Submission
A publisher submits a Skill through a signed API call — never a pull request, never a file dropped into a shared folder.
Independent publishers write Skills for other business applications beyond what ships by default. Each one is reviewed and cryptographically signed before it ever reaches your machine — never a blind install.
The same three steps, every time — this order is what makes the signature at the end mean something.
A publisher submits a Skill through a signed API call — never a pull request, never a file dropped into a shared folder.
A person reviews what the Skill actually does before the signing daemon issues a cryptographic signature. Every decision — and every refusal — is written to an immutable log.
Your own installation checks that signature before running a single line. An unsigned or altered Skill never executes, no matter where it came from.
Loading…
The Skill format itself — and anything Mandatorium Studio generates — carries no license restriction of its own. Write to us and we'll review yours for a place in the Guild.
Write to us