Skills DirectorySkills Directory
SkillsLearnSecurityCategoriesDocsBlogPro
Sign InSubmit Skill
Skills Directory

Security-tested agent skills for Claude, coding agents, and AI workflows.

Directory

  • Browse Skills
  • All Skills A–Z
  • Claude Skills
  • Claude Code Skills
  • Agent Skills
  • Categories
  • Authors
  • Submit a Skill

Learn

  • Learn Hub
  • Install Claude Skills
  • Write SKILL.md
  • Skills vs MCP
  • Directories Compared

Security

  • Security
  • Methodology
  • Secure Claude Skills
  • Security Badges
  • Chrome Extension
  • Skill Manager

Company

  • About
  • Community
  • Blog
  • API Docs
  • Advertise

2026 Skills Directory. All rights reserved.

ProTermsPrivacyRefunds
Back to skills

Bump Core Req

ASecurity

Updates the minimum core version requirement for a fleet plugin in all three canonical places: `required_core_version` and `requires["hermitd"]` in `hermit-meta.json`, and the `dependencies` entry in `plugin.json`. Use this skill whenever the user says "bump core requirement", "raise required_core_version", "make <fleet> require core X.Y.Z", "update min core for <fleet> plugin", or finishes shipping a core feature that fleet plugins need to declare they depend on. Also trigger when the user s...

74 stars
0 votes
0 copies
1 views
Added 10/3/2026
ai-agentsbashgitdocumentation

Works with

claude code

Security Analysis

A100/100

Scanned 10/3/2026

$npx -y skills add gtapps/hermitd --skill bump-core-req --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Bump Core Req?

Add the live security badge to your README — it updates automatically with every re-scan.

Security grade badge for Bump Core Req
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/gtapps-bump-core-req-13abfaa3/badge)](https://www.skillsdirectory.com/skills/gtapps-bump-core-req-13abfaa3)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
Files
SKILL.md
---
name: bump-core-req
description: >
  Updates the minimum core version requirement for a fleet plugin in all three canonical places:
  `required_core_version` and `requires["hermitd"]` in `hermit-meta.json`, and
  the `dependencies` entry in `plugin.json`. Use this skill whenever the user says
  "bump core requirement", "raise required_core_version", "make <fleet> require core X.Y.Z",
  "update min core for <fleet> plugin", or finishes shipping a core feature that fleet plugins
  need to declare they depend on. Also trigger when the user says "align fleet deps" or asks
  which version the fleet plugins are pinned to and wants to update them.
---

# bump-core-req

Update a fleet plugin's minimum core version in all three canonical locations.

## Background: why three places?

Per this monorepo's conventions (`CLAUDE.md` → Conventions), the core version requirement lives in:
1. `plugins/<slug>/.claude-plugin/hermit-meta.json` → `required_core_version` — **authoritative**, read by `doctor-check.ts` at runtime to detect incompatible siblings
2. `plugins/<slug>/.claude-plugin/hermit-meta.json` → `requires["hermitd"]` — documentation mirror
3. `plugins/<slug>/.claude-plugin/plugin.json` → `dependencies[name=hermitd].version` — native Claude Code resolver field

All three must stay in sync. This skill is the single operation that touches all of them atomically. It leaves committing to the operator via `/commit`.

## Usage

```
/bump-core-req <fleet-slug> [version]
```

- `<fleet-slug>` — directory name of the fleet plugin under `plugins/` (e.g. `hermitd-fitness`)
- `[version]` — optional target version like `1.0.26`. If omitted, read `plugins/hermitd/.claude-plugin/plugin.json` → `.version` and use that.

## Steps

### Step 0: Resolve slug

If no slug was passed, or it's invalid:

1. Glob `plugins/*/.claude-plugin/plugin.json`. Collect directory names.
2. Remove `hermitd` from the list — that's core, not a fleet plugin.
3. Ask via `AskUserQuestion`: "Which fleet plugin to update?" with one option per slug.

If `hermitd` was explicitly passed as slug, abort: "Core doesn't depend on itself — pass a fleet plugin slug."

Validate `plugins/<slug>/.claude-plugin/hermit-meta.json` exists. If not:
> Abort: "`<slug>` has no `hermit-meta.json` — not a fleet plugin or migration is incomplete."

### Step 1: Resolve target version

If version was passed as an argument, strip a leading `v` if present. Validate the result matches `X.Y.Z` (digits only, two dots). If it doesn't match, abort with a clear message.

If no version arg, read `plugins/hermitd/.claude-plugin/plugin.json` → `.version`. This is the current shipped core version. Report it to the operator: "Autodetected core version: X.Y.Z".

### Step 2: Read current state

Read both files:
- `plugins/<slug>/.claude-plugin/hermit-meta.json`
- `plugins/<slug>/.claude-plugin/plugin.json`

Extract the **current** values of:
- `required_core_version` (from hermit-meta.json) → call this `old_range` (e.g. `>=1.0.22`)
- `requires["hermitd"]` (from hermit-meta.json) → same value, confirm they match
- `dependencies[name=hermitd].version` (from plugin.json) → call this `old_dep_ver` (e.g. `^1.0.22`)

Identify the **prefix** on `old_dep_ver`: it's always one of `^`, `~`, `>=`, or exact (no prefix). Preserve it exactly when constructing the new value. The new dep version will be `<prefix>X.Y.Z`.

### Step 3: No-op short-circuit

If all three fields already encode the target version (`old_range == ">=X.Y.Z"` and `old_dep_ver == "<prefix>X.Y.Z"`), print:

> `<slug> already requires core >=X.Y.Z — nothing to do.`

Exit cleanly. No edits made.

### Step 4: Edit the three fields

Do **surgical string replacements** — do not rewrite whole files. Use the `Edit` tool, targeting the exact text you read in Step 2.

**hermit-meta.json** (two replacements):
- Replace `"required_core_version": "<old_range>"` → `"required_core_version": ">=X.Y.Z"`
- Replace `"hermitd": "<old_range>"` → `"hermitd": ">=X.Y.Z"`

Both old values will be identical (e.g. `>=1.0.22`), but they appear in different key positions, so the surrounding context makes each Edit unambiguous.

**plugin.json** (one replacement):
- Locate the exact string `"<old_dep_ver>"` that appears as the version value inside the `hermitd` dependency entry. Because there is exactly one `hermitd` dependency, replace the precise version string in context. Use enough surrounding text (the `"name": "hermitd"` line or inline prefix) to make the replacement unambiguous if the version string is short.

New value: `"<prefix>X.Y.Z"` — same prefix, new version.

### Step 5: Verify

Re-read both files and confirm each of the three fields now contains the target version. If any field doesn't match, abort loudly with the field name and what was found vs expected.

Then run plugin validation:
```bash
claude plugin validate plugins/<slug> 2>&1
```
Abort on any error.

### Step 6: Report

Print a concise summary block:

```
Bumped core requirement for <slug>:
  hermit-meta.json  required_core_version : <old_range> → >=X.Y.Z
  hermit-meta.json  requires              : <old_range> → >=X.Y.Z
  plugin.json       dependencies          : <old_dep_ver> → <prefix>X.Y.Z

Next steps:
  Run /commit to stage and commit this change.
  When ready to ship to operators: /release <slug>
```

No version bump, no CHANGELOG entry — those are for `/release` when the operator decides to ship.

Attribution

gtappsgtapps
View sourceSee grades on GitHubMore from gtapps →
SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments (0)

No comments yet. Be the first to comment!

SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Related Skills

Caveman

Terse caveman voice: answer first, fluff gone, every technical fact kept. Use for /caveman, "caveman mode", "talk like caveman", "be brief", "less tokens". Stays on until "stop caveman" or "normal mode".

1100021 votes

Hyperplan

Adversarial multi-agent planning skill. Self-orchestrates 5 hostile category members (unspecified-low, unspecified-high, deep, ultrabrain, artistry) via team-mode for ruthless cross-critique debate, distills only the defensible insights, then MANDATORILY hands the distilled insight bundle to the `plan` agent for executable plan formalization. Use when planning needs maximum rigor and surfacing of weak assumptions, blind spots, and over-engineering. Triggers: 'hyperplan', 'hpp', '/hyperplan', ...

698431 votes

Writing Skills

Create and manage Claude Code skills in HASH repository following Anthropic best practices. Use when creating new skills, modifying skill-rules.json, understanding trigger patterns, working with hooks, debugging skill activation, or implementing progressive disclosure. Covers skill structure, YAML frontmatter, trigger types (keywords, intent patterns), UserPromptSubmit hook, and the 500-line rule. Includes validation and debugging with SKILL_DEBUG. Examples include rust-error-stack, cargo-dep...

3931 votes

Mcp Code Execution

Routes multi-tool workflows through MCP servers for large datasets and pipelines. Use when Bash tool overhead is limiting throughput on data-heavy tasks.

3421 votes

catchup

Recovers the conversation and failed tool calls of a previous Codex, Amp, Claude Code, Antigravity, Cline, Copilot CLI, Cursor, DeepSeek Harness, Grok Build, Kimi, OpenCode, Pi Agent, or ZCode session. Use when the user says "catch up", "what did the last session do", "get me up to speed", "I switched agents", asks to recover/summarize a previous session before continuing, or asks to diagnose or report a catchup failure. Do NOT use for the current conversation, git history, or any non-agent log.

741 votes
View all in ai-agents →