All skills
cursor avatar

/poteto-mode

@12d587d
by cursorcursor/plugins9.1k stars
857

poteto's agent style for concise, detailed responses, deliberate subagents, unslopped prose, simple code, and verified work. Use for poteto, /poteto-mode, or requests to work in this style.

Use this Skill: https://skilld.dev/gh/cursor/plugins/poteto-mode

This session only. Nothing lands on disk.

playbooksshipping.md

≈1.4k tokens on demand. Your agent reads this file only when SKILL.md points to it.

Shipping

You own what lands. Verify each PR independently, land only the verified run from the root, then keep your hands off the queue.

This is the half after playbooks/babysit.md.

  1. Resolve the forge, then verify every PR independently. GitHub CLI (gh) is the default. If command -v origin succeeds and Origin can resolve the repository, use origin pr ... for PR view, watch, edit, and merge operations. Otherwise stay on gh and record the fallback. Never require Graphite (gt). One subagent per PR, not batched, each a Cursor cloud agent, each exercising the real surface with the matching control skill (such as control-ui or control-cli from cursor-team-kit) against parent versus head. Each returns PASS, PASS+NOTES or FAIL and posts that verdict on its own PR. Safe means a verdict from an agent that did not write the code. CI green is not a verdict, and an approving bot review is not a verdict.
  2. Land only the contiguous verified run rooted at the bottom. Walk up from the lowest unmerged PR and stop at the first one without a passing verdict, where both PASS and PASS+NOTES pass. A verified PR sitting above an unverified one is not landable. Report the ceiling as a PR number and say what breaks the chain.
  3. Re-check that each verdict still describes the patch. Record the verdict head SHA, base SHA, and stable git patch-id of that PR's base-to-head diff. A rebase or base retarget rewrites SHAs and can silently invalidate a verdict without touching a check. Before landing a PR, compare the recorded patch-id with its current base-to-head patch-id. When the two patches differ only in tests, docs, or lint config, build what each lane ran. Build it twice at the verdict SHA and once at the current head. A difference is noise if the two builds at the verdict SHA also show it, or if it is an embedded commit SHA. Judge each difference, not each file, and report each kind of noise with its files. If only noise differs, that lane's result stays valid, and checks and a review of the change run fresh. Do not reuse a lane result from a dev server or from anything else with no build output. Rerun that lane. Re-verify anything else when the patch changed. When it did not, keep the code verdict but re-run mergeability and CI at the current head. Never use matching commit messages or a green check from an older SHA as a substitute.
  4. Prepare only the bottom PR. Fetch current trunk. Rebase the lowest verified branch onto the exact trunk tip when needed, push it, and retarget only that PR to trunk with origin pr edit <pr> --base <trunk> or gh pr edit <pr> --base <trunk>. Re-run step 3 after the push. Do not retarget, arm, or merge descendants yet.
  5. Land one PR at a time. If the bottom PR is mergeable now, squash it with origin pr merge <pr> --squash or gh pr merge <pr> --squash. If requirements are still running and the user asked for merge-when-ready, arm only that PR with origin pr merge <pr> --squash --auto or gh pr merge <pr> --squash --auto. Origin's --auto is Origin merge-when-ready. GitHub's --auto is GitHub auto-merge. Wait for that PR to merge before preparing the next one.
  6. Do not read GitHub autoMergeRequest as stack readiness. At most it says GitHub auto-merge was requested for one GitHub PR. It does not prove Origin merge-when-ready is armed, that a descendant is queued, that a patch verdict is current, or that the contiguous stack is safe. Confirm the active forge's state for the current bottom PR, and say that the state is unknown if the active forge cannot report it.
  7. Recompute after every merge. Fetch trunk, confirm the merged SHA is present, drop the merged PR from the frozen bottom-to-top list, and inspect the new bottom PR's base, head, checks, and patch-id. A host may retarget a child automatically, but do not assume it did. Repeat steps 3 through 6 for that one PR. Independent work stays outside this chain and ships on its own.
  8. Watch the current frontier until it merges or fails. Do not mutate the queue around it. With Origin, use origin pr view <pr> --checks --comments and origin pr checks <pr> --watch, then re-read the PR until it reports merged or blocked. With GitHub, use scripts/watch-pr/watch-pr --queued-stack --stack-prs <bottom> only as an event wake and poll gh pr view <pr> --json state,mergedAt,mergeStateStatus,statusCheckRollup,autoMergeRequest after each wake, ignoring READY until mergedAt is non-null or state is MERGED. Only then run step 7. Hard-fail only when state is CLOSED with no mergedAt, a required check concludes FAILURE or CANCELLED and blocks merge after auto-merge is no longer pending, or mergeStateStatus is UNSTABLE or DIRTY with no auto-merge pending. BLOCKED while checks are pending or auto-merge is armed is not failure. Do not use Babysit's queued WAITING/merge-queue stop condition here. Hold the watch under /loop in dynamic mode. Report each merge and the new ceiling. If the queue stalls, diagnose before mutating.
  9. Stop at the ceiling. When the verified run is merged, report what landed, what the next unverified PR is, and what verifying it would take. Extending the run is a new pass through step 1.

Reply: the verified run and its ceiling, each PR's verdict and who produced it, what you armed and how you confirmed it, what landed, and what the next gap needs.

Source: SKILL.md on GitHub

2 warnings7d3 checks · Risk SAFE
  • Gen Agent Trust Hub7d

    The skill provides a comprehensive framework for agents to handle complex software development tasks, including PR management and project orchestration. It uses local scripts to automate dependency installation and interface with the GitHub and Graphite CLIs. The primary security considerations are its high degree of autonomy and the processing of external data such as PR comments and session transcripts, which present a surface for indirect prompt injection.

  • Socket7d

    1 alert: gptSecurity

  • Snyk7d

    Risk: MEDIUM · 1 issue

Signed by skilld at 12d587d. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub yesterday.

Activeupdated last week
disable-model-invocation
true
mode
true
icon
crown
Other metadata
color
yellow
reminder
New task? Playbook match or rigor needed -> apply /poteto-mode. Casual turn or user opts out -> don't.

README badge

README badge for cursor/plugins/poteto-mode