release

A release-workflow guide that finds the project's documented procedure for publishing software and checks whether the workspace is ready.

In plain words
What is it for?
It helps select and follow a release procedure, review workspace changes, and prepare confirmation items before tagging, uploading, or publishing.
Why use it?
It prevents the agent from guessing publishing steps or running remote actions without the right procedure and user confirmation.

Skill for Claude CodeCodex

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add skills/ssbun/csl-agent-kit/release
Any agent
npx skills add SSBun/csl-agent-kit --skill release
Clone the repo
git clone --depth 1 https://github.com/SSBun/csl-agent-kit

Made for: Claude Code, Codex.

Per session 39 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 597 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00039 $0.00597
Opus 5 $0.00019 $0.00298
Sonnet 5 $0.00008 $0.00119
Haiku 4.5 $0.00004 $0.00060

Measured 2d ago against content hash 8e09120aba7b, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

release scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

deprecated/release/SKILL.md · 72 lines

What it actually says

Release Skill Router

这是发布入口 skill。它只路由到真实存在的具体发布 SOP;没有匹配 SOP 时停止,不临时编造发布流程。

Responsibilities

  1. 检查工作区状态。
  2. 列出当前可用 SOP,并筛选真实存在的发布 SOP。
  3. 读取匹配 SOP 的完整内容。
  4. 只执行匹配 SOP 明确允许且用户确认过的步骤。

Non-Goals

  • 不内置 npm、PyPI、Cargo、Xcode、Homebrew、CocoaPods 的发布命令。
  • 不猜测版本号。
  • 不自动创建 tag、push 或 publish。
  • 不在没有匹配 SOP 时编造生态发布流程。
  • 不使用空壳 orchestrator 代替具体发布 SOP。

Arguments

  • version:可选目标版本。提供后仍需按 SOP 验证。
  • --skip-push:跳过远端 push。不能跳过发布前验证。

Flow

1. Check Workspace

运行:

git status --short --branch --untracked-files=all

如果存在无关未提交改动,停止并让用户确认提交、stash 或继续策略。

2. Discover Concrete Release SOPs

运行 skills/meta/agent-sops/scripts/sop-summaries.sh,或等价读取:

  • <workspace>/.agents/sops/*.md
  • ~/.csl-agent-kit/sops/*.md
  • skills/meta/agent-sops/sops/*.md

只考虑真实存在、且 namedescription 明确指向 release、publish、upload、notarize、package publishing 或 installer publishing 的具体 SOP。

project-version-update 是版本准备 SOP,不是发布 SOP;只有用户要求更新版本或匹配发布 SOP 明确要求时才使用。

3. Select One Matching SOP

  • 如果只有一个匹配发布 SOP,读取它的完整内容。
  • 如果多个 SOP 匹配,列出候选项并让用户选择。
  • 如果没有匹配 SOP,停止,并建议先用 agent-sops create 创建具体发布 SOP。

4. Confirm Before Remote Actions

在任何 tag、push、publish、upload、notarize 或远端 release 前,必须列出:

  • 匹配 SOP
  • 当前版本和目标版本
  • 将修改的文件
  • 将创建的 tag
  • 将 push 的 remote/branch
  • 将执行的 publish/upload/notarize 命令

用户明确确认后才继续。

Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 2d ago First seen · 72 lines · 39 tokens per session scan A 8e09120aba7b

Subscribe to this mod's changes

release is a skill published in the GitHub repository SSBun/csl-agent-kit (10 stars, last pushed 4d ago), licensed MIT. It adds 39 tokens to every session and 597 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.

Related

Other skills, from other repositories

git-workflow-and-versioning

Structures git workflow practices. Use when making any code change. Use when committing, branching, resolving conflicts, opening or reviewing a pull request (PR), pushing to a remote, or when you need to organize work across multiple parallel streams. Use when cutting a release, choosing a semantic version bump…

addyosmani/agent-skills · 74 tokens

release

Cut a Symphony release by bumping the committed version, landing it, tagging the merged commit, and verifying the Burrito release workflow. Use when asked to release, tag, or retag Symphony.

openai/symphony · 42 tokens

release-notes

Draft concise release notes.

ollama/ollama · 9 tokens

greptimedb-release

Runbook for publishing a new GreptimeDB version (tag + GitHub release + docs release-note PR) on the upstream GreptimeTeam/greptimedb repo. Use when asked to "release" / "publish" a GreptimeDB version (e.g. v1.1.0, v1.0.3).

GreptimeTeam/greptimedb · 75 tokens

refresh-arm-sdk-release

WORKFLOW SKILL — Prepares Azure.ResourceManager SDK refresh pull requests in azure-sdk-for-net. WHEN: "prepare sdk refresh", "refresh Azure.ResourceManager package", "update ARM SDK from autorest tag", "refresh changelog dependencies". INVOKES: git and GitHub pull request tools for branch, commit, push, and PR…

Azure/azure-sdk-for-net · 91 tokens

store-update

在 CCX Desktop 发布后下载 Store MSIX 并生成发布公告。用户提到 Store 上架、MSIX、从 GitHub Release 下载 store.msix、发布后同步 Windows Store、从 release 填写商店更新内容时必须使用此技能。该技能会下载最新 GitHub Release 的 amd64/arm64 MSIX,校验 sha256,从 Release body 生成 Store listing releaseNotes 预览,并输出手动上传指引。.

BenedictKing/ccx · 100 tokens