Agent skill

Skill Flow

by VintLin in VintLin/skill-flow

A skill your agent uses when the user asks Codex to inspect, import, enable, disable, deploy, update, repair, migrate, or uninstall Skill Flow skill groups through the skill-flow CLI or bridge…

Apache-2.0Auto-check passedAgent Workflows

Install Skill Flow

skills CLI
$ npx skills add VintLin/skill-flow --skill skill-flow -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install VintLin/skill-flow skill-flow --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/VintLin/skill-flow.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/skill-flow .claude/skills/skill-flow && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
skill-flow
GitHub stars
262
Token cost
~950 tokens
SKILL.md length
411 words
Files
3 (incl. references)
Skills in repo
1
Repo updated
First seen
Licence
Apache-2.0

At a glance

A skill your agent uses when the user asks Codex to inspect, import, enable, disable, deploy, update, repair, migrate, or uninstall Skill Flow skill groups through the skill-flow CLI or bridge…

  • Works in 6 steps: Classify the task as read-only, normal… → Read current state with list or a… → For imports, run preview or prepare… → …
  • The user asks Codex to inspect
  • SKILL.md covers Overview, Core Rules, Command Entry and Workflow, plus 3 more sections
  • Calls npm

What it does

Skill Flow is an agent skill from VintLin/skill-flow. Use when the user asks Codex to inspect, import, enable, disable, deploy, update, repair, migrate, or uninstall Skill Flow skill groups through the skill-flow CLI or bridge protocol.

Its SKILL.md is about 950 tokens, which your agent loads only when the skill is triggered. The skill folder holds 4 other files, including reference files (for example `agents/openai.yaml` and `references/bridge-commands.md`).

It sits in Agent Workflows. The repository describes itself as: Install, manage, and share skills across every major coding agent — Claude Code, Cursor, Copilot, and more. The licence is Apache-2.0.

When your agent uses it

  • The user asks Codex to inspect
  • Uninstall Skill Flow skill groups through the skill-flow CLI
  • Bridge protocol

Example prompts

  • “/skill-flow”

Workflow steps

6 steps, taken from the first numbered list in SKILL.md.

  1. Classify the task as read-only, normal mutation, or destructive.
  2. Read current state with list or a narrower inspect command.
  3. For imports, run preview or prepare first; build draft from returned skill selectors.
  4. For enable/disable/deploy, call apply with full selectedLeafIds and enabledTargets.
  5. For updates or repairs, run doctor before and after.
  6. Report ok, warnings, errors, changed source ids, and any blocked actions.

What it can do on your machine

Read from SKILL.md and the folder at commit 443fec8. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • npm

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use npm, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Skill Flow loads about 950 tokens when it runs, and up to ~2.3k if it reads all its reference files. Until then it costs about 48 tokens; SKILL.md has 411 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~48
When it runs · the whole SKILL.md, loaded when a task matches
~950
With references · SKILL.md plus every file in references/, read only if the agent opens them
~2.3k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from VintLin/skill-flow at commit 443fec8, republished under its Apache-2.0 licence (© VintLin). 411 words, ~950 tokens.

Download SKILL.mdSave it as .claude/skills/skill-flow/SKILL.md (or your agent's skills folder). This skill also uses 2 other files; get the full folder from GitHub.
name
skill-flow
description
Use when the user asks Codex to inspect, import, enable, disable, deploy, update, repair, migrate, or uninstall Skill Flow skill groups through the skill-flow CLI or bridge protocol.

Skill Flow

Overview

Operate Skill Flow through its CLI without editing state files directly. Prefer the machine-readable bridge protocol for agent work; use the human CLI only for simple commands that already emit usable output.

Core Rules

  • Use skill-flow bridge --json for structured operations and parse the JSON response.
  • Never edit ~/.skillflow, target skill directories, manifests, locks, or source checkouts directly.
  • Inspect before mutating: run list, inspect, doctor, or preview-import-source first.
  • Default imports to OFF by using enabledTargets: [] unless the user explicitly asks to deploy immediately.
  • Treat skill enablement and deployment as draft state: use apply, not direct filesystem edits.
  • Explain impact before state-changing operations; require explicit confirmation for destructive operations.

Command Entry

Use installed CLI:

bash
skill-flow bridge --json --request '{"protocolVersion":"1.0","command":"list"}'

Inside this repository, use the workspace CLI:

bash
npm run -w skill-flow dev -- bridge --json --request '{"protocolVersion":"1.0","command":"list"}'

For payload details, read references/bridge-commands.md before crafting a bridge request.

Workflow

  1. Classify the task as read-only, normal mutation, or destructive.
  2. Read current state with list or a narrower inspect command.
  3. For imports, run preview or prepare first; build draft from returned skill selectors.
  4. For enable/disable/deploy, call apply with full selectedLeafIds and enabledTargets.
  5. For updates or repairs, run doctor before and after.
  6. Report ok, warnings, errors, changed source ids, and any blocked actions.

Safety Levels

LevelOperationsRule
Read-onlylist, doctor, inspect, inspect-enrichment, search-import-groups, scan-local-import-groups, preview-import-source, inspect-state-migrationExecute directly when useful.
Normal mutationbootstrap, commit-import-source, import-source, apply, update, toggle-pin, rename-source, collections, save-settingsSummarize impact; proceed if the user requested that exact change.
Destructive/high-riskuninstall, non-dry-run migrate-state, broad repairs such as repair-state --allRequire explicit confirmation after identifying exact ids and scope.
Show full SKILL.md (152 more words)Show less

Common Tasks

User asksDo
"What groups do I have?"Bridge list.
"Search for a skill"Human CLI skill-flow find <query> --json, or bridge import search for remote groups.
"Import this repo, keep skills off"preview-import-source, then import-source or prepare-import-source + commit-import-source with enabledTargets: [].
"Turn these skills on for Codex"inspect, map names to leaf ids, then apply with enabledTargets: ["codex"].
"Disable a skill"inspect, remove its leaf id from selectedLeafIds, then apply with remaining ids.
"Why did deployment fail?"doctor, then inspect for the affected source.
"Remove this group"list/inspect, ask for confirmation, then uninstall.

Common Mistakes

  • Using interactive config or add when bridge JSON can do the same job.
  • Omitting protocolVersion: "1.0" from bridge requests.
  • Passing skill names to apply; it requires leaf ids such as source-id:skills/review.
  • Importing with non-empty enabledTargets when the user did not request deployment.
  • Running uninstall or migration based on display names instead of exact source ids.

© VintLin, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 2 other files (references) in skills/skill-flow of VintLin/skill-flow.

  • SKILL.md
  • agents/openai.yaml
  • references/bridge-commands.md

Open the folder on GitHubat commit 443fec8

Compare with similar skills

Skill Flow next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Skill Flow compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Skill Flow this skillVintLin/skill-flow262—~950Automated safety check: PassApache-2.0
MCP Server Builderanthropics/skills180k63 repos~2.3kAutomated safety check: PassApache-2.0
Hook Development for Claude Code Pluginsanthropics/claude-plugins-official38k10 repos~4.1kAutomated safety check: NotesApache-2.0
Using Superpowersfarm-fe/farm5.6k36 repos~1.4kAutomated safety check: PassMIT
Executing Plans Inlineobra/superpowers297k2 repos~5.1kAutomated safety check: PassMIT
Skill CreatorAzure/azqr79689 repos~8.2kAutomated safety check: PassApache-2.0

Similar skills

  • MCP Server Builder

    anthropics/skills

    Official

    Guides the design and implementation of Model Context Protocol servers in TypeScript or Python, from tool naming and error messages to evaluation.

    180k GitHub starsUsed in 63 repos~2.3k tokens
    Agent WorkflowsAuto-check passed
  • Hook Development for Claude Code Plugins

    anthropics/claude-plugins-official

    Official

    Explains how to write Claude Code plugin hooks, both prompt-based checks and bash commands, for events such as PreToolUse, Stop and SessionStart.

    38k GitHub starsUsed in 10 repos~4.1k tokens
    Agent WorkflowsAuto-check: notes
  • Using Superpowers

    farm-fe/farm

    A skill your agent uses when starting any conversation - establishes how to find and use skills, requiring Skill tool invocation before ANY response including clarifying questions

    5.6k GitHub starsUsed in 36 repos~1.4k tokens
    Agent WorkflowsAuto-check passed
  • Executing Plans Inline

    obra/superpowers

    Has the agent carry out an implementation plan itself, task by task in the current session, keeping a ledger, proving each step with a test and ending with one whole-branch review.

    297k GitHub starsUsed in 2 repos~5.1k tokens
    Agent WorkflowsAuto-check passed
  • Skill Creator

    Azure/azqr

    Official

    Create new skills, modify and improve existing skills, and measure skill performance.

    796 GitHub starsUsed in 89 repos~8.2k tokens
    Agent WorkflowsAuto-check passed
  • Claude Code Agent Development

    anthropics/claude-plugins-official

    Official

    Explains how to write agents for Claude Code plugins: the markdown file with YAML frontmatter, trigger descriptions, model and color settings, and system prompt design.

    38k GitHub starsUsed in 7 repos~2.8k tokens
    Agent WorkflowsAuto-check passed

Categories

Questions about Skill Flow

What does Skill Flow do?

A skill your agent uses when the user asks Codex to inspect, import, enable, disable, deploy, update, repair, migrate, or uninstall Skill Flow skill groups through the skill-flow CLI or bridge…. Skill Flow is an agent skill from VintLin/skill-flow. Use when the user asks Codex to inspect, import, enable, disable, deploy, update, repair, migrate, or uninstall Skill Flow skill groups through the skill-flow CLI or bridge protocol.

When should I use Skill Flow?

Skill Flow fits situations like: the user asks Codex to inspect; uninstall Skill Flow skill groups through the skill-flow CLI; bridge protocol.

How do I install Skill Flow in Claude Code?

Run `npx skills add VintLin/skill-flow --skill skill-flow -a claude-code`. Or copy the skill folder (skills/skill-flow in VintLin/skill-flow) into .claude/skills/skill-flow in your project. Claude Code loads it when a task matches its description.

How do I install Skill Flow in Codex?

Run `npx skills add VintLin/skill-flow --skill skill-flow -a codex`. Or copy the skill folder (skills/skill-flow in VintLin/skill-flow) into .agents/skills/skill-flow in your project. Codex loads it when a task matches its description.

Can I use Skill Flow in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add VintLin/skill-flow --skill skill-flow -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/skill-flow, .gemini/skills/skill-flow, .github/skills/skill-flow and .opencode/skills/skill-flow in your project.

What does Skill Flow need to run?

Going by SKILL.md and its folder, Skill Flow needs the command-line tools its instructions call (npm).

Does Skill Flow access the network?

SKILL.md contains no URLs. Its commands use npm, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Skill Flow safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Skill Flow use?

Skill Flow is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Skill Flow use?

About 950 tokens (SKILL.md is roughly 3.8k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 1.3k tokens, read only when the agent opens those files.

What are the alternatives to Skill Flow?

Skills that share tags, products or a category with Skill Flow: MCP Server Builder (anthropics/skills, 180k stars), Hook Development for Claude Code Plugins (anthropics/claude-plugins-official, 38k stars), Using Superpowers (farm-fe/farm, 5.6k stars) and Executing Plans Inline (obra/superpowers, 297k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Skill Flow?

VintLin (a GitHub user) maintains it in VintLin/skill-flow, which has 262 GitHub stars. The repository was last updated on October 3, 2026.

Source: VintLin/skill-flow on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.