Agent skill

Weft Safety

by WeaveMindAI in WeaveMindAI/weft

Read when a program talks to a model, messages people, spends money or writes into other systems: the swiss cheese model, the free layers built by default, the layers that cost something and the…

Custom licenceAuto-check passed

Install Weft Safety

skills CLI
$ npx skills add WeaveMindAI/weft --skill weft-safety -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install WeaveMindAI/weft weft-safety --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/WeaveMindAI/weft.git skills-src && mkdir -p .claude/skills && cp -r skills-src/tangle/cline/.cline/skills/weft-safety .claude/skills/weft-safety && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
weft-safety
GitHub stars
2k
Token cost
~3k tokens
SKILL.md length
1,799 words
Files
1
Skills in repo
37
Repo updated
First seen
Licence
Custom licence

At a glance

Read when a program talks to a model, messages people, spends money or writes into other systems: the swiss cheese model, the free layers built by default, the layers that cost something and the…

  • Works in 3 steps: A defensive prompt, with paths that… → One more key on the call you are already… → Limit untrusted input where it enters,…
  • SKILL.md covers Why small and large models…, The free layers, The layers that cost something and The wiring, plus 2 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Weft Safety is an agent skill from WeaveMindAI/weft. Read when a program talks to a model, messages people, spends money or writes into other systems: the swiss cheese model, the free layers built by default, the layers that cost something and the one-sentence test for when a program is high stakes, the wiring shapes, and the red-teamer pass.

Its SKILL.md is about 3k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

The repository describes itself as: A programming language for AI orchestrations.

Example prompts

  • “/weft-safety”

Workflow steps

3 steps, taken from the first numbered list in SKILL.md.

  1. A defensive prompt, with paths that exist. Every prompt the prompt-engineer writes closes its manipulation paths explicitly: "if the…
  2. One more key on the call you are already making. The model that drafts the reply has already read the whole input; asking it to also…
  3. Limit untrusted input where it enters, visibly. A large model needs many tokens of setup to break, so the room for the attack is the…

What it can do on your machine

Read from SKILL.md and the folder at commit 350a891. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md (its code samples are weft).

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Weft Safety loads about 3k tokens when it runs. Until then it costs about 76 tokens; SKILL.md has 1,799 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~76
When it runs · the whole SKILL.md, loaded when a task matches
~3k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

Its licence (Custom licence) doesn't allow us to republish the file, so here is its outline and opening line. It has 1,799 words (~3,042 tokens).

“A weft program that talks to a model, messages people, spends money, or writes into other systems will be tried: by a user who wants more than they asked for, by a stranger who found the webhook, by a message…”

— opening of SKILL.md by WeaveMindAI, Custom licence
name
weft-safety

Read the full SKILL.md on GitHub

Files

Just SKILL.md in tangle/cline/.cline/skills/weft-safety of WeaveMindAI/weft.

Open the folder on GitHubat commit 350a891

Compare with similar skills

Weft Safety next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Weft Safety compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Weft Safety this skillWeaveMindAI/weft2k—~3kAutomated safety check: PassCustom licence
Messages Opsaffaan-m/ECC276k1 repos~724Automated safety check: PassMIT
Strict Programming Practicescode-yeongyu/oh-my-openagent70k—~9.5kAutomated safety check: PassCustom licence
Channel Message Flowsopenclaw/openclaw392k—~306Automated safety check: PassMIT
Python Type Safetywshobson/agents40k—~1.4kAutomated safety check: PassMIT
Commit Message Storytellergithub/awesome-copilot40k1 repos~1.3kAutomated safety check: PassMIT

Similar skills

  • Messages Ops

    affaan-m/ECC

    Evidence-first live messaging workflow for ECC. An agent skill from affaan-m/ECC.

    276k GitHub starsUsed in 1 repo~724 tokens
    Productivity & AutomationAuto-check passed
  • Strict Programming Practices

    code-yeongyu/oh-my-openagent

    Applies strict, type-first coding rules for Python, Rust, TypeScript and Go, loading the matching language reference before the agent writes or edits any code.

    70k GitHub stars~9.5k tokensUpdated today
    DevelopmentAuto-check passed
  • Channel Message Flows

    openclaw/openclaw

    A skill your agent uses when running QA Lab channel message flow evidence.

    392k GitHub stars~306 tokensUpdated today
    Auto-check passed
  • Python Type Safety

    wshobson/agents

    Python type safety with type hints, generics, protocols, and strict type checking.

    40k GitHub stars~1.4k tokensUpdated 4 days ago
    DevelopmentAuto-check passed
  • Commit Message Storyteller

    github/awesome-copilot

    Official

    Analyzes git diffs or staged changes and generates narrative commit messages that explain WHY a change was made, not just what changed — following Conventional Commits format.

    40k GitHub starsUsed in 1 repo~1.3k tokens
    DevelopmentAuto-check passed
  • Agent Messaging

    davila7/claude-code-templates

    Send and receive cryptographically signed messages between AI agents using the Agent Messaging Protocol (AMP).

    32k GitHub stars~807 tokensUpdated today
    MobileAuto-check passed

More from WeaveMindAI/weft

All 37 skills in this repo
  • Weft Cloud Install

    WeaveMindAI/weft

    Read when the user wants weft itself on their Google Cloud for the first time, or to upgrade or resize the weft already there: getting the user's GitHub and Google Cloud accounts and CLIs ready, the…

    2k GitHub stars~2.5k tokensUpdated today
    Auto-check passed
  • Weft Consumers

    WeaveMindAI/weft

    Read when the user wants their own website, app, bot or extension to list, show, answer, skip or cancel what a program is waiting on, fetch a file it carries, or show what one of its nodes is…

    2k GitHub stars~3.8k tokensUpdated today
    Auto-check passed
  • Weft Deploying

    WeaveMindAI/weft

    Read when the user wants weft or a program live for real people on their cloud, asks about prod, a target, --on, a domain or GCP, or a deploy failed: targets and logging in, domains, the deploy…

    2k GitHub stars~4.8k tokensUpdated today
    Auto-check: notes
  • Weft Metering

    WeaveMindAI/weft

    Read when the user asks what a run costs, or when a node is wired to a paid API weft does not already price: the three pieces of a custom paid service, a meter to copy, and the rules that keep a…

    2k GitHub stars~4k tokensUpdated today
    Auto-check passed
  • Weft Sdp

    WeaveMindAI/weft

    Read when growing a program stage by stage: carving a run, supplying starting values, baking a trigger and firing it without activating, reusing completed work with a seed, freezing an accepted…

    2k GitHub stars~4.2k tokensUpdated today
    Auto-check passed
  • Weft Frontend

    WeaveMindAI/weft

    Read when the user wants a page, app or site for the program, and before dispatching the frontend-builder: the verified scaffold commands, the default stack (pnpm, SvelteKit, PostgreSQL, BetterAuth…

    2k GitHub stars~8k tokensUpdated today
    Auto-check: notes

Questions about Weft Safety

What does Weft Safety do?

Read when a program talks to a model, messages people, spends money or writes into other systems: the swiss cheese model, the free layers built by default, the layers that cost something and the…. Weft Safety is an agent skill from WeaveMindAI/weft. Read when a program talks to a model, messages people, spends money or writes into other systems: the swiss cheese model, the free layers built by default, the layers that cost something and the one-sentence test for when a program is high stakes, the wiring shapes, and the red-teamer pass.

How do I install Weft Safety in Claude Code?

Run `npx skills add WeaveMindAI/weft --skill weft-safety -a claude-code`. Or copy the skill folder (tangle/cline/.cline/skills/weft-safety in WeaveMindAI/weft) into .claude/skills/weft-safety in your project. Claude Code loads it when a task matches its description.

How do I install Weft Safety in Codex?

Run `npx skills add WeaveMindAI/weft --skill weft-safety -a codex`. Or copy the skill folder (tangle/cline/.cline/skills/weft-safety in WeaveMindAI/weft) into .agents/skills/weft-safety in your project. Codex loads it when a task matches its description.

Can I use Weft Safety in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add WeaveMindAI/weft --skill weft-safety -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/weft-safety, .gemini/skills/weft-safety, .github/skills/weft-safety and .opencode/skills/weft-safety in your project.

What does Weft Safety need to run?

SKILL.md names no scripts, command-line tools or credentials: Weft Safety is instructions for the agent only.

Does Weft Safety access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Weft Safety safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Weft Safety use?

Weft Safety has a licence file (the repository's licence) that doesn't match a standard licence. Read it on GitHub before reusing the skill.

How many tokens does Weft Safety use?

About 3k tokens (SKILL.md is roughly 12k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Weft Safety?

Skills that share tags, products or a category with Weft Safety: Messages Ops (affaan-m/ECC, 276k stars), Strict Programming Practices (code-yeongyu/oh-my-openagent, 70k stars), Channel Message Flows (openclaw/openclaw, 392k stars) and Python Type Safety (wshobson/agents, 40k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Weft Safety?

WeaveMindAI (a GitHub organization) maintains it in WeaveMindAI/weft, which has 1,996 GitHub stars. The repository holds 37 skills in this directory. The repository was last updated on October 8, 2026.

Source: WeaveMindAI/weft on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.