Skip to content

Commit f7d9382

Browse files
committed
Docs: warn that npx skills check mutates the tree
Verified empirically: it fetches upstream and rewrites the vendored SKILL.md files plus skills-lock.json in place rather than reporting drift. Three of the eight skills currently have upstream changes waiting, which is a content bump worth its own review, not something to fold into an unrelated PR.
1 parent 5d3d56e commit f7d9382

1 file changed

Lines changed: 8 additions & 4 deletions

File tree

‎CLAUDE.md‎

Lines changed: 8 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -401,10 +401,14 @@ amendment, and the procedure in CONTRIBUTING.md.
401401

402402
Eight repo-scoped skills are committed. They live in `.agents/skills/`, are symlinked
403403
into `.claude/skills/`, and are pinned by content hash in
404-
[`skills-lock.json`](skills-lock.json). All are vendored from upstream — check and
405-
update them with `npx skills check` / `npx skills update`; do not hand-edit a
406-
vendored `SKILL.md`, since the next `update` overwrites it and the hash check will
407-
flag the drift.
404+
[`skills-lock.json`](skills-lock.json). All are vendored from upstream — do not
405+
hand-edit a vendored `SKILL.md`; the next update overwrites it and the hash stops
406+
matching.
407+
408+
> **`npx skills check` is not read-only** — despite the name it fetches upstream and
409+
> rewrites the `SKILL.md` files and `skills-lock.json` in place, so it dirties the
410+
> working tree. Run it deliberately, on its own branch, and review the diff and the
411+
> changed hashes as a real content change; never run it mid-PR expecting a report.
408412
409413
Invoke the relevant one when the task matches:
410414

0 commit comments

Comments
 (0)