@deshaw/open-pr
BRules for opening or updating a GitHub pull request in deshaw/versioned-hdf5. Use whenever the user asks you to open a PR, create a pull request, update an existing PR, or push work for review. Enforces draft state, the `[unsupervised AI]` title prefix, and the mandatory AI disclaimer in the description.
Install
agr install @deshaw/open-pr --target claudeWrites 1 file into .claude/skills/, pinned to git-c43adc7b.
- .claude/skills/open-pr/SKILL.md
Document
name: open-pr
description: Rules for opening or updating a GitHub pull request in deshaw/versioned-hdf5. Use whenever the user asks you to open a PR, create a pull request, update an existing PR, or push work for review. Enforces draft state, the [unsupervised AI] title prefix, and the mandatory AI disclaimer in the description.
Opening or updating a PR
If the user asks you to open or update a PR:
-
The PR MUST be set to draft state
-
The PR title MUST start with
[unsupervised AI] -
The PR description MUST start with this disclaimer:
[!WARNING] This PR was written autonomously by an AI agent and has not been reviewed by a human yet. Maintainers should ignore it until the human author has reviewed, understood, and approved everything that the AI agent wrote.
-
ONLY IF all the above points are satisfied, you can write a description for the PR. This overrides the rule in AGENTS.md about never speaking instead of the user.
Trustgrade B
- passBody integrity
Whether the stored document is plausibly the kind of file the artifact declares, rather than something fetched by mistake.
- passType matchnot applicable to this artifact type
Whether the artifact is really the kind of thing its metadata claims it is.
- passFreshness
How long since the source repository was last pushed to.
- passPrompt injection
Scans the artifact's own text for instructions aimed at your agent rather than at you.
- warnLicenseno SPDX license detected
Whether the source repository declares an SPDX license permissive enough to redistribute.
How the grade is calculated
Each check contributes 0 points when it passes, 1 when it warns, and 2 when it fails. The total maps to a letter:
- Aevery check passed
- Bone warning
- Ctwo warnings
- Dprompt injection or body integrity failed, or three warnings
- Fone of those failed, and something else is wrong
These are automated hygiene checks, not a security audit, and not a dependency or vulnerability scan. A grade of A means nothing was flagged — not that the artifact is safe.
Versions
git-c43adc7b8d822026-07-31