release

release is a skill for Claude Code, Codex from poco-ai/Agentero. It costs 81 tokens per session (1,647 once invoked), scanned A, original, MIT.

A release-preparation workflow for Agentero software. A release is a published version of a project, and pull requests are proposed code changes that have been merged into it.

In plain words
What is it for?
Use it to prepare, review, or dry-run release notes; compare versions or tags; and update a draft GitHub Release after changes are merged.
Why use it?
It helps turn the actual changes since the previous version into accurate bilingual release notes. It also checks that the selected versions and commit range are valid before updating a draft GitHub Release.

Skill for Claude CodeCodex

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add skills/poco-ai/agentero/release
Any agent
npx skills add poco-ai/Agentero --skill release
Clone the repo
git clone --depth 1 https://github.com/poco-ai/Agentero

Made for: Claude Code, Codex.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for release

README.md
[![agentmods](https://agentmods.dev/badge/skills/poco-ai/agentero/release.svg)](https://agentmods.dev/skills/poco-ai/agentero/release)
Your own site
<a href="https://agentmods.dev/skills/poco-ai/agentero/release"><img src="https://agentmods.dev/badge/skills/poco-ai/agentero/release.svg" alt="Measured on agentmods" height="20"></a>
Per session 81 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 1,647 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00081 $0.01647
Opus 5 $0.00041 $0.00823
Sonnet 5 $0.00016 $0.00329
Haiku 4.5 $0.00008 $0.00165

Measured 4d ago against content hash 3adcbb3febf5, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

release scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.

The scan reads SKILL.md. This mod also ships 1 executable file (scripts/collect-release-context.mjs), listed below but not scanned — reading those needs a real analyzer, not pattern matching.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

.agents/skills/release/SKILL.md · 178 lines

How it starts

The opening of the file, as written. The whole thing — 178 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Agentero Release

Prepare evidence-backed bilingual Release notes and write them directly to the Draft GitHub Release. Use dry runs when the user explicitly requests read-only preview.

Establish the release range

  1. Read git status, the current branch, local and remote tags, and the target Release state. Preserve unrelated working-tree changes.
  2. Resolve both endpoints to immutable commits and verify that the base is an ancestor of the target.
  3. For a stable target, default to the latest earlier published stable Release reachable from the target. For a prerelease, prefer the preceding prerelease in the same version series, then fall back to the latest stable Release.
  4. Display the selected <base>..<target> range. Stop for user direction when the target, release channel, ancestry, or previous Release is ambiguous.
  5. Never move or overwrite an existing remote tag. Treat a tag already observed by GitHub Actions or attached to a Release as immutable.

Collect evidence

Run the bundled collector from the repository root:

node .agents/skills/release/scripts/collect-release-context.mjs <base> <target>

Use merged pull requests as the main narrative units. Always inspect uncovered first-parent commits as a second source; the presence of one PR does not make other mainline commits disappear.

For each candidate change:

  • Prefer the PR title, body, linked issues, labels, and changed behavior.
  • Use the first-parent commit subject, body, and changed files when no merged PR covers the commit.
  • Inspect the relevant diff or documentation when the public effect is unclear.
  • Collect issues closed during the release range that are not already covered by a merged PR. Use gh issue list --state closed --search "closed:>={base-date}" or inspect Closes / Fixes references in commit messages.
  • Exclude release bumps, formatting, tests, internal refactors, and routine documentation unless they change installation, compatibility, security, or visible behavior.
  • Combine multiple commits that implement one user-visible outcome.
  • Keep a PR, commit, or issue URL as evidence for every bullet.
  • Include the first committer or PR author for each bullet so contributors are credited in the notes. Resolve GitHub usernames — the git commit author name (e.g. QiyuanChen) is not necessarily the GitHub handle (e.g. qychen2001). For PRs, use the PR author.login field directly. For uncovered commits, run gh api repos/poco-ai/Agentero/commits/<sha> and extract the author.login field. Fall back to the commit author.name only when the GitHub API returns null (e.g. unauthenticated local commits).
  • Report uncertainty or conflicting evidence instead of inventing behavior.

Read the full file on GitHub · 178 lines

Files

What ships with it

2 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 4d ago First seen · 178 lines · 81 tokens per session scan A 3adcbb3febf5

Subscribe to this mod's changes

release is a skill published in the GitHub repository poco-ai/Agentero (409 stars, last pushed today), licensed MIT. It adds 81 tokens to every session and 1,647 once invoked, about $0.0004 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.