All skills
cursor avatar

/poteto-mode

@12d587d
by cursorcursor/plugins9.1k stars
857

poteto's agent style for concise, detailed responses, deliberate subagents, unslopped prose, simple code, and verified work. Use for poteto, /poteto-mode, or requests to work in this style.

Use this Skill: https://skilld.dev/gh/cursor/plugins/poteto-mode

This session only. Nothing lands on disk.

playbooksautopilot-full.md

≈2.2k tokens on demand. Your agent reads this file only when SKILL.md points to it.

Autopilot-full

You own the verdicts, never the PRs. One owner runs each PR from build to merge, and nothing merges without your clean swarm verdict. For "autopilot this queue", "full autopilot", and one-owner-per-PR programs. Orchestrate runs a standing program whose coordinator lands verified work itself and whose workers never merge. Here each PR's owner carries the whole lifecycle through the merge, and the root keeps only verification, countersigns, and audits.

  1. Mark the operator's items and honor state-then-wait. Items the operator names stay with the operator. The operator reviews and clicks, and no owner merges one. When the operator asks for the protocol or the plan to be stated, deliver the statement and stop. Execution starts only on the operator's explicit go. On that go, arm a /goal with the full program objective. The goal continues across turns until the queue is done.
  2. Spawn one owner per PR with the full lifecycle and an early trail. Resolve the forge once for the program. GitHub CLI (gh) is the default. If command -v origin succeeds and Origin can resolve the repository, use origin pr ... for PR create, edit, view, watch, and merge operations. Otherwise stay on gh and record the fallback. Never require Graphite (gt). One Cursor cloud agent per PR owns build, the first push, a ready PR, self-proof on the real artifact (the prove-it-works principle skill), skeptical Bugbot triage per ../references/bugbot-triage.md, a slop-strip (the deslop skill from the cursor-team-kit plugin (/deslop)), /no-comments (the no-comments skill), a rebase onto current trunk, the babysit loop to green (playbooks/babysit.md), and the merge itself. Within about 15 minutes, every owner starts a decisions.tsv trail per the show-me-your-work skill, pushes its first branch snapshot, and opens the PR ready, never draft. Open the PR before self-proof so the URL, decisions, and checks form a durable trail. Keep decisions.tsv uncommitted and return it with the reports. As soon as a subagent starts, the owner adds its ID, expected runtime (at least the longest past run of that kind), and state to a children.tsv kept the same way. The owner does the first rebase before the code-ready report and babysit, whether or not trunk has drifted. In fix rounds, the owner keeps that merge base. The owner rebases again only at merge prep (step 5), on a git merge-tree conflict with trunk, or on a CI failure that comes from a change on trunk. When the shipped code is final, after the slop-strip and /no-comments, it reports the code-ready head SHA. It also reports the SHA of each later push that changes the patch. Self-proof, CI, and babysit then run in parallel with the swarm. The owner reports merge-ready with the head SHA when self-proof, CI, and babysit finish. Before a push that starts a round, run the pre-review checks that the repo's AGENTS.md files and rules name for the touched paths. Run them on the committed head. A hook pass is not proof. To publish each rebase, push the owner's own branch with git push --force-with-lease after an ls-remote check. Never force-push a shared branch. The merge is the one step an owner may not take alone. Step 4 gates it.
  3. Run owners in true parallel and never stack. Many owners at once when PRs are self-contained: one writer per branch, disjoint files, cross-PR drift absorbed by rebase. Only genuinely overlapping work serializes. Self-contained PRs branch straight off main, and sequenced work is merge-then-branch. One exception: an owner that must split a genuinely dependent change may hold a short private base-branch stack.
  4. Swarm-verify every round before its merge. A round starts at the owner's code-ready head SHA and at each later push that changes the PR's patch. At that SHA, fan out parallel independent verifiers per the swarm skill and aggregate to one verdict. The merge needs a clean verdict from the round whose patch matches the merge-ready head. Audit the receipts in the merge-ready report before the verdict. The lanes: re-run the gates at that SHA. Prove the load-bearing behavior live on the real surface the change touches (with the matching control skill, such as control-cli or control-ui from cursor-team-kit, or a named driver where none exists). Audit the diff, distrusting the PR body. Run the audit as two or more review lanes with the full brief. Give each lane one main focus, such as consumer parity with trunk, lifetimes and races, or data and config safety. Regression lane against trunk. Run the same load-bearing scenario on current trunk. If trunk does not have the feature, record that fact and gate the behavior the diff adds plus the end state the user waits for instead of pretending trunk can produce it. The live lane is the floor, and a verdict without it is not clean. No merge without the root's clean verdict. When the lanes return, send every proven finding against the PR to the owner in one fix-forward. A defect that a lane filed as a note is a finding. For each behavior finding, ask for a red test that covers every site with the same defect. Where no test can show the defect, ask for a repro receipt instead. Add that defect to the next round's review brief. The new head gets a fresh swarm and a fresh verdict, except for lane results that stay valid under the patch-id rule in playbooks/shipping.md.
  5. On a clean verdict the owner merges and takes the next item. The owner merges only from a head freshly rebased onto trunk. Merge prep never comes before a round's lanes start, and it ends with a rebase onto current trunk right before the merge. After the merge-prep rebase, the owner reports the new head SHA. CI must pass on that head before the merge, and the patch-id rule decides whether the round's verdict still holds. If trunk moves again before the merge, the patch-id rule in playbooks/shipping.md governs re-verification. A new head voids the verdict unless the patch-id is unchanged. The owner squash-merges its own PR through the resolved forge and picks up its next self-contained item from the queue. The operator's full-autonomy grant plus the root's clean verdict is the merge authorization that babysitting alone never has. Operator-named items stop at merge-ready and wait for the operator's click.
  6. Run the root layer. A genuinely new raise of a pinned gate or budget value (a limit CI only lets tighten) needs your fresh countersign, granted only after verifier proof. If the operator's grant or standing orders cover approvals, that countersign is the approval. The owner records it in the form that the tool's approval contract allows, with a pointer to the root's countersign. A lane checks the record against that countersign. The root never gives or bypasses an approval that the forge enforces. Absorbing values that already landed on main is drift, not a raise. Run an audit tick over all owners roughly every 30 minutes. A local root arms each tick as a real terminal /loop. The loop uses a monitored-shell 30-minute sleep and emits an output-notification sentinel. A cloud root uses the existing cloud-sleeper wake chain instead. Never leave the cadence to memory or lossy completion notifications. At each tick, re-read this playbook from trunk with git show origin/main:pstack/skills/poteto-mode/playbooks/autopilot-full.md, then re-read the armed /goal. Audit the operation against both. Fix drift during that tick. Probe each owner with a generic liveness or status check, and collect the decision trails. Count only side effects as progress: commits, pushes, PR or check deltas, and store reports. Treat a lane that errors, or that passes its expected runtime without a side effect, as stuck. Stand it down and dispatch a replacement at once. Do not wait for a polite return. Each tick also runs the lane stuck test over the program's agent list, where the platform has one, and over every owner's children.tsv. Whether or not a stop works, the root has the owner record each stuck subagent as stuck and, if its work is still needed, replace it. Each replacement that stalls gets the same steps. The root takes both steps when the owner cannot. A stall never proves or drops the work. When merges batch, run a retro pass and a post-merge bot-comment sweep. End the tick only when no delegated work is left, even after the last merge.
  7. Stand down instantly on the operator's stop. The operator's hold or stand-down reaches every owner as a zero-writes order immediately. Owners hold their briefs until the operator releases them.

Reply: the queue with each PR's owner, state, and head SHA. Each verdict and the swarm that produced it. What merged and what each owner took next. Countersigns granted and why. Open operator gates. Where the collected decision trails live.

Source: SKILL.md on GitHub

2 warnings7d3 checks · Risk SAFE
  • Gen Agent Trust Hub7d

    The skill provides a comprehensive framework for agents to handle complex software development tasks, including PR management and project orchestration. It uses local scripts to automate dependency installation and interface with the GitHub and Graphite CLIs. The primary security considerations are its high degree of autonomy and the processing of external data such as PR comments and session transcripts, which present a surface for indirect prompt injection.

  • Socket7d

    1 alert: gptSecurity

  • Snyk7d

    Risk: MEDIUM · 1 issue

Signed by skilld at 12d587d. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub yesterday.

Activeupdated last week
disable-model-invocation
true
mode
true
icon
crown
Other metadata
color
yellow
reminder
New task? Playbook match or rigor needed -> apply /poteto-mode. Casual turn or user opts out -> don't.

README badge

README badge for cursor/plugins/poteto-mode