Agent skill

Ssh Operations

by WrongStack in WrongStack/WrongStack

Connect to and administer explicitly authorized hosts through OpenSSH with verified identity and bounded operations.

MITAuto-check passedDevOps & Cloud

Install Ssh Operations

skills CLI
$ npx skills add WrongStack/WrongStack --skill ssh-operations -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install WrongStack/WrongStack ssh-operations --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/WrongStack/WrongStack.git skills-src && mkdir -p .claude/skills && cp -r skills-src/packages/core/skills/ssh-operations .claude/skills/ssh-operations && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
ssh-operations
GitHub stars
371
Token cost
~835 tokens
SKILL.md length
307 words
Files
1
Skills in repo
100
Repo updated
First seen
Licence
MIT

At a glance

Connect to and administer explicitly authorized hosts through OpenSSH with verified identity and bounded operations.

  • Works in 6 steps: Resolve the approved hostname, account,… → Verify the host key through an… → Use least-required identities and avoid… → …
  • Setting up SSH config
  • SKILL.md covers Selection card, Overview, Rules and Workflow, plus 3 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Ssh Operations is an agent skill from WrongStack/WrongStack. Connect to and administer explicitly authorized hosts through OpenSSH with verified identity and bounded operations. Use when setting up SSH config, approved bastions, file transfer or a known remote maintenance task; a connection does not authorize work on additional hosts.

Its SKILL.md is about 840 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in DevOps & Cloud. The repository describes itself as: An AI coding agent that reads your code, edits files, runs commands, and reasons through bugs — across a terminal REPL, a full-screen TUI, and a browser UI, while you keep your… The licence is MIT.

When your agent uses it

  • Setting up SSH config
  • Approved bastions
  • A known remote maintenance task
  • A connection does not authorize work on additional hosts

Example prompts

  • “/ssh-operations”

Workflow steps

6 steps, taken from the first numbered list in SKILL.md.

  1. Resolve the approved hostname, account, port and purpose before connecting. Operate only on the known authorized host set.
  2. Verify the host key through an established trusted record/out-of-band source; do not disable verification to get past a mismatch.
  3. Use least-required identities and avoid printing private keys, tokens or expanded credential-bearing commands.
  4. Keep agent forwarding and remote exposure disabled unless a concrete authorized workflow requires them.
  5. Read host/config identity and ownership before mutations. Connection retries must not repeat a partially completed remote operation blindly.
  6. Do not scan hosts, try alternate credentials or bypass access controls when a connection is denied; report the actual access/configuration…

What it can do on your machine

Read from SKILL.md and the folder at commit a744bdc. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Links to these hosts (documentation or services it may open):

    • openssh.com
    • man.openbsd.org

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Ssh Operations loads about 835 tokens when it runs. Until then it costs about 73 tokens; SKILL.md has 307 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~73
When it runs · the whole SKILL.md, loaded when a task matches
~835

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from WrongStack/WrongStack at commit a744bdc, republished under its MIT licence (© WrongStack). 307 words, ~835 tokens.

Download SKILL.mdSave it as .claude/skills/ssh-operations/SKILL.md (or your agent's skills folder).
name
ssh-operations
description
Connect to and administer explicitly authorized hosts through OpenSSH with verified identity and bounded operations. Use when setting up SSH config, approved bastions, file transfer or a known remote maintenance task; a connection does not authorize work on additional hosts.
trigger
Connect to and administer explicitly authorized hosts through OpenSSH with verified identity and bounded operations. Use when setting up SSH config, approved…
version
1.0.1
required-capabilities
filesystem.read
optional-capabilities
filesystem.write, execution.shell, verification.run, web.research
metadata.routing-group
operations
metadata.domain
operations

Ssh Operations

Selection card

  • Task: Establish verified SSH identities, sessions and transfers. / TR: Doğrulanmış SSH kimliği, oturumu ve aktarımı kur.
  • Start: Identify the authorized target, current health and rollback boundary.
  • Finish: apply the acceptance checks below; report observed results and unresolved constraints.

Overview

Connect to and administer explicitly authorized hosts through OpenSSH with verified identity and bounded operations.

Checked upstream target 2026-10-09: OpenSSH portable 10.6p1. Distribution and Windows builds may carry different versions/backports; inspect installed support before changing host/client software.

Rules

  1. Resolve the approved hostname, account, port and purpose before connecting. Operate only on the known authorized host set.
  2. Verify the host key through an established trusted record/out-of-band source; do not disable verification to get past a mismatch.
  3. Use least-required identities and avoid printing private keys, tokens or expanded credential-bearing commands.
  4. Keep agent forwarding and remote exposure disabled unless a concrete authorized workflow requires them.
  5. Read host/config identity and ownership before mutations. Connection retries must not repeat a partially completed remote operation blindly.
  6. Do not scan hosts, try alternate credentials or bypass access controls when a connection is denied; report the actual access/configuration gap.

Workflow

  1. Inspect local client version and effective config for the named target, redacting sensitive values.
  2. Validate host identity and connect through the explicitly approved route/bastion.
  3. Establish remote OS/user/work directory and operation preconditions.
  4. Perform the requested bounded maintenance or transfer; validate paths and expected result.
  5. Verify the outcome and close owned sessions/tunnels. Record any live state left running.

Before returning

Host/account/purpose explicit; host key verification retained; credentials redacted; actual remote result and session/tunnel ownership reported.

Sources

Versioned facts checked 2026-10-09; refresh authoritative sources before new installs/upgrades. OpenSSH releases, SSH config.

Skills in scope

  • linux-service-ops — owned service configuration and lifecycle.
  • remote-debugging — bounded evidence on the authorized host.
  • vps-deploy — versioned deployment to the authorized server.

© WrongStack, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in packages/core/skills/ssh-operations of WrongStack/WrongStack.

Open the folder on GitHubat commit a744bdc

Compare with similar skills

Ssh Operations next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Ssh Operations compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Ssh Operations this skillWrongStack/WrongStack371—~835Automated safety check: PassMIT
Monitor CInrwl/nx29k6 repos~4.7kAutomated safety check: PassMIT
Terraform and OpenTofu Guideagentscope-ai/QwenPaw36k6 repos~4.2kAutomated safety check: PassApache-2.0
Vercel Optimize Auditvercel-labs/agent-skills32k8 repos~4.3kAutomated safety check: PassNone
Analyze GitHub Action Logswithastro/astro63k1 repos~1.3kAutomated safety check: PassCustom licence
Openclaw Live Updateropenclaw/openclaw392k—~3.7kAutomated safety check: PassMIT

Similar skills

  • Monitor CI

    nrwl/nx

    Monitor Nx Cloud CI pipeline and handle self-healing fixes. An agent skill from nrwl/nx.

    29k GitHub starsUsed in 6 repos~4.7k tokens
    DevOps & CloudAuto-check passed
  • Terraform and OpenTofu Guide

    agentscope-ai/QwenPaw

    Guidance for writing and testing Terraform and OpenTofu code: module structure, naming, test approaches, CI/CD workflows, state handling and security scanning.

    36k GitHub starsUsed in 6 repos~4.2k tokens
    DevOps & CloudAuto-check passed
  • Vercel Optimize Audit

    vercel-labs/agent-skills

    Official

    Runs a metrics-first audit of a deployed Vercel project, gating investigations on real signals to produce ranked, citation-backed cost and performance recommendations.

    32k GitHub starsUsed in 8 repos~4.3k tokens
    DevOps & CloudAuto-check passed
  • Official

    Analyze recent GitHub Actions workflow runs to identify patterns, mistakes, and improvements.

    63k GitHub starsUsed in 1 repo~1.3k tokens
    DevOps & CloudAuto-check passed
  • Openclaw Live Updater

    openclaw/openclaw

    Maintain the canonical live OpenClaw main checkout, macOS LaunchAgent-managed Gateway, local macOS app, exact-head main CI, and recurring full release validation.

    392k GitHub stars~3.7k tokensUpdated today
    DevOps & CloudAuto-check passed
  • Docs Learn PR Preview

    netdata/netdata

    Use only when the user explicitly asks to build, run, preview, inspect, or validate learn.netdata.cloud locally using the contents of a PR or documentation branch before merge.

    81k GitHub stars~2k tokensUpdated today
    DevOps & CloudAuto-check passed

More from WrongStack/WrongStack

All 100 skills in this repo
  • Tech Stack

    WrongStack/WrongStack

    Validate and upgrade dependencies against live registries and official migration guides in any ecosystem.

    371 GitHub stars~1.5k tokensUpdated today
    Auto-check passed
  • Skill Creator

    WrongStack/WrongStack

    Create, improve and validate WrongStack SKILL.md bundles with precise discovery, progressive resources and current runtime contracts.

    371 GitHub stars~1.3k tokensUpdated today
    Auto-check passed
  • Bug Hunter

    WrongStack/WrongStack

    A skill your agent uses when scanning source code for bugs, anti-patterns, code smells, or quality issues in a codebase, or when running a proof-driven bug hunt that must find, prove, fix, and…

    371 GitHub stars~2.4k tokensUpdated today
    Auto-check passed
  • Design Craft

    WrongStack/WrongStack

    Design or substantially improve user-facing interfaces with a product-specific visual direction, content hierarchy, and rendered critique.

    371 GitHub stars~2.3k tokensUpdated today
    Auto-check passed
  • Design Critique

    WrongStack/WrongStack

    A skill your agent uses to audit an interface that already exists and say precisely why it looks generated, templated, or unfinished — a scored rubric across composition, typography, color, states…

    371 GitHub stars~2.5k tokensUpdated today
    Auto-check passed
  • Mailbox Bridge

    WrongStack/WrongStack

    A skill your agent uses when external coding agents (Claude Code, Aider, custom scripts) need to participate in the project's shared WrongStack mailbox, or when a user asks to "expose the mailbox"…

    371 GitHub stars~2.6k tokensUpdated today
    Auto-check passed

Categories

Questions about Ssh Operations

What does Ssh Operations do?

Connect to and administer explicitly authorized hosts through OpenSSH with verified identity and bounded operations. Ssh Operations is an agent skill from WrongStack/WrongStack. Connect to and administer explicitly authorized hosts through OpenSSH with verified identity and bounded operations.

When should I use Ssh Operations?

Ssh Operations fits situations like: setting up SSH config; approved bastions; A known remote maintenance task; A connection does not authorize work on additional hosts.

How do I install Ssh Operations in Claude Code?

Run `npx skills add WrongStack/WrongStack --skill ssh-operations -a claude-code`. Or copy the skill folder (packages/core/skills/ssh-operations in WrongStack/WrongStack) into .claude/skills/ssh-operations in your project. Claude Code loads it when a task matches its description.

How do I install Ssh Operations in Codex?

Run `npx skills add WrongStack/WrongStack --skill ssh-operations -a codex`. Or copy the skill folder (packages/core/skills/ssh-operations in WrongStack/WrongStack) into .agents/skills/ssh-operations in your project. Codex loads it when a task matches its description.

Can I use Ssh Operations in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add WrongStack/WrongStack --skill ssh-operations -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/ssh-operations, .gemini/skills/ssh-operations, .github/skills/ssh-operations and .opencode/skills/ssh-operations in your project.

What does Ssh Operations need to run?

SKILL.md names no scripts, command-line tools or credentials: Ssh Operations is instructions for the agent only.

Does Ssh Operations access the network?

SKILL.md names 2 domains. As links in the text: openssh.com and man.openbsd.org. This is read from the text; nothing was executed.

Is Ssh Operations safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Ssh Operations use?

Ssh Operations is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Ssh Operations use?

About 835 tokens (SKILL.md is roughly 3.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Ssh Operations?

Skills that share tags, products or a category with Ssh Operations: Monitor CI (nrwl/nx, 29k stars), Terraform and OpenTofu Guide (agentscope-ai/QwenPaw, 36k stars), Vercel Optimize Audit (vercel-labs/agent-skills, 32k stars) and Analyze GitHub Action Logs (withastro/astro, 63k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Ssh Operations?

WrongStack (a GitHub organization) maintains it in WrongStack/WrongStack, which has 371 GitHub stars. The repository holds 100 skills in this directory. The repository was last updated on October 10, 2026.

Source: WrongStack/WrongStack on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.