Skills DirectorySkills Directory
SkillsLearnSecurityCategoriesDocsCommunityBlog
Sign InSubmit Skill
Skills Directory

Security-tested agent skills for Claude, coding agents, and AI workflows.

Directory

  • Browse Skills
  • All Skills A–Z
  • Claude Skills
  • Claude Code Skills
  • Agent Skills
  • Categories
  • Submit a Skill

Learn

  • Learn Hub
  • Install Claude Skills
  • Write SKILL.md
  • Skills vs MCP
  • Directories Compared

Security

  • Security
  • Methodology
  • Secure Claude Skills
  • Security Badges

Company

  • About
  • Community
  • Blog
  • API Docs
  • Advertise

2026 Skills Directory. All rights reserved.

Back to skills

Hq Cowork Search

ASecurity

Search HQ content from Cowork with full-text, semantic, or hybrid modes.

85 stars
0 votes
0 copies
1 views
Added 9/19/2026
toolsgoshell

Works with

climcp

Security Analysis

A100/100

Scanned 9/19/2026

Install to Claude Code

$npx -y skills add indigoai-us/hq-core --skill hq-cowork-search --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Hq Cowork Search?

Add the live security badge to your README — it updates automatically with every re-scan.

Security grade badge for Hq Cowork Search
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/indigoai-us-hq-cowork-search/badge)](https://www.skillsdirectory.com/skills/indigoai-us-hq-cowork-search)

More formats (shields.io, HTML) on the badges page.

Download Zip
Files
SKILL.md
---
name: hq-cowork-search
description: Search HQ content from Cowork with full-text, semantic, or hybrid modes.
allowed-tools: mcp__hq__hq_search
---

# /hq-cowork-search — Search HQ from a sandboxed agent

Searches indexed HQ content via the host-side `qmd` binary, surfaced as an
MCP tool so a sandboxed agent (Cowork) can use it even though `qmd` isn't
installed inside its Linux VM.

**Args:** `$ARGUMENTS` — query plus optional flags.

| Arg | Meaning |
|---|---|
| `<query>` (positional, required) | Natural-language search query. |
| `-c <collection>` / `--collection <collection>` | Scope to one collection (e.g. `hq-infra`, `hq-knowledge`, `indigo`). |
| `-n <N>` / `--limit <N>` | Number of results (default 10, max 50). |
| `--format json\|md\|files` | Output format. Omit for the default human snippet. |

Collections worth knowing about (varies per HQ install — run `qmd ls` on the
host to enumerate):

- `hq-infra` — skills, policies, hooks
- `hq-knowledge` — `core/knowledge/public/hq-core/`
- `hq-workers`
- `hq-projects`
- `{company-slug}` — per-company knowledge, one collection per company

## When to use this instead of `/search`

- **You're in Cowork or another sandboxed plugin host** — the regular `/search`
  skill (and the `qmd` charter rule that says "qmd first") relies on the
  `qmd` binary on PATH, which isn't true inside the sandbox.
- **You want JSON results for downstream programmatic use** — pass
  `--format json` and parse the response.

On a host-side session, prefer the unprefixed `/search` or `qmd query`
directly — fewer hops, same results.

## What you do

### Step 1 — Parse the query

Extract `<query>` (required) and optional flags. Without a query, ask what
the user is looking for. If the query is vague ("find docs"), ask for a more
specific phrase — qmd hybrid is good but not magic.

### Step 2 — Call the tool

```json
{
  "query": "<query>",
  "collection": "<collection>",   // omit to search all
  "limit": <N>,                   // omit to use default 10
  "format": "cli|json|md|files"   // omit to use default cli
}
```

Call `mcp__hq__hq_search`.

### Step 3 — Surface results

For `cli` / `md` format, render the tool output as-is (already
human-readable). For `json` / `files`, summarize: top 5 paths + scores,
then offer to read the most relevant via the host MCP if the user wants
the body.

If no results, suggest broadening — drop the `collection` filter, try a
synonym, or fall back to `qmd vsearch` (pure semantic) via a follow-up
call with a different query phrasing.

## Why this skill exists

The HQ charter mandates "qmd first" for HQ search — but only a host-side
session can actually shell out to the `qmd` binary. Inside Cowork's
sandbox, neither `qmd` nor the index DB it reads (`~/.qmd/`) is reachable.
The `hq-pack-cowork` MCP server runs `qmd query` (hybrid: expansion + RRF +
rerank) on the host and returns
the formatted result. This skill is the in-session adapter.

Attribution

indigoai-usindigoai-us
View sourceMore from indigoai-us →
SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments (0)

No comments yet. Be the first to comment!

SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Related Skills

ucoz-landing-skill

Playbook for creating and editing uCoz landing pages via MCP tools (`templates_tool`, `ftp_tool`, `modules_tool`). Use for tasks such as: "build a landing page", "update the homepage as a landing page", "create a promo page on the homepage", "add a lead form / menu / SEO to the homepage". Homepage: `page_list`, `page_get`; first publish — `page_update` with full `page_tmpl`; HTML edits after generation — `patch_template` (module_id=2, template_id=1), not `update_template`. Activate the mail f...

107 votes

Paperclip

Interact with the Paperclip control plane API for task coordination and governance. Use when checking assignments, updating issue status, posting comments, delegating work, managing routines, or calling Paperclip API endpoints.

805541 votes

Daw Music

Digital Audio Workstation usage, music composition, interactive music systems, and game audio implementation for immersive soundscapes.

761 votes

Instantly Rdsthomas Mission Control

Instantly.ai cold email outreach API - manage campaigns, leads, accounts, and analytics. Use for cold email automation, lead management, campaign creation/monitoring, and email account warmup.

761 votes

Caveman Compress

Compress natural language memory files (CLAUDE.md, todos, preferences) into caveman format to save input tokens. Preserves all technical substance, code, URLs, and structure. Compressed version overwrites the original file. Human-readable backup saved as FILE.original.md. Trigger: /caveman-compress FILEPATH or "compress memory file"

1066600 votes
View all in tools →