Security-motivated migration of all stale repository and npm-scope references. Three categories of changes (58 files, 174 substitutions): 1. gsd-build → open-gsd (security-critical): - .github/workflows/release-sdk.yml — npm token comment, tarball filename pattern - .github/workflows/hotfix.yml — same - .changeset/fix-3406-detect-stale-sdk-shadow.md — @gsd-build/sdk → @open-gsd/sdk - .changeset/sharp-quails-leap.md — same - get-shit-done/workflows/update.md — CHANGELOG raw GitHub URL 2. GSD-redux org slug → open-gsd (canonical rename): - package.json + sdk/package.json — repository/homepage/bugs metadata - All README.*.md — live badge and link sections - CONTRIBUTING.md, CONTEXT.md, QUICK-WINS-CONFIRMED-BUGS.md - .coderabbit.yaml, .release-monitor.sh, scripts/sync-rulesets.sh - docs/** — all live agent/ADR/user-facing documentation - tests/** — repo slug assertions and test fixtures - scripts/changeset/cli.cjs + github-release-notes.cjs - .github/ISSUE_TEMPLATE/*, .github/pull_request_template.md - bin/install.js, get-shit-done/bin/lib/model-catalog.cjs - sdk/HANDOVER-*.md, sdk/src/*.test.ts 3. CLAUDE.md (gitignored local file — not in this commit): Updated separately outside git: --repo gsd-build/get-shit-done → --repo open-gsd/get-shit-done-redux with security warning. Intentionally unchanged: CHANGELOG.md, docs/RELEASE-*.md, .changeset/README.md, .changeset/build-hooks-atomic-write.md, README.md migration table (historical fork record), tests/changeset-serialize.test.cjs line 78 (serialization fixture). The gsd-build/get-shit-done repo is compromised (rug-pull documented in README.md). Do not push to or interact with that repo. Closes #120
1.8 KiB
1.8 KiB
Manual Update (Non-npm Install)
Use this procedure when npx get-shit-done-redux@latest is unavailable — e.g. during a publish outage or if you are working directly from the source repo.
Prerequisites
- Node.js installed
- This repo cloned locally (
git clone https://github.com/open-gsd/get-shit-done-redux)
Steps
# 1. Pull latest code
git pull --rebase origin main
# 2. Build the hooks dist (required — hooks/dist/ is generated, not checked in as source)
node scripts/build-hooks.js
# 3. Run the installer directly
node bin/install.js --claude --global
# 4. Clear the update cache so the statusline indicator resets
rm -f ~/.cache/gsd/gsd-update-check.json
Step 5 — Restart your runtime to pick up the new commands and agents.
Runtime flags
Replace --claude with the flag for your runtime:
| Runtime | Flag |
|---|---|
| Claude Code | --claude |
| Gemini CLI | --gemini |
| OpenCode | --opencode |
| Kilo | --kilo |
| Codex | --codex |
| Copilot | --copilot |
| Cursor | --cursor |
| Windsurf | --windsurf |
| Augment | --augment |
| All runtimes | --all |
Use --local instead of --global for a project-scoped install.
What the installer replaces
The installer performs a clean wipe-and-replace of GSD-managed directories only:
~/.claude/get-shit-done/— workflows, references, templates~/.claude/commands/gsd/— slash commands~/.claude/agents/gsd-*.md— GSD agents~/.claude/hooks/dist/— compiled hooks
What is preserved:
- Custom agents not prefixed with
gsd- - Custom commands outside
commands/gsd/ - Your
CLAUDE.mdfiles - Custom hooks
Locally modified GSD files are automatically backed up to gsd-local-patches/ before the install. Run /gsd-update --reapply after updating to merge your modifications back in.