Vercel Deploy Preview
jeremylongshore/tons-of-skills-marketplace
Create and manage Vercel preview deployments for branches and pull requests.
Update a QM source fork by merging upstream, or upgrade a package deployment dependency, and open a PR.
$ npx skills add yc-software/qm --skill update-qm -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install yc-software/qm update-qm --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/yc-software/qm.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.codex/skills/update-qm .claude/skills/update-qm && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "update-qm" agent skill from https://github.com/yc-software/qm/tree/main/.codex/skills/update-qm into .claude/skills/update-qm/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "update-qm", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/yc-software/qm/tree/main/.codex/skills/update-qmType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add yc-software/qm --skill update-qm -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install yc-software/qm update-qm --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/yc-software/qm.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.codex/skills/update-qm .agents/skills/update-qm && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "update-qm" agent skill from https://github.com/yc-software/qm/tree/main/.codex/skills/update-qm into .agents/skills/update-qm/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "update-qm", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add yc-software/qm --skill update-qm -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install yc-software/qm update-qm --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/yc-software/qm.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.codex/skills/update-qm .cursor/skills/update-qm && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "update-qm" agent skill from https://github.com/yc-software/qm/tree/main/.codex/skills/update-qm into .cursor/skills/update-qm/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "update-qm", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/yc-software/qm.git --path .codex/skills/update-qm--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add yc-software/qm --skill update-qm -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install yc-software/qm update-qm --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/yc-software/qm.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.codex/skills/update-qm .gemini/skills/update-qm && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "update-qm" agent skill from https://github.com/yc-software/qm/tree/main/.codex/skills/update-qm into .gemini/skills/update-qm/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "update-qm", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install yc-software/qm update-qmInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add yc-software/qm --skill update-qm -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/yc-software/qm.git skills-src && mkdir -p .github/skills && cp -r skills-src/.codex/skills/update-qm .github/skills/update-qm && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "update-qm" agent skill from https://github.com/yc-software/qm/tree/main/.codex/skills/update-qm into .github/skills/update-qm/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "update-qm", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add yc-software/qm --skill update-qm -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install yc-software/qm update-qm --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/yc-software/qm.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.codex/skills/update-qm .opencode/skills/update-qm && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "update-qm" agent skill from https://github.com/yc-software/qm/tree/main/.codex/skills/update-qm into .opencode/skills/update-qm/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "update-qm", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
update-qmUpdate a QM source fork by merging upstream, or upgrade a package deployment dependency, and open a PR.
Update Qm is an agent skill from yc-software/qm. Update a QM source fork by merging upstream, or upgrade a package deployment dependency, and open a PR. Use when asked to "update qm", "sync from upstream", "pull in the latest qm".
Its SKILL.md is about 1.8k tokens, which your agent loads only when the skill is triggered. The skill folder holds 2 other files (for example `agents/openai.yaml`).
It sits in DevOps & Cloud, covering Pull requests and Deployment. It works with Git. The repository describes itself as: Multiplayer agent harness for work. The licence is MIT.
Read from SKILL.md and the folder at commit 0492745. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
gitghnpmnodeFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use git, gh and npm, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Update Qm loads about 1.8k tokens when it runs. Until then it costs about 48 tokens; SKILL.md has 995 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from yc-software/qm at commit 0492745, republished under its MIT licence (© yc-software). 995 words, ~1,827 tokens.
.claude/skills/update-qm/SKILL.md (or your agent's skills folder). This skill also uses 1 other file; get the full folder from GitHub.Determine whether this is a source fork or a package deployment before choosing the update procedure. Source forks may intentionally change core; preserve those changes. Contributing them upstream is optional.
Run git remote -v and inspect the files and ancestry. If origin is yc-software/qm,
this is upstream itself, not a downstream sync target. A different origin alone does
not prove a source fork. A source fork has the QM source tree and shared upstream
history; a package deployment has a deployment config and a pinned @yc-software/qm
dependency. In a source fork with nested deployment directories, update source unless
the request specifically targets a nested package pin.
For a package deployment, work on a topic branch and install the requested release with
npm install --save-exact @yc-software/qm@<version>. If no version is specified, resolve
the current published release first. Review the package and lockfile diff, contract
changes, and image overrides that could keep workloads on older images. Package updates
do not refresh generated runbooks, skills, or vendored Terraform: compare the release's
scaffold in a separate temporary directory and reconcile required changes without
reinitializing or overwriting the existing deployment. Run the installed CLI's check,
doctor, and plan, then open a PR in the deployment repository. Deploy only within
the user's requested scope, following its deployment runbook and live checks. Do not
add an upstream source remote or merge source into a package deployment.
For a source fork, check the upstream remote points to yc-software/qm; if absent, add
git remote add upstream git@github.com:yc-software/qm. Confirm shared history before
merging. Never merge downstream history into upstream. Use --repo on every gh
command. Inspect the actual default branch; the examples below assume main and must
be adapted if the fork deliberately uses another name. If a mirror-seeded repository
has a stale feature branch as its default, identify the intended base before syncing;
do not silently merge into the stale branch or delete existing refs.
origin/main is published history that deploys and other clones track. Rebasing it onto
upstream rewrites those commits, so always merge.
git switch main
git pull --ff-only origin main
git fetch upstream
git switch -c codex/sync-upstream-<yyyy-mm-dd>
git log --oneline main..upstream/main
git merge upstream/mainRecord the commit range before resolving anything so the PR can state it. If the merge reports "Already up to date", delete the branch and report that instead of opening an empty PR.
Read both sides and the local commits that explain the customization. Preserve intentional local behavior while integrating upstream fixes; a core conflict is expected maintenance, not a policy violation. Keep deployment data in the layer or separate private deployment repository where practical. Do not discard a core modification just because it is organization-specific or insist it be contributed upstream.
Document conflicts, resolutions, and remaining divergence in the sync PR. When intent cannot be recovered from code, tests, or history, ask the operator before choosing a behavior. Review inherited CI and publishing changes for the fork's own accounts and registries rather than enabling upstream workflows blindly.
Determine affected tests from the merged range and conflict resolutions. Run those locally plus typecheck and lint; include CLI tests for CLI or deployment-contract changes. Use the full local suite only when the affected scope cannot be determined; otherwise let CI run it. Install the locked dependencies first:
npm ci
npm run typecheck
npm run lintA sync can raise the deployment contract major, and the CLI rejects a layer config written
for the old one. Check each organization layer with the in-tree CLI (npm exec qm does not
work in a source checkout; the workspace symlink points at cli/, which is unbuilt):
node cli/bin/qm.ts check --config deploy/layers/<org>/qm.config.jsoncFor deployments outside the checkout, substitute their config paths. If a config reports
an unsupported contract major, adapting it is part of the sync. Verify non-trivial behavior
changes in a live dev instance before opening the PR, per AGENTS.md. Production service
builds must use --build-from against this checkout (or deliberately published custom
images); merging source does not update published runtime images. See the README source
deployment procedure.
git push -u origin codex/sync-upstream-<yyyy-mm-dd>
gh pr create --repo <source-fork> --base main \
--title "Sync upstream qm through <short-sha>" \
--body-file .generated/sync-body.mdPass --repo to every gh command you run in a private fork. Without it, gh picks a base
repository from the clone's remotes and may choose upstream: the sync PR gets opened
against qm, and gh pr edit 1 overwrites whatever PR is number 1 in the source repository.
The same applies to gh pr view, gh pr list, and gh issue.
The description should state the upstream commit range merged, any file outside
deploy/layers/ that conflicted and how it was resolved, and the results of the checks
above.
When authorized to land a source-sync PR, preserve the upstream ancestry with a merge
commit (gh pr merge --repo <source-fork> <pr> --merge) or an ancestry-preserving
fast-forward. Never squash or rebase a source-sync PR, even if the repository's usual
shipping workflow uses squash: that loses the upstream merge and causes later syncs to
revisit already-integrated history. If repository settings prohibit merge commits,
resolve that policy before landing; do not fall back to squash. Package dependency PRs
can follow the deployment repository's ordinary merge policy.
If the private fork deploys from main, merging this PR ships upstream's changes to production,
so merge when someone can watch it.
A source fork runs its enabled CI workflows in its own account. A sync that adds or changes CI changes what runs on the next PR, and workflows that need secrets the fork never received will fail until those are supplied.
git push --mirror to seed or update a source fork. It copies unrelated branches and
tags, leaves initial default-branch selection implicit, and can delete destination-only
refs. Seed only main and explicitly set the default branch as the README shows.upstream-pr skill pushes upstream only from branches cut fresh from upstream/main
and scrubbed.main onto upstream/main, or force-pushing a private fork's main.© yc-software, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 1 other file in .codex/skills/update-qm of yc-software/qm.
Open the folder on GitHubat commit 0492745
Update Qm next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Update Qm this skillyc-software/qm | 15k | — | ~1.8k | Automated safety check: Pass | MIT | |
| Vercel Deploy Previewjeremylongshore/tons-of-skills-marketplace | 2.8k | — | ~1.6k | Automated safety check: Pass | MIT | |
| Reviewwerf/werf | 4.7k | — | ~2k | Automated safety check: Pass | Apache-2.0 | |
| GitHub Workflow AutomationFNOSP/FlyNarwhal | 495 | 8 repos | ~5.4k | Automated safety check: Pass | AGPL-3.0 | |
| Agr Releasecomputerlovetech/agr | 451 | — | ~1.6k | Automated safety check: Pass | MIT | |
| Releasear-io/ar-io-node | 127 | — | ~4.2k | Automated safety check: Notes | AGPL-3.0 |
jeremylongshore/tons-of-skills-marketplace
Create and manage Vercel preview deployments for branches and pull requests.
werf/werf
Code review of a pull request, branch, or diff. An agent skill from werf/werf.
FNOSP/FlyNarwhal
Automate GitHub workflows with AI assistance. An agent skill from FNOSP/FlyNarwhal.
computerlovetech/agr
Release process for the agr package. An agent skill from computerlovetech/agr.
ar-io/ar-io-node
Drive the AR.IO Node release process end-to-end — preflight checks, prepare commit, finalize with image SHAs, test docker compose profiles, tag & publish, and post-release cleanup.
stacklok/mecatl
Cuts a tagged mecatl release by dispatching the release-PR workflow, merging the bot's pull request and verifying the tag, images, Helm chart, signed archives and Homebrew formula.
yc-software/qm
Act for an org admin — the admin API (scope directory, per-scope config & SOUL, any scope's memory, transcripts & captured prompts, files, user roster & external users, audit/errors/metrics/egress)…
yc-software/qm
Drive a real stealth browser from your shell — act on websites (order food, file an expense, pull data behind a login), with per-person persistent sign-ins via the provider's managed auth (Kernel…
yc-software/qm
Show the app connection picker or setup widget when users ask to connect apps, reopen setup, or need an app that isn't connected yet.
yc-software/qm
Run the current worktree as a production-shaped local dev instance with web, Slack, or both, on a real LLM + Postgres.
yc-software/qm
Work with GitHub and GitLab repositories through resident gh/glab/git auth on the agent computer.
yc-software/qm
Read and act on the user's Gmail, Google Calendar, and Google Tasks through per-user OAuth.
Works with
Categories
Update a QM source fork by merging upstream, or upgrade a package deployment dependency, and open a PR. Update Qm is an agent skill from yc-software/qm. Update a QM source fork by merging upstream, or upgrade a package deployment dependency, and open a PR.
Update Qm fits situations like: asked to update qm; sync from upstream; pull in the latest qm.
Run `npx skills add yc-software/qm --skill update-qm -a claude-code`. Or copy the skill folder (.codex/skills/update-qm in yc-software/qm) into .claude/skills/update-qm in your project. Claude Code loads it when a task matches its description.
Run `npx skills add yc-software/qm --skill update-qm -a codex`. Or copy the skill folder (.codex/skills/update-qm in yc-software/qm) into .agents/skills/update-qm in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add yc-software/qm --skill update-qm -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/update-qm, .gemini/skills/update-qm, .github/skills/update-qm and .opencode/skills/update-qm in your project.
Going by SKILL.md and its folder, Update Qm needs the command-line tools its instructions call (git, gh, npm and node). Our summary lists: Node.js.
SKILL.md contains no URLs. Its commands use git, gh and npm, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Update Qm is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.8k tokens (SKILL.md is roughly 7.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Update Qm: Vercel Deploy Preview (jeremylongshore/tons-of-skills-marketplace, 2.8k stars), Review (werf/werf, 4.7k stars), GitHub Workflow Automation (FNOSP/FlyNarwhal, 495 stars) and Agr Release (computerlovetech/agr, 451 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
yc-software (a GitHub organization) maintains it in yc-software/qm, which has 15,362 GitHub stars. The repository holds 29 skills in this directory. The repository was last updated on October 8, 2026.
Source: yc-software/qm on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.