Skills DirectorySkills Directory
SkillsLearnSecurityCategoriesDocsBlogPro
Sign InSubmit Skill
Skills Directory

Security-tested agent skills for Claude, coding agents, and AI workflows.

Directory

  • Browse Skills
  • All Skills A–Z
  • Claude Skills
  • Claude Code Skills
  • Agent Skills
  • Categories
  • Authors
  • Submit a Skill

Learn

  • Learn Hub
  • Install Claude Skills
  • Write SKILL.md
  • Skills vs MCP
  • Directories Compared

Security

  • Security
  • Methodology
  • Secure Claude Skills
  • Security Badges
  • Chrome Extension
  • Skill Manager

Company

  • About
  • Community
  • Blog
  • API Docs
  • Advertise

2026 Skills Directory. All rights reserved.

ProTermsPrivacyRefunds
Back to skills

Swarm Invocation Designer

ASecurity

Designs and audits controller-owned multi-agent invocation contracts: capacity reservation, single-use leases, generation fences, idempotent dispatch, typed gathers, deterministic reduction, bounded rework, cancellation, settlement, and effect-denied replay. Use when projecting an approved execution plan onto bounded concurrent work. NOT for task decomposition, choosing a planning topology, context partitioning, IPC or framework selection, dialogue design, live agent operation, or granting ru...

2 stars
0 votes
0 copies
0 views
Added 9/24/2026
toolsgobashnodetestinggit

Works with

terminalcli

Security Analysis

A100/100

Pro scans all 18 files and shows the line behind each finding

Scanned 10/2/2026

$npx -y skills add curiositech/port-daddy --skill swarm-invocation-designer --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Swarm Invocation Designer?

Add the live security badge to your README — it updates automatically with every re-scan.

Security grade badge for Swarm Invocation Designer
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/curiositech-swarm-invocation-designer/badge)](https://www.skillsdirectory.com/skills/curiositech-swarm-invocation-designer)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
Files
SKILL.md
---
name: swarm-invocation-designer
description: >-
  Designs and audits controller-owned multi-agent invocation contracts:
  capacity reservation, single-use leases, generation fences, idempotent
  dispatch, typed gathers, deterministic reduction, bounded rework,
  cancellation, settlement, and effect-denied replay. Use when projecting an
  approved execution plan onto bounded concurrent work. NOT for task
  decomposition, choosing a planning topology, context partitioning, IPC or
  framework selection, dialogue design, live agent operation, or granting
  runtime authority.
license: Apache-2.0
allowed-tools: Read,Write,Edit,Grep,Glob,Bash(node:*)
metadata:
  version: 2.0.0
  category: Agent & Orchestration
  tags: [invocation-governance, capacity, leases, fencing, gather, replay]
  provenance:
    kind: first-party
    owners: [port-daddy]
  pairs-with:
    - skill: pilot-hypertree-execution
      reason: Supplies the sealed planning graph this skill projects.
    - skill: agent-conversation-protocols
      reason: Supplies bounded message semantics after admission.
    - skill: circuit-breakers-and-retries
      reason: Supplies retry and trip policy without creating admission authority.
  io-contract:
    kind: deliverable
    consumes:
      - kind: sealed-execution-plan
        format: json
      - kind: capacity-ceiling
        format: json
    produces:
      - kind: controller-owned-invocation-contract
        format: json
      - kind: static-validation-report
        format: json
---

# Swarm Invocation Designer

This is a static contract architect, not a launcher. A planning graph proposes
work; only an external controller can admit attempts, consume reservations,
issue fenced leases, and open effect channels.

## Decision procedure

1. **Scope:** return `OUT_OF_SCOPE_LIVE_OPERATION` for requests to launch,
   supervise, kill, or settle live agents.
2. **Seal intent:** bind objective, completion predicate, excluded effects, plan
   digest/revision, and immutable limit digest.
3. **Separate topologies:** record planning and runtime topologies. A projection
   is `EXACT`, `NARROWED`, `OMITTED`, or `BLOCKED`; non-exact support needs an
   attributable acceptance reference.
4. **Close the graph:** require unique nodes, acyclic dependencies, sealed gather
   membership, declared reducers, reachable work, and bounded review. Rework is
   a new attempt, not a graph cycle.
5. **Separate owners:** identify admission, capacity, lifecycle, effect,
   evidence, and review owners. Workers may propose changes but cannot create
   children, enlarge limits, issue leases, or settle reservations.
6. **Reserve first:** bind every attempt, renewal, elastic slot, rework, and
   resource-consuming gather to plan, revision, node, attempt, body generation,
   route, resource vector, expiry, and idempotency key.
7. **Consume and fence:** the controller consumes one reservation commit before
   one monotonically generated, externally fenced lease.
8. **Persist intent:** durable dispatch intent precedes transmission. Unknown
   transmission becomes `AMBIGUOUS`; retain capacity and reconcile before an
   authorized retry. A new key must never disguise the same uncertain effect.
9. **Gather exactly:** membership is sealed. Semantic partial closure never
   implies cancellation or capacity settlement for absent members.
10. **Reduce and review:** reducers consume ordered artifact hashes and are
    version/digest bound. A producer cannot decide its terminal review. One
    `REWORK` creates a fresh attempt; a second escalates or halts.
11. **Cancel as protocol:** request, acknowledgement deadline, fence,
    termination witness, provider reconciliation, and reservation disposition
    are separate facts.
12. **Settle then replay:** every attempt has an explicit disposition. Only
    witnessed settlement or release permits capacity reuse; `HELD_AMBIGUOUS`
    continues to consume its reservation. Replay reconstructs projections with
    effects denied.

```mermaid
flowchart TD
  I[Sealed intent] --> P[Planning topology proposal]
  P --> R[Runtime support projection]
  R --> E[Closed execution plan]
  E --> C[Capacity reservation commit]
  C --> X[Controller exact-once consume]
  X --> D[Durable dispatch intent]
  D --> L[Fenced body lease]
  L --> W[Bounded worker]
  W --> G[Sealed gather]
  G --> V[Versioned deterministic reducer]
  V --> J{Independent review}
  J -->|Approve| T[Terminal disposition]
  J -->|One rework| C
  J -->|Escalate or halt| T
  T --> S[Settle release or hold reservation]
  W --> Q[Append-only events]
  Q --> Y[Effect-denied replay]
  P -. no admission authority .-> C
  W -. cannot spawn reserve or lease .-> C
```

## Invariants

- `maxRecursiveBirths` is zero; topology expansion requires a new reviewed plan.
- Reservation commit precedes lease; lease and durable intent precede dispatch.
- A stale generation cannot produce accepted state or effects.
- Aggregate resource vectors stay under the plan ceiling; native resources are
  not silently converted into one scalar budget.
- Gather membership is immutable and dissent remains visible.
- Cancellation messages do not prove termination, provider state, or release.
- Replay never invokes a provider, tool, hook, or effect broker.
- `STATIC_VALID` means the implemented shape and relationship checks passed. It
  does not prove the completion predicate, capacity enforcement, deterministic
  execution, receipt authenticity, or runtime readiness.

## Lost-ack procedure

Persist an immutable operation key and intent before transmission. Give each
observation its own event identity; several observations can concern the same
operation. CloudEvents `source` plus `id` identifies an event, not a command's
execution count ([v1.0.2](https://github.com/cloudevents/spec/blob/v1.0.2/cloudevents/spec.md)).

If an acknowledgement is absent, retain the reservation and mark the attempt
`AMBIGUOUS`. Query the authoritative destination for that exact operation. A
terminal receipt determines what happened; it permits settlement only after the
controller checks outcome, provider accounting, and reservation disposition. A
current “not found” answer alone does not prevent the original request committing later.

An authorized retry requires either **authoritative noncommit plus a fence that
prevents late commit**, or **validated destination deduplication for the same
operation key**. Both routes require current authority and remaining budget. A
deduplicated retransmission retains the operation key while recording its
separate attempt/generation and cost. Unknown outcomes without either route
remain held. Compensation is a separate authorized effect, not evidence that
the original effect is absent. Every relevant sink must enforce a generation
fence; a stored generation number alone does nothing.

```mermaid
flowchart TD
  U[Missing acknowledgement: hold reservation] --> Q[Query exact operation at destination]
  Q --> T{Terminal outcome witnessed?}
  T -->|yes| S[Check outcome and accounting before settlement]
  T -->|no| N{Noncommit plus late-commit fence?}
  N -->|yes| A[Check retry authority and remaining budget]
  N -->|no| D{Validated same-operation deduplication?}
  D -->|yes| A
  D -->|no| H[Keep held and escalate]
  A -->|permitted| R[Record bounded new attempt]
  A -->|missing| H
```

## Static worked case

`review-17` reserves one slot and records operation key `k17`. The controller
loses the acknowledgement after sending; its latest observation says
`AMBIGUOUS`. A second “not found” observation remains insufficient while the
original send could arrive. A terminal absence receipt bound to `k17` plus a
target-enforced fence closes that possibility. Only then, with authority and
budget, can the controller create a new attempt. If the destination instead
supplies proven same-key deduplication, that route may permit a retransmission
without creating a new logical operation. Neither path has run here.

## Validation contract

The JSON contract records design declarations. The validator checks its
supported schema, bounded counts, graph dependencies, gather membership/reducer
links, policy fields, and selected status contradictions. It cannot evaluate
natural-language completion predicates, grant authority, enforce resources,
prove a reducer deterministic, or verify remote deduplication. Keep those as
explicit review and runtime obligations. The trace schema is a structural
envelope; passing it does not validate an execution.

Gather policies require different design parameters: `ALL` uses the sealed
member set; `QUORUM` states its threshold; `DEADLINE_PARTIAL` states its
deadline relative to the invocation. Missing members retain lifecycle/accounting
obligations after partial closure. One rework round is this bundle's chosen
profile, not a result about optimal team design.

## Anti-patterns

### Prompt-shaped fanout

**Bad:** prose directly creates workers. **Detection:** no admitted plan,
reservation commit, or controller lease exists.

### Planning diagram as authority

**Bad:** a manager node may dispatch because it appears in a graph. **Detection:**
planning topology names an admission, capacity, lifecycle, or effect owner.

### Cancellation by message

**Bad:** `cancel sent` releases capacity. **Detection:** no fence, termination
witness, provider reconciliation, or terminal reservation disposition.

### Replay by re-execution

**Bad:** replay calls external effects. **Detection:** `effectsDenied` is false or
absent.

## Outputs

Return only `STATIC_VALID`, `STATIC_INVALID`, `INCOMPLETE_STATIC`,
`OUT_OF_SCOPE`, or `OUT_OF_SCOPE_LIVE_OPERATION`.

```bash
node skills/swarm-invocation-designer/scripts/validate-swarm-invocation.mjs <contract.json>
node skills/swarm-invocation-designer/scripts/test-bundle.mjs
```

## Load on demand

| File | Load when |
|---|---|
| `references/authority-admission-lifecycle.md` | Designing owner, reservation, lease, cancellation, or settlement seams. |
| `references/gathers-reducers-and-replay.md` | Designing gather, reducer, review, or replay semantics. |
| `schemas/swarm-invocation.schema.json` | Producing the static contract. |
| `schemas/swarm-invocation-trace.schema.json` | Designing a future runtime trace without claiming one exists. |
| `examples/valid-static-contract.json` | Starting a bounded static design. |
| `tests/activation.md` | Testing routing boundaries. |
| `scripts/validate-swarm-invocation.mjs` | Validating one contract. |
| `scripts/test-bundle.mjs` | Running adversarial mutations. |
| `agents/openai.yaml` | Delegating static contract design. |

## Imported bundle navigation

These preserved source files add depth when their stated topic is needed.

- [examples/expected-output.md](examples/expected-output.md) — Example Output: Swarm Invocation Designer.
- [references/fast-agent-bus.md](references/fast-agent-bus.md) — Fast Agent Bus.
- [references/invocation-patterns.md](references/invocation-patterns.md) — Swarm Invocation Patterns.
- [references/exactly-once-decomposition.md](references/exactly-once-decomposition.md) — Transport and effect boundaries.
- [schemas/latency-budget.schema.json](schemas/latency-budget.schema.json) — latency-budget.schema.json.
- [scripts/latency_budget.mjs](scripts/latency_budget.mjs) — latency_budget.mjs.
- [templates/output-template.md](templates/output-template.md) — Swarm Invocation Spec.

Attribution

curiositechcuriositech
View sourceSee grades on GitHubMore from curiositech →
SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments (0)

No comments yet. Be the first to comment!

SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Related Skills

ucoz-landing-skill

Create and edit uCoz homepage landing pages via MCP: custom templates, hero sections, lead forms, navigation menus, SEO, and responsive layout. Includes a visual design system (style selection, layout/grid, section recipes, typography/spacing, color tokens, component states, icons, modern CSS/JS, motion, imagery, social proof, copy/voice, accessibility). Uses ucoz-mcp tools for templates, site file uploads, and site modules.

107 votes

Paperclip

Interact with the Paperclip control plane API for task coordination and governance. Use when checking assignments, updating issue status, posting comments, delegating work, managing routines, or calling Paperclip API endpoints.

953191 votes

Pptx

Presentation toolkit (.pptx). Create/edit slides, layouts, content, speaker notes, comments, for programmatic presentation creation and modification.

471861 votes

Daw Music

Digital Audio Workstation usage, music composition, interactive music systems, and game audio implementation for immersive soundscapes.

761 votes

Instantly Rdsthomas Mission Control

Instantly.ai cold email outreach API - manage campaigns, leads, accounts, and analytics. Use for cold email automation, lead management, campaign creation/monitoring, and email account warmup.

761 votes
View all in tools →