/scaffold-project¶
Authoring class
Writes exactly one artifact into the repo, then proposes the commit — never runs git itself. Shared rules: CONVENTIONS-authoring.md.
Grounds the security/governance layer in the OpenSSF OSPS Baseline (cited by control ID, Level 1 by default) and delegates the stack-specific layout to the ecosystem's own generator (cargo new, uv init, npm create) rather than inventing one. Reads a supplied project doc first when there is one. Verifies the result against the baseline before reporting done, then PROPOSES the commit.
At a glance¶
| Run it | /scaffold-project |
| Class | authoring |
| Version | 0.1.0 |
| Author | navjyotnishant |
| Needs | the ecosystem's own generator (cargo new, uv init, npm create) · gitleaks |
| Source | skills/scaffold-project/SKILL.md |
What it needs, and what happens without it¶
Every tool is detected at runtime — none is installed for you.
| Tool | Without it |
|---|---|
the ecosystem's own generator (cargo new, uv init, npm create) |
a minimal hand-written layout — say which parts the generator would normally have provided |
gitleaks |
the hook is scaffolded but noted as inactive until a scanner is installed |
Agents it spawns¶
This skill spawns no subagents — it runs inline.
The procedure¶
The executable steps live in the skill file itself and are deliberately not reproduced here: they are instructions to the model at runtime, not documentation.