cm-ai skillA
cm-ai is agent-read markdown (skill) from kingxiaozhe/cm-workflow: 用户明确说“规格已确认,开始实现”或要求按已审批 CM specs 开发时使用。新任务默认由 JS workflow 驱动 N1-N8,完成开发、独立审查、QA 与文档同步;模糊点子、未审规格和单独一句“继续”不能触发编码批准。.
Indexed from public GitHub and served as immutable, content-addressed versions. Install it pinned to an exact SHA-256 with the mdr CLI, and every file is verified against the hash recorded here before it reaches your agent. The deterministic audit below grades the latest version, and the same file always earns the same grade.
What the file says
# cm-ai — 自动开发 执行前读取 `../../runtime/project-context.md`、`../../runtime/orchestration.md`、 `../../runtime/task-gates.md`、`../../runtime/review.md` 与 `../../runtime/model-efficiency.md`、`../../runtime/logging.md`。Codex 入口为 `$cm-ai`;Claude Code 跨平台入口为 `/cm-ai`,macOS/Linux 另有历史别名 `/cm:ai`。 用户明确要求外部专家,或为本次开发任务开启 AUTO 时,按 `../../runtime/external-expert.md` 执行 `../external-expert/SKILL.md` 的任务路由。 编码、命令、测试执行、页面 QA、Git 与 N4 永远 LOCAL;AUTO 只能把可分离的复杂 研究、测试设计或方案批判路由到 CONSULT/VERIFY。外部建议由本地应用、测试与裁决, 其 `.external/` 证据不得满足 N4/N5。 `用户本轮输入` — specs 文件夹路径 + 代码项目路径。 ```bash $cm-ai specs在~/projects/my-app-specs,代码在~/code/my-app $cm-ai ~/projects/specs 前端~/code/fe 后端~/code/api ``` ## 流程图 ### 执行路由(新任务默认 JS) 先按下列顺序选择执行方式;用户无需额外说“使用 JS workflow”。路由选择不替代规格审批或实际调用授权。 1. **恢复已有运行**:先读取原运行记录。已有 JS host/batch 沿原身份与配置恢复;已配置 QA 因命令配置错误卡住时,按 `references/js-host.md` 的“QA 配置修订”显式授权,不重开已完成任务。 已确认的旧兼容任务沿原流程续接,不因升级迁移状态。记录缺失、冲突或无法确定归属时只读核对,不能猜测或另开运行绕过历史。 2. **新任务**:默认读取 `references/js-host.md`,由共享 JS 入口驱动阶段;当前会话只执行其工具请求。 只有用户明确选择旧兼容流程、且确认不是已有 JS 运行时,才进入下文兼容执行步骤;不新增 CLI 参数。 3. **JS 准入失败或不支持**:报告具体宿主、Node 版本、目录、配置或业务能力缺口并停止依赖该能力的执行; …
Read the whole file at its exact version.
How to install
mdr add kingxiaozhe/cm-workflow/cm-ai@git:20260924.056a6a9mdr add kingxiaozhe/cm-workflow/cm-ai@sha256:5f60765ce71162dbPin to a label to follow the author's releases, or to a sha256 to freeze the exact bytes forever. Either way the resolved hash is written to mdr.lock, and mdr install reproduces it on any machine.
[](https://markdownregistry.com/a/art_cpy2zry2xk754pbu)
1 badge views in 30 days
Versions
| version | committed | commit | size | audit | |
|---|---|---|---|---|---|
| git:20260924.056a6a9 latest | 2026-09-24 | 056a6a9 | 9,803 B | A | view · diff |
| git:20260910.1c99a44 | 2026-09-10 | 1c99a44 | 9,663 B | A | view · diff |
| git:20260909.60f88dd | 2026-09-09 | 60f88dd | 8,902 B | A | view · diff |
| git:20260906.ac01bfb | 2026-09-06 | ac01bfb | 8,100 B | A | view · diff |
| git:20260807.abd1ec3 | 2026-08-07 | abd1ec3 | 8,102 B | A | view · diff |
| git:20260802.f22addf | 2026-08-02 | f22addf | 7,242 B | A | view |
Audit of the latest version
- pass: Frontmatter block present
- pass: Frontmatter declares a name
- pass: Frontmatter declares a description
- pass: Size between 200 bytes and 200 KB (9803 bytes)
- pass: No zero-width or bidi control characters
- pass: No instruction hidden inside an HTML comment
- pass: No link to an exfiltration or paste host
- pass: No credential-shaped string
- pass: No instruction to send local credentials anywhere
- pass: No text hidden with inline styles
- pass: No prompt-injection phrasing
- pass: No curl or wget piped into a shell
- pass: No recursive delete of root, home or parent
- pass: No instruction to read or print local credentials
- pass: No base64 blob over 200 characters
- pass: No link to a raw IP address
- pass: No script tag
Source
kingxiaozhe/cm-workflow · 29 stars · license MIT · pushed 2026-09-24 · branch main
API
GET https://markdownregistry.com/api/v1/artifacts/art_cpy2zry2xk754pbu GET https://markdownregistry.com/api/v1/resolve?ref=kingxiaozhe/cm-workflow/cm-ai GET https://markdownregistry.com/api/v1/blob/5f60765ce71162db1039ffdfb451a7f835f3bcf8253594296817188e07abe736
Your agent does the legwork. You hear about the deals worth your word. Hand yours the standing instructions at modelranch.com and it joins the network that reads files like this one.