feat(kyberforge): retarget forge skills to author/audit APM content #93

Merged
Defame1297 merged 14 commits from feat/89-apm-native-authoring into main 2026-08-12 11:48:50 +00:00
5 changed files with 67 additions and 12 deletions
Showing only changes of commit f037d49b5c - Show all commits

View File

@@ -25,4 +25,4 @@ target disable-model-invocation user-invocable mcp-servers metadata
## apm-agent-allowlist ## apm-agent-allowlist
name description model name description model source_keys

View File

@@ -54,7 +54,12 @@ if not (fname.endswith('.agent.md') or fname.endswith('.md')):
print(f"Error: unrecognized extension '{fname}' — expected .md or .agent.md", file=sys.stderr) print(f"Error: unrecognized extension '{fname}' — expected .md or .agent.md", file=sys.stderr)
sys.exit(2) sys.exit(2)
TYPE_RE = re.compile(r'^type:\s*(instructions|skill|hybrid|prompts)\b') # Matches a top-level `type:` line whose value is exactly one of the four
# package content types — identical to validate.sh's APM_TYPE_RE. Group 1's
# optional quote must be closed by \1 (or nothing), and the value must be
# followed by whitespace/end-of-line so a malformed value like `prompts-only`
# doesn't false-match on the `prompts` prefix.
TYPE_RE = re.compile(r"^type:\s*(['\"]?)(instructions|skill|hybrid|prompts)\1(?:\s|$)")
# --- Find package root: walk up for the nearest ancestor apm.yml that # --- Find package root: walk up for the nearest ancestor apm.yml that
# declares a top-level type: field. An apm.yml with no type: field is a # declares a top-level type: field. An apm.yml with no type: field is a
@@ -69,7 +74,9 @@ def find_plugin_root(start_dir):
with open(apm_yml) as f: with open(apm_yml) as f:
if any(TYPE_RE.match(line) for line in f): if any(TYPE_RE.match(line) for line in f):
return current return current
if os.path.isdir(os.path.join(current, '.git')): # .git is a directory in a normal checkout but a file (`gitdir: ...`)
# in a git worktree — exists() covers both.
if os.path.exists(os.path.join(current, '.git')):
return None return None
parent = os.path.dirname(current) parent = os.path.dirname(current)
if parent == current: if parent == current:

View File

@@ -133,9 +133,13 @@ def is_copilot_cloud_ide(fpath):
# --- Detect scope --- # --- Detect scope ---
# APM_TYPE_RE matches a top-level (column-0) `type:` line in apm.yml whose value is # APM_TYPE_RE matches a top-level (column-0) `type:` line in apm.yml whose value is
# one of the four package content types. `[\'"]?` tolerates a quoted value; the # exactly one of the four package content types. Group 1 captures an optional
# pattern doesn't anchor the line end, so trailing whitespace/comments don't matter. # opening quote; \1 requires the same character (or nothing) to close it, so
APM_TYPE_RE = re.compile(r"^type:\s*['\"]?(instructions|skill|hybrid|prompts)\b") # "skill" and '"skill"' both match but a mismatched quote doesn't. The value
# must then be followed by whitespace or end-of-line — not just a non-word
# character — so a malformed value like `prompts-only` is correctly rejected
# instead of false-matching on the `prompts` prefix.
APM_TYPE_RE = re.compile(r"^type:\s*(['\"]?)(instructions|skill|hybrid|prompts)\1(?:\s|$)")
def find_apm_package_root(apm_yml_path): def find_apm_package_root(apm_yml_path):
"""Return True if apm_yml_path has a top-level type: line (i.e. is a package """Return True if apm_yml_path has a top-level type: line (i.e. is a package
@@ -158,7 +162,9 @@ def detect_scope(start_dir):
# can't shadow user scope by being its own .git repo. # can't shadow user scope by being its own .git repo.
if current == home: if current == home:
return 'user', home return 'user', home
if os.path.isdir(os.path.join(current, '.git')): # .git is a directory in a normal checkout but a file (`gitdir: ...`)
# in a git worktree — exists() covers both.
if os.path.exists(os.path.join(current, '.git')):
return 'project', current return 'project', current
parent = os.path.dirname(current) parent = os.path.dirname(current)
if parent == current: if parent == current:

View File

@@ -83,6 +83,25 @@ if [[ ! -d "$ROOT" ]]; then
fi fi
ROOT="$(cd "$ROOT" && pwd)" ROOT="$(cd "$ROOT" && pwd)"
# True if apm_yml's top-level `type:` line names one of the four APM package
# types (instructions/skill/hybrid/prompts) — tolerating an optional matching
# quote around the value and requiring the value end there, so a malformed
# value like `prompts-only` doesn't false-match on the `prompts` prefix.
is_apm_package_manifest() {
local apm_yml="$1" line value
while IFS= read -r line; do
[[ "$line" =~ ^type:[[:space:]]*(.*)$ ]] || continue
value="${BASH_REMATCH[1]}"
value="${value%%[[:space:]]*}"
value="${value#\"}"; value="${value%\"}"
value="${value#\'}"; value="${value%\'}"
case "$value" in
instructions|skill|hybrid|prompts) return 0 ;;
esac
done < "$apm_yml"
return 1
}
# --- Walk-up package-root detection --- # --- Walk-up package-root detection ---
# #
# Mirrors agent-audit's validate.sh scope walk-up, with apm.yml + type: swapped # Mirrors agent-audit's validate.sh scope walk-up, with apm.yml + type: swapped
@@ -94,12 +113,13 @@ ROOT="$(cd "$ROOT" && pwd)"
# - reaching $HOME marks the user-scope boundary — stop, even if $HOME is # - reaching $HOME marks the user-scope boundary — stop, even if $HOME is
# itself a .git-tracked dotfiles directory (checked before the .git test # itself a .git-tracked dotfiles directory (checked before the .git test
# below, so a dotfiles repo at $HOME can't shadow user scope). # below, so a dotfiles repo at $HOME can't shadow user scope).
# - a .git directory marks the project-scope boundary — stop. # - a .git file or directory marks the project-scope boundary (a worktree's
# .git is a file, not a directory) — stop.
# - filesystem root reached with neither found — boundary-reached. # - filesystem root reached with neither found — boundary-reached.
find_package_root() { find_package_root() {
local current="$1" local current="$1"
while true; do while true; do
if [[ -f "$current/apm.yml" ]] && grep -qE '^type:[[:space:]]*(instructions|skill|hybrid|prompts)([[:space:]]|$)' "$current/apm.yml"; then if [[ -f "$current/apm.yml" ]] && is_apm_package_manifest "$current/apm.yml"; then
echo "plugin" echo "plugin"
echo "$current" echo "$current"
return return
@@ -109,7 +129,7 @@ find_package_root() {
echo "$current" echo "$current"
return return
fi fi
if [[ -d "$current/.git" ]]; then if [[ -e "$current/.git" ]]; then
echo "project" echo "project"
echo "$current" echo "$current"
return return

View File

@@ -81,6 +81,26 @@ if [[ ! -d "$TARGET_INPUT" ]]; then
exit 1 exit 1
fi fi
# True if apm_yml's top-level `type:` line names one of the four APM package
# types (instructions/skill/hybrid/prompts) — tolerating an optional matching
# quote around the value and requiring the value end there, so a malformed
# value like `prompts-only` doesn't false-match on the `prompts` prefix.
# Identical to agent-author's new-agent.sh copy of this helper.
is_apm_package_manifest() {
local apm_yml="$1" line value
while IFS= read -r line; do
[[ "$line" =~ ^type:[[:space:]]*(.*)$ ]] || continue
value="${BASH_REMATCH[1]}"
value="${value%%[[:space:]]*}"
value="${value#\"}"; value="${value%\"}"
value="${value#\'}"; value="${value%\'}"
case "$value" in
instructions|skill|hybrid|prompts) return 0 ;;
esac
done < "$apm_yml"
return 1
}
# --------------------------------------------------------------------------- # ---------------------------------------------------------------------------
# Walk up from <path> looking for a type-bearing apm.yml (package mode) or a # Walk up from <path> looking for a type-bearing apm.yml (package mode) or a
# .git boundary / filesystem root (standalone mode). An apm.yml with no # .git boundary / filesystem root (standalone mode). An apm.yml with no
@@ -92,7 +112,7 @@ find_package_root() {
current="$(cd "$1" && pwd)" current="$(cd "$1" && pwd)"
while true; do while true; do
if [[ -f "$current/apm.yml" ]]; then if [[ -f "$current/apm.yml" ]]; then
if grep -qE '^type:[[:space:]]*(instructions|skill|hybrid|prompts)\b' "$current/apm.yml"; then if is_apm_package_manifest "$current/apm.yml"; then
echo "$current" echo "$current"
echo "package" echo "package"
return 0 return 0
@@ -100,7 +120,9 @@ find_package_root() {
# apm.yml exists but has no type: field — marketplace-only manifest. # apm.yml exists but has no type: field — marketplace-only manifest.
# Not a package match; keep walking up. # Not a package match; keep walking up.
fi fi
if [[ -d "$current/.git" ]]; then # .git is a directory in a normal checkout but a file (`gitdir: ...`) in
# a git worktree — -e covers both.
if [[ -e "$current/.git" ]]; then
echo "$current" echo "$current"
echo "no-package" echo "no-package"
return 0 return 0