AI Dossier

Signed · Verifiable · Open source

Your agent skills, versioned and signed

A dossier is an agent skill with a version and a signature. Copying skill files between machines, teammates and customers works, until nobody knows which version they are running or who changed it. Dossier gives every skill a version and your Ed25519 signature, so everyone installs the same thing and can verify it came from you.

Quick start Browse 73 dossiers GitHub

Install with npm
npm install -g @ai-dossier/cli
Or a standalone binary, no Node.js
curl -fsSL https://raw.githubusercontent.com/imboard-ai/ai-dossier/main/install.sh | sh
Or add the MCP server to Claude Code
claude mcp add dossier --scope user -- npx @ai-dossier/mcp-server
$ ai-dossier verify hello.ds.md✓ Parsed: Hello World Dossier v1.1.0✓ Checksum VALID content has not been tampered with✓ Signature VERIFIED from trusted author  Risk Level: LOW   Recommendation: ALLOW $ ai-dossier run hello.ds.md --dry-run✓ Checksum and signature valid● DRY RUN MODE no execution  Static preview, not a safety guarantee.
Terminal: Abridged output of the real CLI on getting-started/hello.

Why dossiers

Trust is built into the file

Signed and verifiable

Every dossier carries a SHA-256 checksum and an Ed25519 signature in its header. ai-dossier verify checks both before an agent acts, and pins the version you reviewed.

checksum
sha256:2caae4c1…
signature
ed25519:tleSPJ4T…
key_id
imboard-ai

Dry-run risk preview

See what a dossier declares and what its code blocks would do before anything executes. A preview, not a safety guarantee.

risk: lowrisk: mediumrisk: high

A registry for agent skills

73 published dossiers

Search by category and risk level, and see signature details for each. Browse the registry

CLI, MCP and VS Code

Use it from the terminal, from Claude Code through the MCP server, or in the editor with diagnostics, completion and a dry-run preview for *.ds.md files.

Standalone binaries

No Node.js required. A checksum-verified download from GitHub releases for Linux and macOS.

From the registry

  • Hello World Dossier

    A worked example showing dossier anatomy and the create-sign-verify-publish workflow.

    risk: low signed

  • PR Review

    Review the current PR diff across one or more dimensions: security (OWASP), architecture (boundaries & design), code quality (DRY, type safety, con…

    risk: low signed

  • Markdown Security Scanner

    Scan markdown, dossier, and skill files for security threats including prompt injection, hidden instructions, data exfiltration, XSS, malicious URL…

    risk: low signed

  • Create New Dossier

    Guide an agent to create well-structured dossier markdown files that other agents will execute successfully

    risk: low signed

Browse all 73 dossiers

Workflow

Sign once, install anywhere

  1. Write and sign

    Author the skill in a .ds.md file, then sign it with your Ed25519 key.

    ai-dossier sign --method ed25519 my-skill.ds.md \
      --key my-key --key-id my-key
  2. Publish

    Push a new version to the registry (after ai-dossier login), or host the file anywhere.

    ai-dossier publish my-skill.ds.md
  3. Install anywhere

    On any server or laptop, install it as a skill, or run it and refresh from the registry. The signature and checksum are checked first.

    ai-dossier install-skill org/skills/my-skill
    ai-dossier run org/my-skill --pull

Copying files

  • No versions: copies drift apart
  • No author: nobody can tell who wrote it
  • Silent edits: changes go unnoticed

With dossier

  • Pinned versions everyone can install
  • Signed by your key
  • Tamper-evident checksum

Format

What a dossier looks like

---dossier
{
  "name": "hello",
  "title": "Hello World Dossier",
  "version": "1.1.0",
  "risk_level": "low",
  "requires_approval": false,
  "checksum": { "algorithm": "sha256", "hash": "2caae4c1…" },
  "signature": { "algorithm": "ed25519", "key_id": "imboard-ai", "signature": "tleSPJ4T…" }
}
---
# Hello World Dossier

The skill an AI agent follows, written in plain markdown.
The header above is what makes them verifiable.

Trimmed from the published getting-started/hello dossier.

How trust works

  • Trust is a local decision. A valid signature from a key you have not added is reported as untrusted, never auto-trusted.
  • Trusted keys live in ~/.dossier/trusted-keys.txt, managed with ai-dossier keys add, list, export and revoke. Revoking is local to that machine.
  • To let others verify your skills, sign with your own Ed25519 key (keys generate), send them the public key (keys export), and they run keys add. Extra registries, including self-hosted ones over HTTPS, are added with config --add-registry.
  • Verification proves integrity and origin. It does not prevent prompt injection or make a dossier safe to run. Read the security model.

Get started

Install

npm

npm install -g @ai-dossier/cli
ai-dossier --help

Needs Node 20+. Or try without installing: npx @ai-dossier/cli verify <file>.

Standalone binary

curl -fsSL https://raw.githubusercontent.com/imboard-ai/ai-dossier/main/install.sh | sh

No Node.js required. Checksum-verified download from GitHub releases (Linux, macOS; Windows via Git Bash).

VS Code extension

Diagnostics, completion and a dry-run preview for *.ds.md files.

Marketplace listing is pending. Until then install the .vsix from a vscode-v* release.

Claude Code (MCP)

claude mcp add dossier --scope user -- \
  npx @ai-dossier/mcp-server

MCP in 60 seconds

Integrations

Works with

  • Claude CodeInstall dossiers as skills with ai-dossier install-skill, or use the MCP server.
  • Claude Desktop and other MCP clientsAny client that can launch a stdio MCP server (Claude Desktop config is documented): npx @ai-dossier/mcp-server.
  • opencodeinstall-skill and sync-skills write opencode skill wrappers; run can target it.
  • VS CodeDiagnostics, completion and dry-run preview for *.ds.md (.vsix from GitHub releases).
  • GitHub ActionsVerify changed dossiers on every pull request with the workflow template.

Keep reading

Explore