Skip to content
Back to skills

Recall Ext

ASecurity

Develop and verify Recall's extension host, official extensions, manifests, and release wiring. Use for extension implementation or maintenance in this repository.

  • 105 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added September 3, 2026
ai-agentsgobashgit

Works with

  • cli

Security analysis

A100/100

Pro scans all 2 files and shows the line behind each finding

Scanned September 20, 2026

npx -y skills add samzong/Recall --skill recall-ext --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Recall Ext?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Recall Ext
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/samzong-recall-ext/badge)](https://www.skillsdirectory.com/skills/samzong-recall-ext)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: recall-ext
description: Develop and verify Recall's extension host, official extensions, manifests, and release wiring. Use for extension implementation or maintenance in this repository.
---

# Recall Ext

Read `extensions/AGENTS.md` and `docs/extensions.md` for the extension boundary,
CLI protocol, and managed-install contract. Compare implementation with the
contract; resolve disagreements before changing behavior.

## Develop

- Use `extensions/recall-probe/` for the minimal package layout. Add the new
  `recall-<name>` binary to workspace members and keep its version independent
  of core.
- Implement `--recall-extension-manifest` with `name`, package `version`,
  `protocol`, and `min_recall`. Choose compatibility values from the CLI
  features actually consumed; do not copy the probe's legacy values or
  `commands` field into a new extension.
- Pass an explicit `--project` on scoped Recall queries and syncs; use `all`
  only for global work. Omitted scope follows the caller's working directory.
- `recall session show --format json` returns metadata by default. Request
  `--messages` or `--include metadata,messages` when reading transcripts.
- For host changes, trace `src/extension.rs` against the managed-install
  contract: official catalog, checksum and manifest validation, managed-only
  dispatch and removal. Do not add PATH discovery or a third-party registry.

## Verify

Run the relevant package checks and exercise its CLI protocol:

```bash
cargo build -p recall-<name>
cargo test -p recall-<name>
cargo run -p recall-<name> -- --recall-extension-manifest
```

For host changes, run `cargo test --lib extension::tests`; for catalog changes,
check `cargo run -- ext list --available`. Run root `make check` before ship.

## Release

Bump the package version only when a release is requested. Follow
`.github/workflows/extension-release.yml` for version/tag validation, target
packaging, publication, and catalog generation. Extension tags are
`recall-<name>-v<version>`; a core tag does not release an extension.

Verify the affected target archives, manifests, and SHA-256 checksums using
that workflow. Never hand-edit `website/public/extensions/catalog.json` or
couple extension and core releases unless protocol compatibility requires it.

Files in this skill

  • SKILL.md4 KB
  • agents/openai.yaml193 B

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…