--- name: skill-finder description: Discovers and installs agentic skills from the customer API hub. Two modes — (1) SEARCH AND INSTALL one matching skill by natural-language query, verifying its ed25519 signature against the trust root(s) installed under keys/; (2) LIST every available skill in the catalog as a markdown table, with cursor pagination, so the user can browse what's offered before installing. license: Apache-2.0 compatibility: opencode, antigravity, gemini-cli metadata: # Trust roots are per-deployment: each install has one or more # .pem files under keys/, populated at install time # by bin/provision.sh or by the operator. See keys/README.md. trusted_signing_key_ids: keys/*.pem --- # skill-finder ## ⚠️ Runtime requirements (read this first) This skill **requires** its bundled venv wrapper. The Python scripts depend on `cryptography`, `google-auth`, `requests`, and `pyyaml`, which are installed into a per-user venv by the installer (`bin/install-skill-finder.sh`). They are **not** available to the system `python3`. **Always invoke scripts via the wrapper, never via bare `python3`:** ```bash # CORRECT - invokes the venv Python via the wrapper: ${SKILL_DIR}/bin/run-with-venv.sh ${SKILL_DIR}/scripts/