Agent skill

Gerrit Permission Manager

by theneoai in theneoai/awesome-skills

Expert manager for Gerrit multi-repository and multi-branch permission configurations.

MITAuto-check passedDevelopment

Install Gerrit Permission Manager

skills CLI
$ npx skills add theneoai/awesome-skills --skill gerrit-permission-manager -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install theneoai/awesome-skills gerrit-permission-manager --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/theneoai/awesome-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/tool/security/gerrit-permission-manager .claude/skills/gerrit-permission-manager && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
gerrit-permission-manager
GitHub stars
185
Token cost
~2.5k tokens
SKILL.md length
913 words
Files
29 (incl. scripts, references)
Skills in repo
11
Repo updated
First seen
Licence
MIT

At a glance

Expert manager for Gerrit multi-repository and multi-branch permission configurations.

  • Works in 4 steps: Request → Assessment → Coordination → …
  • Working with Gerrit code review permissions
  • SKILL.md covers § 1 · System Prompt, § 10 · Troubleshooting, § 11 · Edge Cases and § 12 · Related Skills, plus 6 more sections
  • Access controls

What it does

Gerrit Permission Manager is an agent skill from theneoai/awesome-skills. Expert manager for Gerrit multi-repository and multi-branch permission configurations. Use when working with Gerrit code review permissions, access controls, repository groups, branch-level permissions, or manifest-based multi-repo management. Use when: gerrit, permissions, code-review, access-control, devops.

Its SKILL.md is about 2.5k tokens, which your agent loads only when the skill is triggered. The skill folder holds 30 other files, including scripts and reference files (for example `references/cases.md`, `references/git-flow.md` and `references/glossary.md`).

It sits in Development, covering Authorization and RBAC and Code review. The repository describes itself as: 🌟1000+ Expert AI Skills | CEO, Doctor, Engineer, Scientist & more | Transform AI into any professional | Powered by https://theneoai.github.io/skill-writer/. The licence is MIT.

When your agent uses it

  • Working with Gerrit code review permissions
  • Access controls
  • Repository groups
  • Branch-level permissions

Example prompts

  • “/gerrit-permission-manager”

Workflow steps

4 steps, taken from the step headings in SKILL.md.

  1. Request
  2. Assessment
  3. Coordination
  4. Resolution & Confirmation

What it can do on your machine

Read from SKILL.md and the folder at commit 61fe4f2. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 1 file in scripts/, which the agent can run.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • github.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Gerrit Permission Manager loads about 2.5k tokens when it runs, and up to ~17k if it reads all its reference files. Until then it costs about 84 tokens; SKILL.md has 913 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~84
When it runs · the whole SKILL.md, loaded when a task matches
~2.5k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~17k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from theneoai/awesome-skills at commit 61fe4f2, republished under its MIT licence (© theneoai). 913 words, ~2,489 tokens.

Download SKILL.mdSave it as .claude/skills/gerrit-permission-manager/SKILL.md (or your agent's skills folder). This skill also uses 28 other files; get the full folder from GitHub.
name
gerrit-permission-manager
description
Expert manager for Gerrit multi-repository and multi-branch permission configurations. Use when working with Gerrit code review permissions, access controls, repository groups, branch-level permissions, or manifest-based multi-repo management. Use when: gerrit, permissions, code-review, access-control, devops.
kind
tool
version
1.0.0
tags
- domain: special - subtype: gerrit-permission-manager - level: expert
license
MIT
metadata
author: theNeoAI <lucas_hsueh@hotmail.com>

Gerrit Permission Manager


§ 1 · System Prompt

1.1 Role Definition

Identity: You are a senior gerrit permission manager with 15+ years at top-tier technology companies (FAANG, BAT, top-tier startups). You've led mission-critical projects serving millions of users and architected systems handling billions of daily transactions.

Core Expertise:

  • Deep mastery of gerrit architecture and implementation patterns
  • Proven track record delivering high-scale, high-reliability systems (99.99%+ uptime)
  • Expert in cross-functional collaboration with design, product, and business teams
  • Pioneer in adopting and adapting cutting-edge technologies for production use
1.2 Decision Framework

First Principles:

  1. Evidence-Based — Decisions backed by data, research, or proven methodology
  2. Risk-Aware — Proactively identify and mitigate risks
  3. Outcome-Focused — Every recommendation tied to measurable results
  4. Continuous Learning — Incorporate latest research and best practices

Domain-Specific Criteria:

PriorityFactorKey Considerations
1System Reliability99.99% uptime
2QualityExceed industry standards
3EfficiencyOptimize resource utilization
4InnovationAdopt proven innovations
1.3 Thinking Patterns

Analytical: Data-driven decomposition, root cause analysis, statistical validation Creative: Cross-domain pattern matching, first-principles thinking, rapid prototyping Pragmatic: Constraint optimization, stakeholder alignment, delivery focus


§ 10 · Troubleshooting

→ Full troubleshooting guide: references/08-troubleshooting.md

ProblemRoot CauseQuick FixVerification
Permission denied on pushGroup membership missingCheck: gerrit ls-groups --member user@domainUser can push test commit
Cannot submit changeMissing submit permission or labelsVerify submit permission + required label scoresSubmit button enabled
Group not foundUUID mismatch across environmentsCheck UUID: gerrit ls-groups -v group-nameGroup resolves correctly
Manifest sync failsManifest repo read access deniedGrant read access on manifest reporepo sync succeeds
REST API 403HTTP password or SSH key issueGenerate HTTP password; verify SSH keyAPI returns 200
Drift detected after template applyManual overrides presentRe-apply template with --force flagDrift check passes
Anonymous access flaggedRegistered Users group too broadRestrict to specific groupsUnauthenticated access denied
Inheritance not workingChild project override flag setCheck parent project settingsInheritance chain intact
User removed but still has accessGerrit auth cacheFlush caches: gerrit flush-caches --cache accountsAccess denied as expected
Bulk update partial failureManifest syntax errorDry run first: --dry-run --verboseAll repos updated

§ 11 · Edge Cases

SituationHandlingValidation
Repository inheritance not workingCheck child project override flagsVerify parent permissions propagate
User removed but still has accessGerrit caches auth; run gerrit flush-caches --cache accountsConfirm access revoked
Bulk update fails on partial manifestDry run first: --dry-run --verboseAll-or-nothing atomic update
Code owner approval requiredEnsure OWNERS file exists with approversSubmit blocked without owner approval
PCI-DSS compliance requiredUse pci-dss compliance flag in auditPass all PCI-DSS checks
Graduated permissionsUse group promotion workflow over timeTrack permission changes
Circular group nestingDetect and break cyclesGroup hierarchy is DAG
Empty group grantsRemove or populate empty groupsNo empty groups with permissions
Orphaned repository permissionsClean up when repo deletedNo stale permission entries
Cross-environment group syncUse UUID mapping fileGroups match across dev/staging/prod

SkillRelationshipWhen to Use Together
devops-engineerDevOps integration with CI/CD pipelinesConfiguring CI bot permissions
security-auditorSecurity compliance and audit reportingDeep security analysis required
cloud-architectMulti-cloud Gerrit deploymentDesigning distributed Gerrit setups
git-workflow-expertGit branching strategy designImplementing git-flow permissions

Show full SKILL.md (381 more words)Show less

§ 13 · Change Log

VersionDateChangesAuthor
1.0.02026-01-15Initial releaseneo.ai
2.0.02026-02-01Added templates and Git Flow supportneo.ai
3.0.02026-03-16Full reference files added; comprehensive guideneo.ai
3.1.02026-03-2116-section standard format compliance; enhanced risk matrix; detailed workflow phases; expanded scenario examplesneo.ai

§ 14 · Contributing

Original Author: Neo.ai (@neoai) Source Repository: https://github.com/neoai/awesome-skills License: MIT License — Copyright (c) 2026 Neo.ai

Contribution Guidelines:

  • Submit issues and PRs to the source repository
  • Follow the existing documentation style
  • Include test cases for new templates
  • Update change log with each contribution

Reference documentation by the awesome-skills community.


§ 15 · Final Notes

Best Practices Summary

Gerrit permission management works best when:

  • Group structure is defined before assigning permissions — Groups are the foundation
  • Templates are used for consistency across repositories — Don't reinvent per repo
  • Inheritance from parent projects is leveraged — Reduces duplication
  • Least privilege is enforced — Minimize attack surface
  • Security audits run regularly — Catch drift early
  • Drift detection compares against baseline templates — Maintain compliance
Quick Reference Card
┌─────────────────────────────────────────────────────────────┐
│              GERRIT PERMISSION MANAGER QUICK REF            │
├─────────────────────────────────────────────────────────────┤
│  1. Always start with groups, not individuals               │
│  2. Use templates: standard | restricted | protected        │
│  3. Test in non-prod before production                      │
│  4. Backup before changes: export refs/meta/config          │
│  5. Run audit after changes: ./scripts/audit-permissions.sh │
│  6. Enable drift detection for ongoing compliance           │
└─────────────────────────────────────────────────────────────┘

Full reference documentation available in the references/ directory.


§ 16 · Install Guide

/skill install gerrit-permission-manager
Manual Install
  1. Copy the YAML frontmatter and §1 System Prompt section
  2. Paste into your agent's skill configuration
  3. Reference files in references/ are optional—SKILL.md works standalone
Platform-Specific Instructions
PlatformLocationNotes
OpenCode~/.opencode/skills/gerrit-permission-manager.mdAuto-loads on startup
Claude Code~/.claude/CLAUDE.mdAppend to existing file
Cursor~/.cursor/rules/gerrit-permission-manager.mdcMDC format required
Kimi.kimi-rulesProject-local or global
Verification

After installing, try:

"Help me set up branch protection for our main branch"

Expected response includes:

  • Template selection guidance
  • Group verification steps
  • Branch pattern recommendations
  • Security score prediction

License: MIT License — Copyright (c) 2026 Neo.ai

References

Detailed content:

Workflow

Phase 1: Request
  • Receive and document request
  • Clarify requirements and constraints
  • Assess urgency and priority

Done: Request documented, requirements clarified Fail: Unclear request, missing information

Phase 2: Assessment
  • Evaluate current state and gaps
  • Identify resources needed
  • Assess risks and alternatives

Done: Assessment complete, solution options identified Fail: Incomplete assessment, missed risks

Phase 3: Coordination
  • Coordinate with stakeholders
  • Allocate resources
  • Execute plan

Done: Coordination complete, plan executed Fail: Resource conflicts, stakeholder issues

Phase 4: Resolution & Confirmation
  • Verify resolution meets requirements
  • Obtain stakeholder sign-off
  • Document lessons learned

Done: Issue resolved, stakeholder approved Fail: Recurring issues, no sign-off

© theneoai, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 28 other files (scripts, references) in skills/tool/security/gerrit-permission-manager of theneoai/awesome-skills.

  • SKILL.md
  • references/cases.md
  • references/git-flow.md
  • references/glossary.md
  • references/overview.md
  • references/permission-templates.md
  • references/philosophy.md
  • references/risk-documentation.md
  • references/scenarios.md
  • references/standards.md
  • references/templates/git-flow.json
  • references/templates/multi-team.json
  • references/templates/protected-branches.json
  • references/templates/restricted.json
  • references/templates/standard.json
  • references/toolkit.md
  • references/troubleshooting.md
  • references/workflow.md
  • scripts
  • … and 10 more

Open the folder on GitHubat commit 61fe4f2

Compare with similar skills

Gerrit Permission Manager next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Gerrit Permission Manager compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Gerrit Permission Manager this skilltheneoai/awesome-skills185—~2.5kAutomated safety check: PassMIT
Code ReviewAzure/sap-automation146—~7kAutomated safety check: PassMIT
Code Review SecurityOWASP/secure-agent-playbook188—~549Automated safety check: PassCC-BY-4.0
SQL Code Reviewtotvs/engpro-advpl-tlpp-skills143—~3.5kAutomated safety check: PassMIT
SQL Code Reviewgithub/awesome-copilot40k1 repos~2.2kAutomated safety check: PassMIT
Phx Planoliver-kriska/claude-elixir-phoenix565—~1.5kAutomated safety check: PassMIT

Similar skills

  • Code Review

    Azure/sap-automation

    Official

    Review pull requests in the SAP Deployment Automation Framework.

    146 GitHub stars~7k tokensUpdated 2 days ago
    DevelopmentAuto-check passed
  • Code Review Security

    OWASP/secure-agent-playbook

    Security-focused code review mapped to OWASP Top 10 and ASVS.

    188 GitHub stars~549 tokensUpdated 15 days ago
    DevelopmentAuto-check passed
  • SQL Code Review

    totvs/engpro-advpl-tlpp-skills

    Universal SQL code review assistant that performs comprehensive security, maintainability, and code quality analysis across SQL databases (PostgreSQL, SQL Server, Oracle).

    143 GitHub stars~3.5k tokensUpdated 5 days ago
    DatabasesAuto-check passed
  • SQL Code Review

    github/awesome-copilot

    Official

    Universal SQL code review assistant that performs comprehensive security, maintainability, and code quality analysis across all SQL databases (MySQL, PostgreSQL, SQL Server, Oracle).

    40k GitHub starsUsed in 1 repo~2.2k tokens
    DatabasesAuto-check passed
  • Phx Plan

    oliver-kriska/claude-elixir-phoenix

    Plan features spanning multiple domains: billing (Stripe), auth (RBAC), real-time (Presence), webhooks, jobs (Oban).

    565 GitHub stars~1.5k tokensUpdated 5 days ago
    Backend & APIsAuto-check passed
  • Plan

    oliver-kriska/claude-elixir-phoenix

    Plan features spanning multiple domains: billing (Stripe), auth (RBAC), real-time (Presence), webhooks, jobs (Oban).

    565 GitHub stars~1.6k tokensUpdated 5 days ago
    Backend & APIsAuto-check passed

More from theneoai/awesome-skills

All 11 skills in this repo
  • Abaqus Expert

    theneoai/awesome-skills

    Invoke when: User needs help with Abaqus FEA, nonlinear analysis, contact mechanics, or material modeling.

    185 GitHub stars~3.7k tokensUpdated 4 mo ago
    Auto-check passed
  • Abaqus Lhs Batch Dataset

    theneoai/awesome-skills

    Generate an Abaqus FEA training dataset for surrogate / ML models.

    185 GitHub stars~2.9k tokensUpdated 4 mo ago
    Auto-check: notes
  • Abaqus Odb To Grid CSV

    theneoai/awesome-skills

    Convert per-case Abaqus FEA outputs into ML-ready (X, Y) wide-table CSVs.

    185 GitHub stars~2.8k tokensUpdated 4 mo ago
    Auto-check: notes
  • Abaqus Surrogate Fea Validation

    theneoai/awesome-skills

    Closed-loop inverse-design validation. An agent skill from theneoai/awesome-skills.

    185 GitHub stars~3.4k tokensUpdated 4 mo ago
    Auto-check: notes
  • Academic Advisor

    theneoai/awesome-skills

    Expert Academic Advisor specializing in academic planning, degree requirements, student success coaching, and career pathway integration.

    185 GitHub stars~1.4k tokensUpdated 4 mo ago
    Auto-check passed
  • Academic Director

    theneoai/awesome-skills

    Expert Academic Director with 20+ years experience in K-12 or higher education administration, curriculum planning, teacher supervision, and academic standards.

    185 GitHub stars~1.7k tokensUpdated 4 mo ago
    Auto-check passed

Questions about Gerrit Permission Manager

What does Gerrit Permission Manager do?

Expert manager for Gerrit multi-repository and multi-branch permission configurations. Gerrit Permission Manager is an agent skill from theneoai/awesome-skills. Expert manager for Gerrit multi-repository and multi-branch permission configurations.

When should I use Gerrit Permission Manager?

Gerrit Permission Manager fits situations like: working with Gerrit code review permissions; access controls; repository groups; branch-level permissions.

How do I install Gerrit Permission Manager in Claude Code?

Run `npx skills add theneoai/awesome-skills --skill gerrit-permission-manager -a claude-code`. Or copy the skill folder (skills/tool/security/gerrit-permission-manager in theneoai/awesome-skills) into .claude/skills/gerrit-permission-manager in your project. Claude Code loads it when a task matches its description.

How do I install Gerrit Permission Manager in Codex?

Run `npx skills add theneoai/awesome-skills --skill gerrit-permission-manager -a codex`. Or copy the skill folder (skills/tool/security/gerrit-permission-manager in theneoai/awesome-skills) into .agents/skills/gerrit-permission-manager in your project. Codex loads it when a task matches its description.

Can I use Gerrit Permission Manager in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add theneoai/awesome-skills --skill gerrit-permission-manager -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/gerrit-permission-manager, .gemini/skills/gerrit-permission-manager, .github/skills/gerrit-permission-manager and .opencode/skills/gerrit-permission-manager in your project.

What does Gerrit Permission Manager need to run?

SKILL.md names no scripts, command-line tools or credentials: Gerrit Permission Manager is instructions for the agent only.

Does Gerrit Permission Manager access the network?

SKILL.md names 1 domain. As links in the text: github.com. This is read from the text; nothing was executed.

Is Gerrit Permission Manager safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Gerrit Permission Manager use?

Gerrit Permission Manager is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Gerrit Permission Manager use?

About 2.5k tokens (SKILL.md is roughly 10k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 15k tokens, read only when the agent opens those files.

What are the alternatives to Gerrit Permission Manager?

Skills that share tags, products or a category with Gerrit Permission Manager: Code Review (Azure/sap-automation, 146 stars), Code Review Security (OWASP/secure-agent-playbook, 188 stars), SQL Code Review (totvs/engpro-advpl-tlpp-skills, 143 stars) and SQL Code Review (github/awesome-copilot, 40k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Gerrit Permission Manager?

theneoai (a GitHub user) maintains it in theneoai/awesome-skills, which has 185 GitHub stars. The repository holds 11 skills in this directory. The repository was last updated on May 15, 2026.

Source: theneoai/awesome-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.