Skip to main content
skillsSource-backedReview first Safety Privacy

Claude Code Plugin Marketplace Authoring Capability Pack Skill

Expert plugin marketplace authoring capability pack applying documented marketplace.json catalogs, /plugin marketplace add flows, private repo distribution, and supply-chain review from official plugin marketplace documentation.

HarnessClaude CodeCodexWindsurfGeminiCursorCLI
Level:expertType:capability-packVerified:validated
Review first review before installing

Open the source and read safety notes before installing.

Safety notes

  • Autonomous runs can execute tools without mid-run user input—scope paths and connectors first.
  • Do not enable destructive automation without explicit approval gates.
  • Review outputs as draft until a human validates evidence.

Privacy notes

  • Run output may contain proprietary code and credentials.
  • Summaries for external channels require redaction.

Prerequisites

  • Claude Code version and plan eligibility per official documentation.
  • Team policy for autonomous or shared automation workflows.
  • Staging environment for safe validation.
  • Human owner for production rollout approval.

Schema details

Install type
package
Reading time
9 min
Difficulty score
74
Troubleshooting
Yes
Breaking changes
No
Source repository stats
Scope
Source repo
Skill and platform metadata
Skill type
capability-pack
Skill level
expert
Verification
validated
Verified at
2026-06-16
Retrieval sources
https://code.claude.com/docs/en/plugin-marketplaceshttps://code.claude.com/docs/en/pluginshttps://code.claude.com/docs/en/settingshttps://code.claude.com/docs/en/skillshttps://github.com/anthropics/claude-codehttps://developers.google.com/search/docs/fundamentals/creating-helpful-content
Tested platforms
Claude CodeClaudeCursorGeneric AGENTS
PlatformSupportInstall path
claude-codeNative.claude/skills/<skill-name>/SKILL.md
codexNative.agents/skills/<skill-name>/SKILL.md
windsurfNative.windsurf/skills/<skill-name>/SKILL.md
geminiNative.gemini/skills/<skill-name>/SKILL.md or .agents/skills/<skill-name>/SKILL.md
cursorAdapter.cursor/rules/<skill-name>.mdc
cliManualAGENTS.md or tool-specific context file
Full copyable content
# Trigger
"Apply the claude code plugin marketplace authoring capability pack capability pack."

# Required output
1) Scope and configuration checklist
2) Risk and policy findings
3) Review matrix actions
4) Verification and rollback plan
5) Privacy-safe summary

About this resource

Knowledge Freshness

Grounded in official documentation verified on 2026-06-16. Behavior can change with releases; prefer live docs.

Retrieval Sources

Source Verification Notes

Verified on 2026-06-16:

  • Official plugin marketplace docs describe marketplace.json catalogs hosted on git repositories.
  • Users add marketplaces with /plugin marketplace add and install with /plugin install.
  • Private repositories can host internal-only marketplaces per documentation.
  • Plugins may bundle hooks, MCP servers, and binaries that run with user privileges.
  • Marketplace updates refresh via /plugin marketplace update.

Scope Note

Community reusable workflow skill applying documented steps—not an official Anthropic product. Applies documented marketplace authoring steps—not a separate Anthropic marketplace product.

Core Workflow

  1. Inventory plugins and document bundled hooks, MCP, and binaries.
  2. Author marketplace.json with version pins and source locations.
  3. Host catalog in git; test add/install/update on staging machine.
  4. Review each plugin for supply-chain risk before publishing.
  5. Document rollback to remove marketplace from team configs.

Capability Scope

  • Configuration and eligibility checklist.
  • Risk and policy review.
  • Staging verification steps.
  • Rollback planning.
  • Privacy-safe stakeholder summary.

Compatibility

Native

  • Claude Code: use as an Agent Skill during rollout planning.

Manual Adaptation

  • Generic AGENTS: apply checklist against public documentation.

Required Inputs

  • Target repository or organization context.
  • Current settings and policy constraints.
  • Stakeholders for security review when applicable.

Production Rules

  • Require human approval before production-impacting automation.
  • Redact secrets from skill outputs and public tickets.
  • Prefer official documentation over forum assumptions.
  • Document rollback before enabling scheduled or autonomous runs.

Review Matrix

Signal Action
Missing repro Block autonomous run
Broad tool scope Narrow allowlists
Draft findings Label unverified until human review
Policy drift Align to managed settings

Output Contract

  1. Scope and configuration summary.
  2. Findings with severity.
  3. Review matrix actions.
  4. Verification and rollback plan.
  5. Privacy-safe summary.

Troubleshooting

Issue: Feature unavailable on your plan Fix: Confirm /status and official doc eligibility requirements.

Issue: Run stalls on permissions Fix: Pre-approve read tools in staging; narrow path scope.

Duplicate Check

Complements building-a-claude-code-plugin-marketplace guide; no skills capability pack with review matrix yet.

Editorial Disclosure

Independent entry by kiannidev from public documentation. No paid placement or affiliate links.

Source citations

Add this badge to your README

Show that Claude Code Plugin Marketplace Authoring Capability Pack Skill is listed on HeyClaude. Paste this Markdown into your README — it renders the badge and links back to this page.

Listed on HeyClaude
[![Listed on HeyClaude](https://heyclau.de/badge/skills/claude-code-plugin-marketplace-authoring-capability-pack.svg)](https://heyclau.de/entry/skills/claude-code-plugin-marketplace-authoring-capability-pack)

How it compares

Claude Code Plugin Marketplace Authoring Capability Pack Skill side by side with 3 alternatives on trust, install, platform support, and disclosed safety notes — all from reviewed registry metadata.

FieldClaude Code Plugin Marketplace Authoring Capability Pack Skill

Expert plugin marketplace authoring capability pack applying documented marketplace.json catalogs, /plugin marketplace add flows, private repo distribution, and supply-chain review from official plugin marketplace documentation.

Open dossier
Claude Code Deep Links Runbook Capability Pack Skill

Expert Claude Code deep links runbook capability pack for building safe claude-cli:// URLs, embedding them in incident runbooks, and validating cwd, repo, and prompt parameters before users press Enter.

Open dossier
Claude Code Sandboxed Bash Policy Capability Pack Skill

Expert Claude Code sandboxed bash policy capability pack applying documented /sandbox enablement, filesystem and network boundaries, autoAllowBashIfSandboxed review, and fail-closed settings for autonomous shell workflows.

Open dossier
Claude Code Terminal Ergonomics Capability Pack Skill

Expert Claude Code terminal ergonomics capability pack for auditing multiline input, Option/Meta shortcuts, tmux passthrough, notifications, fullscreen rendering, themes, status lines, Vim mode, and custom keybindings before a user blames Claude for terminal behavior.

Open dossier
Trust
Install riskReview firstReview firstReview firstReview first
Notes Safety Privacy Safety Privacy Safety Privacy Safety Privacy
Categoryskillsskillsskillsskills
Sourcesource-backedsource-backedsource-backedsource-backed
AuthorkiannidevkiannidevkiannidevYB0y
Added2026-06-162026-06-132026-06-162026-06-10
Platforms
Claude CodeCodexWindsurfGeminiCursorCLI
Claude CodeCodexWindsurfGeminiCursorCLI
Claude CodeCodexWindsurfGeminiCursorCLI
Claude CodeCodexWindsurfGeminiCursorCLI
Source repo
Safety notesAutonomous runs can execute tools without mid-run user input—scope paths and connectors first. Do not enable destructive automation without explicit approval gates. Review outputs as draft until a human validates evidence.Deep links pre-fill prompts but never auto-send; users must press Enter after reviewing the external-link warning. Untrusted pages can craft malicious prompts; treat every deep link like untrusted input until a human reviews it. Prompts over 1,000 characters show an extended warning; require scroll review before sending long links. Network and UNC paths are rejected for cwd; use absolute local paths or repo slugs instead. If both cwd and repo are passed, cwd wins even when the path does not exist; validate parameters deliberately. Organizations can disable handler registration with disableDeepLinkRegistration in settings or managed policy.Sandboxing reduces blast radius but does not replace human review of diffs. autoAllowBashIfSandboxed auto-approves some sandboxed commands—pair with deny rules. Missing dependencies can disable sandbox silently unless fail-closed settings apply. Network allowlists still permit egress to listed domains—document allowed hosts.This skill recommends terminal and Claude Code configuration changes; it must not edit dotfiles, keybindings, hooks, themes, or tmux settings without showing the proposed diff first. `/terminal-setup` writes terminal or editor keybindings and may adjust integrated-terminal settings; run it in the host terminal and record what changed before relying on it. tmux passthrough allows escape sequences to reach the outer terminal; enable it deliberately, especially on shared, remote, or security-sensitive hosts. Notification hooks can execute local commands when Claude needs attention; keep them simple, review command paths, and avoid hooks that send prompts or logs to third-party services. Fullscreen rendering, theme files, status lines, and keybinding changes should be treated as reversible local UI preferences, not fixes for model quality or project bugs.
Privacy notesRun output may contain proprietary code and credentials. Summaries for external channels require redaction.Deep link URLs embed prompt text in query parameters, which may expose incident details, customer names, or internal service names in browser history, chat logs, or ticketing systems. repo resolution uses the most recently used local clone path, which can reveal directory layout on shared screens via the welcome header. Runbooks pasted into GitHub-rendered Markdown lose clickable claude-cli:// links; code-block copies still expose full URLs to readers. Public runbooks should use redacted example prompts and generic repo slugs unless the audience is internal-only.Sandbox logs and permission prompts may capture command text and paths. Allowed write paths may include files with secrets—keep credentials out of sandbox scope. Policy summaries for external auditors should omit internal hostnames when possible.Terminal settings, tmux files, keybinding files, status line commands, and hook snippets can expose usernames, hostnames, project paths, shell aliases, secrets in environment commands, and internal repository names. Notification commands and status line scripts may reveal task names, working directories, git branches, model names, costs, or local operational context. Remote terminal and SSH notification behavior can surface session activity on a local desktop; confirm the user is comfortable with that visibility. Public PR or issue notes should summarize symptoms and redacted settings, not paste complete dotfiles, shell history, terminal transcripts, or private hook scripts.
Prerequisites
  • Claude Code version and plan eligibility per official documentation.
  • Team policy for autonomous or shared automation workflows.
  • Staging environment for safe validation.
  • Human owner for production rollout approval.
  • Claude Code v2.1.91 or later on the machines that will click or open the link.
  • At least one prior interactive Claude Code session on each target machine so the claude-cli:// handler registers.
  • For repo links, a local clone where Claude Code has been run at least once so the owner/name slug resolves.
  • Permission to review runbook text, alert templates, and the decoded prompt before users press Enter.
  • Claude Code on macOS, Linux, or WSL with sandbox dependencies installable.
  • Permission to edit project or managed settings.json sandbox blocks.
  • Inventory of bash commands agents run in CI and local workflows.
  • Security stakeholder for production repository policy sign-off.
  • Claude Code installed and runnable in the terminal, editor terminal, SSH session, or tmux/screen environment being reviewed.
  • The user's operating system, terminal emulator, shell, Claude Code version, and whether Claude Code is running locally, remotely, or inside tmux.
  • Permission to inspect redacted terminal settings, `~/.claude/settings.json`, `~/.claude/keybindings.json`, `~/.tmux.conf`, and notification hook snippets when relevant.
  • A concrete ergonomics symptom, such as Shift+Enter submitting, missing alerts, scrollback jumping, unreadable colors, Vim mode confusion, or shortcut conflicts.
Install
Config
Citations
ClaimUnclaimedUnclaimedUnclaimedUnclaimed

Signals

Loading live community signals…

More like this, weekly

A short, calm digest of reviewed Claude resources. Unsubscribe any time.