install-apm-package Skill 🚀
Overview
This skill manages the safe deployment of APM primitives into their respective runtime environments. It enforces validation and target discovery to ensure byte-identical reproducibility across environments.
🚫 Non-Negotiables
- Source Integrity — Never edit files in
.agents/,.github/, or.claude/directly. Always edit the source in.apm/and re-install. - Lockfile Persistence —
apm.lock.yamlMUST be committed after any install change. - Validation First — Always run
validate_apm_package.pybefore executing the install. - Project Root Discipline — Run
apm installfrom the project root to ensure converged skills land in the authoritative.agents/folder. Running inside a package directory creates local, isolated artifacts.
Decision Tree
- Global Activation? -> Run
apm install ./path-to-packagefrom the project root. - Isolated Testing? -> Run
apm installfrom within the package directory. - Target Inferred? -> (e.g.,
.claude/exists) -> Runapm install. - Ambiguous Target? -> (No signals) ->
apm installwill exit with code 2; ask user for explicit--target(e.g.,agent-skills,claude,all). - Converged Skills? -> (Standard) -> Deploys to
.agents/skills/. Use--target agent-skillsfor explicit skill deployment. - Legacy Skills? -> (Per-client paths) -> Use
--legacy-skill-pathsflag. - Production/CI? -> Use
--frozenflag to ensure lockfile compliance.
Workflow
- Verify
apm.ymlexistence (locally or at root). - Execute
python scripts/validate_apm_package.py. - Select Execution Context:
- For project-wide use:
cd <repo-root> - For local test:
cd <package-dir>
- For project-wide use:
- Preview with
apm install [--target <slug>] --dry-run --verbose. - Run
apm install [./relative-path-to-pkg] [--target <slug>] [--legacy-skill-paths].- Use
--target all,agent-skillsto deploy to all harnesses AND converged skills.
- Use
- Verify
apm.lock.yamlupdate at the execution root.
Duplicate Visibility Guardrail
Before recommending all,agent-skills, check whether the user is doing:
- a routing smoke test, or
- an actual day-to-day runtime install.
For smoke tests, all,agent-skills is appropriate. For real use, prefer the smallest target list that matches the runtime. Installing both converged and target-specific skills may cause duplicate skill visibility in runtimes that scan multiple skill locations.
Anti-Patterns
- Manual Materialization: Moving files into
.github/agents/by hand instead of usingapm install. - Ignoring the Lockfile: Failing to commit
apm.lock.yamlafter adding a dependency. - Editing Artifacts: Modifying the generated runtime output instead of the
.apm/source.