Apache Software Foundation
6 organization-specific tools, 16 skills, and the contributor growth and release management skill families.
Skills describe the work. Tools connect that work to your agent, services, and project conventions.
The workflows: what to check, prepare, and bring back for approval.
The interfaces skills need: 12 capability contracts, such as reading an issue or drafting mail, and 8 low-level capabilities.
The implementations for your tracker, model, or other service; 32 already implemented.
Skills ask for a capability rather than a named vendor. Tools implement each capability for a backend, so your project can change its tracker, mail, model or agent while keeping the workflow. Neutrality holds on six independent axes; a choice on one never constrains the others.
10 of 12 capability contracts (83%) have at least 2 backends or are neutral by construction. 78 of 78 skills are vendor-neutral, and 29 of 29 low-level tools work with any agent.
Any model, hosted or local.
Any agent that reads skills.
Any forge or issue tracker.
Mail, chat and forums.
Git, Subversion, Fossil and more.
Your project’s own rules.
| Contract | Backends | Coverage |
|---|---|---|
tracker | Atlassian, Fossil, GitHub, GitLab, SourceHut | 5 backends |
source-control | Fossil, Git, GitHub, GitLab, SourceHut, Subversion | 6 backends |
change-request | Atlassian, GitHub, GitLab, email | 4 backends |
mail-archive | ASF, Google, SourceHut | 3 backends |
chat | Slack | 1 backend; needs another |
mail-source | ASF, Google, Maildir | 3 backends |
mail-create | Google, Maildir | 2 backends |
cve-authority | CVE.org, Vulnogram | 2 backends |
report-relay | Any backend | Neutral by construction |
scan-format | Any backend | Neutral by construction |
project-metadata | ASF | Single organization (ASF) |
security-cross-ref | OSV.dev | 1 backend; needs another |
Most tool choices are the same for every project under one governing organization: every ASF project allocates CVEs the same way, reads the same mail archive and gates on PMC membership. An organization profile holds those shared defaults once: its governance vocabulary, the backend each capability uses, and its identity. A project names its organization and inherits the rest; its own configuration still wins, then the organization, then the framework default. The same skill runs unchanged for an ASF project and an independent one; the organization carries the difference.
6 organization-specific tools, 16 skills, and the contributor growth and release management skill families.
The baseline for projects without a formal organization: no extra vocabulary, framework defaults throughout.
Any foundation, company or collective can add its own: contribute it to the framework so its projects and others reuse it, keep it in the organization’s own repository, or keep one locally in a project’s overrides.
The capability and tool definitions below come from the framework. Implementation status and supported vendors are available in the tools directory.
tracker | Issue / board / label backend. |
source-control | Branch / commit / diff / push (VCS). |
change-request | Proposed-change review + merge gate (pull request / merge request / Gerrit change). |
mail-archive | Mailing-list / forum archive reads. |
chat | Project chat reads — public channels only (Slack, Discord). Read-only; never posts. |
mail-source | Inbound-mail ingestion (mbox / IMAP / …). |
mail-create | Outbound mail composition. Always produces an editable draft; sending is a separate human-approved step on that draft (draft mode = default and the only mode implemented today; send mode declared but unimplemented — no autonomous send). |
cve-authority | CVE allocation / record management / publication. |
report-relay | Inbound security-report relay detection. |
scan-format | Security-scanner report parsing. |
project-metadata | Governance rosters / people / releases. |
security-cross-ref | Vulnerability database / cross-reference alias lookup (OSV.dev / NVD). |
analytics | Read-only metrics / dashboards / renderers. |
sandbox | Agent isolation, egress control, settings audit. |
action-guard | Deterministic pre-tool-use command guards. |
privacy | PII redaction / approved-LLM gating. |
framework-dev | Build / validate / eval the framework itself. |
release | Release-artefact helpers an adopter's release process runs: reproducible-archive build, lint and comparison. |
setup | Adopter-side setup state an agent resolves at runtime rather than at development time: lock parsing, floor comparison, reconciliation fingerprints. |
review | A second model's read of a change before it is published: other models' CLIs run read-only, findings merged. |