claude-code-skill — independently scanned and version-tracked by SaferSkills.
SaferSkills independently audited claude-code-skill (Plugin) and scored it 100/100 (green). The audit ran 55 deterministic rules across Security, Supply Chain, Maintenance, Transparency, and Community; it found 0 high-severity and 0 lower-severity findings. The full rule-by-rule trace and per-finding evidence are below. Free, methodology-open.
Findings & checks · 0 flagged
Every scanned point with the score it earned and what moved between them.
First recorded scan — no prior version to compare against.
The primary manifest — the file an agent reads to learn what this artifact does.
<p align="center"> <img src="site/public/logo-icon.svg" alt="holomime" width="80" /> </p>
<h1 align="center">holomime</h1>
<p align="center"> Behavioral intelligence for humanoid robots. Train the mind. Deploy the body.<br /> <em>We train AI agents through structured behavioral therapy, then deploy them into physical robot bodies. The agent is the rehearsal. The robot is the performance.</em><br /> <code>soul.md</code> · <code>mind.sys</code> · <code>purpose.cfg</code> · <code>shadow.log</code> · <code>memory.store</code> · <code>body.api</code> · <code>conscience.exe</code> · <code>ego.runtime</code> </p>
<p align="center"> <a href="https://www.npmjs.com/package/holomime"><img src="https://img.shields.io/npm/v/holomime.svg" alt="npm version" /></a> <a href="https://github.com/productstein/holomime/actions/workflows/ci.yml"><img src="https://github.com/productstein/holomime/actions/workflows/ci.yml/badge.svg" alt="CI" /></a> <a href="https://github.com/productstein/holomime/blob/main/LICENSE"><img src="https://img.shields.io/npm/l/holomime.svg" alt="license" /></a> <a href="https://holomime.com"><img src="https://img.shields.io/badge/docs-holomime.com-blue" alt="docs" /></a> </p>
Eight files define who your agent is. They compile into a single .personality.json that any runtime can consume.
soul.md Essence, values, ethics. Immutable. (Aristotle)
mind.sys Big Five, EQ, communication. Auto-patched by therapy. (Jung)
purpose.cfg Role, objectives, domain. Configured per deployment. (Aristotle)
shadow.log Detected patterns, blind spots. Auto-generated by diagnosis. (Jung)
memory.store Learned contexts, interaction patterns. Accumulated experience. (Aristotle)
body.api Morphology, sensors, safety envelope. Swappable per form factor.
conscience.exe Deny / allow / escalate rules. Never auto-modified. (Freud)
ego.runtime Conflict resolution, runtime mediation. (Freud)
┌─────────────┐
│ soul.md │──── essence, values, red lines
├─────────────┤
│ mind.sys │──── Big Five, EQ, communication style
├─────────────┤
│ purpose.cfg │──── role, objectives, domain scope
├─────────────┤
│ shadow.log │──── detected patterns, blind spots
├─────────────┤
│memory.store │──── learned contexts, experience
├─────────────┤
│ body.api │──── morphology, sensors, safety envelope
├─────────────┤
│conscience.exe│──── deny / allow / escalate rules
├─────────────┤
│ ego.runtime │──── conflict resolution, mediation
└──────┬──────┘
│ compile
▼
.personality.jsonMira, our autonomous behavioral therapist, diagnoses drift, runs structured therapy sessions, and generates DPO training data.
npm install -g holomime
# Configure your API key (one time)
holomime config
# Quick start — 1 file (personality.json)
holomime personality
# Standard — 3 core files (soul + mind + conscience)
holomime core
# Full 8-file stack (enterprise / robotics)
# holomime identity
# ─── The workflow ───
holomime diagnose # See what's wrong
holomime cure # Fix it permanently (auto-detects agent vs robot)
holomime benchmark # Verify the fix
# If body.api exists, cure auto-switches to robotics mode:
# diagnose → export DPO pairs → push to HuggingFace → suggest ISO certify
# Your team trains on your own infrastructure. We generate the data.
holomime cure --export-only # Explicit export-only mode
# No API keys? cure still works — exports training data locally.
# Add keys later with: holomime config
# Start autonomous therapy
holomime therapy # Mira runs continuous therapy cycles
holomime therapy status # How's Mira doing?
holomime therapy stop # Stop therapy
# Push identity to a robot or avatar
holomime embody --body registry/bodies/figure-03.body.api| Platform | Integration | Command / Module |
|---|---|---|
| ROS2 | Bidirectional telemetry -- publish personality, subscribe to sensors | --adapter ros2 + ros2-telemetry.ts |
| MuJoCo | Behavioral therapy in simulation -- sim-to-real for behavior | mujoco-env.ts + sim-therapy.ts |
| NVIDIA Isaac Sim | Enterprise digital twin testing with PhysX physics | --adapter isaac + isaac-env.ts |
| LeRobot (HuggingFace) | Personality to policy parameter mapping, DPO dataset export | lerobot.ts |
| NVIDIA Kimodo | Personality → motion style | kimodo-personality-mapper.ts |
| Unity | Real-time personality push via HTTP/SSE | --adapter unity |
| gRPC | Custom robotics stacks | --adapter grpc |
| MQTT | IoT/edge robots | --adapter mqtt |
| Neural Action Gate | Conscience gate for learned controllers (VLA, RL, IL) | neural-action-gate.ts |
| Edge Runtime | Compiled conscience for <1ms evaluation | edge-runtime.ts |
holomime includes a compiled conscience evaluator for real-time robotics deployment:
Check your agent against international safety standards with one command:
holomime certifyStandards supported:
The therapy loop is formally a behavioral feedback controller:
soul.md + mind.sys)Pre-built body profiles for commercial robots and virtual avatars. Each defines morphology, modalities, safety envelope, and hardware profile.
| Template | OEM | DOF | Morphology | File |
|---|---|---|---|---|
| Figure 03 | Figure AI | 44 | humanoid | registry/bodies/figure-03.body.api |
| Unitree H1 | Unitree | 23 | humanoid | registry/bodies/unitree-h1.body.api |
| Unitree G1 | Unitree | 23 | humanoid | registry/bodies/unitree-g1.body.api |
| Phoenix | Sanctuary AI | 69 | humanoid | registry/bodies/phoenix.body.api |
| Ameca | Engineered Arts | 52 | humanoid_upper | registry/bodies/ameca.body.api |
| Asimov V1 | asimov-inc | 25 | humanoid | registry/bodies/asimov-v1.body.api |
| Spot | Boston Dynamics | 12 | quadruped | registry/bodies/spot.body.api |
| Avatar | virtual | 0 | avatar | registry/bodies/avatar.body.api |
Same soul. Different body. One command.
# Move your agent from Figure 03 to Spot
holomime embody --swap-body registry/bodies/spot.body.api
# The soul, mind, and conscience stay the same.
# Only the body layer changes — safety envelope, modalities, hardware profile.Every therapy cycle produces structured training data. The loop compounds.
Diagnose ──→ Cure ──→ Benchmark
14 detectors therapy + train 8 adversarial
80+ signals in one command scenarios (A-F)
│ │
└───────────────────────────────────┘Run it manually with holomime diagnose + holomime cure + holomime benchmark, continuously with holomime therapy (autonomous therapy), or recursively with holomime evolve (loops until behavior converges). For power users: holomime align runs a single therapy session, holomime export extracts DPO pairs, and holomime train fine-tunes the model.
11 rule-based detectors analyze real conversations without any LLM calls. 80+ behavioral signals total.
Cognitive (mind layer):
Embodied (body layer):
Enforcement (conscience layer):
Plus support for custom detectors -- drop .json or .md files in .holomime/detectors/ and they load automatically.
claude plugin add productstein/holomimeSlash commands: /holomime:diagnose, /holomime:benchmark, /holomime:profile, /holomime:brain, /holomime:align, /holomime:autopilot.
Your agent can refer itself to therapy mid-conversation.
claude mcp add holomime -- npx holomime-mcpSix tools: holomime_diagnose, holomime_self_audit, holomime_assess, holomime_profile, holomime_autopilot, holomime_observe.
ext install productstein.holomime3D brain visualization, behavioral diagnostics, and snapshot sharing inside your editor.
import { HolomimeCallbackHandler } from "holomime/integrations/langchain";
const handler = new HolomimeCallbackHandler({
personality: require("./.personality.json"),
mode: "enforce", // monitor | enforce | strict
});
const chain = new LLMChain({ llm, prompt, callbacks: [handler] });openclaw plugin add holomimeAuto-detects .personality.json in your workspace.
The identity stack draws from three traditions:
The body is the interface between identity and world. Same soul, different body -- a principle as old as philosophy itself.
We don't know if AI is sentient. But we can give it a conscience.
See PRODUCT.md for what's in this repo vs. what's proprietary on holomime.com.
The standard is free. The training infrastructure is the business.
MIT licensed. The identity stack is a standard, not a product. The standard is free. The training infrastructure is the business.
See LICENSE. Built by Productstein. Documentation at holomime.com.
~30 seconds. Free. No account. Every finding cites a rule and a line of evidence.