Agent skill

Delivery Lifecycle Maintainer

by Undertone0809 in Undertone0809/rudder

Coordinate complex Rudder delivery when concurrent integration, runtime/data identity, or release gates require a machine-readable evidence packet.

Apache-2.0Auto-check passedAgent Workflows

Install Delivery Lifecycle Maintainer

skills CLI
$ npx skills add Undertone0809/rudder --skill delivery-lifecycle-maintainer -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install Undertone0809/rudder delivery-lifecycle-maintainer --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/Undertone0809/rudder.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/maintainer/delivery-lifecycle-maintainer .claude/skills/delivery-lifecycle-maintainer && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
delivery-lifecycle-maintainer
GitHub stars
292
Token cost
~2.9k tokens
SKILL.md length
1,342 words
Files
6 (incl. scripts, assets)
Skills in repo
30
Repo updated
First seen
Licence
Apache-2.0

At a glance

Coordinate complex Rudder delivery when concurrent integration, runtime/data identity, or release gates require a machine-readable evidence packet.

  • Works in 6 steps: Normalize intent and ownership → Freeze the acceptance candidate → Gate independent receipts → …
  • Tasks that involve Authorization and RBAC
  • SKILL.md covers Scope and boundaries, Delivery packet, Lifecycle and State and fail-closed rules, plus 1 more section
  • Runs Python scripts from its folder; calls python, jq and git

What it does

Delivery Lifecycle Maintainer is an agent skill from Undertone0809/rudder. Coordinate complex Rudder delivery when concurrent integration, runtime/data identity, or release gates require a machine-readable evidence packet. Follow AGENTS.md for authorization and review depth. Ordinary docs, skills, localized fixes, and simple Git handoffs do not need this lifecycle.

Its SKILL.md is about 2.9k tokens, which your agent loads only when the skill is triggered. The skill folder holds 9 other files, including scripts and assets (for example `agents/openai.yaml`, `assets/delivery-packet.template.json` and `evals/evals.json`).

It sits in Agent Workflows, covering Authorization and RBAC and Agent instruction files. It works with Git. The repository describes itself as: Open-source local Agent harness for self-improving agent teams: run agents, review work, and turn feedback into reusable skills. The licence is Apache-2.0.

When your agent uses it

  • Tasks that involve Authorization and RBAC
  • Tasks that involve Agent instruction files

Example prompts

  • “/delivery-lifecycle-maintainer”

Requirements

  • Python 3

Workflow steps

6 steps, taken from the step headings in SKILL.md.

  1. Normalize intent and ownership
  2. Freeze the acceptance candidate
  3. Gate independent receipts
  4. Detect drift and invalidate
  5. Integrate through a protected PR, then recheck
  6. Close with a terminal receipt

What it can do on your machine

Read from SKILL.md and the folder at commit b82f1b4. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 2 files in scripts/ (Python), which the agent can run.

    Shell commands in SKILL.md call:

    • python
    • jq
    • git

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use git, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Delivery Lifecycle Maintainer loads about 2.9k tokens when it runs. Until then it costs about 81 tokens; SKILL.md has 1,342 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~81
When it runs · the whole SKILL.md, loaded when a task matches
~2.9k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from Undertone0809/rudder at commit b82f1b4, republished under its Apache-2.0 licence (© Undertone0809). 1,342 words, ~2,879 tokens.

Download SKILL.mdSave it as .claude/skills/delivery-lifecycle-maintainer/SKILL.md (or your agent's skills folder). This skill also uses 5 other files; get the full folder from GitHub.
name
delivery-lifecycle-maintainer
description
Coordinate complex Rudder delivery when concurrent integration, runtime/data identity, or release gates require a machine-readable evidence packet. Follow AGENTS.md for authorization and review depth. Ordinary docs, skills, localized fixes, and simple Git handoffs do not need this lifecycle.

Delivery Lifecycle Maintainer

Own the root delivery state for one bounded Rudder task. The purpose is to make the final handoff truthful when implementation, acceptance, integration, or concurrent work changes the candidate. This is a thin coordinator and evidence ledger, not another implementation, review, verification, release, or general Git skill.

Scope and boundaries

Use this skill when a high-risk task under AGENTS.md section 9.1 needs a shared ledger to keep source, runtime, acceptance, and integration evidence consistent:

text
intent -> implementation -> review -> black-box acceptance -> integration -> delivered ref

It is especially useful for concurrent shared main integration, multiple branches, long-running agents, candidate replacement, budget/deadline changes, or a handoff that needs exact source and receipt identity.

Crossing two routine stages or encountering unrelated dirty paths alone is not a trigger. Keep ordinary tasks in a concise change/check/Git handoff. Once a full packet is warranted, its required identities and validation remain mandatory.

  • Preserve the user's raw request, later corrections, non-goals, and explicit authorization. Never replace the request with a convenient summary.
  • Route implementation to the implementer, product judgment to agent-work-reviewer-maintainer, black-box terminal observation to product-acceptance-verifier-maintainer, and public release/publish work to release-maintainer. Record their receipts; do not impersonate them.
  • Do not decide Git conflict meaning, rewrite history, publish, or delete external state. When an explicitly authorized local integration is needed, record the Git operator's evidence and enforce the identity gates below.
  • Do not create a worktree as ceremony. Start from the named checkout/main; isolate only after a real conflict, concurrent-write risk, destructive operation, or independent build/runtime requirement is observed.
  • Reuse the user's existing authorization. A specialist handoff or new workflow stage is not another permission boundary. Recoverable failures and stale receipts require repair, not an automatic final blocked response.

Delivery packet

Create one packet from assets/delivery-packet.template.json beside the task evidence. Keep it machine-readable and append corrections, drift events, and receipts rather than rewriting history. Validate it with:

bash
python .agents/skills/maintainer/delivery-lifecycle-maintainer/scripts/validate_delivery_packet.py path/to/delivery-packet.json

The packet must identify:

  • delivery_id, one current owner, and a legal status;
  • intent.raw_request, ordered corrections, non-goals, and authorization;
  • the candidate source ref/SHA, branch, dirty/diff fingerprint, changed-path scope, build/artifact identity, runtime/process identity, organization/data identity, workload/fixture identity, budget/deadline lease, and acceptance packet version;
  • reviewer, verifier, and final-review receipts, each tied to the exact candidate fingerprint, runtime/data identity, and acceptance packet version;
  • integration target, base SHA, remote ref and observed remote SHA, patch-tree identity, expected-old ref for CAS, and resulting delivered ref/tree;
  • preserved unrelated dirty paths plus index/worktree fingerprints; and
  • a terminal delivered_ref receipt with timestamp, ref, SHA, tree, and proof.

Acceptance-packet fingerprints are optional for legacy packets. When candidate.acceptance_packet.fingerprint is a real 64-character lowercase SHA-256, validate it over the bytes emitted by invoking jq -cS '.candidate.acceptance_packet | del(.fingerprint)', including jq's terminal newline. jq is required for this check; if it is unavailable, validation fails closed. The optional candidate.acceptance_packet.fingerprint_method declaration, when present, must equal SHA256 jq -cS '.candidate.acceptance_packet | del(.fingerprint)' including jq terminal newline. Only fingerprint is removed from the hash input, so a declared method is part of the fingerprinted content. Missing fingerprints and existing replace-with-... placeholders remain valid; malformed real fingerprints, unsupported method declarations, and content mismatches fail validation.

Use stable hashes or explicit unknown/not_applicable values in ordinary identity fields. SHA-typed fields are stricter: write a verified 40-character lowercase SHA, or keep the template's replace-with-...-sha placeholder and block the transition. Never copy an abbreviated or ellipsized ref such as 8e7c... into a SHA-typed field; preserve it only as an observation. Run the validator before presenting the packet. Do not put secrets, cookies, API keys, or full session contents in the packet.

Lifecycle

1. Normalize intent and ownership

Copy the raw user request verbatim into intent.raw_request. Record every later correction in order, including what it supersedes. Record non-goals and the exact authority boundary (implementation, local integration, release, or publication). Assign one root owner and link predecessor/replacement roots; child agents are evidence contributors, not extra owners.

2. Freeze the acceptance candidate

Before review or verification, capture the candidate identity as a tuple:

text
source ref + commit SHA + scoped dirty/diff fingerprint + changed paths
build/artifact source + runtime/process + organization/data + workload/fixture
acceptance-packet version + budget/deadline lease

Write the acceptance packet's state inventory and criteria. For UI, include the decision sequence, visible/deferred controls, safety-critical context, focal action or peer choice set, and Back/Cancel/Close/Reopen/draft semantics. For integration, include the intended target and base before asking for a review or verifier run.

3. Gate independent receipts

Ask the reviewer for the stage or final verdict, and ask the verifier for PASS, FAIL, or QUESTION on the same frozen tuple. A final handoff also needs reviewer accept. Keep author-claimed checks separate from independent receipts. Missing, conditional, stale, or mismatched evidence blocks the next transition; it never becomes a soft warning.

4. Detect drift and invalidate

Re-capture the tuple immediately before integration and handoff. Invalidate affected receipts when any relevant source SHA, dirty/diff fingerprint, changed path, build/artifact, runtime/process, organization/data, acceptance-packet criterion, workload, budget, deadline, target, base, or remote ref changes. Append a drift event explaining the before/after identity and mark the old receipts invalidated; do not reuse an old PASS or accept.

Record the new identities. Rebuild/restart and rerun verification only for affected behavior, then obtain final review for the current candidate. For content-equivalent metadata/ref changes, document equivalence and rebind the receipt with the issuing agent; do not copy mismatched identities into a packet or replay unrelated product journeys. Recheck exact-source CI for releases.

Show full SKILL.md (489 more words)Show less
5. Integrate through a protected PR, then recheck

For an explicitly authorized local integration:

  1. Inspect current target main, remote ref/SHA, branch tips, and the dirty path/index baseline. Record all six (or however many) candidate branch refs rather than collapsing them into “the branches”.
  2. Prepare integration on a working branch and open/update its PR targeting main. Never push commits directly to main or bypass protection, including for release preparation or version handoffs.
  3. On a real conflict or risk trigger, create a detached isolated worktree and perform the merge/rebase there. Validate the exact candidate tree, tests, and receipts before touching the shared ref.
  4. Merge only with integration authority, current review/verifier evidence, and passing required PR checks. If the target or remote moved, record drift, update the PR against the new base, and reverify affected behavior. Record the actual merged SHA and exact-source CI; do not update the shared ref by hand.
  5. Never run git read-tree against the shared checkout's live index. A ref update does not require an index update. If a disposable index view is needed for comparison, set GIT_INDEX_FILE to an explicit temporary path, initialize and inspect only that alternate index, then discard it. Record index_update_mode as none or alternate_index; any live-index mutation blocks delivery. Verify that unrelated dirty paths and the original index fingerprint remain preserved; an inconclusive digest is not proof.

This skill records integration identity and gates the transition. It does not resolve conflicts by taste, choose release channels, or push/publish without the corresponding authority and specialist skill.

6. Close with a terminal receipt

Mark delivered only when the exact current candidate has current reviewer accept, verifier PASS, final review accept, a successful authorized integration/ref update, and preservation evidence. The terminal receipt must name the delivered ref/SHA/tree, target/base/remote observations, packet version, and verification time. Otherwise return blocked or invalidated with the precise missing transition and next owner.

State and fail-closed rules

Legal states are draft, in_progress, review_ready, acceptance_pending, integration_pending, delivered, blocked, and invalidated. A packet cannot be delivered when:

  • any receipt is missing, invalidated, expired, or tied to another identity;
  • a candidate, budget/deadline lease, acceptance criterion, runtime/data identity, target/base, or remote ref moved after the last receipt;
  • the integration CAS did not compare against the recorded expected-old SHA;
  • unrelated dirty paths or the index were overwritten or not independently checked; or
  • the delivered ref/SHA/tree receipt is absent.

When a transition is blocked, repair it within scope and continue independent work. Return a blocked handoff only when a specific external decision or resource prevents useful progress. Preserve the packet and evidence; do not claim readiness.

Handoff format

Always emit or save the complete JSON delivery packet, including for blocked and invalidated outcomes, and run the validator before handoff. Unknown required identities remain valid template placeholders and blockers; they are not a reason to omit the packet. The human-readable summary below is required in addition to the JSON packet, never as its replacement.

text
RESULT: DELIVERED | BLOCKED | INVALIDATED
Delivery packet: <path and version>
Intent/corrections: <raw request preserved; latest correction>
Candidate: <source SHA, dirty/diff, build/runtime/data identity>
Receipts: <reviewer / verifier / final review and freshness>
Integration: <target, base, remote, patch tree, CAS result>
Preservation: <dirty paths and index evidence>
Delivered ref: <ref, SHA, tree, timestamp or not applicable>
Next owner/blocker: <one concrete transition>

© Undertone0809, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 5 other files (scripts, assets) in .agents/skills/maintainer/delivery-lifecycle-maintainer of Undertone0809/rudder.

  • SKILL.md
  • agents/openai.yaml
  • assets/delivery-packet.template.json
  • evals/evals.json
  • scripts/test_validate_delivery_packet.py
  • scripts/validate_delivery_packet.py

Open the folder on GitHubat commit b82f1b4

Compare with similar skills

Delivery Lifecycle Maintainer next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Delivery Lifecycle Maintainer compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Delivery Lifecycle Maintainer this skillUndertone0809/rudder292—~2.9kAutomated safety check: PassApache-2.0
Neat-Freak Knowledge CloseoutKKKKhazix/khazix-skills21k—~1.9kAutomated safety check: PassMIT
Setup Matt Pocock Skillsywwynm/EverythingDone1449 repos~1.7kAutomated safety check: PassGPL-3.0
Squad Agent Collaboration Patternsmicrosoft/waza1.4k4 repos~500Automated safety check: PassMIT
Docslatitude-dev/latitude-llm4.7k—~2.5kAutomated safety check: PassMIT
Update Docspeterkrueck/Claude-Code-Development-Kit1.4k—~2.7kAutomated safety check: PassMIT

Similar skills

  • Neat-Freak Knowledge Closeout

    KKKKhazix/khazix-skills

    Brings project docs, agent rule files, authorized memory and leftover workspace files back in line with what the code and runtime actually do at the end of a work session.

    21k GitHub stars~1.9k tokensUpdated 7 days ago
    Agent WorkflowsAuto-check passed
  • Setup Matt Pocock Skills

    ywwynm/EverythingDone

    Sets up an Agent skills block in AGENTS.md/CLAUDE.md and docs/agents/ so the engineering skills know this repo's issue tracker (GitHub or local markdown), triage label vocabulary, and domain doc…

    144 GitHub starsUsed in 9 repos~1.7k tokens
    Agent WorkflowsAuto-check passed
  • Official

    Shared collaboration rules for a team of squad agents covering worktree awareness, writing decisions to an inbox, cross-agent requests and reviewer lockout.

    1.4k GitHub starsUsed in 4 repos~500 tokens
    Agent WorkflowsAuto-check passed
  • Docs

    latitude-dev/latitude-llm

    Review the current conversation context and git changes, then persist durable repository knowledge into dev-docs/.md by domain and into AGENTS.md for cross-cutting repo rules.

    4.7k GitHub stars~2.5k tokensUpdated yesterday
    Agent WorkflowsAuto-check passed
  • Update Docs

    peterkrueck/Claude-Code-Development-Kit

    Update project documentation after code changes. An agent skill from peterkrueck/Claude-Code-Development-Kit.

    1.4k GitHub stars~2.7k tokensUpdated 2 mo ago
    Agent WorkflowsAuto-check passed
  • Zed Config

    wcygan/dotfiles

    Zed editor configuration expert. An agent skill from wcygan/dotfiles.

    196 GitHub stars~930 tokensUpdated yesterday
    Agent WorkflowsAuto-check passed

More from Undertone0809/rudder

All 30 skills in this repo
  • Conversation To Skill

    Undertone0809/rudder

    Turn the current conversation's workflow into a reusable agent skill.

    292 GitHub stars~3.6k tokensUpdated today
    Auto-check passed
  • A skill your agent uses when starting the current Rudder checkout as a temporary managed local preview with a stable URL, readiness check, logs, stop command, and cleanup path for manual inspection…

    292 GitHub stars~2.1k tokensUpdated today
    Auto-check passed
  • Stop Rudder Dev Maintainer

    Undertone0809/rudder

    A skill your agent uses when the user explicitly asks to stop, restart, kill, or clean Rudder repo-local pnpm dev processes or local dev runtime residue, including “把 pnpm dev 停了”, “重启 dev”, or “清掉…

    292 GitHub stars~1.3k tokensUpdated today
    Auto-check passed
  • Deep Research

    Undertone0809/rudder

    Conducts enterprise-grade research with multi-source synthesis, citation tracking, and verification.

    292 GitHub stars~1.2k tokensUpdated today
    Auto-check passed
  • A skill your agent uses to audit or clean Rudder worktrees, generated artifacts, logs, caches, and repo-owned processes without deleting active work, user data, or unrelated machine state.

    292 GitHub stars~664 tokensUpdated today
    Auto-check passed
  • Visualize

    Undertone0809/rudder

    Create safe inline visual explanations in Rudder Chat. An agent skill from Undertone0809/rudder.

    292 GitHub stars~1.8k tokensUpdated today
    Auto-check passed

Works with

Questions about Delivery Lifecycle Maintainer

What does Delivery Lifecycle Maintainer do?

Coordinate complex Rudder delivery when concurrent integration, runtime/data identity, or release gates require a machine-readable evidence packet. Delivery Lifecycle Maintainer is an agent skill from Undertone0809/rudder. Coordinate complex Rudder delivery when concurrent integration, runtime/data identity, or release gates require a machine-readable evidence packet.

When should I use Delivery Lifecycle Maintainer?

Delivery Lifecycle Maintainer fits situations like: tasks that involve Authorization and RBAC; tasks that involve Agent instruction files.

How do I install Delivery Lifecycle Maintainer in Claude Code?

Run `npx skills add Undertone0809/rudder --skill delivery-lifecycle-maintainer -a claude-code`. Or copy the skill folder (.agents/skills/maintainer/delivery-lifecycle-maintainer in Undertone0809/rudder) into .claude/skills/delivery-lifecycle-maintainer in your project. Claude Code loads it when a task matches its description.

How do I install Delivery Lifecycle Maintainer in Codex?

Run `npx skills add Undertone0809/rudder --skill delivery-lifecycle-maintainer -a codex`. Or copy the skill folder (.agents/skills/maintainer/delivery-lifecycle-maintainer in Undertone0809/rudder) into .agents/skills/delivery-lifecycle-maintainer in your project. Codex loads it when a task matches its description.

Can I use Delivery Lifecycle Maintainer in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add Undertone0809/rudder --skill delivery-lifecycle-maintainer -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/delivery-lifecycle-maintainer, .gemini/skills/delivery-lifecycle-maintainer, .github/skills/delivery-lifecycle-maintainer and .opencode/skills/delivery-lifecycle-maintainer in your project.

What does Delivery Lifecycle Maintainer need to run?

Going by SKILL.md and its folder, Delivery Lifecycle Maintainer needs Python for the scripts in its folder and the command-line tools its instructions call (python, jq and git). Our summary lists: Python 3.

Does Delivery Lifecycle Maintainer access the network?

SKILL.md contains no URLs. Its commands use git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Delivery Lifecycle Maintainer safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Delivery Lifecycle Maintainer use?

Delivery Lifecycle Maintainer is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Delivery Lifecycle Maintainer use?

About 2.9k tokens (SKILL.md is roughly 12k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Delivery Lifecycle Maintainer?

Skills that share tags, products or a category with Delivery Lifecycle Maintainer: Neat-Freak Knowledge Closeout (KKKKhazix/khazix-skills, 21k stars), Setup Matt Pocock Skills (ywwynm/EverythingDone, 144 stars), Squad Agent Collaboration Patterns (microsoft/waza, 1.4k stars) and Docs (latitude-dev/latitude-llm, 4.7k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Delivery Lifecycle Maintainer?

Undertone0809 (a GitHub user) maintains it in Undertone0809/rudder, which has 292 GitHub stars. The repository holds 30 skills in this directory. The repository was last updated on October 8, 2026.

Source: Undertone0809/rudder on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.