What skills do
A skill is a self-contained expertise module. It defines:- When to activate — patterns, keywords, and regex that match incoming messages
- What to inject — a markdown body with instructions, examples, and domain knowledge
- What prerequisites to declare — binaries, environment variables, and configuration needed
- How much context to use — a token budget cap per activation
Activation pipeline
Skills pass through four stages before injection:1
Gate
Skills with
auto_activate = false are excluded before scoring. Skills with auto_activate = true (the default) proceed to scoring. Explicit $name and /name mentions bypass this gate entirely — they activate regardless of the auto_activate flag.2
Score
Each skill is scored against the current message using a deterministic algorithm: keyword matches, tag overlaps, and regex pattern matches. Higher scores indicate stronger relevance.Scoring is fully deterministic — no LLM involved. A skill must declare its activation criteria in the frontmatter so the scorer knows what to match.Set
regex_activation_enabled = false under [skills] in your config to disable regex pattern auto-activation. Keyword/tag activation and explicit skill mentions, such as $my-skill or /my-skill, still inject skills.3
Budget
Skills are sorted by score descending. Starting from the highest-scoring skill, each is selected until the total token budget is exhausted. Lower-scoring skills that don’t fit are dropped for this turn.
4
Attenuate
Trust-based restrictions are applied. Installed skills (from IronHub) are excluded from model-selected activation — the agent cannot load them via
skill_activate. Skills in trusted directories retain full activation access. See Trust Levels below.Trust levels
Skill directories
IronClaw discovers skills from three locations, checked in order:
Skills in trusted directories are loaded as-is. Skills in
installed_skills/ follow the same activation rules as the Trust levels table above.
Each skill lives in its own subdirectory named after the skill: