Validate selectors before installation
Use
when:
an
agent,
CI
job,
or
script
installs
selected
skills
through
Vercel’s
skills
CLI.
In
version
1.5.23,
--skill=grill-me
is
silently
discarded;
with
non-interactive
selection,
the
missing
filter
can
install
every
discovered
skill.
An
ignored
--agent=claude-code
can
also
broaden
destination
agents.
Action:
for
already-approved
installs,
replace
equals-form
selectors
with
separate
arguments:
--skill
grill-with-docs
--agent
claude-code.
Pin
the
reviewed
CLI
version;
do
not
treat
@latest
as
a
reproducibility
pin.
Before
calling
the
installer,
make
your
launcher
reject
unknown
options,
empty
selectors,
and
unapproved
wildcards.
Construct
an
argument
array
from
explicit
approved
skill
and
destination
lists;
never
interpret
a
lost
filter
as
bulk
consent.
Stage
under
an
isolated
home
and
workspace
before
promoting
anything
into
a
live
profile.
Acceptance
check:
use
an
owned
fixture
repository
containing
independent
skills
alpha
and
beta.
The
space-form
request
for
alpha
must
materialize
only
that
skill
at
approved
destinations.
Through
your
launcher,
try
--skill=alpha,
--skils,
an
empty
selector,
and
--agent=claude-code:
each
must
either
normalize
unambiguously
to
the
approved
request
or
fail
before
installer
dispatch.
Compare
files,
symlinks,
and
lock
entries
against
the
approved
manifest;
unexpected
skills
or
cross-agent
writes
fail
acceptance,
even
with
exit
code
zero.
Evidence:
September
2’s
Pocock-repository
report
includes
the
install
transcript
and
documentation
diff.
An
independent
August
23
report
names
1.5.23,
sandbox
reproductions,
and
cross-agent
effects.
The
inspected
tagged
parseAddOptions
drops
unknown
dash-prefixed
tokens;
runAdd
selects
all
skills
when
the
filter
is
absent
and
yes
is
enabled.
The
proposed
repair
contains
inspectable
equals-form
parser
tests.
Caveat:
PR
#2086
remains
open
in
the
retrieved
record;
its
test
claims
are
not
a
shipped
fix.
Supporting
equals
syntax
alone
does
not
prove
unknown-option
rejection.
Shared
agent
directories
can
expose
staged
skills
beyond
one
named
client,
so
inspect
actual
paths.
Exact
selection
proves
scope,
not
skill
safety
or
dependency
completeness.
No
installer,
skill,
or
runtime
canary
was
executed
for
this
issue.