本文へ移動
cccskills
無料GitHub で公開

ci

Run this repo's CI end-to-end — the kolu-specific procedure on top of the odu runner: the odu MCP front door, banned opt-out flags, mandatory two-platform coverage, venue-pool leasing, fail-fast surfacing, e2e timing evidence, and the green-gate. Triggers on "run CI", "drive CI", "re-run the pipeline", "close the red check", "warm the pool". Runner mechanics live in the `/odu` skill.

インストール方法を見る

含まれるファイル(4)

  • SKILL.md6.0 KB
  • pu/diagnose.sh3.2 KB
  • pu/pool.sh3.2 KB
  • smoke.sh12.9 KB

SKILL.md(原文)

インストールする前に、エージェントに与えられる指示の中身を確認できます。

CI

Drive CI through the odu MCP server — the single front door. The runner is odu (npins-pinned by ci/flake.nix, nix run ./ci#odu): mcp__odu__run spawns the coordinator, mcp__odu__wait_for_settle blocks until settle or first red node (its verdict is stamped sha7#seq; pass expected_sha to hard-check), the surface://collections/logs/{id} resource drills into a failure, mcp__odu__node_rerun closes a red check. Runner mechanics: /odu skill.

Banned flags: never --no-post, --no-strict, --no-snapshot. CI here is always strict and always posts commit statuses — a run that doesn't post isn't CI, it's a private dry-run that leaves the PR unverified.

Push before CI — remote lanes git fetch the pinned SHA from origin; an unpushed commit can't run.

Sync master before CI, every run, whoever is driving. Fetch and merge origin/<default> unless it's already an ancestor (git merge-base --is-ancestor). The changelog is merge=union and never conflicts; a real conflict is yours to resolve now. Never merge while a gauntlet round is mid-commit — it races the index.

Every run covers both platforms. Pin them explicitly — platforms=["x86_64-linux", "aarch64-darwin"] — never trust a machine-local default: a platform you don't name silently drops; a named platform with no pool entry is refused loudly (juspay/odu#46). Before reporting green, confirm the settled run actually carried both — a single-platform green is a false green.

Darwin hosts: read hosts.json, never this skill. The darwin fleet is volatile (this file hard-named the live box three times and was stale each time) — ~/.config/odu/hosts.json (nix run ./ci#odu -- hosts) is the only source of truth; copy entries verbatim when pinning (user@ and tailnet suffixes differ). Durable rules: under a coordinator, ask it before every darwin dispatch (single-tenant); treat fs-watch-class reds on darwin as suspect box environment and report before chasing; a dead pool entry silently stalls the whole darwin lane — report it for removal rather than waiting it out.

A companion repo's darwin lane uses --host aarch64-darwin=<box>, never inline $ODU_HOSTS — odu reads $ODU_HOSTS as a file path, so inline JSON is silently ignored and burns a run on a dead host.

Linux lane: odu leases natively from the warm Incus pool (kolu-ci-1..8 in hosts.json) — picks a free box, holds it for the run, releases on settle. No manual leasing. Saturated pool waits in line (no_wait: true to fail fast instead); nix run ./ci#odu -- hosts shows free/busy. To keep the same hot box across fix→rerun cycles, take an agent-held lease with mcp__odu__lease first and mcp__odu__release when done. Pool upkeep: just ci::pool-ensure / just ci::pool-status; warm idle slots by running the linux lane against master with a hosts= pin (strict and posting, like every run).

Fail fast on the MCP; don't drain the pipeline. wait_for_settle returns on the first red node with {failed[], errored[]} — read the red node's log (the log resource, or .ci/<sha7>/<platform>/<recipe>.log) and start the fix → fmt → commit → retry loop immediately. Waiting IS wait_for_settle re-invoked: an unsettled return at timeout means call it again — never park the wait on a background shell watcher over .ci/<sha7>/runs/ or a gh pr checks poll. A hand-guessed ledger predicate hangs silently, and a watcher that only detects settle forfeits first-red. errored (vs failed) means infrastructure death — node_rerun it rather than hunting a test bug.

pu misbehaves → log it on juspay/kolu#1204 via .apm/skills/ci/pu/diagnose.sh <stage> <host> (best-effort, never blocks the run). Capture the stage's stderr: pu create "$host" 2> >(tee /tmp/pu-$host.err >&2).

After a green two-platform settle, post e2e metrics to the PR. Source of truth: the run ledger .ci/<sha7>/runs/<seq>.json for each ci::e2e@<platform> node's recipe-wall durationMs and host (never Cucumber's internal timer), and the LAST ^e2e: workers= line in .ci/<sha7>/<platform>/ci::e2e.log for resolved parallelism. Maintain one comment keyed by the <!-- kolu-ci-e2e-metrics --> marker (edit if present, create if absent) with the run identity <sha7>#<seq> and a table of platform · host · workers · cores · cap · e2e duration. Fail loud rather than comment if any ingredient is missing. Post only after the full run settles green, before reporting the gate.

The green-gate: every required status check green on the PR's current HEAD. Source the required list from just ci::protect --dry-run with both explicit --platform flags — without them odu derives platforms from the machine-local hosts.json and can emit a single-platform subset, a false green. Verify with gh pr checks (a green from a retry counts).

Code-scanning alerts block merge too, and gh pr checks doesn't show them. Query by PR number, never by branch ref — code scanning here is GitHub's default setup, which analyses only the default branch and refs/pull/<n>/*, so a ref=refs/heads/<branch> query answers "no alerts" about a ref nobody scanned (measured on #2017: branch ref → 0, pr=2017 → an open HIGH):

gh api "repos/{owner}/{repo}/code-scanning/alerts?state=open&pr=<n>" \
  --jq '.[] | "\(.rule.security_severity_level) \(.rule.id) \(.most_recent_instance.location.path):\(.most_recent_instance.location.start_line)"'

Fix every alert on code this PR introduced; name (don't silently ignore) any pre-existing alert on untouched code.

レビュー

まだレビューはありません。使ってみた感想をお寄せください。

同じリポジトリのスキル

概要と使いどころ

blog-post

無料

Write a kolu blog post grounded in the real build history — mine the Claude Code session logs behind a feature for the actual story (for large efforts, fan out over the transcripts with an ultracode workflow), draft it in the author's voice, and wire it into the Astro site. Use when asked to write a blog post or engineering essay about something that was built, especially one that should read as a narrative of what actually happened rather than invented marketing copy.

日本語の概要は準備中です。原文の説明を表示しています。

juspay/kolu812026年10月12日 更新

Launch the kolu dev server on two RANDOM free ports so it never collides with the running production `kolu.service`, remember the ports for the rest of the session, and tear down only the dev instance. Load before running the app locally — for evidence capture, driving a live kolu with the chrome-devtools MCP, or any `just dev` you'd otherwise run by hand. Triggers on "run kolu locally", "launch the dev server", "boot kolu", "drive a live kolu", "start the app to screenshot it", or before pointing chrome-devtools at a local kolu.

日本語の概要は準備中です。原文の説明を表示しています。

juspay/kolu812026年10月12日 更新

diataxis

無料

Classify, write, and audit documentation per Diátaxis (diataxis.fr) — the four-quadrant method (tutorials · how-to guides · reference · explanation). Encodes the compass as a decision procedure, each quadrant's contract as hard rules, and an executable mixed-mode audit. Project-agnostic; the per-repo doc-location mapping lives in a repo rule of the project's own (kolu: `.apm/instructions/diataxis.instructions.md`). Use when writing any user-facing doc, structuring a docs site, or auditing existing docs for mixed modes.

日本語の概要は準備中です。原文の説明を表示しています。

juspay/kolu812026年10月12日 更新

evidence

無料

Produce visual PR evidence — a screenshot or video — whenever a change has on-screen impact. Tests are never a substitute; a change can be backend by cause and visible by effect. Capture via the project's e2e harness on a pu box, or by driving a live kolu with the chrome-devtools MCP; host on a GitHub release and post a `## Evidence` comment. Triggers on "post evidence", "screenshot the change", "record a video of this", "show it working", "prove it", or finishing any change whose effect is visible on screen.

日本語の概要は準備中です。原文の説明を表示しています。

juspay/kolu812026年10月12日 更新

Create distinctive, production-grade frontend interfaces with high design quality. Use this skill when the user asks to build web components, pages, artifacts, posters, or applications (examples include websites, landing pages, dashboards, React components, HTML/CSS layouts, or when styling/beautifying any web UI). Generates creative, polished code and UI design that avoids generic AI aesthetics.

日本語の概要は準備中です。原文の説明を表示しています。

juspay/kolu812026年10月12日 更新

Audit an implementation against its plan with a hostile peer agent, debate findings to consensus, and drive fix waves until the auditor runs dry. Use when a done-claim needs verification the implementer cannot game ("hostile review", "adversarial audit", "is this PR faithful", "find the escape hatches") — the loop that beats the laziness bias with its own game theory.

日本語の概要は準備中です。原文の説明を表示しています。

juspay/kolu812026年10月12日 更新

juspay のスキルをすべて見る

このスキルの問題を報告する