skill-manager
Manage, audit, and maintain your skill ecosystem. Use when the user asks to "check my skills", "audit skills", "find duplicate skills", "which skills am I using", "prune unused skills", "are my skills synced", "check for skill updates", "skill report", "skill health", or mentions skill maintenance, cleanup, or organization.
What this skill does
# Skill Manager Unified tool for managing your skill ecosystem across Claude, Codex, and Agents runtimes. ## Available Commands Run these via the `skill-manager.sh` script in the repo's `scripts/` directory: ```bash # Full audit — runs all checks in one pass ~/.claude/scripts/skill-manager.sh report # Individual commands ~/.claude/scripts/skill-manager.sh usage # Show skill usage frequency ~/.claude/scripts/skill-manager.sh usage --top 10 # Top 10 most-used skills ~/.claude/scripts/skill-manager.sh dupes # Detect redundant/duplicate skills ~/.claude/scripts/skill-manager.sh check # Verify availability for Claude/Codex/Agents ~/.claude/scripts/skill-manager.sh sync # Validate repo sync status ~/.claude/scripts/skill-manager.sh update # Check for npx skill updates ~/.claude/scripts/skill-manager.sh prune # List candidates for removal ``` ## When to Run Each Command | Command | When to Use | |----------|-------------| | `report` | Periodic full health check (weekly or monthly) | | `usage` | Before pruning — see which skills are actually used | | `dupes` | After installing new skills — check for overlap | | `check` | After setup.sh or when skills seem missing | | `sync` | After editing skills — verify everything is linked | | `update` | Periodically — check if npx-installed skills have newer versions | | `prune` | When the skill list feels bloated — find removal candidates | ## How Usage Tracking Works A PostToolUse hook in `settings.json` fires every time the Skill tool is used. It logs: - Skill name - Timestamp (UTC) - Project directory Data is stored in `~/.claude/skill-usage.jsonl` (one JSON object per line). The `usage` and `prune` commands read this data to generate reports. ## How to Use This Skill When the user asks about skill management, run the appropriate command and present the results. For general questions, run `report` for a full picture. ### Interpreting Results - **Check**: Green means properly linked. Yellow means something unexpected. Red means broken. - **Sync**: Verifies all three runtimes (Claude, Codex, Agents) point to the repo's skills directory. - **Dupes**: Groups skills by prefix and checks keyword overlap in descriptions. High overlap (>40%) suggests consolidation. - **Usage**: Shows invocation counts and last-used dates. "Never used" skills are prune candidates. - **Prune**: Combines usage data with overlap analysis to suggest removals. ### Archiving Skills To archive a skill (remove from active use but keep for reference): ```bash mv skills/<name> ~/.claude/skills-archive/ ``` This removes it from all three runtimes (since they symlink to the repo's skills/).
Related in Security
mac-ops
IncludedComprehensive macOS workstation operations — diagnose kernel panics, identify failing drives, audit launchd startup items, decode wake reasons, triage TCC permission denials, manage APFS snapshots, recover from no-boot. Use for: Mac is slow, slow bootup, won't boot, kernel panic, kernel_task hot, mds_stores CPU, photoanalysisd, cloudd, login loop, gray screen, sleep wake failure, drive failing, IO errors, APFS snapshots eating space, Time Machine local snapshots, Spotlight indexing, launchd, LaunchAgent, LaunchDaemon, login items, TCC permissions, Full Disk Access, Screen Recording denied, Gatekeeper, quarantine, com.apple.quarantine, app is damaged, helper tool, /Library/PrivilegedHelperTools, pmset, wake reasons, dark wake, sysdiagnose, panic.ips, DiagnosticReports, configuration profile, MDM profile, remote diagnostics over SSH.
a11y-audit
IncludedRun accessibility audits on web projects combining automated scanning (axe-core, Lighthouse) with WCAG 2.1 AA compliance mapping, manual check guidance, and structured reporting. Output is configurable: markdown report only, markdown plus machine-readable JSON, or markdown plus issue tracker integration. Use this skill whenever the user mentions "accessibility audit", "a11y audit", "WCAG audit", "accessibility check", "compliance scan", or asks to check a web project for accessibility issues. Also trigger when the user wants to verify WCAG conformance or map findings to a specific standard (CAN-ASC-6.2, EN 301 549, ADA/AODA).
erpclaw
IncludedAI-native ERP system with self-extending OS. Full accounting, invoicing, inventory, purchasing, tax, billing, HR, payroll, advanced accounting (ASC 606/842, intercompany, consolidation), and financial reporting. 413 actions across 14 domains, 43 expansion modules. Constitutional guardrails, adversarial audit, schema migration. Double-entry GL, immutable audit trail, US GAAP.
assess
IncludedAssesses and rates quality 0-10 across multiple dimensions (correctness, maintainability, security, performance, testability, simplicity) with pros/cons analysis. Compares against project conventions and prior decisions from memory. Produces structured evaluation reports with actionable improvement suggestions. Use when evaluating code, designs, architectures, or comparing alternative approaches.
spring-boot-security-jwt
IncludedProvides JWT authentication and authorization patterns for Spring Boot 3.5.x covering token generation with JJWT, Bearer/cookie authentication, database/OAuth2 integration, and RBAC/permission-based access control using Spring Security 6.x. Use when implementing authentication or authorization in Spring Boot applications.
code-hardcode-audit
IncludedDetect hardcoded values, magic numbers, and leaked secrets. TRIGGERS - hardcode audit, magic numbers, PLR2004, secret scanning.