Skip to content
Back to skills

Equip

ASecurity

Equipment manager for Claude Code projects — inventory local skills/agents/scripts, audit external upstream repos (red-flag + prompt-injection screening), sync selectively after user approval. Absorbs container-layout skill repos AND single-skill-at-root repos. Project-agnostic.

  • 10 stars
  • 0 votes
  • 0 copies
  • 2 views
  • Added June 11, 2026
ai-agentsrustgogit

Works with

  • claude code

Security analysis

A100/100

Pro scans all 4 files and shows the line behind each finding

Scanned September 21, 2026

npx -y skills add shenxingy/Clade --skill equip --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Equip?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Equip
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/shenxingy-equip/badge)](https://www.skillsdirectory.com/skills/shenxingy-equip)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: equip
description: Equipment manager for Claude Code projects — inventory local skills/agents/scripts, audit external upstream repos (red-flag + prompt-injection screening), sync selectively after user approval. Absorbs container-layout skill repos AND single-skill-at-root repos. Project-agnostic.
when_to_use: "equip, upstream, absorb skill, absorb a design-system repo, update skill from github, review external skill, sync skill, inventory skills, 装备, 更新外部技能, 审核上游, 管理插件来源 — NOT for first-party feature development (just write code)"
argument-hint: '<command> [args]  # inventory | audit <repo|id> | sync <id> [--apply] | diff <id> | list | add <repo> | remove <id>'
user_invocable: true
---

# /equip — Equipment Manager

A project-agnostic skill for managing "absorbed" assets (skills, agents, scripts) that originated in external GitHub repos. It treats each upstream as a supplier whose shipments must be **reviewed before adoption**, not blindly synced.

## Subcommands

| Command | Purpose |
|---|---|
| `/equip inventory` | Scan current project; classify every asset as `native` / `absorbed` / `modified-absorbed` / `orphan`; write `.claude/equipment/inventory.yaml` |
| `/equip audit <repo\|id>` | Clone upstream, apply red-flag checks to each skill, and bind the decision report to the exact audited commit |
| `/equip sync <id> [--apply]` | Refresh upstream, verify its exact commit matches the audit, then perform a 3-way merge; dry-run by default |
| `/equip diff <id>` | Show per-file delta between registered `last_synced_commit` and remote HEAD |
| `/equip list` | Show registered upstreams with ahead/behind status |
| `/equip add <repo>` | Register a new upstream (interactive: select which local paths it covers) |
| `/equip remove <id>` | Unregister an upstream (keeps files, removes tracking) |

## Usage

```
/equip inventory                                 # first step for any project
/equip audit AgriciDaniel/claude-seo             # full evaluation
/equip sync claude-seo                           # dry-run: show what would change
/equip sync claude-seo --apply                   # actually write changes
/equip diff claude-seo                           # inspect drift
/equip audit .                                   # self-audit current project as if upstream
```

## Design principles

- **Review-first, not sync-first**: upstream content is always audited before it touches local files
- **Commit-bound approval**: `--apply` fails closed if the fetched commit differs from the exact commit in the audit report; re-run `/equip audit` to approve drift
- **Trust is per-skill, not per-repo**: one upstream can have 17 good skills + 3 bad ones; `/equip` picks
- **Local customizations are sacred**: files modified locally are never overwritten without explicit approval
- **Transparent**: every decision recorded in `.claude/equipment/audits/<id>-<date>.md` that the user can read and edit

Files in this skill

  • SKILL.md2.7 KB
  • prompt.md5.8 KB
  • references/audit-criteria.md4.9 KB
  • references/project-layouts.md2.5 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…