recovery: If a script execution is interrupted and the remote project is left in an inconsistent state, you can run the ggsrun recover command to immediately restore the project to the pristine ggsrun state.
  • Designing Return Values: The execution response displays only the value returned by the return statement of the executed function. Design your script to return a meaningful value representing the execution result.
  • Detailed Logs: You can return detailed logs or execution summaries as the final return string to provide context and results to the user.
  • JSON Serialization: If returning structured data (such as objects, arrays, or status maps), use JSON.stringify() to serialize it before returning.

Other ggsrun MCP Server Tools

Beyond the stateful script execution (exe1), you can leverage the following tools from the ggsrun-mcp server for managing files, projects, and directories on Google Drive:

1. searchfiles
  • Purpose: Search for files or folders in Google Drive using standard Drive API v3 queries, with optional local regex filtering on filenames.
  • Usage Guide: Specify the query (e.g., name = 'MyScript' and trashed = false or mimeType = 'application/vnd.google-apps.folder'). Optionally provide a regex pattern to filter result names.
  • Example Case: Finding the folder ID named "Backup" or discovering spreadsheet files with a matching pattern:
    • Arguments: { "query": "mimeType = 'application/vnd.google-apps.spreadsheet' and trashed = false", "regex": "^Production_.*" }
2. filelist
  • Purpose: Perform exact matches by File Name or resolve filenames by File ID on Google Drive.
  • Usage Guide: Use searchbyname to find IDs matching an exact name, or searchbyid to get the metadata of a specific ID.
  • Example Case: Quick lookup of a target Spreadsheet ID before execution:
    • Arguments: { "searchbyname": "TargetSpreadsheet" }
3. download
  • Purpose: Download files or entire recursive folder structures to your local system, supporting on-the-fly Google Workspace format export.
  • Usage Guide: Provide the target fileid. Use the extension parameter to convert Google Docs, Sheets, Slides, or Drawings to local formats (e.g., Doc -> PDF/Markdown, Sheet -> Excel/CSV).
  • Example Case: Fetching a Google Spreadsheet as an .xlsx file into a local ./downloads folder:
    • Arguments: { "fileid": "SPREADSHEET_ID", "extension": "xlsx", "destination": "./downloads", "conflict-mode": "OverwriteIfNewer" }
Show full SKILL.md (505 more words)Show less
4. upload
  • Purpose: Upload local files or recursive directory structures to Google Drive.
  • Usage Guide: Specify the local filename to upload. By default, it automatically maps extensions to convert them into Google Workspace formats. You can set convertto (e.g., 'sheet', 'doc', 'slide') or use noconvert: true to bypass.
  • Example Case: Uploading local CSV reports into Google Drive and converting them into Google Sheets under a specific folder:
    • Arguments: { "filename": "./data/report.csv", "convertto": "sheet", "parentfolderid": "FOLDER_ID" }
5. updateproject
  • Purpose: Synchronize local scripts to an existing remote GAS project.
  • CRITICAL Agent Rules:
    1. Do NOT use this tool if you need to run the script afterward; use exe1 instead.
    2. User Confirmation Required: Since it overwrites files remotely, you must display the list of local files to the user and obtain their permission (Y/N) before executing.
    3. If conflict resolution is ambiguous, ask the user whether to overwrite or add duplicates.
  • Example Case: Deploying a folder of source files to an existing Apps Script project ID:
    • Arguments: { "projectid": "SCRIPT_ID", "filename": "./src/", "conflict": "overwrite", "backup": true }

Verifying GAS API Usage

  • Documentation Search: When you are unsure about the methods, behaviors, or parameters of built-in GAS classes (e.g., DriveApp, GmailApp, SpreadsheetApp), query the workspace-developer MCP server to fetch detailed class references and usage examples.

Code Review & Security Checklist

When reviewing or before executing generated GAS code, you must strictly perform a security code review.

Security Checklist
  1. Google Drive & Document Access: Does the script read, write, or delete files/folders (DriveApp, SpreadsheetApp, DocumentApp, SlidesApp)? Verify that only authorized files/folders are modified or deleted.
  2. Gmail & Mailing: Does the script read emails, drafts, or send messages (GmailApp, MailApp)? Check if recipient addresses and message contents are safe and authorized.
  3. Calendar Events: Does the script read, write, or delete calendar events (CalendarApp)? Confirm that only designated Calendars and Events are manipulated.
  4. Outbound Network Connections: Does the script fetch external resources (UrlFetchApp)? Validate the target URL to ensure no credentials or sensitive data are being exfiltrated to untrusted endpoints.
  5. Hardcoded Secrets: Are there any hardcoded API keys, OAuth tokens, or passwords? Ensure no credentials are exposed in the source code.
  6. Destructive Actions: Does the code perform any bulk or irreversible deletion/overwriting of data?
How to Proceed with Execution & Safety Gate

Before executing the script using ggsrun's exe1 tool, follow this secure orchestration workflow:

  1. Summarize Accessed Services: Clearly show the user which Google APIs and external URLs the script will access.
  2. Configure Whitelists: Ask the user to verify if they have configured sandbox_config.json (or your specific config file) to include the required File IDs, folder IDs, emails, and URLs.
  3. Handle MCP Safety Gate:
    • For safety, the MCP server automatically intercepts exe1 calls and performs a static analysis check (analyzeGASScript).
    • If any potential write/egress APIs are detected, and "confirm": false (or omitted), execution is blocked and returns a warning report.
    • To proceed with execution on authorized projects, you MUST explicitly call the tool again setting "confirm": true. Do not guess or skip this parameter when you have user consent.

© tanaikech, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/gas-execution of tanaikech/ggsrun.

Open the folder on GitHubat commit 63db6b5

Compare with similar skills

Gas Execution next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Gas Execution compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Gas Execution this skilltanaikech/ggsrun173—~2.5kAutomated safety check: PassMIT
Local DevSmilyOrg/photofield608—~2.4kAutomated safety check: PassMIT
fp-go MCP Server SetupIBM/fp-go2k—~3.3kAutomated safety check: PassApache-2.0
Add an MCP Tool to remindbradimsem/remindb129—~2.1kAutomated safety check: PassMIT
Pp Flowmvanhorn/printing-press-library2.1k—~7.9kAutomated safety check: NotesApache-2.0
Golang Pkg Go Devcontext-labs/whip1.1k2 repos~3kAutomated safety check: PassMIT

Similar skills

  • Local Dev

    SmilyOrg/photofield

    Run, test, and debug the photofield server locally. An agent skill from SmilyOrg/photofield.

    608 GitHub stars~2.4k tokensUpdated 1 mo ago
    Agent WorkflowsAuto-check passed
  • Official

    Configures and queries the fp-go MCP server so Claude Code, Claude Desktop or another MCP client can search fp-go's examples and skills directly.

    2k GitHub stars~3.3k tokensUpdated yesterday
    Agent WorkflowsAuto-check passed
  • Checklist for adding a new Memory-prefixed tool to remindb's Go MCP server: tool file, registration, test, skill docs, plus the locking and logging rules.

    129 GitHub stars~2.1k tokensUpdated 2 mo ago
    Agent WorkflowsAuto-check passed
  • Pp Flow

    mvanhorn/printing-press-library

    Everything Flow's community CLIs and MCP servers do, plus the two things none of them do: real Google Drive ingestion and an honest audio-drama pipeline that closes the loop Flow itself cannot.

    2.1k GitHub stars~7.9k tokensUpdated today
    Agent WorkflowsAuto-check: notes
  • Golang Pkg Go Dev

    context-labs/whip

    Golang package/module docs via godig, a pkg.go.dev API client (CLI + MCP) — APIs, symbols, versions, importers, licenses, vulnerabilities.

    1.1k GitHub starsUsed in 2 repos~3k tokens
    SecurityAuto-check passed
  • Deploy Observability

    aliyun/alibabacloud-observability-mcp-server

    Deploy, start, and update the Alibaba Cloud Observability MCP Server (阿里云可观测 MCP Server).

    166 GitHub stars~2.6k tokensUpdated 1 mo ago
    DevOps & CloudAuto-check: notes

Categories

Questions about Gas Execution

What does Gas Execution do?

Guidelines for writing and executing Google Apps Script code using ggsrun and finding documentation via workspace-developer. Gas Execution is an agent skill from tanaikech/ggsrun. Guidelines for writing and executing Google Apps Script code using ggsrun and finding documentation via workspace-developer.

When should I use Gas Execution?

Gas Execution fits situations like: running GAS applications; tasks that involve MCP servers.

How do I install Gas Execution in Claude Code?

Run `npx skills add tanaikech/ggsrun --skill gas-execution -a claude-code`. Or copy the skill folder (skills/gas-execution in tanaikech/ggsrun) into .claude/skills/gas-execution in your project. Claude Code loads it when a task matches its description.

How do I install Gas Execution in Codex?

Run `npx skills add tanaikech/ggsrun --skill gas-execution -a codex`. Or copy the skill folder (skills/gas-execution in tanaikech/ggsrun) into .agents/skills/gas-execution in your project. Codex loads it when a task matches its description.

Can I use Gas Execution in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add tanaikech/ggsrun --skill gas-execution -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/gas-execution, .gemini/skills/gas-execution, .github/skills/gas-execution and .opencode/skills/gas-execution in your project.

What does Gas Execution need to run?

SKILL.md names no scripts, command-line tools or credentials: Gas Execution is instructions for the agent only.

Does Gas Execution access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Gas Execution safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Gas Execution use?

Gas Execution is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Gas Execution use?

About 2.5k tokens (SKILL.md is roughly 10k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Gas Execution?

Skills that share tags, products or a category with Gas Execution: Local Dev (SmilyOrg/photofield, 608 stars), fp-go MCP Server Setup (IBM/fp-go, 2k stars), Add an MCP Tool to remindb (radimsem/remindb, 129 stars) and Pp Flow (mvanhorn/printing-press-library, 2.1k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Gas Execution?

tanaikech (a GitHub user) maintains it in tanaikech/ggsrun, which has 173 GitHub stars. The repository was last updated on August 26, 2026.

Source: tanaikech/ggsrun on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.