Agent skill

Build Dashclaw

by ucsandman in ucsandman/DashClaw

Contribute to the DashClaw codebase — architecture, scaffolding, tests, CI

MITAuto-check passedAI & LLM Engineering

Install Build Dashclaw

skills CLI
$ npx skills add ucsandman/DashClaw --skill build-dashclaw -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install ucsandman/DashClaw build-dashclaw --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/ucsandman/DashClaw.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.claude/skills/dashclaw-agent/build-dashclaw .claude/skills/build-dashclaw && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
build-dashclaw
GitHub stars
310
Token cost
~1.3k tokens
SKILL.md length
511 words
Files
1
Skills in repo
13
Repo updated
First seen
Licence
MIT

At a glance

Contribute to the DashClaw codebase — architecture, scaffolding, tests, CI

  • Works in 12 steps: Migration — Add table with TEXT PKs and… → Repository — Create… → Lib module — Create app/lib/.js… → …
  • Tasks that involve Project scaffolding
  • SKILL.md covers Architecture Overview, Tech Stack, Key Conventions and 12-Step Scaffold for New…, plus 5 more sections
  • Calls npm and npx

What it does

Build Dashclaw is an agent skill from ucsandman/DashClaw. Contribute to the DashClaw codebase — architecture, scaffolding, tests, CI

Its SKILL.md is about 1.3k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in AI & LLM Engineering, covering Project scaffolding and Building AI agents. It works with Model Context Protocol and SQL. The repository describes itself as: Remote approvals, policy checks, and execution evidence for unattended AI agents. The licence is MIT.

When your agent uses it

  • Tasks that involve Project scaffolding
  • Tasks that involve Building AI agents

Example prompts

  • “/build-dashclaw”

Requirements

  • Python 3
  • Node.js

Workflow steps

12 steps, taken from the first numbered list in SKILL.md.

  1. Migration — Add table with TEXT PKs and crypto-random IDs
  2. Repository — Create app/lib/repositories/.repository.js (all SQL here)
  3. Lib module — Create app/lib/.js (business logic)
  4. Route handler — Create app/api//route.js (imports from repository)
  5. Demo fixtures — Add fixture data if the feature needs demo mode support
  6. Demo middleware — Wire fixtures into demo mode if needed
  7. Node SDK method — Add to sdk/dashclaw.js (camelCase)
  8. Python SDK method — Add to sdk-python/dashclaw/client.py (snake_case)
  9. Docs page — Create dashboard page or update existing docs
  10. Node README — Add method to SDK README
  11. Python README — Add method to Python SDK README
  12. Parity matrix — Update docs/sdk-parity.md with new method counts

What it can do on your machine

Read from SKILL.md and the folder at commit 704824d. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • npm
    • npx

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use npm and npx, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Build Dashclaw loads about 1.3k tokens when it runs. Until then it costs about 22 tokens; SKILL.md has 511 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~22
When it runs · the whole SKILL.md, loaded when a task matches
~1.3k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from ucsandman/DashClaw at commit 704824d, republished under its MIT licence (© ucsandman). 511 words, ~1,338 tokens.

Download SKILL.mdSave it as .claude/skills/build-dashclaw/SKILL.md (or your agent's skills folder).
name
build-dashclaw
description
Contribute to the DashClaw codebase — architecture, scaffolding, tests, CI
license
MIT
metadata.author
ucsandman
metadata.version
1.0.0
metadata.category
development

Build DashClaw

Guide for contributing to the DashClaw codebase. Covers architecture, adding new capabilities, testing, and CI.

Architecture Overview

DashClaw is organized into 3 tiers:

Tier 1: Core Runtime (app/api/)

7 mandatory endpoints that define DashClaw's governance category:

RouteMethodPurpose
/api/guardPOSTPolicy evaluation — "can I do this?"
/api/actionsPOST, PATCH, GETAction lifecycle recording
/api/approvalsPOSTHuman approval decisions
/api/assumptionsPOST, GETReasoning integrity tracking
/api/signalsGETReal-time anomaly detection
/api/policiesGET, POSTGuard policy management
/api/healthGETSystem readiness

The 7-route boundary is CI-enforced. Adding a new core route requires justification.

Tier 2: Extensions (app/(extensions)/)

Modular operational intelligence:

  • Compliance, Drift, Evaluations, Scoring, Prompts, Webhooks, Learning
Tier 3: Archived (app/api/_archive/)

Legacy features from the "Agent Platform" era. Physically isolated.

Tech Stack

LayerTechnology
RuntimeNode.js 20+
FrameworkNext.js 16 (App Router)
DatabasePostgres (Neon recommended)
ORMDrizzle ORM
AuthNextAuth.js v4
UIReact 18, Tailwind CSS 3
TestingVitest + jsdom
Package Managernpm

Key Conventions

TEXT Primary Keys

All IDs are TEXT with crypto-random prefixed values:

javascript
import { randomBytes } from 'crypto';
const id = `act_${randomBytes(16).toString('hex')}`;

ID prefixes: ar_ (actions), oc_live_/oc_test_ (API keys), sp_ (scoring profiles), pt_ (prompt templates), etc.

Repository Pattern

No direct SQL in route handlers. All data access goes through repository modules:

app/lib/repositories/*.repository.js

Route handlers import from repositories, never inline SQL.

Auth Chain
Request → Strip client org headers → Rate limit → Route matching
  → Public routes: pass through
  → Protected routes: x-api-key (fast path: timing-safe compare)
    → Inject org context from resolved key

12-Step Scaffold for New Capabilities

When adding a new feature to DashClaw:

  1. Migration — Add table with TEXT PKs and crypto-random IDs
  2. Repository — Create app/lib/repositories/<name>.repository.js (all SQL here)
  3. Lib module — Create app/lib/<name>.js (business logic)
  4. Route handler — Create app/api/<name>/route.js (imports from repository)
  5. Demo fixtures — Add fixture data if the feature needs demo mode support
  6. Demo middleware — Wire fixtures into demo mode if needed
  7. Node SDK method — Add to sdk/dashclaw.js (camelCase)
  8. Python SDK method — Add to sdk-python/dashclaw/client.py (snake_case)
  9. Docs page — Create dashboard page or update existing docs
  10. Node README — Add method to SDK README
  11. Python README — Add method to Python SDK README
  12. Parity matrix — Update docs/sdk-parity.md with new method counts
Show full SKILL.md (185 more words)Show less

Legacy SDK Promotion

The v1 SDK has 187 methods across 31 categories. When promoting to v2:

High priority (core governance):

  • registerOpenLoop() + resolveOpenLoop() — Decision integrity
  • events() — Real-time SSE events
  • heartbeat() + startHeartbeat() — Agent telemetry

Medium priority (analytics):

  • getRecommendations() + recommendAction() — Adaptive learning
  • getLearningVelocity() + getLearningCurves() — Learning analytics
  • getSignals() — Decision integrity signals

See knowledge/legacy-sdk-reference.md for the full inventory with all method signatures.

Testing

bash
# Run all tests (watch mode)
npm run test

# Run tests once (CI mode)
npm run test -- --run

# Run specific test file
npx vitest run app/lib/__tests__/guard.test.js

Tests live alongside their modules or in __tests__/ directories.

CI Checks

Three mandatory CI checks:

bash
# 1. Governance boundary — enforces 7-route API limit
npm run governance:boundary:check

# 2. OpenAPI contract — detects API drift
npm run openapi:check

# 3. Tests
npm run test -- --run

All three must pass before merge.

Key Files for Contributors

FileWhat to Read
PROJECT_DETAILS.mdCanonical system map (source of truth)
CLAUDE.mdContributing conventions
app/lib/guard.jsRisk scoring engine
app/lib/signals.jsAnomaly detection logic
sdk/dashclaw.jsV2 SDK implementation
sdk/legacy/dashclaw-v1.jsV1 SDK (187 methods)
schema/schema.jsDatabase schema (Drizzle)
middleware.jsAuth chain
docs/sdk-parity.mdSDK method parity matrix

Contributing Workflow

  1. Read PROJECT_DETAILS.md and CLAUDE.md
  2. Understand the 3-tier boundary (core vs extension vs archived)
  3. Follow the 12-step scaffold if adding a new capability
  4. Match existing patterns (repository pattern, TEXT PKs, etc.)
  5. Run all three CI checks locally before committing
  6. Keep SDK parity: if you add a Node method, add the Python equivalent

© ucsandman, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .claude/skills/dashclaw-agent/build-dashclaw of ucsandman/DashClaw.

Open the folder on GitHubat commit 704824d

Compare with similar skills

Build Dashclaw next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Build Dashclaw compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Build Dashclaw this skillucsandman/DashClaw310—~1.3kAutomated safety check: PassMIT
Agents Get Startedaws/agent-toolkit-for-aws2.8k—~4.3kAutomated safety check: NotesApache-2.0
Building Agentsericrisco/rsc-harness174—~5kAutomated safety check: PassMIT
Declarative Agent Developermicrosoft/work-iq1k—~3.2kAutomated safety check: PassCustom licence
Openspec AwareChorus-AIDLC/Chorus1.2k—~7.3kAutomated safety check: PassAGPL-3.0
Openspec AwareChorus-AIDLC/Chorus1.2k—~6.9kAutomated safety check: PassAGPL-3.0

Similar skills

  • Agents Get Started

    aws/agent-toolkit-for-aws

    Official

    A skill your agent uses when a developer wants to create a new agent project or get started with AgentCore.

    2.8k GitHub stars~4.3k tokensUpdated today
    AI & LLM EngineeringAuto-check: notes
  • Building Agents

    ericrisco/rsc-harness

    A skill your agent uses when building or restructuring an LLM agent — provider adapter, tool calling, structured output, RAG, agent loop, eval gate, cost routing, tracing, MCP server —…

    174 GitHub stars~5k tokensUpdated yesterday
    AI & LLM EngineeringAuto-check passed
  • Official

    Create, build, deploy, and localize declarative agents for M365 Copilot and Teams.

    1k GitHub stars~3.2k tokensUpdated 2 days ago
    Frontend & DesignAuto-check passed
  • Openspec Aware

    Chorus-AIDLC/Chorus

    OpenSpec-mode authoring for Chorus PM workflows in Codex. An agent skill from Chorus-AIDLC/Chorus.

    1.2k GitHub stars~7.3k tokensUpdated today
    AI & LLM EngineeringAuto-check passed
  • Openspec Aware

    Chorus-AIDLC/Chorus

    OpenSpec-mode authoring for Chorus PM workflows in Claude Code.

    1.2k GitHub stars~6.9k tokensUpdated today
    AI & LLM EngineeringAuto-check passed
  • Openspec Aware Chorus

    Chorus-AIDLC/Chorus

    OpenSpec-mode authoring for Chorus PM workflows on dsh — the default whenever OpenSpec is usable.

    1.2k GitHub stars~7.5k tokensUpdated today
    AI & LLM EngineeringAuto-check passed

More from ucsandman/DashClaw

All 13 skills in this repo
  • Dashclaw Governance

    ucsandman/DashClaw

    Governance behavior for AI agents governed by DashClaw. An agent skill from ucsandman/DashClaw.

    310 GitHub stars~2.7k tokensUpdated 3 days ago
    Auto-check passed
  • Dashclaw Ship

    ucsandman/DashClaw

    The single command that gets a DashClaw change ON MAIN AND LIVE — it resolves everything blocking production, never defers, and never hands back a checklist.

    310 GitHub stars~7.2k tokensUpdated 3 days ago
    Auto-check passed
  • Repro

    ucsandman/DashClaw

    Turn a bug symptom into a structured, reproducible bug report — summary, environment, exact repro steps, actual vs expected, and evidence (logs, error text, failing route/test) — and then optionally…

    310 GitHub stars~1.5k tokensUpdated 3 days ago
    Auto-check passed
  • Muse Governance

    ucsandman/DashClaw

    Governance behavior for Muse agents governed by DashClaw. An agent skill from ucsandman/DashClaw.

    310 GitHub stars~1.7k tokensUpdated 3 days ago
    Auto-check passed
  • Compliance Drift Evals

    ucsandman/DashClaw

    Set up compliance exports, drift detection, evaluations, scoring, and learning analytics

    310 GitHub stars~1.8k tokensUpdated 3 days ago
    Auto-check passed
  • Create Policies

    ucsandman/DashClaw

    Create and test DashClaw guard policies for agent governance

    310 GitHub stars~1.3k tokensUpdated 3 days ago
    Auto-check passed

Questions about Build Dashclaw

What does Build Dashclaw do?

Contribute to the DashClaw codebase — architecture, scaffolding, tests, CI. Build Dashclaw is an agent skill from ucsandman/DashClaw.

When should I use Build Dashclaw?

Build Dashclaw fits situations like: tasks that involve Project scaffolding; tasks that involve Building AI agents.

How do I install Build Dashclaw in Claude Code?

Run `npx skills add ucsandman/DashClaw --skill build-dashclaw -a claude-code`. Or copy the skill folder (.claude/skills/dashclaw-agent/build-dashclaw in ucsandman/DashClaw) into .claude/skills/build-dashclaw in your project. Claude Code loads it when a task matches its description.

How do I install Build Dashclaw in Codex?

Run `npx skills add ucsandman/DashClaw --skill build-dashclaw -a codex`. Or copy the skill folder (.claude/skills/dashclaw-agent/build-dashclaw in ucsandman/DashClaw) into .agents/skills/build-dashclaw in your project. Codex loads it when a task matches its description.

Can I use Build Dashclaw in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add ucsandman/DashClaw --skill build-dashclaw -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/build-dashclaw, .gemini/skills/build-dashclaw, .github/skills/build-dashclaw and .opencode/skills/build-dashclaw in your project.

What does Build Dashclaw need to run?

Going by SKILL.md and its folder, Build Dashclaw needs the command-line tools its instructions call (npm and npx). Our summary lists: Python 3; Node.js.

Does Build Dashclaw access the network?

SKILL.md contains no URLs. Its commands use npm and npx, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Build Dashclaw safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Build Dashclaw use?

Build Dashclaw is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Build Dashclaw use?

About 1.3k tokens (SKILL.md is roughly 5.4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Build Dashclaw?

Skills that share tags, products or a category with Build Dashclaw: Agents Get Started (aws/agent-toolkit-for-aws, 2.8k stars), Building Agents (ericrisco/rsc-harness, 174 stars), Declarative Agent Developer (microsoft/work-iq, 1k stars) and Openspec Aware (Chorus-AIDLC/Chorus, 1.2k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Build Dashclaw?

ucsandman (a GitHub user) maintains it in ucsandman/DashClaw, which has 310 GitHub stars. The repository holds 13 skills in this directory. The repository was last updated on October 6, 2026.

Source: ucsandman/DashClaw on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.