All skills
kunchenguid avatar

/harness-adapters

@697d94d
by Kun Chenkunchenguid/firstmate7.4k stars
2,347

Agent-only reference for firstmate harness operations. Use before spawning or recovering a crewmate or secondmate, handling a trust dialog, sending a harness-specific skill invocation, interrupting or exiting an agent, resuming an exited agent, or verifying a new harness adapter. Contains verified facts for claude, codex, opencode, pi, pi-signed, grok, kimi, cursor, gemini, muse, rovo, omp, agy, and devin.

Use this Skill: https://skilld.dev/gh/kunchenguid/firstmate/harness-adapters

This session only. Nothing lands on disk.

referencescommonprimary-hooks.md

≈665 tokens on demand. Your agent reads this file only when SKILL.md points to it.

Primary startup and hooks

Load this with the detected primary's tool reference before changing session startup, turn-end handling, pre-tool protection, watcher supervision, or secondmate integration. The tool reference establishes either that identity's empirical path or its unsupported boundary.

Turn end

../../../docs/turnend-guard.md owns the "no turn ends blind" contract, hook installation, per-surface blocking behavior, and tradeoffs when a hook cannot block. ../../../docs/supervision-protocols/ and ../../../bin/fm-supervision-instructions.sh own harness-specific wake protocols. Never substitute another harness's wait shape. ../../../bin/fm-busy-lib.sh remains the semantic busy owner; a tool reference names only its source and evidence.

Validate any turn-end change against the real harness in a scratch project or throwaway home. Update its executable or hook owner, concise tool fact, and ../../../docs/verification/supervision.md under "Turn-end guard".

Pre-tool protection

Supported primaries deny watcher-arm anti-patterns before execution, including shell &, truncating pipes, bundling, and broad pkill -f fm-watch. ../../../docs/arm-pretool-check.md owns hook commands, output quirks, and evidence. The tool reference names the integration form. Validate changes against the real harness in a scratch project before trusting them.

A primary must also account for built-in delegation that can create work outside Firstmate's durable records. Claude's verified delegation guard is in references/harness/claude.md. ../../../docs/subagent-guard.md owns its full contract, local hardening, escape hatch, and per-harness applicability review. Never generalize Claude tool names or permissions without live evidence.

Session start

../../../AGENTS.md section 3 and the session-start-recovery skill remain the behavioral owners. ../../../docs/sessionstart-nudge.md owns native tier assignment, transport, source routing, runtime bound, and fail-open behavior. Read it before changing session-open behavior. ../../../docs/verification/supervision.md under "Native session-start delivery" owns active dated evidence.

Watcher supervision

../../../bin/fm-session-start.sh prints exactly one block for the detected primary. Follow only that rendered protocol. When changing a watcher adapter, update its file under ../../../docs/supervision-protocols/, update ../../../docs/turnend-guard.md if shared idle or turn-end behavior changed, and refresh the tool fact. An identity without a dedicated protocol uses its documented unsupported or unknown boundary; never invent one from a similar TUI.

Source: SKILL.md on GitHub

No alerts2mo3 checks · Risk SAFE
  • Gen Agent Trust Hub2mo

    This skill is a technical reference for the "firstmate" agent system, providing detailed instructions on how to manage and interact with various AI harnesses (Claude, Codex, OpenCode, Pi, and Grok). It outlines protocols for spawning agents, handling trust dialogs, and verifying new adapters. The analysis found no malicious patterns, prompt injections, or unauthorized data access. It primarily serves to document the technical constraints and expected behaviors of a multi-agent orchestration environment.

  • Socket2mo

    No alerts

  • Snyk2mo

    Risk: LOW · No issues

Signed by skilld at 697d94d. This ties the file your Agent reads to that commit on GitHub. It does not review the instructions.

Last checked against GitHub yesterday.

Activeupdated last week
user-invocable
false
metadata
{
  "internal": true
}

README badge

README badge for kunchenguid/firstmate/harness-adapters