Skip to content

Add DataMagic to Community Plugins - #345

Merged
kantorcodes merged 1 commit into
hashgraph-online:mainfrom
xypkent:add-datamagic
Sep 19, 2026
Merged

kantorcodes merged 1 commit into
hashgraph-online:mainfrom
xypkent:add-datamagic

Conversation

@xypkent

@xypkent xypkent commented Sep 18, 2026

Copy link
Copy Markdown
Contributor

Summary

  • Add DataMagic under Community Plugins → Development & Workflow
  • Alphabetical placement before de-anthropocentric-research-engine
  • Requested in HKUSTDial/DataMagic#4

Entry

  • DataMagic - A skill that teaches coding agents to plan and render narrated animated data videos from tabular data using DVSpec.

Verification

  • Repository is public and active: https://github.com/HKUSTDial/DataMagic
  • Includes Claude/Codex plugin packaging (skills/datamagic-video, .claude-plugin, .codex-plugin)
  • Follows CONTRIBUTING one-sentence format

Made with Cursor

Co-authored-by: Cursor <cursoragent@cursor.com>
@github-actions

github-actions Bot commented Sep 18, 2026 •

Copy link
Copy Markdown
Contributor

✅ Contribution check passed. @xypkent, catalog validation succeeded.

scan passed

All 1 source-repository scanner job(s) passed. Catalog validation passed.

Recommended: add scanner CI for security

This listing can merge without it. HOL still scans HKUSTDial/DataMagic independently.

We recommend including hashgraph-online/ai-plugin-scanner-action under .github/workflows/ on push and pull_request. Continuous scanning keeps this catalog safer for MCP servers, skills, plugins, and other agent extensions people install from HOL.

Adding it:

  • protects the ecosystem by catching secrets, dangerous hooks, and supply-chain issues before they ship;
  • keeps the listing at the full trust score (without maintainer CI it stays eligible, with a 10% trust-score reduction);
  • can surface findings in GitHub code scanning.

See CONTRIBUTING.md and SCANNER_GUIDE.md.

View the latest sweep.

@kantorcodes kantorcodes left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Centralized scan is 78/100, below the 80 threshold. It flags missing SECURITY.md and LICENSE, unpinned Actions, missing Dependabot coverage, and invalid declared interface links/assets. Fix those in HKUSTDial/DataMagic, add the SHA-pinned HOL scanner workflow from the current SCANNER_GUIDE.md, link the source scan, then rerun the centralized scan.

@xypkent

xypkent commented Sep 18, 2026

Copy link
Copy Markdown
Contributor Author

Thanks for the review.

The DataMagic-side findings are fixed on main:

  • Added LICENSE (MIT) and SECURITY.md
  • SHA-pinned GitHub Actions and added Dependabot
  • Added the SHA-pinned HOL scanner workflow from SCANNER_GUIDE.md
  • Pointed Codex interface assets at in-repo logo/screenshots

Source scan (local plugin-scanner v3.0.123): 100/100, 0 findings.

CI on HKUSTDial/DataMagic#5: https://github.com/HKUSTDial/DataMagic/actions/workflows/plugin-scanner.yml

Please rerun the centralized scan when convenient.

@kantorcodes
kantorcodes dismissed their stale review September 18, 2026 10:46

Fresh centralized rerun is 100/100 with zero findings. This review is stale.

@kantorcodes kantorcodes left a comment

Copy link
Copy Markdown
Member

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

The centralized scan is 100/100 with no critical or high findings, catalog validation and required gates pass, no unresolved non-outdated review threads remain, and source scanner CI is optional at this score. Approved for squash merge.

@kantorcodes
kantorcodes merged commit 67d9f1e into hashgraph-online:main Sep 19, 2026
8 of 9 checks passed
@github-actions

Copy link
Copy Markdown
Contributor

@xypkent, this contribution is merged into HOL's catalog.

Claim your plugin

Verify ownership

Open the link for your plugin and choose "Continue with GitHub". Use the GitHub account that maintains the repository. HOL requests only read:user and user:email; it does not request repository write access.

After verification, the listing gets an owner-verified badge and the plugin dashboard shows its trust score, installs, and engagement. If GitHub permissions are inconclusive, the claim may require review.

@kantorcodes

Copy link
Copy Markdown
Member

Hi @xypkent — a quick follow-up about your plugin hkustdial/datamagic.

The listing is live in the HOL Registry, and ownership verification is still available at HOL Guard.

Verify ownership with the GitHub account that owns the repository to unlock the owner-verified badge, plugin analytics, and the author dashboard. No repository write access is needed.

We may follow up again later if ownership verification is still incomplete.

If you already completed verification, no action is needed — the next scheduler run will stop these reminders.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants