Skip to content
Back to skills

Bootstrap

ASecurity

Initialize minimal AgentOps documentation

  • 3 stars
  • 0 votes
  • 0 copies
  • 3 views
  • Added September 12, 2026
ai-agentsgogitdocumentation

Security analysis

A100/100

Pro scans all 4 files and shows the line behind each finding

Scanned September 12, 2026

npx -y skills add thedixitjain/the-mega-skill-library --skill bootstrap --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Bootstrap?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Bootstrap
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/thedixitjain-bootstrap/badge)](https://www.skillsdirectory.com/skills/thedixitjain-bootstrap)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: bootstrap
description: "Initialize minimal AgentOps documentation"
category: ai-agents-and-harness
source_repo: hashgraph-online/awesome-codex-plugins
source_path: "plugins/boshu2/agentops/skills-codex/bootstrap/SKILL.md"
source_url: https://github.com/hashgraph-online/awesome-codex-plugins/blob/HEAD/plugins/boshu2/agentops/skills-codex/bootstrap/SKILL.md
---

# Bootstrap — minimal project setup

Bootstrap fills only missing AgentOps entry documents and the default durable
verdict directory. It does not initialize Git, install hooks, create tracker
state, start runtimes, or impose a delivery workflow.

Never-overwrite is what makes bootstrap safe to run on any repository: a setup
step that can only add is idempotent by construction, while one that can
replace must first prove it understands what it is replacing.

Named failure mode — **scaffold sprawl**: creating files the caller never
requested because a "complete" setup feels more helpful than a minimal one.

Anti-pattern: inferring product intent from directory names and READMEs to
avoid asking the caller. Corrective: ask for the missing content; a wrong
PRODUCT.md written confidently is worse than a question.

## Procedure

1. Inspect the target directory and report which canonical files already exist.
2. Ask the caller for missing product intent or goal content when it cannot be
   inferred safely.
3. Create only missing, explicitly requested files. Never overwrite an existing
   document.
4. Create `.agents/ao/verdicts/sha256/` when durable local verdict storage is
   requested.
5. Validate filesystem existence and report created, skipped, and failed paths.
6. Stop.

Typical documents are `PRODUCT.md`, `GOALS.md`, `AGENTS.md`, and a README section
that explains the one-pass loop. Repositories remain free to use their own Git,
CI, tracker, release, and deployment policies.

## Non-goals

- installing or invoking `ao`, `br`, `bd`, NTM, Agent Mail, or another runtime;
- creating `.git`, worktrees, branches, commits, hooks, or CI workflows;
- choosing work or claiming that repository setup is complete beyond the paths
  actually inspected;
- running RPI automatically.

## Output

Return target path, requested files, created files, existing files left intact,
failed writes, and validation observations. Do not include a next action.

## References

- [Goals](../goals/SKILL.md)
- [Product](../product/SKILL.md)
- [Documentation](../doc/SKILL.md)
- [Examples](references/examples.md)

---

**Source:** [`hashgraph-online/awesome-codex-plugins`](https://github.com/hashgraph-online/awesome-codex-plugins) → `plugins/boshu2/agentops/skills-codex/bootstrap/SKILL.md`

Files in this skill

  • .agentops-generated.json266 B
  • SKILL.md2.6 KB
  • prompt.md349 B
  • references/examples.md1.2 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…