Agent skill

Verify

by xhluca in xhluca/agent-talk

Record and pin a saved peer's public keys (explicit first-contact verification).

MITAuto-check passed

Install Verify

skills CLI
$ npx skills add xhluca/agent-talk --skill verify -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install xhluca/agent-talk verify --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/xhluca/agent-talk.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/verify .claude/skills/verify && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
verify
GitHub stars
190
Token cost
~328 tokens
SKILL.md length
122 words
Files
1
Skills in repo
14
Repo updated
First seen
Licence
MIT

At a glance

Record and pin a saved peer's public keys (explicit first-contact verification).

  • Verify a contact before messaging
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • Investigate a PIN MISMATCH

What it does

Verify is an agent skill from xhluca/agent-talk. Record and pin a saved peer's public keys (explicit first-contact verification). Use to verify a contact before messaging, or to investigate a PIN MISMATCH.

Its SKILL.md is about 330 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

The repository describes itself as: agent-talk enables any coding agent to talk to each other. The licence is MIT.

When your agent uses it

  • Verify a contact before messaging
  • Investigate a PIN MISMATCH

Example prompts

  • “/verify”

What it can do on your machine

Read from SKILL.md and the folder at commit 8a7fc4f. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Verify loads about 328 tokens when it runs. Until then it costs about 41 tokens; SKILL.md has 122 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~41
When it runs · the whole SKILL.md, loaded when a task matches
~328

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from xhluca/agent-talk at commit 8a7fc4f, republished under its MIT licence (© xhluca). 122 words, ~328 tokens.

Download SKILL.mdSave it as .claude/skills/verify/SKILL.md (or your agent's skills folder).
name
verify
description
Record and pin a saved peer's public keys (explicit first-contact verification). Use to verify a contact before messaging, or to investigate a PIN MISMATCH.

verify — pin a peer's keys

retalk verify <peer> --dir "<user>/identity" --passphrase-path "<user>/passphrase"
retalk verify <peer> --identity-key K --signing-key S --dir "<user>/identity" --passphrase-path "<user>/passphrase"

Checks the peer's keys against the saved fingerprint and records/pins them on success; refuses with PIN MISMATCH (possible relay tampering — stop) if they don't match. Peer must exist via add; fetching needs the passphrase if the identity is encrypted — name the file with --passphrase-path so the call stays one flat command (retalk 0.3.0+; drop it on a --no-passphrase identity, older retalk in init Session rule 8). Target the identity inline with --dir "<user>/identity".

<user> = this session's user directory — an absolute path resolved at init (e.g. ~/.agent-talk/users/alice (global) or <project>/.agent-talk/users/alice (local)). Each session uses a distinct, isolated user, so parallel sessions never collide.

Next

  • send — message the now-pinned peer.
  • receive — read their reply.
  • contacts — review your saved peers.

© xhluca, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/verify of xhluca/agent-talk.

Open the folder on GitHubat commit 8a7fc4f

Compare with similar skills

Verify next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Verify compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Verify this skillxhluca/agent-talk190—~328Automated safety check: PassMIT
Recordingcodewhale-hq/Codewhale41k—~540Automated safety check: PassMIT
No Explicit Anythedaviddias/Front-End-Checklist74k—~565Automated safety check: PassMIT
Grill And Recordasgeirtj/system_prompts_leaks69k—~912Automated safety check: PassCC0-1.0
Architecture Decision Recordsaffaan-m/ECC274k4 repos~1.8kAutomated safety check: PassMIT
Architecture Decision Recordsaffaan-m/ECC274k1 repos~863Automated safety check: PassMIT

Similar skills

  • Recording

    codewhale-hq/Codewhale

    Capture screenshots on registered computers, record on macOS or HarmonyOS, and manage saved captures.

    41k GitHub stars~540 tokensUpdated yesterday
    Productivity & AutomationAuto-check passed
  • No Explicit Any

    thedaviddias/Front-End-Checklist

    A skill your agent uses when reviewing TypeScript files for type safety regressions, during code review of functions that handle external data, or when the codebase has ESLint warnings for…

    74k GitHub stars~565 tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Grill And Record

    asgeirtj/system_prompts_leaks

    Run an explicitly requested decision interview and record each settled decision in durable project documentation.

    69k GitHub stars~912 tokensUpdated 2 days ago
    Auto-check passed
  • Capture architectural decisions as numbered ADR markdown files in docs/adr/ with context, alternatives considered, consequences, and an index README.

    274k GitHub starsUsed in 4 repos~1.8k tokens
    DevelopmentAuto-check passed
  • 在Claude Code会话期间,将做出的架构决策捕获为结构化的架构决策记录(ADR)。自动检测决策时刻,记录上下文、考虑的替代方案和理由。维护一个ADR日志,以便未来的开发人员理解代码库为何以当前方式构建。

    274k GitHub starsUsed in 1 repo~863 tokens
    DevelopmentAuto-check passed
  • コーディングセッション中にアーキテクチャ決定を構造化ADRとして記録し、自動的に決定の瞬間を検出し、コンテキスト、検討された代替案、根拠を記録します。今後の開発者がコードベースの形成理由を理解するためのADRログを維持します。

    274k GitHub stars~1.1k tokensUpdated 3 days ago
    DevelopmentAuto-check passed

More from xhluca/agent-talk

All 14 skills in this repo
  • Add

    xhluca/agent-talk

    Save a peer's retalk user id (their 32-hex fingerprint), optionally under a local name, so you can message them by name.

    190 GitHub stars~1.2k tokensUpdated 28 days ago
    Auto-check passed
  • Group

    xhluca/agent-talk

    Manage group rooms — create, list, members, add, remove, rename, leave, join, delete — so this session can message several peers at once.

    190 GitHub stars~2k tokensUpdated 28 days ago
    Auto-check passed
  • History

    xhluca/agent-talk

    Replay this session's locally-saved conversation log — the at-rest copies agent-talk keeps by default on every send and receive — both sent and received, oldest first, without re-contacting the relay.

    190 GitHub stars~758 tokensUpdated 28 days ago
    Auto-check passed
  • Id

    xhluca/agent-talk

    Print this agent's retalk user id (fingerprint) to share with peers, or to confirm which identity is active, and issue or redeem the invite codes that let a peer register themselves as a contact.

    190 GitHub stars~3.5k tokensUpdated 28 days ago
    Auto-check passed
  • Receive

    xhluca/agent-talk

    Read incoming retalk messages from this session's user's DESIGNATED sender(s) — one-shot, or as a background --follow reader that surfaces new messages in the session as they arrive (on your next…

    190 GitHub stars~3.6k tokensUpdated 28 days ago
    Auto-check passed
  • Relay

    xhluca/agent-talk

    Set up, check, stop, or delete a retalk relay server (retalk-server).

    190 GitHub stars~1.5k tokensUpdated 28 days ago
    Auto-check passed

Questions about Verify

What does Verify do?

Record and pin a saved peer's public keys (explicit first-contact verification). Verify is an agent skill from xhluca/agent-talk. Record and pin a saved peer's public keys (explicit first-contact verification).

When should I use Verify?

Verify fits situations like: verify a contact before messaging; investigate a PIN MISMATCH.

How do I install Verify in Claude Code?

Run `npx skills add xhluca/agent-talk --skill verify -a claude-code`. Or copy the skill folder (skills/verify in xhluca/agent-talk) into .claude/skills/verify in your project. Claude Code loads it when a task matches its description.

How do I install Verify in Codex?

Run `npx skills add xhluca/agent-talk --skill verify -a codex`. Or copy the skill folder (skills/verify in xhluca/agent-talk) into .agents/skills/verify in your project. Codex loads it when a task matches its description.

Can I use Verify in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add xhluca/agent-talk --skill verify -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/verify, .gemini/skills/verify, .github/skills/verify and .opencode/skills/verify in your project.

What does Verify need to run?

SKILL.md names no scripts, command-line tools or credentials: Verify is instructions for the agent only.

Does Verify access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Verify safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Verify use?

Verify is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Verify use?

About 328 tokens (SKILL.md is roughly 1.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Verify?

Skills that share tags, products or a category with Verify: Recording (codewhale-hq/Codewhale, 41k stars), No Explicit Any (thedaviddias/Front-End-Checklist, 74k stars), Grill And Record (asgeirtj/system_prompts_leaks, 69k stars) and Architecture Decision Records (affaan-m/ECC, 274k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Verify?

xhluca (a GitHub user) maintains it in xhluca/agent-talk, which has 190 GitHub stars. The repository holds 14 skills in this directory. The repository was last updated on September 10, 2026.

Source: xhluca/agent-talk on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.