Know which AI skills already exist.
Bring skills from connected repositories and supported AI platforms into one inventory. See the owner, source, version history, and review status in one place.
AI SKILL GOVERNANCE
See which AI skills your teams have created, who owns them, which versions are approved, and where they are available.
Commonset helps organizations review, approve, version, distribute, and reconcile reusable AI skills without locking governance to one provider. For a step-by-step operating model, see how to govern AI skills across teams.
COMMONSET / ORGANIZATION OVERVIEW
Open reviewsDecide what is ready to share.
Drifted implementationsCheck changes against approved versions.
AI SKILLS SPREAD FASTER THAN GOVERNANCE
Skills get copied through repositories, AI platforms, docs, and individual accounts. Without a shared governance layer, teams cannot easily tell who owns a skill, which version was reviewed, or which copy they should trust.
“The skills are a mess.”
“People are sharing skills through repos, docs, and drives — and nobody knows where to go or what they should be doing.”
“I can’t spend my life modifying the skill repo.”
“Even just knowing what people have created, who owns it, and where versions differ seems useful.”
Anonymous excerpts from early product interviews, lightly edited for clarity. Not customer endorsements.
AI SKILL MANAGEMENT ACROSS TEAMS
Start with an inventory of the skills your teams already have. Add ownership and provenance, review exact versions, approve what the organization trusts, and make those versions available through supported AI platforms and repositories.
Bring skills from connected repositories and supported AI platforms into one inventory. See the owner, source, version history, and review status in one place.
Give each capability an owner. Review its content and security findings, approve a specific version, and define who can use it through Commonset.
Make approved work discoverable and available through Commonset MCP and supported integrations. Teams can build on a shared capability instead of starting from scratch.
Follow recorded views, downloads, publishing, and MCP retrievals. Use those signals alongside team feedback to decide what to improve, share more widely, or retire.
GOVERNANCE WITHOUT GRIDLOCK
A short path from local experimentation to broader, governed use.
KEEP APPROVED AI SKILLS ALIGNED
Commonset connects ownership, immutable version history, review, access, provider distribution, and drift. When a connected AI skill changes outside the approved flow, compare the exact implementation with the approved baseline and reconcile deliberately.
Distribute an approved Commonset version through a supported integration and record the exact platform version it created.
Sync the connected platform without changing the approved Commonset capability.
If the observed platform version no longer matches the managed baseline, Commonset marks it Drifted and alerts organization administrators once.
Review the approved Commonset artifact against the exact external source Commonset observed. The comparison is read-only.
Import the external change as a new Draft for review, or republish the approved Commonset version to keep the approved baseline authoritative.
@@ external change @@
+ <!-- Changed outside Commonset -->
Preserve platform version 8 as a new Draft. Approved v3 and its managed baseline stay unchanged until normal review and publication.
Publish the approved Commonset artifact through the existing platform controls, then verify the new platform version on the next sync.
Illustrative product flow. Detection, comparison, reconciliation, and resulting platform changes are explicit and auditable.
CURRENT INTEGRATION DEPTH
Use supported integrations with Claude, OpenAI, Google, and GitHub. Each platform has its own publishing and access controls; see exactly what Commonset supports below.
| Platform / integration | Discover + import | Publish | Verify + reconcile | Access model |
|---|---|---|---|---|
| Claude API SkillsConnected workspace Skills API | SupportedDiscover skills and metadata. Import source when the connected API makes it retrievable. | SupportedPublish approved Commonset versions to Claude skills. | SupportedTrack exact version identities, detect drift, and compare source when content is retrievable. | Workspace-scopedNo Commonset-style per-skill user or group access through this API. |
| OpenAI API SkillsConnected OpenAI API project | SupportedDiscover skills and download version-specific skill bundles into Commonset. | SupportedCreate skills or immutable new versions from approved Commonset versions. | SupportedDetect exact-version drift, compare the observed source, and reconcile deliberately. | Project-scopedThe API does not expose Commonset-style per-skill user or group audiences. |
| Google Agent RegistryStandalone Skills in a configured project and location | SupportedDiscover Skills and import the current default SkillRevision archive. | SupportedCreate standalone Skills or immutable SkillRevisions; long-running publishes resume automatically. | SupportedCompare the current default revision with the managed revision and exact retrieved source. | Platform policyGoogle policy bindings govern platform-side availability. |
| GitHub / Copilot sourcesConfigured repository sources | SupportedDiscover supported packages and import source as Commonset drafts with repository provenance. | Supported via PROpen a pull request for approved capabilities linked to a native SKILL.md package. | SupportedTrack remote content identity and source commit against the managed baseline and surface drift. | Repository / org policyGitHub visibility and Copilot organization or enterprise settings govern availability. |
MAKE TRUST VISIBLE
See where a capability came from, what it can do, and which version passed review. Give teams a clear basis for choosing what to use.
Trace the source, parent version, actor, and immutable content digest.
Verify stored artifact bytes still match the approved registry record.
Surface network, execution, credential, persistence, and supply-chain capabilities for review.
Prevent blocked or stale-analysis versions from being approved, downloaded, or published.
Artifact integrityStored bytes verified
PassedProvenance bindingDigest matches recorded origin
PassedOutbound networkExternal service access declared
ReviewSecret scanNo embedded credentials found
PassedENCRYPTED BY DESIGN
Commonset encrypts capability files and selected sensitive metadata at the application layer using organization-specific keys. Integration credentials use a separate credential-encryption path.
Read our security approachVersioned per-organization data keys protect capability files before bytes reach storage.
Selected fields use authenticated encryption bound to organization, record, and field context.
External service secrets are decrypted only for authorized integration operations.
ORGANIZATIONAL OWNERSHIP
Models and vendors may change. The capability identity, approval history, access, provenance, and version record should endure.
COMMONSET
Start with what your teams have built. See it clearly, choose what to trust, and make it easier for the next team to reuse.