Asdf
jjmartres/opencode
A skill your agent uses whenever the user wants to install, configure, or use asdf (asdf-vm), the universal version manager.
Blocks destructive shell commands once invoked: a PreToolUse Bash guard denies rm -rf outside temp dirs, force pushes and remote branch deletes, git reset --hard, DROP TABLE / DROP DATABASE /…
$ npx skills add yonatangross/orchestkit --skill careful -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install yonatangross/orchestkit careful --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/yonatangross/orchestkit.git skills-src && mkdir -p .claude/skills && cp -r skills-src/src/skills/careful .claude/skills/careful && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "careful" agent skill from https://github.com/yonatangross/orchestkit/tree/main/src/skills/careful into .claude/skills/careful/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "careful", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/yonatangross/orchestkit/tree/main/src/skills/carefulType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add yonatangross/orchestkit --skill careful -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install yonatangross/orchestkit careful --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/yonatangross/orchestkit.git skills-src && mkdir -p .agents/skills && cp -r skills-src/src/skills/careful .agents/skills/careful && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "careful" agent skill from https://github.com/yonatangross/orchestkit/tree/main/src/skills/careful into .agents/skills/careful/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "careful", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add yonatangross/orchestkit --skill careful -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install yonatangross/orchestkit careful --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/yonatangross/orchestkit.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/src/skills/careful .cursor/skills/careful && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "careful" agent skill from https://github.com/yonatangross/orchestkit/tree/main/src/skills/careful into .cursor/skills/careful/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "careful", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/yonatangross/orchestkit.git --path src/skills/careful--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add yonatangross/orchestkit --skill careful -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install yonatangross/orchestkit careful --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/yonatangross/orchestkit.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/src/skills/careful .gemini/skills/careful && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "careful" agent skill from https://github.com/yonatangross/orchestkit/tree/main/src/skills/careful into .gemini/skills/careful/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "careful", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install yonatangross/orchestkit carefulInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add yonatangross/orchestkit --skill careful -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/yonatangross/orchestkit.git skills-src && mkdir -p .github/skills && cp -r skills-src/src/skills/careful .github/skills/careful && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "careful" agent skill from https://github.com/yonatangross/orchestkit/tree/main/src/skills/careful into .github/skills/careful/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "careful", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add yonatangross/orchestkit --skill careful -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install yonatangross/orchestkit careful --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/yonatangross/orchestkit.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/src/skills/careful .opencode/skills/careful && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "careful" agent skill from https://github.com/yonatangross/orchestkit/tree/main/src/skills/careful into .opencode/skills/careful/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "careful", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
carefulBlocks destructive shell commands once invoked: a PreToolUse Bash guard denies rm -rf outside temp dirs, force pushes and remote branch deletes, git reset --hard, DROP TABLE / DROP DATABASE /…
Careful is an agent skill from yonatangross/orchestkit. Blocks destructive shell commands once invoked: a PreToolUse Bash guard denies rm -rf outside temp dirs, force pushes and remote branch deletes, git reset --hard, DROP TABLE / DROP DATABASE / TRUNCATE, kubectl delete and terraform or tofu destroy, including inside ssh remote commands, and makes Claude ask the operator. Use before touching production, a shared branch, a live database or a cluster.
Its SKILL.md is about 1.2k tokens, which your agent loads only when the skill is triggered. The skill folder holds 3 other files, including scripts (for example `test-cases.json`). Compatibility notes: Claude Code 2.1.277+.
It sits in DevOps & Cloud, covering Infrastructure as code, Container orchestration and Git workflow. It works with Git, Terraform, Kubernetes and Bash. The repository describes itself as: The Complete AI Development Toolkit for Claude Code. 106 skills, 36 agents, 171 hooks. Install ork for stable (v9.x), or ork-alpha for the v10 line, which ships daily. The licence is MIT.
Read from SKILL.md and the folder at commit e4ff8d9. It shows what the files ask for, not the result of running them.
Pre-approves these tools, so the agent can use them without asking each time:
ReadFrom allowed-tools in the SKILL.md frontmatter.
Ships 1 file in scripts/ (JavaScript), which the agent can run.
Shell commands in SKILL.md call:
gitterraformkubectlbashsshpythonmakenpmnodeFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use git, kubectl, ssh and npm, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Claude Code 2.1.277+.
From compatibility in the SKILL.md frontmatter.
Careful loads about 1.2k tokens when it runs. Until then it costs about 102 tokens; SKILL.md has 554 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.
The full file from yonatangross/orchestkit at commit e4ff8d9, republished under its MIT licence (© yonatangross). 554 words, ~1,245 tokens.
.claude/skills/careful/SKILL.md (or your agent's skills folder). This skill also uses 2 other files; get the full folder from GitHub.Invoking this skill registers a PreToolUse hook on Bash (the hooks: block above).
Claude Code keeps a skill's hooks registered for the rest of the session, on every
later turn, so careful stays on until the session ends. There is no off switch:
start a new session to work without it.
| Rule | Blocks | Still allowed |
|---|---|---|
rm-rf | rm with recursive and force flags (-rf, -fr, -r -f, --recursive --force), xargs rm -rf, and any target the shell expands: $TMPDIR/x, $TMP, $TEMP, $X, $( ), globs, braces, ~ | the same command when every target is a LITERAL absolute path that lands, after following existing symlinks, strictly inside /tmp, /private/tmp or the configured TMPDIR (trusted only when it is two or more levels deep); write /tmp/build, not $TMPDIR/build, because a command can reassign TMPDIR first (TMPDIR=/ ; rm -rf $TMPDIR/usr); rm -r; rm -f file |
git-push-force | git push --force, -f (also inside -uf), --force-with-lease[=...], a +branch refspec, to any branch | git push, git push -u origin <branch> |
git-push-delete | git push origin --delete <b>, -d <b>, :<b> | git push origin <b>:<b> |
git-reset-hard | git reset --hard | git reset --soft, git reset HEAD <file> |
sql-drop | DROP TABLE, DROP DATABASE, DROP SCHEMA anywhere in the command, heredocs included | a SELECT that mentions drop |
sql-truncate | TRUNCATE TABLE, or a TRUNCATE <name> statement sent to a SQL client | truncate -s 0 file.log |
kubectl-delete | kubectl ... delete | kubectl get, kubectl logs |
terraform-destroy | terraform destroy, terraform apply -destroy, the same with tofu | terraform plan, terraform apply |
Matching is on shell words, not substrings: a commit message or grep pattern that
quotes git push --force is text, not a push. Compound commands are split on
;, &&, | and newlines, and the bodies of bash -c, eval, $( ) and the
remote command of ssh host '...' are checked as well.
The hook exits 2 and Claude sees the reason, for example:
[ork:careful] blocked by rule git-push-force: git push with --force-with-lease.
careful mode is on for this session, so destructive commands do not run unattended.
To proceed, ask the operator: they can run the command themselves, or confirm it and run it outside careful mode.Then stop and ask. Do not rewrite the command to slip past the matcher (a different flag spelling, a script file, an alias): the operator turned careful on to be asked, and a workaround defeats that even when the matcher misses it.
careful is a pattern matcher on the text of each Bash call. It is a seatbelt, not a sandbox. It does NOT see:
shell aliases and functions (alias nuke='rm -rf', then nuke src);
scripts, Makefiles, npm scripts or binaries that run these commands inside
(./deploy.sh, make clean, npm run reset-db);
eval or bash -c built from variables, base64 or other indirection it cannot
read as text; it only reads literal strings;
interpreters and other shells running the same thing (python -c "shutil.rmtree(...)",
node -e, fish -c, pwsh), or a remote shell other than plain ssh host '...';
a link created in the same command (ln -s / /tmp/r9 && rm -rf /tmp/r9/usr): the
guard follows links that already exist when it runs (a temp path through a link to
/usr is denied), but one made by the command itself is out of reach for a text
check, like python -c "shutil.rmtree(...)";
MCP tools, file edits, and anything outside the Bash tool.
If the hook cannot read its input it blocks (exit 2) rather than guess.
To also fence file edits to one directory, use the freeze skill.
The guard is scripts/careful-guard.mjs (Node, no dependencies); its matcher
cases live in tests/unit/test-careful-guard.mjs.
© yonatangross, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
SKILL.md and 2 other files (scripts) in src/skills/careful of yonatangross/orchestkit.
Open the folder on GitHubat commit e4ff8d9
Careful next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Careful this skillyonatangross/orchestkit | 292 | — | ~1.2k | Automated safety check: Pass | MIT | |
| Asdfjjmartres/opencode | 133 | — | ~2.1k | Automated safety check: Notes | MIT | |
| Eks Best Practicesaws-samples/appmod-blueprints | 115 | — | ~5k | Automated safety check: Pass | MIT-0 | |
| Supercheck Infrastructure Deploymentsupercheck-io/supercheck | 215 | — | ~1.4k | Automated safety check: Notes | AGPL-3.0 | |
| Cloud Devopsdavila7/claude-code-templates | 33k | 4 repos | ~1.4k | Automated safety check: Pass | MIT | |
| Infrastructuremicrosoft/physical-ai-toolchain | 126 | — | ~1.6k | Automated safety check: Pass | MIT |
jjmartres/opencode
A skill your agent uses whenever the user wants to install, configure, or use asdf (asdf-vm), the universal version manager.
aws-samples/appmod-blueprints
Advisory guidance for Amazon EKS architecture and configuration decisions — compute strategy, networking, security, reliability, cost, autoscaling, observability, multi-tenancy, and upgrade planning.
supercheck-io/supercheck
Work on Supercheck Docker Compose, K3s, Kubernetes manifests, gVisor, OpenTofu/Hetzner, secrets, external services, autoscaling, backups, disaster recovery, DNS/TLS, or production deployment.
davila7/claude-code-templates
Cloud infrastructure and DevOps workflow covering AWS, Azure, GCP, Kubernetes, Terraform, CI/CD, monitoring, and cloud-native development.
microsoft/physical-ai-toolchain
Deploy and manage Azure infrastructure for the Physical AI Toolchain including Terraform IaC, Kubernetes setup, GPU configuration, and network topology
oracle/skills
Oracle Cloud Infrastructure guidance for designing, operating, and troubleshooting OCI services, including OCI Kubernetes Engine (OKE), OCI Internet of Things Platform, OCI Functions deployment and…
yonatangross/orchestkit
API contract design for REST and GraphQL, covering resource shape, URL and header versioning with deprecation windows, RFC 9457 Problem Details error handling, and OpenAPI specs.
yonatangross/orchestkit
ADR templates in the Nygard format with context, decision, consequences, and alternatives.
yonatangross/orchestkit
Single-pass codebase analysis leveraging a 1M-token context window for comprehensive security scanning, architecture review, and dependency auditing.
yonatangross/orchestkit
Structured review processes, conventional comments, language-specific checklists, and feedback templates.
yonatangross/orchestkit
Creates GitHub pull requests with pre-flight validation, conventional title formatting, and structured summary generation.
yonatangross/orchestkit
Multi-angle codebase exploration spawning 3-5 parallel agents for code structure, data flow, architecture patterns, and health assessment.
Works with
Categories
Blocks destructive shell commands once invoked: a PreToolUse Bash guard denies rm -rf outside temp dirs, force pushes and remote branch deletes, git reset --hard, DROP TABLE / DROP DATABASE /…. Careful is an agent skill from yonatangross/orchestkit. Blocks destructive shell commands once invoked: a PreToolUse Bash guard denies rm -rf outside temp dirs, force pushes and remote branch deletes, git reset --hard, DROP TABLE / DROP DATABASE / TRUNCATE, kubectl delete and terraform or tofu destroy, including inside ssh remote commands, and makes Claude ask the operator.
Careful fits situations like: tasks that involve Infrastructure as code; tasks that involve Container orchestration; tasks that involve Git workflow.
Run `npx skills add yonatangross/orchestkit --skill careful -a claude-code`. Or copy the skill folder (src/skills/careful in yonatangross/orchestkit) into .claude/skills/careful in your project. Claude Code loads it when a task matches its description.
Run `npx skills add yonatangross/orchestkit --skill careful -a codex`. Or copy the skill folder (src/skills/careful in yonatangross/orchestkit) into .agents/skills/careful in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add yonatangross/orchestkit --skill careful -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/careful, .gemini/skills/careful, .github/skills/careful and .opencode/skills/careful in your project.
Going by SKILL.md and its folder, Careful needs JavaScript for the scripts in its folder and the command-line tools its instructions call (git, terraform, kubectl, bash, ssh and python). Our summary lists: Python 3; Node.js. Its frontmatter pre-approves these tools: Read. Compatibility (from SKILL.md): Claude Code 2.1.277+..
SKILL.md contains no URLs. Its commands use git, ssh and npm, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.
Careful is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.2k tokens (SKILL.md is roughly 5k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Careful: Asdf (jjmartres/opencode, 133 stars), Eks Best Practices (aws-samples/appmod-blueprints, 115 stars), Supercheck Infrastructure Deployment (supercheck-io/supercheck, 215 stars) and Cloud Devops (davila7/claude-code-templates, 33k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
yonatangross (a GitHub user) maintains it in yonatangross/orchestkit, which has 292 GitHub stars. The repository holds 108 skills in this directory. The repository was last updated on October 10, 2026.
Source: yonatangross/orchestkit on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.