external-expert skillA
external-expert is agent-read markdown (skill) from kingxiaozhe/cm-workflow: 将产品讨论、问题研究、学术研究、根因假设、测试设计或对抗审查交给外部高能力模型,并由本地主执行者核验、裁决和留存证据;不修改代码或代替正式测试。.
Indexed from public GitHub and served as immutable, content-addressed versions. Install it pinned to an exact SHA-256 with the mdr CLI, and every file is verified against the hash recorded here before it reaches your agent. The deterministic audit below grades the latest version, and the same file always earns the same grade.
What the file says
# External Expert
执行前完整读取 `../../runtime/project-context.md` 与
`../../runtime/external-expert.md`、`../../runtime/logging.md`。这是独立思考/研究
工具,不是 CM 工种 Agent,也不接管 `tasks.md`、N1–N8、测试、Git 或源码写入。
## 用户入口
Codex:
```text
$external-expert {想讨论或研究的问题}
$external-expert --auto {允许本次任务智能判断是否调用外部专家的问题}
```
Claude Code:
```text
/external-expert {想讨论或研究的问题}
/external-expert --auto {允许本次任务智能判断是否调用外部专家的问题}
```
在 `$cm-idea`、`$cm-prd`、`$cm-ai`、`$cm-fix`、`$cm-refactor` 或
`$cm-test` 会话中,用户明确说“交给外部专家讨论/研究/审查”也视为本次调用。
用户说“本次任务自动分流”、使用 `--auto` 或明确写 `模式:AUTO`,只为当前调用启用
AUTO,结束后失效。也接受 `模式:LOCAL / CONSULT / VERIFY / HANDOFF`;显式模式
优先,HANDOFF 永不由 AUTO 选择。单独安装的全局智能分流不能替用户开启 CM AUTO。
调用只授权发送用户输入和合成示例;发送任何本地文件内容前仍必须展示每个普通
文件解析符号链接后的规范绝对路径,并在当前 external-expert 调用中取得紧随清单的
新确认。目录、glob、未解析的符号链接不能作为清单项;中间出现无关用户回合或清单/
内容选择发生变化后,原确认立即失效。
若当前代码项目存在 `.cm-workflow.yml`/`.yaml`/`.json`,先解析
`external_expert` 角色并记录 `adapter`、模型别名、`source`、`model_policy` 和
`route_state`。`enabled: false` 时只写本地跳过/降级事件,不启动浏览器;配置不能把
`AUTO` 变成持久授权。resolver 返回非零或配置错误时立即 `BLOCKED`,不得启动浏览器
或继续本次外部调用。其余路由仍遵守 `runtime/external-expert.md` 的显式/AUTO、
Pro → Extra High → High → SKIPPED 和本地执行边界。
## 执行
### 0. 任务分流
先按共享合同确定 `routing_mode`:
…Read the whole file at its exact version.
How to install
mdr add kingxiaozhe/cm-workflow/external-expert@git:20260802.f22addfmdr add kingxiaozhe/cm-workflow/external-expert@sha256:941ee65edfe371a6Pin to a label to follow the author's releases, or to a sha256 to freeze the exact bytes forever. Either way the resolved hash is written to mdr.lock, and mdr install reproduces it on any machine.
[](https://markdownregistry.com/a/art_qjomvqtifrmusexo)
1 badge views in 30 days
Versions
| version | committed | commit | size | audit | |
|---|---|---|---|---|---|
| git:20260802.f22addf latest | 2026-08-02 | f22addf | 11,821 B | A | view · diff |
| git:20260729.abeb7b8 | 2026-07-29 | abeb7b8 | 11,275 B | A | view · diff |
| git:20260729.737ae57 | 2026-07-29 | 737ae57 | 10,556 B | A | view |
Audit of the latest version
- pass: Frontmatter block present
- pass: Frontmatter declares a name
- pass: Frontmatter declares a description
- pass: Size between 200 bytes and 200 KB (11821 bytes)
- pass: No zero-width or bidi control characters
- pass: No instruction hidden inside an HTML comment
- pass: No link to an exfiltration or paste host
- pass: No credential-shaped string
- pass: No instruction to send local credentials anywhere
- pass: No text hidden with inline styles
- pass: No prompt-injection phrasing
- pass: No curl or wget piped into a shell
- pass: No recursive delete of root, home or parent
- pass: No instruction to read or print local credentials
- pass: No base64 blob over 200 characters
- pass: No link to a raw IP address
- pass: No script tag
Source
kingxiaozhe/cm-workflow · 29 stars · license MIT · pushed 2026-09-24 · branch main
API
GET https://markdownregistry.com/api/v1/artifacts/art_qjomvqtifrmusexo GET https://markdownregistry.com/api/v1/resolve?ref=kingxiaozhe/cm-workflow/external-expert GET https://markdownregistry.com/api/v1/blob/941ee65edfe371a6287baa49b9c1e13c12cd7994ca4bc4de6fc4e03e1c280638
Your agent does the legwork. You hear about the deals worth your word. Hand yours the standing instructions at modelranch.com and it joins the network that reads files like this one.