Usage instructions
Core usage
find-skills is a purely document-based guided skill. Its core function is to help users discover and install the required skills in the open Agent Skills ecosystem. This skill guides usage when users ask "how to do X", "do you have the skills to donpx skills find [query]]Search for relevant skills and passnpx skills add <owner/repo@skill>>Complete the installation. Supports precise retrieval by field (Web development, testing, DevOps, documentation, etc.) and provides a complete workflow from requirement understanding, search execution to installation confirmation.
Significant advantages
1. Lower the barrier to discovery: Integrate the scattered Skills ecosystem into a searchable resource library, allowing users to locate required abilities without manual browsing.
2. Standardized installation process: Use the npx skills CLI tool uniformly to avoid the confusion of multiple installation methods.
3. Comprehensive scene coverage: Built-in common skills classification matrix (React, testing, deployment, documentation, etc.), supporting keyword association and alternative term search
4. Zero intrusion design: It does not execute the code itself, but only provides guidance documents, minimizing the risk surface.
Potential Disadvantages and Limitations
1. Rely on external CLI tools: The core functionality is completely dependent onnpx skillscommand, if the tool is updated or deprecated, the skill will become invalid
2. Lack of source verification mechanism: Guidance on verifying skill safety is not provided when booting the installation, and there are supply chain risks.
3. The quality of search results is uncontrollable: The returned results depend on the skills.sh index, and the matching and quality cannot be guaranteed.
4. Metadata is inconsistent: There is a conflict between the author information (bodii88) and the warehouse source (clawdbot), and the credibility is questionable.
5. Abnormal version identification: The slug contains the word "disabled", which may be a deprecated version or a known issue.
Suitable target group
- New users who are new to the Agent Skills ecosystem and need to quickly understand the available capabilities
- Developers who want to expand the boundaries of AI assistant functionality and are looking for domain-specific tools (e.g. React optimization, PR review)
- Team technical leaders who need standardized skills management processes
Risks of use
1. Supply chain poisoning: The third-party skills installed by boot may contain malicious code. It is recommended to manually verify the source.
2. Automated execution risks:Documentation recommends using-ySkip confirmation, code may be installed without review
3. Dependency drift: npx may pull the latest version every time, which risks inconsistent behavior.
4. network dependency: skills.sh service availability affects functional integrity
Safety review
Core usage
find-skills is aPure document-based skills guidance tool, does not execute any code itself, but helps users master Skills CLI through structured usage guides (npx skills) operating procedures. When a user asks "How to implement X function", "Do you have the skills to donpx skills find)→Display options→Assist in installation(npx skills add)。
Significant advantages
- Zero attack surface: Pure Markdown document, no executable code blocks, no dependencies, no network requests, fundamentally eliminating the risk of code injection
- Authoritative ecological integration: The only external reference points to the official skills.sh domain, directing users to vetted community skills
- Comprehensive scene coverage: Preset 6 common categories (Web development, testing, DevOps, documentation, code quality, design), supporting intelligent matching of keywords
- Friendly interactive experience: Provides installation command templates and downgrade solutions (direct help or guidance for self-created skills when skills are not found)
potential limitations
- T3 source credibility: Maintained by community developer (clawdbot), endorsed by non-well-known organizations, please pay attention to upstream updates
- Passive dependence on external tools: The actual functionality relies on the Skills CLI installed locally by the user, and the skill itself does not perform search or installation
- No version locking mechanism: No skill version compatibility check suggestions provided
- Limited Chinese support: The current interface and ecology are mainly in English.
Suitable for the crowd
- New users who are new to the Agent skill ecosystem and need navigation help
- Efficient users who want to quickly discover ready-made solutions in specific areas (such as React optimization, PR review, document generation)
- Cautious users who prefer official channels and are concerned about the security of third-party skills
General risks
- Risk of misleading CLI commands:Although it is an example,
-g -yIf global mandatory installation parameters are blindly copied by users, they may overwrite existing configurations. - ecological dependence risk: skills.sh The sustainability of the ecosystem determines the long-term value of the skill
- social engineering middleman: It is necessary to ensure that the user is accessing the real skills.sh and not a phishing domain name (the report confirms that the official domain name is trustworthy)
This skill passed the CLS-Certify v2.1.0 certification on 2026-05-02. All five radar scores exceed 95 points, which complies with GDPR/CCPA requirements. It is recommended to use it with confidence.
productivityautomationdevelopment-engineeringdevops
Copyright and takedown notice: AI Islands curates this page from public information. Skills, code, documents and packages remain the property of their original authors or rights holders. This listing is provided for indexing, research and installation convenience. If you believe any listing or download link infringes your rights, contact ai-islands@streamflowintel.com with proof of ownership, relevant URLs and your request. We will review and remove or adjust the content promptly. Review package permissions, dependencies and safety risks before installing.