bundled-skills/kimi-delegate/SKILL.md
Delegate coding tasks to the Kimi Code CLI (`kimi`) only when the user explicitly requests it, while the orchestrator retains review and landing responsibility.
npx skillsauth add FrancoStino/opencode-skills-antigravity kimi-delegateInstall this skill globally with one command. Works with Claude Code, Cursor, and Windsurf.
3 of 9 scanners reported clean
Some scanners were skipped, did not run, or reported a non-clean status. Review each row below.
kimi implementer (Kimi Code) and then review its diff yourself.You are the orchestrator. Hand a bounded coding task to a separate implementer - the Kimi Code CLI - then review what it produced and land it yourself. You write the brief and own the judgment; Kimi does the typing in its own session; you verify and commit.
The loop needs only a shell command and file access, so any comparable orchestrator can drive it.
kimi CLI is not installed or authenticated.brew install kimi-code on macOS/Linux, or use the native installer from
the official Kimi Code documentation.kimi login (device-code flow, no TUI), or use /login in the TUI.kimi --version succeeds.--cd at, the target git repository.Kimi uses default_model from its config.toml when --model is omitted. To choose another model
alias, pass --model <alias from your kimi config>. Model aliases are user-defined config keys; use
one the human has configured rather than inventing one.
Run these five steps per task. Steps 1, 4, and 5 require judgment; 2 and 3 are mechanical.
Kimi sees only the text you send plus what it can inspect in the workspace - no chat history or shared context. Include the goal, current state, what to change, what to leave untouched, the project's actual gates, and a report contract. Tell Kimi not to commit. Keep one task per brief. See references/writing-the-brief.md.
Use the bundled helper. It wraps Kimi's headless prompt mode, captures the structured event stream,
and writes result.json. (<skill-dir> is the installed folder containing this SKILL.md.)
node "<skill-dir>/scripts/relay.mjs" --brief brief.txt --cd /path/to/repo
# choose a configured model alias: add --model <alias from your kimi config>
# resume the most recent session: add --resume-last (delta brief only)
# resume a specific session: add --session <id> (delta brief only)
# hard time limit (watchdog): add --timeout 2h (the 30m default suits short runs; implementation briefs routinely need 1-2h)
# see all options: node .../relay.mjs --help
The child process's cwd pins the workspace. Use repeatable --add-dir flags only for extra workspace
directories. The relay writes artifacts under the system temp dir by default and never commits. See
references/dispatch-and-poll.md.
The helper blocks until Kimi finishes. Run it with the orchestrator's background-command facility, or
background it in the shell and poll for result.json. A pre-run usage error exits 2 and writes no
result; a missing kimi exits 127 and writes status: "kimi_unavailable".
Trust process state and the working tree over a progress display. Completion means the process exited
and result.json exists. Kimi's full report is the finalMessage field in result.json (also printed
in full on stdout between the report markers).
Treat Kimi's final message and gate claims as claims:
touchedFiles.See references/review-and-land.md.
The implementer edits the working tree; the orchestrator commits. Commit only after the gates pass
and the diff holds. If rework is needed, send a delta brief with --resume-last or --session <id>,
then review again.
In headless -p mode, Kimi always runs in auto permission mode and never asks for approval. Kimi
rejects --prompt combined with --yolo, --auto, or --plan, so the relay passes none of them and
offers no --read-only or --full-access option. There is no CLI-enforced read-only mode: inspect
touchedFiles and the diff after every run. That diff, not a flag, is the guarantee of what changed.
Delegation is something the human opts into. Once they have ("run this queue", "proceed"), committing verified, gate-passing work is the agreed contract. Two limits remain: surface, don't absorb (report Kimi's design decisions, defensible-but-unasked turns, and non-blocking nitpicks) and stop for scope changes (if correct completion needs going beyond the brief, ask instead of expanding the mandate). See references/review-and-land.md.
result.json, polling, and failure recovery.scripts/relay.mjs not included; see upstream for full runtime. Requires kimi CLI, Node 18+, git.Adapted from amElnagdy/delegate-skills (MIT) — docs-only, runtime not bundled.
tools
Authorized security assessment of LLM applications and AI agents: prompt injection, tool abuse, RAG exposure, memory poisoning, system-prompt extraction, and agent-compliance engineering per OWASP LLM/ASI Top 10.
development
Builds two parameterized UI modes—流光溢彩白 (iridescent white) and 五彩斑斓黑 (colorful black)—with OKLCH, WebGL/CSS fallback, vision gating, screenshot QA, and total/per-color intensity reports. Use when a UI request names either mode or needs measured color parameters.
development
Front-end JavaScript reverse engineering: locate signature chains, analyze encrypted request parameters, sample runtime behavior, and reproduce logic locally in Node for evidence-based output.
development
Map, explain, and lint repository-scoped coding-agent instructions before changing code.