Graphite Skill — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited Graphite Skill (Plugin) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
A Claude Code plugin for managing Graphite stacked PRs. Debug CI failures across your stack, aggregate all PR review comments, resolve restack conflicts with guided assistance, and streamline your daily Graphite workflow.
4 workflows triggered via `/graphite`, `/gt`, or `/stack`:
| Workflow | What it does |
|---|---|
| Debug Stack | Checks CI status, review decisions, and blockers across all PRs in your stack. Presents a structured report with bottom-up fix recommendations. |
| Stack Comments | Aggregates inline code comments, review comments, and conversation from every PR in the stack. Filter by reviewer, file, or unresolved threads. |
| Resolve Conflicts | Guided conflict resolution during gt restack / gt sync. Auto-resolves safe patterns (imports, whitespace), asks about semantic conflicts. |
| General Workflow | Stack planning, creating/modifying/submitting branches, syncing, navigation, and reorganization. |
Bonus: SessionStart hook injects current stack context (branch, stack overview, restack status) into every new Claude Code session automatically.
gt)gh) - for PR comments, CI status, reviews.git/.graphite_repo_config exists)claude plugin add /path/to/graphite-skillOr from GitHub (once published):
claude plugin add <your-username>/graphite-skillCopy the skill files into your project's .claude/skills/ directory:
# From the repo root of your project
mkdir -p .claude/skills/graphite/references
cp /path/to/graphite-skill/skills/graphite/SKILL.md .claude/skills/graphite/
cp /path/to/graphite-skill/skills/graphite/references/*.md .claude/skills/graphite/references/To also get the SessionStart hook (optional):
mkdir -p .claude/hooks/scripts
cp /path/to/graphite-skill/hooks/hooks.json .claude/hooks/
cp /path/to/graphite-skill/hooks/scripts/graphite-context.sh .claude/hooks/scripts/
chmod +x .claude/hooks/scripts/graphite-context.shStart a Claude Code session in any Graphite-managed repo and use:
/graphite or /gt or /stack - opens the workflow router"debug my stack" - jumps directly to the Debug Stack workflow"get stack comments" - jumps to Stack Comments"resolve restack conflicts" - jumps to Resolve Conflicts"create a stack" - jumps to General Workflow (stack planning)> /gt debug my stack
Stack Status Report:
| # | Branch | PR | CI | Reviews | Blockers |
|---|---------------------|------|---------|------------------|-----------------|
| 1 | feat_add-api | #201 | passing | approved | none |
| 2 | feat_add-hooks | #202 | failing | pending | CI: lint errors |
| 3 | feat_add-components | #203 | pending | changes_requested| blocked by #202 |
Recommended fix order:
1. Fix lint errors in PR #202 (feat_add-hooks) - this unblocks #203
2. Address review feedback on PR #203 after CI passes> get stack comments
## PR #201: feat: add API endpoints (branch: feat_add-api)
### Inline Comments
- **router.ts:42** (@reviewer): "Add rate limiting to this endpoint"
### Review Comments
- @reviewer (APPROVED): "Looks good, minor suggestion above"
## PR #202: feat: add data hooks (branch: feat_add-hooks)
...graphite-skill/
.claude-plugin/
marketplace.json # Marketplace metadata (required for claude plugin add)
plugins/
graphite/
.claude-plugin/
plugin.json # Plugin metadata
.mcp.json # Graphite MCP server config
hooks/
hooks.json # SessionStart hook registration
scripts/
graphite-context.sh # Injects stack context at session start
skills/
graphite/
SKILL.md # Main skill (4 workflows, triggers)
references/
cheatsheet.md # gt command quick reference
conflict-resolution.md # Conflict resolution patternsThis plugin includes an .mcp.json that configures the Graphite MCP server (gt mcp). When connected, Claude Code can execute gt commands via mcp__graphite__run_gt_cmd and look up command syntax via mcp__graphite__learn_gt.
The skill falls back to Bash(gt ...) if the MCP server is unavailable.
The skill is designed to be generic across any Graphite-managed repository. It auto-detects:
gt trunkgh repo viewTo customize for your project, edit skills/graphite/SKILL.md and add project-specific patterns (e.g., recommended stack structures for your architecture, branch naming conventions).
Apache License 2.0 - see LICENSE.
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.