npx skills add ...
npx skills add nvidia/openshell --skill sync-agent-infra
Detect and fix drift across agent-first infrastructure files. Ensures skill inventories, workflow chains, architecture tables, issue/PR templates, and cross-references stay consistent when skills, crates, or workflows change. Run after adding, removing, or renaming skills or components. Trigger keywords - sync agent infra, sync skills, update agent docs, check agent consistency, agent infra drift, sync contributing, sync agents.
npx skills add nvidia/openshell --skill sync-agent-infra
Detect and fix drift across the agent-first infrastructure files. These files reference each other and must stay consistent:
| File | What it tracks |
|---|---|
AGENTS.md | Project identity, workflow chains, architecture overview, issue/PR conventions, skill maintenance pointer |
CONTRIBUTING.md | Skills table, workflow chains, "When to Open an Issue" guidance, skill references |
CONTRIBUTING.md issue lifecycle section | Human-facing issue states, roadmap decisions, acceptance signals, and direct-versus-queued agent ownership |
README.md | "Use OpenShell with Your Agent" and "Built With Agents" sections |
.github/ISSUE_TEMPLATE/bug_report.yml | Skill name references in diagnostic guidance |
.github/ISSUE_TEMPLATE/feature_request.yml | Skill name references in investigation guidance |
.github/ISSUE_TEMPLATE/config.yml | Contact link text referencing skills |
.github/workflows/issue-triage.yml | Comment text referencing skills |
.agents/skills/triage-issue/SKILL.md | Skill name references in gate check and diagnosis steps |
skills/*/SKILL.md | Standalone user instructions and links to documentation, included files, and related skills |
.agents/skills/create-github-pr/SKILL.md | Pre-PR agent infrastructure check |
.agents/skills/review-github-pr/SKILL.md | Review-time agent infrastructure check |
.agents/skills/build-from-issue/SKILL.md | Label awareness and pre-commit agent infrastructure check |
.claude/agents/principal-engineer-reviewer.md | Shared review-time agent infrastructure check |
skills/ or .agents/skills/crates/Use this map when product behavior, commands, or development workflows change. It is a routing aid, not an exhaustive dependency list. Search both skills/ and .agents/skills/ for the changed command, field, component, or workflow before concluding that no other skill needs an update.
| Change area | Skills to review |
|---|---|
| CLI commands, flags, defaults, or workflows | openshell-cli |
| Sandbox policy schema, presets, or enforcement behavior | generate-sandbox-policy, openshell-cli |
| Supervisor middleware policy, registrations, runtime, or failure behavior | generate-sandbox-policy, openshell-cli, debug-openshell-cluster |
| Gateway deployment, Helm, runtime drivers, or health checks | debug-openshell-cluster, helm-dev-environment |
| Inference providers, native model endpoints, or migration from the retired managed endpoint | debug-inference, openshell-cli, generate-sandbox-policy |
| TUI architecture, navigation, data fetching, or UX | tui-development |
| Release artifacts or post-publish smoke coverage | test-release-canary |
| GitHub Actions workflows, required checks, or CI diagnostics | watch-github-actions; also test-release-canary for release smoke coverage |
| Gator harness, sandbox image, supervision, or model overrides | launch-openshell-gator |
| SBOM generation, dependency metadata, or license workflows | sbom |
| Issue templates, labels, contribution gates, or spike/build workflow | triage-issue, create-spike, build-from-issue, create-github-issue |
| PR template, review conventions, or vouch behavior | create-github-pr, review-github-pr, build-from-issue |
| Security review or remediation workflow | review-security-issue, fix-security-issue |
| RFC template, numbering, or lifecycle | create-rfc |
| Documentation structure, navigation, or doc-update workflow | update-docs-from-commits |
| Skills, crates, workflow chains, issue/PR templates, or agent cross-references | sync-agent-infra |
You must be in the OpenShell repository root.
Gather the source of truth for each category.
List public and contributor skill directories separately:
The directories are canonical by audience: skills/ contains public, installable user/operator skills and .agents/skills/ contains internal contributor workflows. Every other file must agree with both inventories.
List all crate directories:
The canonical workflow chains are defined in AGENTS.md under "## Workflow Chains". Read that section — it is the source of truth for skill pipelines.
The canonical label set is used by skills and templates. The key labels are: state:triage-needed, state:needs-info, state:validated, state:accepted, agent:plan-requested, agent:plan-ready, agent:implementation-requested, agent:in-progress, agent:pr-opened, roadmap, topic:security, good first issue, help wanted, spike, and the relevant area:*, topic:*, integration:*, and test:* labels. Lifecycle and agent:* request labels gate unattended queue pickup. They do not prevent a direct user request: the agent warns about each missing or incomplete expected workflow label and continues with the requested phase without changing those labels.
For each file in the table above, check for the following inconsistencies:
CONTRIBUTING.mdskills/ must appear in "Skills for Using OpenShell" and no contributor skill may appear there..agents/skills/ must appear in "Agent Skills for Contributors" and no public skill may appear there.AGENTS.md workflow chains exactly.AGENTS.mdcrates/ must appear in the architecture table. The python/, proto/, deploy/, .agents/ rows must also be present.skills/ and .agents/skills/ rows with accurate audience descriptions.create-github-issue, create-github-pr, build-from-issue) exist.sync-agent-infra and does not duplicate the maintenance map from this skill.CONTRIBUTING.md issue lifecycle section — State, roadmap, acceptance-signal, and agent-workflow meanings must match AGENTS.md.agent:* request labels must gate unattended queue pickup without blocking a direct user request to a specific agent.README.mdskills/ from .agents/skills/, include npx skills add NVIDIA/OpenShell, and list only canonical public skills as installable..agents/skills/. Workflow descriptions should be consistent with AGENTS.md chains.bug_report.yml — Must collect a User Story, Problem Statement, Impact / Why This Matters, Acceptance Criteria, Reproduction Steps, and Environment. Logs are optional and bug-specific; reporter diagnostics must not be required.feature_request.yml — Must collect a User Story, Problem Statement, Impact / Why This Matters, Proposed Design, Acceptance Criteria, and Alternatives Considered. The design describes workflow and observable behavior without prescribing internal implementation; agent investigation is optional.config.yml — Skill category descriptions in contact links should be accurate.issue-triage.yml — Skill names in the redirect comment must exist.triage-issue — Skills referenced in gate check and diagnosis steps must exist.openshell-cli — Companion skills table entries must exist in one canonical location.build-from-issue — Label names must match the project's label taxonomy. Lifecycle and request labels must gate unattended queue pickup, while direct requests warn on workflow discrepancies and continue.create-spike — Reference to build-from-issue as next step must be accurate.review-security-issue / fix-security-issue — Cross-references between the two must be accurate.create-github-pr, review-github-pr, build-from-issue, and principal-engineer-reviewer references to sync-agent-infra must exist and use trigger conditions aligned with this skill.openshell-cli, generate-sandbox-policy, debug-inference, and debug-openshell-cluster) must live only in skills/. Every other repository skill must live only in .agents/skills/..agents/skills/*/SKILL.md must set metadata.internal: true. Public skills must not set internal metadata. Treat this as a discovery filter, not an access-control boundary.name field from every SKILL.md under both roots. Every name must be globally unique and match the documented inventory.skills/<name>/..., never .agents/skills/<name>/....docs/, architecture/, crates/, deploy/, or .agents/; source builds; mise; or repository E2E workflows. Use installed openshell --help for command syntax and Markdown endpoints under https://docs.nvidia.com/openshell/latest/ (URLs ending in .md) for product documentation.npx -y skills add . --list from a clean checkout or disposable copy. It must list exactly the four public skills. Remove any generated lock file or installed directory after the check.If any inconsistencies are found, report them in a structured format:
If no drift is found, report: "Agent infrastructure is consistent. No drift detected."
If drift is found, fix it by updating the affected files:
AGENTS.md and CONTRIBUTING.md.AGENTS.md and CONTRIBUTING.md. Update the "Built With Agents" section in README.md if the change is user-visible.After fixing, re-run Step 2 to verify consistency.
Report what was fixed: