skills-hub: Instructions file for Codex

AGENTS.md

skills-hub AGENTS.md is an instructions file for Codex, OpenCode from qufei1993/skills-hub. It costs 2,350 tokens per session, scanned A, original, MIT.

Project instructions for Skills Hub, a desktop app that manages AI-agent skills and synchronizes them across many coding tools. They describe its React and Rust structure, database, commands, and full verification check.

In plain words
What is it for?
Use them when changing the skills manager, its React interface, Rust backend, SQLite data, Git synchronization, translations, or release checks.
Why use it?
They give agents the technical context and the standard command for checking changes across the frontend and backend. This helps keep the desktop app, native code, and synchronization features consistent.

Instructions file for CodexOpenCode

Written for Codex and OpenCode: the file is AGENTS.md. Also seen: mentions Codex.

This is qufei1993/skills-hub's own configuration. It tells Codex and OpenCode how to work on skills-hub itself, so it is not a mod to install elsewhere. Copy it as a starting point and replace the rules that are about this project. Everything skills-hub configures →

About the project

Skills Hub is a cross-platform desktop application for installing, organizing, updating, and syncing Agent Skills across AI coding tools. Developers use it to maintain one central skill library and distribute selected skills to tools such as Claude Code, Codex, Cursor, OpenCode, and Antigravity. Its catalogue instructions describe how to work with the managed skills.

qufei1993/skills-hub · 1,636 stars · on GitHub

Reuse

Borrowing it

Nothing to install: this file belongs to qufei1993/skills-hub. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.

Copy the file
curl -O https://raw.githubusercontent.com/qufei1993/skills-hub/main/AGENTS.md
Clone the repo
git clone --depth 1 https://github.com/qufei1993/skills-hub

Made for: Codex, OpenCode.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for skills-hub AGENTS.md

README.md
[![agentmods](https://agentmods.dev/badge/instructions/qufei1993/skills-hub/agents-md/github.svg)](https://agentmods.dev/instructions/qufei1993/skills-hub/agents-md)
Your own site
<a href="https://agentmods.dev/instructions/qufei1993/skills-hub/agents-md"><img src="https://agentmods.dev/badge/instructions/qufei1993/skills-hub/agents-md/github.svg" alt="Measured on agentmods" height="20"></a>

Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.

agentmods 80×15 button for skills-hub AGENTS.md

Your own site · 80×15
<a href="https://agentmods.dev/instructions/qufei1993/skills-hub/agents-md"><img src="https://agentmods.dev/badge/instructions/qufei1993/skills-hub/agents-md.svg" alt="Reviewed on agentmods" width="80" height="20"></a>
Per session 2,350 This file is loaded in full into every session.
When invoked 2,350 The same file — it is already loaded in full.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.02350 $0.02350
Opus 5 $0.01175 $0.01175
Sonnet 5 $0.00470 $0.00470
Haiku 4.5 $0.00235 $0.00235

Measured 3d ago against content hash 5027d22a46a5, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-09, from the pricing page.

Security

Grade A, and why

skills-hub AGENTS.md scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 3d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

AGENTS.md · 162 lines

How it starts

The opening of the file, as written. The whole thing — 162 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Skills Hub - Project Rules

Reply in Chinese; write PR titles and descriptions in English.

Overview

Skills Hub is a cross-platform desktop app (Tauri 2 + React 19) for managing AI Agent Skills and syncing them to 47+ AI coding tools. Core concept: "Install once, sync everywhere."

Tech Stack

  • Frontend: React 19 + TypeScript 5.9 (strict) + Vite 7 + Tailwind CSS 4
  • Backend: Rust (Edition 2021, MSRV 1.77.2) + Tauri 2
  • Database: SQLite (rusqlite, bundled)
  • Git: libgit2 (git2 crate, vendored-openssl)
  • HTTP: reqwest (rustls-tls, blocking)
  • i18n: i18next (English / Simplified Chinese / Korean)
  • Notifications: sonner (toast)
  • Icons: lucide-react

Common Commands

npm run dev              # Vite dev server (port 5173)
npm run tauri:dev        # Tauri dev window (frontend + backend)
npm run build            # tsc + vite build
npm run check            # Full check: lint + test + build + rust:fmt:check + rust:clippy + rust:test
npm test                 # Frontend regression tests
npm run lint             # ESLint (flat config v9)
npm run rust:test        # cargo test
npm run rust:clippy      # Rust lint
npm run rust:fmt         # Rust format
npm run rust:fmt:check   # Rust format check

Directory Structure

src/                          # React frontend
├── App.tsx                   # Root component (centralized state, all modal states)
├── App.css                   # Global styles (all component styles live here)
├── index.css                 # CSS variables (theming) + Tailwind entry
├── components/
│   ├── Layout.tsx            # Main layout (sidebar + content area)
│   └── skills/               # Skills feature module
│       ├── Header.tsx        # Top bar (branding + language toggle + new button)
│       ├── FilterBar.tsx     # Filter/sort bar
│       ├── SkillsList.tsx    # Skills list container
│       ├── SkillCard.tsx     # Individual skill card
│       ├── LoadingOverlay.tsx
│       ├── types.ts          # Shared DTO type definitions (frontend ↔ backend)
│       └── modals/           # Modal components (8 total)
└── i18n/
    ├── index.ts              # i18next initialization
    ├── resources.ts          # English/Chinese resources + locale registration
    └── ko.ts                 # Korean translation resources

src-tauri/src/                # Rust backend
├── main.rs                   # Entry point (calls app_lib::run)
├── lib.rs                    # App initialization (plugin registration, DB, cleanup tasks)
├── commands/
│   ├── mod.rs                # Tauri command layer (23 commands + DTOs)
│   └── tests/
└── core/                     # Core business logic
    ├── skill_store.rs        # SQLite ORM (4 tables: skills, skill_targets, settings, discovered_skills)
    ├── installer.rs          # Skill installation (local/git, with multi-skill detection)
    ├── sync_engine.rs        # Sync engine (symlink/junction/copy triple fallback)
    ├── git_fetcher.rs        # Git clone/pull (with cache and TTL)
    ├── tool_adapters/mod.rs  # Tool adapter registry (47 AI tools)
    ├── onboarding.rs         # Existing skill scanning/discovery
    ├── github_search.rs      # GitHub API search
    ├── central_repo.rs       # Central repository path management
    ├── content_hash.rs       # SHA256 directory content hashing
    ├── cache_cleanup.rs      # Git cache cleanup
    ├── temp_cleanup.rs       # Temp directory cleanup
    └── tests/                # One test file per module (10 total)

Read the full file on GitHub · 162 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 3d ago Changed · +16 lines · +441 tokens per session 5027d22a46a5
  2. 10d ago First seen · 146 lines · 1,909 tokens per session scan A 62e21b7ef6e8

Subscribe to this mod's changes

skills-hub AGENTS.md is an instructions file published in the GitHub repository qufei1993/skills-hub (1,636 stars, last pushed today), licensed MIT. It adds 2,350 tokens to every session, about $0.0118 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.

Related

Other instructions, from other repositories

next.js AGENTS.md

AGENTS.md instructions for vercel/next.js, covering next.js development guide, codebase structure, monorepo overview, core package: packages/next and other important packages.

vercel/next.js · 7,296 tokens

codex AGENTS.md

AGENTS.md instructions for openai/codex, covering rust/codex-rs, the codex-core crate, code review rules, crate api surface and model visible context.

openai/codex · 5,153 tokens

vscode buildNext.instructions.md

Working notes and architecture documentation for the new esbuild-based build system in build/next. Use when making changes to the new build pipeline (transpile/bundle commands, NLS plugin, source-map handling, resource copying, or self-hosting watch tasks).

microsoft/vscode · 6,785 tokens

vscode oss-third-party-notices.instructions.md

Instructions for microsoft/vscode, covering vs code oss third-party-notices pipeline, architecture, pipeline flow in ci, applying the notice (cutover) and fallback chain (never fail the build).

microsoft/vscode · 5,001 tokens

langchain AGENTS.md

AGENTS.md instructions for langchain-ai/langchain, covering global development guidelines for the langchain monorepo, corridor security analysis, project architecture and context, monorepo structure and development tools & commands.

langchain-ai/langchain · 4,469 tokens

deepseek-harness AGENTS.md

AGENTS.md instructions for deepseek-ai/deepseek-harness, covering agents.md, pre-stable apis and released session data, repository layout, commands and host sandbox failures.

deepseek-ai/deepseek-harness · 3,735 tokens