Agent skill

Canvas Cron

by X-isdoingreat in X-isdoingreat/canvas-pilot

A skill your agent uses when managing Canvas Pilot schedules: install, inspect, pause, change, delete, or safely test scheduled scans and runs.

AGPL-3.0Auto-check: notesProductivity & Automation

Install Canvas Cron

skills CLI
$ npx skills add X-isdoingreat/canvas-pilot --skill canvas-cron -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install X-isdoingreat/canvas-pilot canvas-cron --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/X-isdoingreat/canvas-pilot.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/canvas-cron .claude/skills/canvas-cron && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
canvas-cron
GitHub stars
125
Token cost
~2.1k tokens
SKILL.md length
1,010 words
Files
1
Skills in repo
32
Repo updated
First seen
Licence
AGPL-3.0

At a glance

A skill your agent uses when managing Canvas Pilot schedules: install, inspect, pause, change, delete, or safely test scheduled scans and runs.

  • Works in 8 steps: Read-only preflight → Interpret the requested operation → Choose scope and template from live data → …
  • Managing Canvas Pilot schedules: install
  • SKILL.md covers 0. Read-only preflight, 1. Interpret the requested…, 2. Choose scope and template… and 3. Choose schedule and…, plus 6 more sections
  • Calls python

What it does

Canvas Cron is an agent skill from X-isdoingreat/canvas-pilot. Use when managing Canvas Pilot schedules: install, inspect, pause, change, delete, or safely test scheduled scans and runs. Scan-only automation has no mutation authority; autonomous Canvas work requires a signed target-exact durable receipt.

Its SKILL.md is about 2.1k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Productivity & Automation, covering Scheduled and recurring tasks. The repository describes itself as: Local-first Canvas LMS AI agent that learns each course's recurring assignment workflow and reuses it through scan - approval - execute with student review. The licence is AGPL-3.0.

When your agent uses it

  • Managing Canvas Pilot schedules: install
  • Safely test scheduled scans and runs

Example prompts

  • “/canvas-cron”

Requirements

  • Python 3
  • Pre-approved tools (allowed-tools): Bash, PowerShell, Read, AskUserQuestion

Workflow steps

8 steps, taken from the step headings in SKILL.md.

  1. Read-only preflight
  2. Interpret the requested operation
  3. Choose scope and template from live data
  4. Choose schedule and parameters
  5. Autonomous authority receipt
  6. Create and register, disabled first
  7. Side-effect-free dry run
  8. Optional OS-chain proof and enable

What it can do on your machine

Read from SKILL.md and the folder at commit 6b79d5b. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Bash
    • PowerShell
    • Read
    • AskUserQuestion

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • python

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Canvas Cron loads about 2.1k tokens when it runs. Until then it costs about 64 tokens; SKILL.md has 1,010 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~64
When it runs · the whole SKILL.md, loaded when a task matches
~2.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NotePre-approves every shell command (allowed-tools: Bash)SKILL.md
    allowed-tools: Bash, PowerShell, Read, AskUserQuestion

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from X-isdoingreat/canvas-pilot at commit 6b79d5b, republished under its AGPL-3.0 licence (© X-isdoingreat). 1,010 words, ~2,109 tokens.

Download SKILL.mdSave it as .claude/skills/canvas-cron/SKILL.md (or your agent's skills folder).
name
canvas-cron
description
Use when managing Canvas Pilot schedules: install, inspect, pause, change, delete, or safely test scheduled scans and runs. Scan-only automation has no mutation authority; autonomous Canvas work requires a signed target-exact durable receipt.
allowed-tools
Bash, PowerShell, Read, AskUserQuestion

canvas-cron — Codex-native schedule control

This skill is the user-facing control plane for scripts/canvas_cron.py and the discovered scripts/cron_template_*.py templates. Never ask the user to edit _private/cron_instances.yaml or Task Scheduler directly.

Course names, IDs, instance names, and recipients are private runtime values. Do not copy them into this skill, tracked documentation, examples, or public output.

0. Read-only preflight

Run from the repository root:

powershell
python scripts/canvas_cron.py list-courses
python scripts/canvas_cron.py list-templates
python scripts/canvas_cron.py list

These commands inspect configuration and Task Scheduler state; they do not create or change a schedule. If framework imports fail, stop and report the exact missing file or module. If no courses exist, route to canvas-setup.

Memoize the discovered courses, template specs, and installed instances. Build all user-facing choices from those live results.

1. Interpret the requested operation

Map the user's wording to one operation:

IntentCLI path
create/install a schedulecontinue through this workflow
inspect/list/statusstatus [name]
pause/disabledisable <name>
resume/enableenable <name>
remove/deletedelete <name>
change scheduledelete and recreate in v1 after confirming the change
test without effectsfire <name> --dry-run

For a non-create operation, resolve the instance from the live list output. If more than one matches, ask one concise question with those live choices. Deleting an instance removes its registered task and archives local ledger/log state; obtain confirmation because that is a destructive schedule change.

2. Choose scope and template from live data

For installation, ask for the course/scope and template using only preflight results. Template kinds have different authority:

  • scan: starts a fresh Codex session that runs canvas-scan and stops at the approval boundary. It has no Canvas mutation receipt.
  • email: reads Canvas and sends a reminder email. It has no Canvas mutation receipt, but creating the outbound-email schedule still requires the user's approval.
  • autonomous: may run approved Canvas assignment or quiz mutations. It must have a signed durable automation receipt before YAML is written or a task is registered.

The all course scope is valid only when the selected template advertises it. The autonomous submit template requires one concrete course. The scan template may use all as its scope label because canvas-scan builds the full daily snapshot.

3. Choose schedule and parameters

Collect:

  1. cadence (days_interval, positive integer);
  2. local Pacific time (HH:MM, 24-hour format);
  3. start date (YYYY-MM-DD);
  4. every parameter in the selected template's live param_schema;
  5. recipient when the template sends email or failure alerts;
  6. a safe instance name matching ^[A-Za-z0-9_]+$.

Show the complete proposed instance before creating it: template, private course/scope label, schedule, parameters, recipient behavior, and whether it can mutate Canvas.

4. Autonomous authority receipt

Skip this section for scan and email templates.

For an autonomous template, obtain explicit authorization for all of these exact fields in the current conversation:

  • current Canvas origin;
  • concrete course ID;
  • template ID;
  • each allowed action (for example the exact assignment.* and/or quiz.* actions shown by src.authorization.MUTATION_ACTIONS);
  • receipt expiration;
  • whether an immediate OS-trigger test is included.

Explain that this is durable scheduled delegation, not approval of one draft. If any field is missing or the user does not authorize it, stop without writing YAML, a receipt, XML, or a scheduled task.

After explicit authority is verified, record it with src.authorization.create_authorization_receipt using:

  • target_type="automation_template";
  • target_id=<selected template ID>;
  • the exact origin and course;
  • only the explicitly authorized assignment/quiz actions;
  • a delegation session label tied to the instance;
  • an authority_reference that hashes the verified user authorization;
  • synthetic_qa=False for a durable schedule;
  • output under _private/cron_authorizations/<instance>.json.

The signing API enforces HMAC integrity and exact action names. The interactive install flow may record authority only after the user grants it. The scheduled template itself must never create durable authority from its YAML, prompt, an environment variable, or a boolean flag.

Show full SKILL.md (408 more words)Show less

5. Create and register, disabled first

Run:

powershell
python scripts/canvas_cron.py create <instance> --template <template> --course <course_id> --days <N> --time <HH:MM> --start <YYYY-MM-DD> --param key=value --recipient <recipient>

For an autonomous template only, append:

powershell
--authorization-receipt _private/cron_authorizations/<instance>.json

Never use or recreate the removed --authorized boolean path. The CLI must validate the receipt's signature, expiry, current Canvas origin, course, template, and every delegated action before its first durable write.

Success requires both:

  • YAML and task XML rendered;
  • Task Scheduler registration succeeded and the task is disabled.

If any gate fails, stop. Do not enable or force-fire the task.

6. Side-effect-free dry run

Run:

powershell
python scripts/canvas_cron.py fire <instance> --dry-run

Dry run may read configuration, signed authority, local state, and Canvas classification data. It must not start Codex, send email, upload/submit work, answer a quiz, acquire a persistent lock, or call Task Scheduler mutation commands. --dry-run and --os-trigger are mutually exclusive.

For autonomous instances, dry run still validates the durable receipt. A missing, expired, tampered, or mismatched receipt is a failed gate.

7. Optional OS-chain proof and enable

An OS-trigger test is a real trigger. For an autonomous instance it may submit work. Run it only when the exact authorization in §4 included the immediate test, or after obtaining a separate explicit confirmation:

powershell
python scripts/canvas_cron.py fire <instance> --os-trigger

Accept only Task Scheduler success/running results documented by the CLI. On failure, the CLI re-disables the task and returns non-zero. If no immediate test is authorized, leave the task disabled and ask before enabling it.

Enable only after all applicable gates pass:

powershell
python scripts/canvas_cron.py enable <instance>

enable revalidates autonomous authority. Report the returned task state and next run time.

Runtime guarantees to verify

  • Fresh agent work launches through src.codex_runner.run_codex.
  • scan_pending invokes only canvas-scan and stops before execution.
  • Autonomous fire validates durable authority before the Canvas health probe and before starting Codex.
  • The fresh Codex turn revalidates the durable receipt, uses its actual CODEX_THREAD_ID, and mints only short-lived target-exact per-item receipts for already delegated actions.
  • Missing authority, Canvas auth/probe failure, Codex non-zero/timeout, and post-action verification failure all return non-zero.
  • A successful process code does not claim assignment correctness; it only means the authorized action and readback verification completed.

Hard rules

  • Never put real course/account/recipient data in tracked files or examples.
  • Never store durable receipts outside _private/ or expose their content.
  • Never let cron self-authorize or widen receipt actions/targets.
  • Never give the scan template mutation authority.
  • Never call Task Scheduler mutation commands during dry run.
  • Never force-fire outside an explicitly authorized install/test operation.
  • Never continue past a failed gate.
  • Never submit to a real Canvas origin unless that exact scheduled workflow is explicitly authorized. Synthetic QA authority is not valid for durable cron.

© X-isdoingreat, AGPL-3.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .agents/skills/canvas-cron of X-isdoingreat/canvas-pilot.

Open the folder on GitHubat commit 6b79d5b

Compare with similar skills

Canvas Cron next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Canvas Cron compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Canvas Cron this skillX-isdoingreat/canvas-pilot125—~2.1kAutomated safety check: NotesAGPL-3.0
ScheduleTinyAGI/tinyagi3.6k—~1.4kAutomated safety check: PassMIT
Send User MessageTinyAGI/tinyagi3.6k—~829Automated safety check: PassMIT
Cron Opsczl9707/build-your-own-openclaw1.9k—~593Automated safety check: PassMIT
X Bookmarkssharbelxyz/x-bookmarks289—~2kAutomated safety check: NotesNone
Wp Wpcli And OpsAutomattic/agent-skills2112 repos~988Automated safety check: PassNone

Similar skills

  • Schedule

    TinyAGI/tinyagi

    Create, list, and delete scheduled tasks (recurring or one-time) that send messages to agents.

    3.6k GitHub stars~1.4k tokensUpdated 6 mo ago
    Productivity & AutomationAuto-check passed
  • Send User Message

    TinyAGI/tinyagi

    Send a proactive message to a paired user via their channel (Discord, Telegram, or WhatsApp).

    3.6k GitHub stars~829 tokensUpdated 6 mo ago
    Productivity & AutomationAuto-check passed
  • Cron Ops

    czl9707/build-your-own-openclaw

    Create, list, and delete scheduled cron jobs. An agent skill from czl9707/build-your-own-openclaw.

    1.9k GitHub stars~593 tokensUpdated 3 mo ago
    Productivity & AutomationAuto-check passed
  • X Bookmarks

    sharbelxyz/x-bookmarks

    Fetch, summarize, and manage X/Twitter bookmarks via bird CLI or X API v2.

    289 GitHub stars~2k tokensUpdated 7 mo ago
    Productivity & AutomationAuto-check: notes
  • Wp Wpcli And Ops

    Automattic/agent-skills

    A skill your agent uses when working with WP-CLI (wp) for WordPress operations: safe search-replace, db export/import, plugin/theme/user/content management, cron, cache flushing, multisite, and…

    211 GitHub starsUsed in 2 repos~988 tokens
    Productivity & AutomationAuto-check passed
  • Ohdear

    ohdearapp/ohdear-cli

    Manage Oh Dear website monitoring using the ohdear CLI. An agent skill from ohdearapp/ohdear-cli.

    141 GitHub stars~1.1k tokensUpdated 1 mo ago
    Productivity & AutomationAuto-check passed

More from X-isdoingreat/canvas-pilot

All 32 skills in this repo
  • Daily Work Tweet

    X-isdoingreat/canvas-pilot

    A skill your agent uses when verified work from today or another day should become an X/Twitter post, build-in-public update, ship log, or bilingual draft.

    125 GitHub stars~1.6k tokensUpdated 2 mo ago
    Auto-check passed
  • Canvas Awkward Syntax

    X-isdoingreat/canvas-pilot

    A skill your agent uses when a short local academic draft needs role-aware syntax diversification while preserving meaning, locks, source grounding, rubric-critical openings, and document structure.

    125 GitHub stars~2k tokensUpdated 2 mo ago
    Auto-check passed
  • Canvas Essay

    X-isdoingreat/canvas-pilot

    A skill your agent uses for an approved long academic-writing assignment routed by canvas-execute after the deterministic writing router selects essay.

    125 GitHub stars~2.2k tokensUpdated 2 mo ago
    Auto-check passed
  • Canvas Generic

    X-isdoingreat/canvas-pilot

    A skill your agent uses for an approved Canvas assignment that no specialized course skill can handle.

    125 GitHub stars~2.4k tokensUpdated 2 mo ago
    Auto-check passed
  • Canvas Humanizer

    X-isdoingreat/canvas-pilot

    A skill your agent uses when a local academic draft needs a meaning-preserving humanizing pass with less uniform syntax while retaining rubric, source, lock, voice, and length constraints.

    125 GitHub stars~1.8k tokensUpdated 2 mo ago
    Auto-check passed
  • Canvas Humanizer Loop

    X-isdoingreat/canvas-pilot

    A skill your agent uses when a local draft needs repeated canvas-humanizer passes with independent meaning, structure, citation, voice, and rubric-damage checks.

    125 GitHub stars~1.7k tokensUpdated 2 mo ago
    Auto-check passed

Questions about Canvas Cron

What does Canvas Cron do?

A skill your agent uses when managing Canvas Pilot schedules: install, inspect, pause, change, delete, or safely test scheduled scans and runs. Canvas Cron is an agent skill from X-isdoingreat/canvas-pilot. Use when managing Canvas Pilot schedules: install, inspect, pause, change, delete, or safely test scheduled scans and runs.

When should I use Canvas Cron?

Canvas Cron fits situations like: managing Canvas Pilot schedules: install; safely test scheduled scans and runs.

How do I install Canvas Cron in Claude Code?

Run `npx skills add X-isdoingreat/canvas-pilot --skill canvas-cron -a claude-code`. Or copy the skill folder (.agents/skills/canvas-cron in X-isdoingreat/canvas-pilot) into .claude/skills/canvas-cron in your project. Claude Code loads it when a task matches its description.

How do I install Canvas Cron in Codex?

Run `npx skills add X-isdoingreat/canvas-pilot --skill canvas-cron -a codex`. Or copy the skill folder (.agents/skills/canvas-cron in X-isdoingreat/canvas-pilot) into .agents/skills/canvas-cron in your project. Codex loads it when a task matches its description.

Can I use Canvas Cron in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add X-isdoingreat/canvas-pilot --skill canvas-cron -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/canvas-cron, .gemini/skills/canvas-cron, .github/skills/canvas-cron and .opencode/skills/canvas-cron in your project.

What does Canvas Cron need to run?

Going by SKILL.md and its folder, Canvas Cron needs the command-line tools its instructions call (python). Our summary lists: Python 3. Its frontmatter pre-approves these tools: Bash, PowerShell, Read, AskUserQuestion.

Does Canvas Cron access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Canvas Cron safe to install?

Our automated static check of SKILL.md found notes only (pre-approves every shell command (allowed-tools: bash)), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Canvas Cron use?

Canvas Cron is published under the AGPL-3.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Canvas Cron use?

About 2.1k tokens (SKILL.md is roughly 8.4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Canvas Cron?

Skills that share tags, products or a category with Canvas Cron: Schedule (TinyAGI/tinyagi, 3.6k stars), Send User Message (TinyAGI/tinyagi, 3.6k stars), Cron Ops (czl9707/build-your-own-openclaw, 1.9k stars) and X Bookmarks (sharbelxyz/x-bookmarks, 289 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Canvas Cron?

X-isdoingreat (a GitHub user) maintains it in X-isdoingreat/canvas-pilot, which has 125 GitHub stars. The repository holds 32 skills in this directory. The repository was last updated on July 31, 2026.

Source: X-isdoingreat/canvas-pilot on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.