Devcontainer Dev
stacklok/toolhive-studio
Spin up and interact with ToolHive Studio's containerized dev environment (Xvfb + noVNC + DinD).
Resolve canonical Git checkouts, index and verify codebase-memory-mcp graphs through the guarded CLI, and safely audit duplicate worktree caches.
$ npx skills add vincentkoc/dotskills --skill codebase-memory-mcp -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install vincentkoc/dotskills codebase-memory-mcp --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/vincentkoc/dotskills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/codebase-memory-mcp .claude/skills/codebase-memory-mcp && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "codebase-memory-mcp" agent skill from https://github.com/vincentkoc/dotskills/tree/main/skills/codebase-memory-mcp into .claude/skills/codebase-memory-mcp/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "codebase-memory-mcp", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/vincentkoc/dotskills/tree/main/skills/codebase-memory-mcpType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add vincentkoc/dotskills --skill codebase-memory-mcp -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install vincentkoc/dotskills codebase-memory-mcp --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/vincentkoc/dotskills.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/codebase-memory-mcp .agents/skills/codebase-memory-mcp && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "codebase-memory-mcp" agent skill from https://github.com/vincentkoc/dotskills/tree/main/skills/codebase-memory-mcp into .agents/skills/codebase-memory-mcp/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "codebase-memory-mcp", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add vincentkoc/dotskills --skill codebase-memory-mcp -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install vincentkoc/dotskills codebase-memory-mcp --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/vincentkoc/dotskills.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/codebase-memory-mcp .cursor/skills/codebase-memory-mcp && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "codebase-memory-mcp" agent skill from https://github.com/vincentkoc/dotskills/tree/main/skills/codebase-memory-mcp into .cursor/skills/codebase-memory-mcp/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "codebase-memory-mcp", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/vincentkoc/dotskills.git --path skills/codebase-memory-mcp--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add vincentkoc/dotskills --skill codebase-memory-mcp -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install vincentkoc/dotskills codebase-memory-mcp --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/vincentkoc/dotskills.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/codebase-memory-mcp .gemini/skills/codebase-memory-mcp && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "codebase-memory-mcp" agent skill from https://github.com/vincentkoc/dotskills/tree/main/skills/codebase-memory-mcp into .gemini/skills/codebase-memory-mcp/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "codebase-memory-mcp", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install vincentkoc/dotskills codebase-memory-mcpInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add vincentkoc/dotskills --skill codebase-memory-mcp -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/vincentkoc/dotskills.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/codebase-memory-mcp .github/skills/codebase-memory-mcp && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "codebase-memory-mcp" agent skill from https://github.com/vincentkoc/dotskills/tree/main/skills/codebase-memory-mcp into .github/skills/codebase-memory-mcp/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "codebase-memory-mcp", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add vincentkoc/dotskills --skill codebase-memory-mcp -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install vincentkoc/dotskills codebase-memory-mcp --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/vincentkoc/dotskills.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/codebase-memory-mcp .opencode/skills/codebase-memory-mcp && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "codebase-memory-mcp" agent skill from https://github.com/vincentkoc/dotskills/tree/main/skills/codebase-memory-mcp into .opencode/skills/codebase-memory-mcp/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "codebase-memory-mcp", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
codebase-memory-mcpResolve canonical Git checkouts, index and verify codebase-memory-mcp graphs through the guarded CLI, and safely audit duplicate worktree caches.
Codebase Memory MCP is an agent skill from vincentkoc/dotskills. Resolve canonical Git checkouts, index and verify codebase-memory-mcp graphs through the guarded CLI, and safely audit duplicate worktree caches. Use when a user mentions codebase memory MCP, searchgraph, tracepath, indexrepository, worktree indexes, or oversized graph caches.
Its SKILL.md is about 3k tokens, which your agent loads only when the skill is triggered. The skill folder holds 8 other files, including scripts and assets (for example `agents/openai.yaml`, `scripts/codebase-memory-graph.sh` and `scripts/codebase_memory_cache.py`).
It sits in Development, covering Git worktrees and MCP servers. It works with Model Context Protocol and Git. The repository describes itself as: 🐙 A curated set of Codex and OpenClaw skills for workflow automation, technical debugging, and agent-assisted development patterns. The licence is MIT.
8 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit b83ca13. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Ships 3 files in scripts/ (Shell and Python), which the agent can run.
Shell commands in SKILL.md call:
gitFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use git, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Codebase Memory MCP loads about 3k tokens when it runs. Until then it costs about 75 tokens; SKILL.md has 1,244 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.
The full file from vincentkoc/dotskills at commit b83ca13, republished under its MIT licence (© vincentkoc). 1,244 words, ~2,964 tokens.
.claude/skills/codebase-memory-mcp/SKILL.md (or your agent's skills folder). This skill also uses 5 other files; get the full folder from GitHub.Bring up codebase-memory-mcp for the owning Git checkout and prove the graph is usable before relying on it for code discovery. Keep linked worktrees on the owner's graph instead of creating one graph per branch.
search_graph, trace_path, get_code_snippet, or query_graph.git rev-parse --show-toplevelgit status -sbcommand -v codebase-memory-mcpcodebase-memory-mcp --versionscripts/codebase-memory-graph.sh canonical --repo "$(git rev-parse --show-toplevel)"~/.codex/worktrees, ~/GIT/_Worktrees, any .worktrees component, /tmp, or /private/tmp are never indexed. Linked worktrees under those paths may only rewrite to one existing nonreserved owner.~/GIT/_Synthetic or repositories marked by .git/gwt-synthetic.json. This indexing rule grants no cleanup authority.rg and direct reads. Do not retry without changed service evidence. Graph availability is not a prerequisite for ordinary inspection or repair.index_repository tool because it cannot enforce the canonical indexing boundary. For Codex installs, render the private disabled_tools configuration accordingly.scripts/codebase-memory-graph.sh index --repo "$(git rev-parse --show-toplevel)" --mode full. Do not start indexing or daemon repair as an incidental prerequisite to another task.search_graph, trace_path, and get_code_snippet before broad text scans.scripts/codebase-memory-graph.sh init --repo "$(git rev-parse --show-toplevel)" --mode fullindex_repository.--mode fast for a smoke index.scripts/codebase-memory-gateway.py.tmpl with an approved pinned backend path. Replace @@PYTHON_PATH_SHEBANG@@ with the raw absolute interpreter path and replace @@PYTHON_PATH_JSON@@, @@BACKEND_PATH_JSON@@, and @@RESOLVER_PATH_JSON@@ with JSON string literals containing the exact absolute interpreter, backend, and codebase_memory_cache.py paths. The rendered gateway has no upgrade logic and uses execve for pass-through.disabled_tools control.--json and --progress before checking index_repository; index calls always require an explicit JSON repo_path. File, stdin, worker, prefixed-command, and vendor-installer forms fail closed. Default output and explicit --json output keep their upstream formats.auto_index=false, auto_watch=false, and UI disabled. Ordinary MCP clients can share one session-managed daemon. The gateway denies daemon start because version 0.10.8 enables the UI on a cold start; it permits only daemon status.codebase-memory-mcp cli list_projectsscripts/codebase-memory-graph.sh schema --repo "$(git rev-parse --show-toplevel)"start-ui and keepalive fail closed before configuration or process mutation./api/index canonicalization can enforce the same boundary. status may report an already-running grandfathered listener.scripts/codebase-memory-graph.sh cache-audit --manifest /secure/path/cbm-cache.json~/.codex/worktrees, ~/GIT/_Worktrees, /tmp, /private/tmp, and any exact .worktrees path component. The audit records normalized lexical and resolved boundary evidence; .worktrees component matching is case-insensitive on Darwin.reserved_missing_root candidates. Live valid graphs whose physical canonical root and Git common directory remain reserved are reserved_live_root candidates, including shallow, promisor, and partial clones. Dangling symlinks, bare repositories, non-Git roots, and invalid reserved mappings block as live_root_unmapped.--ephemeral-prefix.scripts/codebase-memory-graph.sh cache-prune --manifest /secure/path/cbm-cache.json--allow-blocked-manifest to preflight and prune only independent candidates while preserving all protected and blocked projects.--protect-candidate NAME on cache-prune. Each named candidate must still exist in the unchanged snapshot and pass its root, prefix, classification, canonical mapping, and clone-health rules. It remains in the expected snapshot but is excluded from cache inventory, holder sweeps, DB integrity preflight, final holder probes, and deletion.--allow-blocked-manifest independently when blockers were reviewed. Unknown, duplicate, or non-candidate names fail before preflight.scripts/codebase-memory-graph.sh cache-prune --manifest /secure/path/cbm-cache.json --apply/usr/sbin/lsof -nP -F0pfn -f -- in deterministic, NUL-parsed batches before any SQLite open and again after every exact mode=ro&immutable=1 quick_check; global fingerprint equality is required between phases. An absent or zero-byte WAL and a stable regular SHM are allowed. Use prune-only --lsof-timeout-seconds SECONDS to override the 300-second holder timeout within the guarded 30-900 range.lsof may not see root-owned or other-user holders, so pruning trusts the point-in-time visibility available to the cache owner; running as root provides stronger holder visibility. Apply processes eligible candidates in manifest order, at most eight per deletion batch and within the same 128 KiB path budget. Each batch revalidates the snapshot and live fingerprints, performs one holder sweep, proves post-sweep fingerprint equality, then revalidates every remaining candidate relationship immediately before the first delete child. The batch launches only codebase-memory-mcp cli delete_project children and verifies registrations plus DB/WAL/SHM absence before continuing; spawn errors, timeouts, nonzero exits, retained registrations, residue, drift, or ambiguous state stop future batches and report launched, verified-deleted, failed, and ambiguous names and bytes.reserved_live_root, deploy the reserved-root indexing prevention and quiesce every legacy index/server surface outside this helper. The helper reports this operational precondition but does not probe or kill processes.codebase-memory-mcp cli delete_project only. Never remove project databases directly.status.fast, moderate, full, or cross-repo-intelligence.9749.stateDiagram-v2
[*] --> ResolveCanonicalOwner
ResolveCanonicalOwner --> ReportBlocked: missing, ambiguous, or reserved owner
ResolveCanonicalOwner --> SelectTask: valid owning checkout
state SelectTask <<choice>>
SelectTask --> QueryGraph: discovery
SelectTask --> GuardedIndex: indexing explicitly requested
SelectTask --> AuditManifest: cache maintenance
SelectTask --> ReportBlocked: UI startup requested
GuardedIndex --> QueryGraph: index succeeds
GuardedIndex --> ReportBlocked: index fails
QueryGraph --> ReportProof: schema and focused query pass
QueryGraph --> BoundedSourceSearch: graph unavailable during code work
BoundedSourceSearch --> ReportProof: direct source findings with graph limitation
QueryGraph --> ReportBlocked: requested graph repair remains unverified
AuditManifest --> ReviewAndDryRun
ReviewAndDryRun --> ReportProof: audit or dry-run only
ReviewAndDryRun --> ApplyThroughCLI: apply requested and every precondition passes
ReviewAndDryRun --> ReportBlocked: blockers or drift
ApplyThroughCLI --> VerifyDeletion
VerifyDeletion --> ReportProof: registration and files absent
VerifyDeletion --> ReportBlocked: failure, residue, or ambiguity
ReportProof --> [*]
ReportBlocked --> [*]© vincentkoc, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 5 other files (scripts, assets) in skills/codebase-memory-mcp of vincentkoc/dotskills.
Open the folder on GitHubat commit b83ca13
Codebase Memory MCP next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Codebase Memory MCP this skillvincentkoc/dotskills | 107 | — | ~3k | Automated safety check: Pass | MIT | |
| Devcontainer Devstacklok/toolhive-studio | 170 | — | ~3.8k | Automated safety check: Notes | Apache-2.0 | |
| Agent Deckasheshgoplani/agent-deck | 1k | — | ~1.7k | Automated safety check: Pass | MIT | |
| Puppetmaster Agent Orchestrationprofessorpalmer/Puppetmaster | 467 | — | ~3.2k | Automated safety check: Pass | MIT | |
| Vibe Kanbanaiskillstore/marketplace | 430 | — | ~4.4k | Automated safety check: Notes | None | |
| Lanes Sessionslanes-sh/app | 273 | — | ~4.3k | Automated safety check: Pass | None |
stacklok/toolhive-studio
Spin up and interact with ToolHive Studio's containerized dev environment (Xvfb + noVNC + DinD).
asheshgoplani/agent-deck
agent-deck, the terminal session manager for AI coding agents.
professorpalmer/Puppetmaster
Operates and supervises Puppetmaster, a multi-agent orchestrator, through its MCP tools or CLI, picking the right verb for edits, reviews, audits and long-running jobs.
aiskillstore/marketplace
Manage AI coding agents on a visual Kanban board. An agent skill from aiskillstore/marketplace.
lanes-sh/app
A skill your agent uses when managing Lanes issues or driving Claude Code sessions through the lanes MCP tools — creating issues, starting/stopping/inspecting sessions, batch-launching work across…
syncable-dev/memtrace-public
Use Cortex decision memory through the normal Memtrace MCP tools.
vincentkoc/dotskills
Select, review, repair, validate, and land batches of up to 20 low-risk OpenClaw contributor pull requests using Vincent's maintainer preferences and bounded sub-agent lanes.
vincentkoc/dotskills
Monitor and coordinate one tmux agent lane, reconstruct worker state from panes and recent Codex logs, classify progress and blockers, and produce concise manager summaries.
vincentkoc/dotskills
Audit and safely prune stale branches across a GitHub organization with immutable snapshots, conservative merged-PR classification, live SHA/protection/open-PR revalidation, resumable deletion…
vincentkoc/dotskills
Prepare a concise session handoff when the user asks to wrap up, capture continuation context, or use /done.
vincentkoc/dotskills
Mine structured Codex /goal history locally or across a configured machine fleet, measure active goal time and resumed thread spans, identify unfinished and recurring semantic runs, and turn them…
vincentkoc/dotskills
Build local semantic review slices by combining clawpatch feature maps, deepsec threat candidates, visual review maps, and optional gitcrawl/discrawl evidence for repos such as openclaw/openclaw.
Works with
Categories
Resolve canonical Git checkouts, index and verify codebase-memory-mcp graphs through the guarded CLI, and safely audit duplicate worktree caches. Codebase Memory MCP is an agent skill from vincentkoc/dotskills. Resolve canonical Git checkouts, index and verify codebase-memory-mcp graphs through the guarded CLI, and safely audit duplicate worktree caches.
Codebase Memory MCP fits situations like: A user mentions codebase memory MCP; indexrepository; worktree indexes; oversized graph caches.
Run `npx skills add vincentkoc/dotskills --skill codebase-memory-mcp -a claude-code`. Or copy the skill folder (skills/codebase-memory-mcp in vincentkoc/dotskills) into .claude/skills/codebase-memory-mcp in your project. Claude Code loads it when a task matches its description.
Run `npx skills add vincentkoc/dotskills --skill codebase-memory-mcp -a codex`. Or copy the skill folder (skills/codebase-memory-mcp in vincentkoc/dotskills) into .agents/skills/codebase-memory-mcp in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add vincentkoc/dotskills --skill codebase-memory-mcp -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/codebase-memory-mcp, .gemini/skills/codebase-memory-mcp, .github/skills/codebase-memory-mcp and .opencode/skills/codebase-memory-mcp in your project.
Going by SKILL.md and its folder, Codebase Memory MCP needs a shell and Python for the scripts in its folder and the command-line tools its instructions call (git). Our summary lists: Python 3; A Bash shell.
SKILL.md contains no URLs. Its commands use git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.
Codebase Memory MCP is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 3k tokens (SKILL.md is roughly 12k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Codebase Memory MCP: Devcontainer Dev (stacklok/toolhive-studio, 170 stars), Agent Deck (asheshgoplani/agent-deck, 1k stars), Puppetmaster Agent Orchestration (professorpalmer/Puppetmaster, 467 stars) and Vibe Kanban (aiskillstore/marketplace, 430 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
vincentkoc (a GitHub user) maintains it in vincentkoc/dotskills, which has 107 GitHub stars. The repository holds 19 skills in this directory. The repository was last updated on October 2, 2026.
Source: vincentkoc/dotskills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.