release-check

release-check is a skill for Claude Code, Codex from PromptPartner/agentsmith. It costs 43 tokens per session (558 once invoked), scanned A, original, MIT.

A release checklist for Orchard, a FastAPI inventory service, used before tagging a new version.

In plain words
What is it for?
It guides the pre-release checks for the code tree, semantic version, database migrations, verification script, changelog, and Git tag.
Why use it?
It helps prevent incomplete releases, such as missing database migration checks, version updates, changelog entries, or verification.

Skill for Claude CodeCodex

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add skills/promptpartner/agentsmith/release-check
Any agent
npx skills add PromptPartner/agentsmith --skill release-check
Clone the repo
git clone --depth 1 https://github.com/PromptPartner/agentsmith

Made for: Claude Code, Codex.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for release-check

README.md
[![agentmods](https://agentmods.dev/badge/skills/promptpartner/agentsmith/release-check.svg)](https://agentmods.dev/skills/promptpartner/agentsmith/release-check)
Your own site
<a href="https://agentmods.dev/skills/promptpartner/agentsmith/release-check"><img src="https://agentmods.dev/badge/skills/promptpartner/agentsmith/release-check.svg" alt="Measured on agentmods" height="20"></a>
Per session 43 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 558 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00043 $0.00558
Opus 5 $0.00022 $0.00279
Sonnet 5 $0.00009 $0.00112
Haiku 4.5 $0.00004 $0.00056

Measured 4d ago against content hash 918facc4f6fe, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

release-check scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 4d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

examples/python-service/.claude/skills/release-check/SKILL.md · 41 lines

How it starts

The opening of the file, as written. The whole thing — 41 lines — stays where its author put it; the contents beside it link to each section on GitHub.

Release Check — Orchard

Cutting a release for Orchard is mechanical but easy to half-do (tag without the migration check, bump the version but forget the changelog). This skill is the checklist so nothing slips. It loads only when you're releasing — everyday work doesn't pay for it.

When this fires

You type /release-check, or you're about to tag a new Orchard version.

Checklist

Walk these in order. Stop at the first failure, fix it, restart — a release is atomic.

  1. Clean tree, right branch. git status is clean and you're on main (or the release branch). No uncommitted work rides along in a tag.
  2. Bump the version. Update version in pyproject.toml. Use semver: breaking API/contract change → major; new endpoint/field → minor; fix only → patch.
  3. Migrations present and current. alembic check is clean (no model-vs-history drift), and every new revision has been applied once against a dump of representative data, not just an empty DB. alembic check proves agreement, not applicability — this step proves applicability.
  4. Verify is green. Run scripts/verify.sh and read the output: format, lint, types, migrations, test all pass. Within-a-layer green only — also confirm one real request path (TestClient against the full app) still works end to end.
  5. Changelog updated. Add a dated section to CHANGELOG.md for this version: what changed, and call out any API-contract or migration change explicitly so callers know to look.
  6. Commit, then tag. chore(release): vX.Y.Z commit, then git tag vX.Y.Z. Tag points at the release commit — never an earlier one.
  7. Push commit and tag. git push && git push --tags. Open/reference the GitHub release.

Notes

  • If alembic check fails, you have a model change with no migration — that's a code bug, not a release step. Go back and add the revision before tagging.
  • Don't allowlist a secret to make a hook pass; the no-secrets rule is absolute (core).

Read the full file on GitHub · 41 lines

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 4d ago First seen · 41 lines · 43 tokens per session scan A 918facc4f6fe

Subscribe to this mod's changes

release-check is a skill published in the GitHub repository PromptPartner/agentsmith (185 stars, last pushed today), licensed MIT. It adds 43 tokens to every session and 558 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-30.

Related

Other skills, from other repositories

crit-cli

Use when an agent needs to author or reply to crit inline comments programmatically (including multi-agent workflows commenting on shared code/plans/docs/proposals), publish or unpublish a crit review with crit share, sync a crit review to or from a GitHub PR or GitLab MR, or read/interpret a crit review JSON file.…

tomasz-tomczyk/crit · 110 tokens

crit

Review code changes, a plan, a live page (running dev server), or a local HTML file with Crit inline comments and structured human feedback. Use only when the user explicitly invokes /crit or directly asks to use Crit; a generic review request does not count.

tomasz-tomczyk/crit · 55 tokens

crit-story

Author a crit story only when the user explicitly invokes /crit-story or directly asks you to generate a crit story. Do not infer this skill from generic review, PR, or diff-review requests.

tomasz-tomczyk/crit · 42 tokens

truthmark-sync

Use automatically at finish-time after functional code changes, or explicit /truthmark-sync, $truthmark-sync, or /truthmark:sync. Skip docs-only, formatting-only, behavior-preserving renames, missing config, and no-code changes. Not for doc-first realization or manual topology design.

merlinhu1/truthmark · 64 tokens

truthmark-document

Use when the user asks to document existing implemented behavior, or Sync, Check, or Structure finds implemented behavior missing canonical truth. Not for functional-code changes, doc-first implementation, or topology repair that needs Structure.

merlinhu1/truthmark · 46 tokens

truthmark-realize

Use when the user explicitly asks to realize Truthmark truth docs into code, including /truthmark-realize, $truthmark-realize, or /truthmark:realize. Not for syncing docs after code changes, documenting existing code, topology repair, or truth audits.

merlinhu1/truthmark · 60 tokens