Skip to content
Development
Skill

/account-rotation

Switch coding-agent accounts and verify runtime identity. Use when: the caller requests an account change; never rotate automatically to evade a quota.

From plugin
agentops
43534 skills5 agents1 hook
Install
$ npx -y skills add boshu2/agentops --skill account-rotation --agent claude-code

How it fires

How this skill gets triggered: by you, by Claude, or both.

  • Fires itselfAuto-invocation. Claude auto-loads it when your prompt matches the work.Auto-invocation is when the right skill fires by itself at the right moment, driven by a FLOW.md router and a hook, instead of you invoking it by name. It is the difference between a skill being installed and a skill actually getting used.Read the full definition →
  • You can call itInvoke it directly when you want it.
  • Slash command/account-rotation

Context preview

The summary Claude sees to decide when to auto-load this skill.

Switch coding-agent accounts and verify runtime identity. Use when: the caller requests an account change; never rotate automatically to evade a quota.

SKILL.md

account-rotation.SKILL.md
name: account-rotation
user-invocable: true
skill_api_version: 1
hexagonal_role: supporting
consumes: []
produces: []
context_rel: []
metadata:
  dependencies: []
  capabilities: [account_rotation]
  effects: [rotate_agent_account]
  canonical_status: canonical
  disposition: keep_optional_adapter
  tier: execution
description: 'Switch coding-agent accounts and verify runtime identity. Use when: the caller requests an account change; never rotate automatically to evade a quota.'
practices:
- pragmatic-programmer
output_contract: observed account identity and command status

Account rotation — credential adapter

Choose the credential tool from both host and agent family, perform only the explicit account switch, and report the identity observed by the matching runtime.

Verifying identity through the target runtime works because the runtime is the only party whose opinion matters: credential files can be swapped perfectly and still authenticate as the old account in an already-running process.

Named failure mode — **stale-process identity**: declaring the rotation done while every live session still holds the previous account's tokens in memory.

Anti-pattern: confirming a switch by diffing credential file bytes. Corrective: ask the matching runtime who it is now, and report whether a new process is required for the answer to hold.

Boundary

  • Perform only the account switch the caller explicitly authorized; rotation

mutates host credential state and is never implied by repository access.

  • The credential tool is caller- or operator-selected per host and agent family;

the names below are this operator's routes, not a universal prescription. On macOS with Claude credentials the route is `claude-acct` (Keychain-backed); file-backed Codex, Gemini, Linux, or WSL credentials use `caam`. Never use `caam` for macOS Claude account operations.

  • Verify account identity through the target runtime; token bytes are not account

identity.

  • If neither the selected credential tool nor a runtime identity probe is

available, report that absence as a disclosed fact and stop. Never fall back to diffing credential-file bytes to declare a switch done.

  • Existing processes retain credentials already loaded in memory. Rotation

affects a new process.

  • This skill does not restart work, resume a task, select a pane, move repository

state, or decide what happens after the switch.

Return the host, agent family, selected tool, requested account/profile, the identity observed before and after the switch, whether any live runtime still holds the previous account (a partial rotation), the command exit code, and whether a new process is required for the new identity to hold.

Read more
Ships withagentops

AgentOps is the operations layer for agentic engineering. It is a set of deterministic tools, optional skills and evidence contracts that make one coding-agent change independently judgeable: the context that wrote the code does not get to declare it done.

Get the whole plugin

Other skills on agentops.

cass
Skill

cass

Search agent session logs and cited episodes with CASS. Use when: past prompts, decisions or failures may answer a question; repeated text is not a proven…

@boshu2@boshu2View Skill
cc-hooks
Skill

cc-hooks

Configure Claude Code hooks and narrow enforcement guards. Use when: the caller requests hook installation, repair or policy changes; a hook is not required to…

@boshu2@boshu2View Skill