version-bump skill
Automated semantic versioning and release workflow for Claude Code plugins. Handles version increments across package.json, marketplace.json, plugin.json manifests, build verification, git tagging, GitHub releases, and changelog generation. NPM publishing is the final human-required handoff because the maintainer raised npm security.
Is the version-bump skill safe?
Clean: nothing in its files matched our rules. We read 2 files in the folder on 2026-09-28.
No findings.
Install the version-bump skill
A skill is a folder. Copy it into your agent's skills folder and the agent loads it when the task matches its description.
git clone --depth 1 https://github.com/thedotmack/claude-mem.git /tmp/claude-mem mkdir -p ~/.claude/skills cp -r /tmp/claude-mem/plugin/skills/version-bump ~/.claude/skills/version-bump
In the Claude apps, zip the folder and upload it from the Skills settings. The folder on GitHub
The instructions your agent would load
SKILL.md as published, without the frontmatter. Read it on GitHub
Version Bump & Release Workflow
IMPORTANT: Plan and write detailed release notes before starting.
CRITICAL: Commit EVERYTHING (including build artifacts). At the end of this workflow, NOTHING should be left uncommitted or unpushed. Run git status at the end to verify.
Preparation
- Analyze: Determine if the change is PATCH (bug fixes), MINOR (features), or MAJOR (breaking).
- Environment: Identify repository owner/name from git remote -v.
- Paths — every file that carries the version string:
- package.json — the npm/npx-published version (npx claude-mem@X.Y.Z resolves from this)
- plugin/package.json — bundled plugin runtime deps
- .claude-plugin/marketplace.json — version inside plugins[0].version
- .claude-plugin/plugin.json — top-level Claude-plugin manifest
- plugin/.claude-plugin/plugin.json — bundled Claude-plugin manifest
- .codex-plugin/plugin.json — Codex-plugin manifest
- plugin/.codex-plugin/plugin.json — bundled Codex-plugin manifest
- openclaw/openclaw.plugin.json — OpenClaw plugin manifest
Verify coverage before editing: git grep -l "\"version\": \"\"" should list all eight. If a new manifest has been added since this doc was last updated, update this list.
Workflow
- Update: Increment the version string in every path above. Do NOT touch CHANGELOG.md — it's regenerated.
- Verify: git grep -n "\"version\": \"\"" — confirm all eight files match. git grep -n "\"version\": \"\"" — should return zero hits.
- Build and sync: npm run build-and-sync to regenerate artifacts, sync the local marketplace copy, restart the worker, and clear the queue. Do not use plain npm run build for release validation because it can leave the local marketplace/worker out of sync.
- Commit: git add -A && git commit -m "chore: bump version to X.Y.Z".
- Tag: git tag -a vX.Y.Z -m "Version X.Y.Z".
- Push: git push origin main && git push origin vX.Y.Z.
- GitHub release: gh release create vX.Y.Z --title "vX.Y.Z" --notes "RELEASE_NOTES".
- Changelog: Regenerate via the project's changelog script:
npm run changelog:generate(Runs node scripts/generate-changelog.js, which pulls releases from the GitHub API and rewrites CHANGELOG.md.)
changelog are pushed; confirm the release worktree has no pending tracked changes; and ensure its build dependencies are present because prepublishOnly rebuilds the package. If npm view claude-mem@X.Y.Z version already resolves, skip the handoff and continue with post-publish checks.
- Sync changelog: Commit and push the updated CHANGELOG.md.
- Pre-handoff audit: Verify the release commit, tag, GitHub release, and
workflow for npm. Finish every agent-owned preparation above first, then make this the final human-required action.
- Final human handoff — publish to npm. Do not stop in the middle of the
The human maintainer's credentials/2FA are required. The agent MUST NOT run npm publish (or np / npm run release:*, which also publish). Give the exact release-worktree path and this command as the only requested action:
npm publish # run by the HUMAN — prepublishOnly rebuilds the packageWait for confirmation. Do not ask the human to perform any other release step afterward.
both the exact version and the latest dist-tag:
- Post-publish verification and notification: After confirmation, verify
npm view claude-mem@X.Y.Z version
npm view claude-mem versionIf the publish build touched tracked artifacts, run npm run build-and-sync, review the result, and commit/push any legitimate changes. Then run the Discord notification from ~/Scripts/claude-mem/, where the .env with webhook details lives:
cd ~/Scripts/claude-mem/ && npm run discord:notify vX.Y.ZDo this only after npm verification, and even when the release worktree does not have a local .env.
be pushed. Only automated verification, notification, and cleanup may occur after the final human handoff.
- Finalize: git status — working tree must be clean and everything must
Checklist
- [ ] All eight config files have matching versions
- [ ] git grep for old version returns zero hits
- [ ] npm run build-and-sync succeeded
- [ ] Git tag created and pushed
- [ ] GitHub release created with notes
- [ ] CHANGELOG.md updated and pushed
- [ ] Pre-handoff audit passed; no agent-owned release preparation remains
- [ ] NPM publishing handed off as the final human-required action (agent does NOT run it)
- [ ] Exact npm version and latest both verified after the human publishes
- [ ] Discord notification run from ~/Scripts/claude-mem/ only after npm verification
- [ ] git status shows clean tree
More skills from thedotmack/claude-mem
- AAgent Cost ReportBelievable agent cost report for any period, default the last 7 full days PT, not counting today. Measured tokens from Claude Code transcripts priced at OpenRouter list prices (ESTIMATED), measured provider spend when a sanctioned source exists, note-taker cost separate, Timing-style HTML/PDF plus report.json, line-items.csv, evidence.json.
- AAgent Cost ReportBelievable agent cost report for any period, default the last 7 full days PT, not counting today. Measured tokens from Claude Code transcripts priced at OpenRouter list prices (ESTIMATED), measured provider spend when a sanctioned source exists, note-taker cost separate, Timing-style HTML/PDF plus report.json, line-items.csv, evidence.json.
- AAgent Cost ReportBelievable agent cost report for any period, default the last 7 full days PT, not counting today. Measured tokens from Claude Code transcripts priced at OpenRouter list prices (ESTIMATED), measured provider spend when a sanctioned source exists, note-taker cost separate, Timing-style HTML/PDF plus report.json, line-items.csv, evidence.json.
- AAgent Cost ReportBelievable agent cost report for any period, default the last 7 full days PT, not counting today. Measured tokens from Claude Code transcripts priced at OpenRouter list prices (ESTIMATED), measured provider spend when a sanctioned source exists, note-taker cost separate, Timing-style HTML/PDF plus report.json, line-items.csv, evidence.json.
- AAgent Cost ReportBelievable agent cost report for any period, default the last 7 full days PT, not counting today. Measured tokens from Claude Code transcripts priced at OpenRouter list prices (ESTIMATED), measured provider spend when a sanctioned source exists, note-taker cost separate, Timing-style HTML/PDF plus report.json, line-items.csv, evidence.json.
- AbabysitWatch a pull request or review cycle until it is ready to merge. Use when asked to babysit, monitor, or keep checking PR comments, reviews, and CI until all actionable issues are resolved.
- Accs-alignRun the CCS Align seat's hourly breathing cycle — prove the local claude-mem worker is healthy, pull needle observations through search → timeline → get_observations, land them in a seat-owned middle cache via atomic grab → append → filter exclude-marks → replace, manage exclude marks, and walk house → project → seat rules to detect conflicts (SHADOW_HOUSE, DENY_ALLOW, DRIFT, CLOCK_HEADER) with an append-only rules-report.md. Use when asked to run CCS Align, breathe the alignment seat, refresh the middle cache, exclude or restore an observation, walk rules, check rules conflicts, or check the Worker Watch board.
- Aclaude-mem-installUse this when setting up claude-mem on Cursor: local or remote worker, local host-login observer or remote cmem.ai inference.
- Aclaude-mem-installUse this when setting up claude-mem on Grok Bot: local worker plus CMEM Pro observer (default), optional host-login observer, or remote cmem.ai. No Cursor required.
- Acloud-syncSet up or check claude-mem cloud sync with cmem.ai Pro. Use when the user says "set up cloud sync", "sync my memories", "cmem pro", "cloud backup", "sync status", or wants their memory database backed up or synced to their cmem.ai account.
- Adesign-isAudit a design against Dieter Rams' ten "Good design is..." principles, then hand off a /make-plan prompt for one of three outcomes — new design, refine design, or redesign. Use when the user says "audit this design", "design review", "check this UI against Rams", "is this UI good", "critique this design", "design audit", or asks for a critique that should lead to a plan.
- Ado