Govern third-party source from a shadcn-format registry — shadcn add @ns/item, a registry-item URL, eve add @ns/… — with an allowlist, a static review of the item and its dependency closure, a hashed snapshot installed instead of the live URL, a PreToolUse hook that refuses installs around it, and a check in dev-flow's phase gate; @coss stays live only when stack.ui is coss. Use when the user wants something from a community registry (pdfcn, agentcn…), asks if one is safe, updates an installed item, or a hook refused an install. Also governs the two surfaces that are not copied code: third-party agent skills (npx skills add, a vendor SKILL.md) and MCP servers (.mcp.json, claude mcp add) — reviewed and pinned in the same lock, and the hook refuses either install when the agent runs it. Runs automatically at scaffold. Not for: shadcn's own components (shadcn add button is not governed), porting eve code by hand (eve-registry-porting), or building UI (design-md-to-app).
/plugin install dev-flow@dev-flow # the whole suite
./install.sh --platform claude # or drop dist/registry-intake.skill into Claude Code