Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add patrick-fu/awesome-skills --skill home-config-syncgit clone --depth 1 https://github.com/patrick-fu/awesome-skillsWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/patrick-fu/awesome-skills/home-config-sync)<a href="https://agentmods.dev/skills/patrick-fu/awesome-skills/home-config-sync"><img src="https://agentmods.dev/badge/skills/patrick-fu/awesome-skills/home-config-sync/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/patrick-fu/awesome-skills/home-config-sync"><img src="https://agentmods.dev/badge/skills/patrick-fu/awesome-skills/home-config-sync.svg" alt="Reviewed on agentmods" width="80" height="20"></a>- NVIDIA SkillSpector pass
What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00020 | $0.01197 |
| Opus 5 | $0.00010 | $0.00598 |
| Sonnet 5 | $0.00004 | $0.00239 |
| Haiku 4.5 | $0.00002 | $0.00120 |
Grade A, and why
home-config-sync scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 10d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
How it starts
The opening of the file, as written. The whole thing — 96 lines — stays where its author put it; the contents beside it link to each section on GitHub.
Home Config Sync
Use this skill for a generic, shareable bare-repo dotfiles workflow:
- Git dir:
~/.dotfiles - Work tree:
~ - Remote: user-provided private repo URL
- Preferred explicit command:
git --git-dir="$HOME/.dotfiles" --work-tree="$HOME" <subcommand>
Keep these rules:
- Prefer the explicit
git --git-dir="$HOME/.dotfiles" --work-tree="$HOME"form over assuming an alias exists. - Inspect live state before acting: run
status,ls-files, and read.gitignore,bootstrap.sh, andREADME.mdwhen relevant. - Treat
.gitignoreas a whitelist. New files are not trackable until both the whitelist and the file itself are added. - Prefer one command per Bash tool call. Translate multi-step flows from the reference into separate invocations instead of copying several shell operations into one command.
- Do not add
&&,;, pipes, redirection, or wrapperecholines unless the shell feature is genuinely required for the task. - During first-time initialization, read the starter templates in
assets/before creating or updating.gitignore,bootstrap.sh, orREADME.md. - During first-time initialization, the default starter-file scope is exactly:
.gitignorebootstrap.shREADME.md
- Do not invent extra shell config files, helper scripts, aliases, or wrappers during initialization unless the user explicitly asks for them.
- If
.gitignore,bootstrap.sh, orREADME.mdalready exist, ask the user file-by-file whether tomerge,overwrite, orskip. Do not silently replace or delete existing content. - If the user chooses
merge, preserve the user's existing machine-specific settings while adding the generic template structure that keeps this workflow maintainable. - Interpret
merge,overwrite, andskipas decisions about how the local file should be reconciled with the starter template. Do not reinterpret those decisions based on whether the remote repo is empty or already populated. - If the user already provided a remote repo URL and initialization succeeds locally, treat the first push as part of the default initialization flow. Do not stop at a local-only first commit unless push fails or the user explicitly wants to defer it.
- Do not use
git stash -uby default in this repo. The work tree is the whole home directory and-ucan sweep huge unrelated caches into stash. - If local tracked edits block
pull, stash tracked files only, pull, then re-apply and resolve conflicts. - If
stash applystages files automatically, restore them back to unstaged unless the user explicitly wants them staged. - Treat GUI-discoverable mode as a reversible operational mode, not a one-time migration. The user may enable it, disable it, and re-enable it repeatedly.
- When the user starts using this skill for interactive repo management, ask whether they want GUI-discoverable mode enabled so Git GUI tools can detect and manage the dotfiles repo more easily.
- If the user wants GUI-discoverable mode:
- load the GUI mode flow from the reference
- use the bundled scripts under
${CLAUDE_SKILL_DIR}/scripts/
- If the user does not want GUI-discoverable mode, or wants to turn it back off mid-session, run the
exitflow. - Before switching GUI mode, inspect current mode first and explain whether the repo is already enabled, already disabled, or needs a state change.
Workflow:
- Confirm whether the user wants first-time initialization, deployment on another machine, inspection, local update, pull/merge, push, or GUI mode enter/exit.
- Load references/dotfiles-operations.md.
- If the task is first-time initialization or starter-file refresh, also load the relevant template files from
assets/. - If the task involves GUI mode, use the bundled scripts from
${CLAUDE_SKILL_DIR}/scripts/. - Follow the matching command flow, but keep default execution at one command per Bash call. Only preserve complex shell syntax when it is truly necessary.
- Re-check
statusand explain the final repo state clearly, including the next safe step for the user.
What ships with it
10 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
- agents/openai.yaml 1.4 KB
- assets/bootstrap.sh.template 599 B
- assets/gitignore.template 80 B
- assets/README.template.md 724 B
- DEVELOPMENT.md 1.1 KB
- evals/evals.json 2.8 KB
- references/dotfiles-operations.md 12 KB
- scripts/dotfiles-gui-enter.sh 1.1 KB runs code
- scripts/dotfiles-gui-exit.sh 1.2 KB runs code
- scripts/dotfiles-gui-status.sh 1.2 KB runs code
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 10d ago First seen · 96 lines · 20 tokens per session scan A 58e09da3e8fb
home-config-sync is a skill published in the GitHub repository patrick-fu/awesome-skills (58 stars, last pushed 3d ago), licensed MIT. It adds 20 tokens to every session and 1,197 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.
Other skills, from other repositories
prowler-commit
Creates professional git commits following conventional-commits format. Trigger: When creating commits, after completing code changes, when user asks to commit.
gh-auth-isolation
Safely manage multiple GitHub identities (EMU + personal) in agent workflows.
comet-github
A routing guide for Comet-related GitHub work. It directs requests about pull requests, issues, CI failures, ideas, and fixes to the appropriate review or implementation process.
github-skill
Work with GitHub via the gh CLI — clone repositories, create/list/merge pull requests, create/list issues, and run any other gh command (API calls, workflow runs, releases, repo administration). List operations return parsed JSON.
re0-merge
Review and land an external contribution the way this suite does: gate it against the thesis, land it with the author's credit intact, complete a new skill rather than merging it raw, then approve, credit, and explain before closing. Use when reviewing a pull request, as any collaborator or maintainer, not only the…
nvca-chart-release
Release NVCA Operator chart changes from the native monorepo source to the vendored Helm chart. Use when updating the vendored NVCA Operator chart, changing NVCA image refs, publishing helm-nvca-operator, or validating the chart against a self-managed control plane.