All skills
agents365-ai avatar

/drawio-skill

@a16d189
by Agents365.aiagents365-ai/drawio-skill9.8k stars
686

Create, edit, synchronize, inspect, test, and publish editable draw.io diagrams. Use when the user explicitly requests draw.io/diagrams.net, needs a polished architecture, ERD, UML, sequence, C4, SysML, BPMN, network, swimlane, ML, or infrastructure diagram, wants code/IaC/SQL/OpenAPI/AsyncAPI/Protobuf/GraphQL converted into a diagram, or wants an existing diagram queried, reviewed, diffed, restyled, kept in sync, or made interactive. Prefer Mermaid/PlantUML elsewhere when the requested artifact is diagrams-as-code rather than an editable draw.io file.

Use this Skill: https://skilld.dev/gh/agents365-ai/drawio-skill/drawio-skill

This session only. Nothing lands on disk.

referencessemantic-workflows.md

≈701 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Semantic workflows

Read this reference for architecture contracts, queries, reviews, failure simulation, story mode, accessibility, or multi-language delivery.

Architecture contracts

Rules are JSON or YAML:

rules:
  - no-direct-internet-to-database
  - no-cycles
  - no-orphans
  - every-service-has-owner
  - production-has-observability
  - external-dependencies-have-timeouts
  - trust-boundaries-use-protocol
  - accessible-contrast

Run them locally or in CI:

python3 scripts/diagramctl.py test architecture.drawio \
  --rules architecture-policy.yml --strict -o findings.json

Errors always fail. Warnings fail only under --strict. These rules inspect declared diagram semantics; they do not claim to prove that the running system has the same properties.

Query and review

python3 scripts/diagramctl.py query architecture.drawio --kind database
python3 scripts/diagramctl.py query architecture.drawio --owner payments-team
python3 scripts/diagramctl.py query architecture.drawio --boundary pci
python3 scripts/diagramctl.py query architecture.drawio --from mobile --to payment-db
python3 scripts/diagramctl.py review architecture.drawio -o review.md

Review checks ownership, trust-boundary protocols, external timeouts, production observability, contrast, dependency cycles, high coupling, and articulation points that may represent single points of failure. It also flags long synchronous chains and declared sensitive-data region crossings without a residency approval. Treat findings as review prompts, not facts: graph topology alone cannot establish runtime redundancy or security controls.

What-if failure analysis

python3 scripts/diagramctl.py whatif architecture.ir.json --fail kafka \
  --drawio kafka-failure.drawio -o impact.json

Impact follows outgoing dependencies. An edge with properties.isolates_failure=true stops propagation. The output highlights the failed node red and impacted nodes amber. This is deterministic reachability, not a production reliability simulation.

Story mode

python3 scripts/diagramctl.py story architecture.ir.json \
  --fail kafka -o walkthrough.html

The self-contained HTML includes a guided component sequence, keyboard arrow navigation, clickable/focusable nodes, SVG title/description, a complete text alternative, provenance/owner/boundary details, reduced-motion support, and an optional failure overlay. If nodes define labels (for example zh and en), the viewer exposes a language selector without creating duplicate diagrams.

The story file makes no external requests. Use publish --format viewer for the existing full-fidelity SVG viewer when the draw.io CLI is available; use Story mode for a semantic, accessible, dependency-free artifact.

Source: SKILL.md on GitHub

No alerts16d4 checks · Risk SAFE
  • Gen Agent Trust Hub16d

    The drawio-skill is a robust and professionally developed architecture visualization toolkit. It enables the creation of editable draw.io diagrams from source code, cloud infrastructure manifests (Terraform, Kubernetes), and database schemas. The security analysis identifies minor risks associated with the tool's advanced orchestration features, such as the safe execution of local binaries (Git, Graphviz, draw.io) and the dynamic loading of bundled helper scripts. These behaviors are essential to the skill's primary purpose and are mitigated by secure coding practices, including the use of argument arrays for subprocesses and thorough sanitization of labels to prevent prompt injection.

  • Socket16d

    No alerts

  • Snyk16d

    Risk: LOW · No issues

  • ZeroLeaks5mo

    2 findings · Score: 80/100

Signed by skilld at a16d189. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub 3 weeks ago.

Activeupdated 3 weeks ago
What it can do
Runs commands Reads files Edits files Network
All 4 allowed tools
BashReadWriteWebFetch
Other metadata
metadata
{
  "openclaw": {
    "requires": {
      "anyBins": [
        "python3"
      ]
    },
    "emoji": "📐",
    "os": [
      "darwin",
      "linux",
      "win32"
    ],
    "install": [
      {
        "id": "brew-drawio",
        "kind": "brew",
        "formula": "drawio",
        "bins": [
          "drawio"
        ],
        "label": "Install draw.io for native exports",
        "os": [
          "darwin"
        ],
        "optional": true
      },
      {
        "id": "brew-graphviz",
        "kind": "brew",
        "formula": "graphviz",
        "bins": [
          "dot"
        ],
        "label": "Install Graphviz for automatic layout",
        "os": [
          "darwin"
        ],
        "optional": true
      }
    ]
  },
  "hermes": {
    "tags": [
      "drawio",
      "diagram",
      "architecture",
      "visualization",
      "uml"
    ],
    "category": "design",
    "requires_tools": [
      "python3"
    ],
    "related_skills": [
      "mermaid",
      "excalidraw",
      "plantuml"
    ]
  },
  "author": "Agents365-ai",
  "version": "3.4.0",
  "homepage": "https://github.com/Agents365-ai/drawio-skill",
  "compatibility": "Core IR, XML, sync, query, test, review, and Story workflows need Python 3 only; native export needs draw.io; Graphviz is optional.",
  "platforms": [
    "macos",
    "linux",
    "windows"
  ]
}

README badge

README badge for agents365-ai/drawio-skill