Step-by-step: using CoreSkill
Follow along from creating an account to your whole team's AI reading your skills. One part for managers, one for employees.
This page walks exactly one path: from an empty account to your employees' AI assistants working by your company's skills. Every step tells you what that part is for, where to open it, what to click, and what you see when it worked.
Text in bold is a button or menu name exactly as it appears on screen. Text like /b/<business ID>/keys is a path in your browser; <business ID> is the 12 characters that belong to your business.
Before you start
- An email address you can open right now, to receive verification codes.
- Managers: the list of departments and each person's work email.
- Managers: the skill content, meaning your process written down, or a ready
.zip/.skillfile that containsSKILL.md. - Employees: an AI assistant that supports MCP, such as Claude, ChatGPT, Cursor or Gemini CLI. MCP is the standard AI uses to read outside data; all you do is paste one address and one key.
| You are | Read |
|---|---|
| A business owner, admin or department head | Part A (steps A1 to A11) |
| An employee who was just invited and only needs to use skills | Part B (steps B1 to B6) |
| A manager who wants their own AI to do admin work | Part C, once Part A is done |
Part A: Business owners and managers
Go in order. Each step needs what the one before it created: you need departments before you can choose who sees a server, and a server before you can add a skill.
Step A1. Create an account and verify your email
- What this is for
- Your account is who you are on CoreSkill. Everything you do later (creating a business, issuing keys) is recorded under this account.
- Where to go
- The
/registerpage, or Create account on the sign-in screen.
Fill in Your name, Email and Password.
The password needs at least 8 characters.
Tick both consent boxes: agreeing to the Terms of Service and Privacy Policy, and allowing your name and email to be stored for sign-in.
The create button only works once both are ticked. If the terms change, you will be asked again at your next sign-in.
Click Create account.
Open your inbox, take the 6-digit code and type it on the Verify your email screen.
The code lasts 10 minutes. No email? Click Send a new code.
Sign in with the email and password you just created.
Done when you see Email verified. You can sign in now. and you can sign in. If there is a Continue with Google button, that works too, with no 6-digit code.
Step A2. Turn on two-factor authentication (recommended)
- What this is for
- It adds a second lock that lives on your phone. A leaked password alone no longer lets a stranger in. This account issues keys for the whole company, so it is well worth it.
- Where to go
- Settings in the sidebar → the Security tab (
/settings?tab=security).
Install an authenticator app on your phone.
For example Google Authenticator or Microsoft Authenticator.
In the Two-factor authentication card, type your password and click Set it up.
Scan the QR code that appears with the app on your phone.
Type the 6-digit code from the app and click Turn it on.
You are signed out of every device and taken to the sign-in screen.
Copy the Backup codes shown on the sign-in screen and keep them somewhere other than your phone.
Backup codes appear only once. If you lose your phone, they are the only way back in.
Sign in again with your password and a 6-digit code.
Done when the Two-factor authentication card says On. See Account & security for more.
Step A3. Create your business
- What this is for
- A business is your company's space on CoreSkill. Departments, skills, people and keys all live inside it. Each business has its own address (called the hub) that the whole company's AI connects to.
- Where to go
- Businesses, at
/biz. After signing in you are usually already there.
Click New business.
Type a Business name, for example your company name.
Up to 80 characters, and you can change it later.
Click Create.
A Let's set this up box may appear to guide you. If you are following this page, click I'll do it later.
Done when you land on the business Dashboard and see Business created. Add departments, then invite your team. The left sidebar now shows Departments, Members, Skill servers and Member keys.
Step A4. Create departments
- What this is for
- Departments decide who can read which skill. A server assigned to a department is visible to its people and to every sub-department. Build them first so you can pick them the moment you create a server.
- Where to go
- Departments in the sidebar (
/b/<business ID>/departments).
Click New department.
Type a Department name, for example
Marketing.Leave Parent department at Top level (no parent).
Click Create. Repeat for your other departments.
For a sub-department, click Add sub-department on the parent's row, name it and click Create.
For example
ContentinsideMarketing.
Done when the new department shows in the tree along with Department created. Small company with no departments? Skip this step and choose Whole business in step A6.
Step A5. Invite people into the business
- What this is for
- It brings colleagues into the business and puts each one in the right department with the right role. A person's department decides which skills their AI can read.
- Where to go
- Members in the sidebar (
/b/<business ID>/members).
Click Invite member.
Fill in their Work email.
They must sign in with exactly this address to accept.
Pick a Role. For someone who only uses skills, leave it at Member.
A Manager runs their own branch of departments. An Admin runs the whole business.
Pick a Department. Add a Job title if you like.
Click Invite member at the bottom of the dialog.
Done when you see Invitation sent. Copy the link below if you want to share it yourself. and the invitation sits in the Invitations tab. The person gets an email with a link that works for 7 days. If the email does not arrive, click Resend in that tab. They only show up under Members (and can get a key) once they accept.
The faster way: skip the invitation
In step A8, the New person tab creates both the account and the key for someone who is not in the business yet, and sends everything to their inbox. Use that and you do not need to invite first.
Step A6. Create a skill server and choose who sees it
- What this is for
- A skill server is a drawer of skills that belong together, and it decides which departments can read what is in the drawer. A common setup: one server per department, plus one shared server for the whole company.
- Where to go
- Skill servers in the sidebar (
/b/<business ID>/servers).
Click New server.
How many servers you can have depends on your plan; the dialog shows it (for example
0 of 2 servers).Type a Name, for example
Marketing.Under Who can see it, choose Whole business or Selected departments.
Whole business: everyone in the business sees it. Selected departments: tick the departments that see it, and their sub-departments follow.
Click Create.
Done when you land on the new server's page with Server created. You can change who sees it later in the server's Settings tab, with no need to reissue anyone's key.
Step A7. Add a skill to the server
- What this is for
- A skill is a set of instructions the AI reads and then follows: a process, customer reply templates, a checklist. It is the actual content of the whole system.
- Where to go
- On the server page, the Skills tab.
Click New skill.
Fill in the Skill name, for example
weekly-report.Plain letters, numbers, hyphens and underscores only. This is the name the AI sees.
Fill in the Description: one sentence on when to use this skill.
The AI uses this sentence to pick the right skill on its own.
Write the Instructions.
Write as if you were briefing a new hire: context, steps, examples, what never to do.
Click Create.
Already have a file? Click Upload a package instead of New skill, choose a .zip or .skill file that contains SKILL.md (at most 2 MB per file), then click Upload package. See Writing and uploading skills for details.
Done when you land on the new skill's page along with Skill created. Your team's AI already has it.
Whole-business servers: choose who can read
New businesses share skills per person by default. A skill in a Whole business server that is not tagged with a department reaches nobody yet. Open the skill → the Who can read this skill card → tick people → Save audience. The card only lists people who have accepted their invitation, so you can come back and tick them later. To give it to everyone: Business settings → the Shared skills card → choose Everyone gets them → Save.
Step A8. Issue keys to your people
- What this is for
- A key is each person's own pass that lets their AI read skills. One key per person: the logs know who used what, and revoking cuts off exactly that person.
- Where to go
- Member keys in the sidebar (
/b/<business ID>/keys).
Click Issue key and stay on the Member tab.
You can only pick people who accepted their invitation. For someone not in the business yet, use the New person tab below.
Pick the Member and set a Key name after the device they use, for example
Laptop.The Expiry box defaults to No expiry. For contractors choose 30 or 90 days.
Click New key.
The system emails the key to the recipient. You also see it once on screen.
- A whole department at once
- Click Issue for a department, pick the Department, click Issue keys. It only covers people in that department who have no key yet, up to 50 people, and not sub-departments.
- Someone not in the business yet
- Click Issue key → the New person tab, fill in Full name, Work email, Department and Key name, click Email them access. The system creates their account and sends the key straight to their inbox; you never see it. If the address already has an account, they get an invitation instead of a key.
Done when the Copy this key now card appears (for New person: the line Done. We've emailed that address). The key shows on screen only once; leave the page and you cannot see it again, but the recipient still has their copy in the email.
Step A9. See who is using it
- What this is for
- The log records every time an AI calls in for a skill: who, which department, which skill, when, from which app, including refused calls. Use it to see which skills get used and to spot a key being misused.
- Where to go
- Usage logs in the sidebar (
/b/<business ID>/logs).
Choose a time range, for example 7 days.
To look at one person or one department, pick it in All members or All departments.
Look at the Status column.
OK means the read worked. Denied means the key was wrong, revoked or expired, or its holder is suspended. Error means the AI asked for something that does not exist, such as a wrong skill name.
Need a report? Click Export CSV.
Done when the table lists individual calls with member and department names. An empty table means nobody has connected their AI yet: remind them to do Part B.
Step A10. Update a skill
- What this is for
- When a process changes, you edit the skill in one place. Everyone gets the new version on their very next question, and nobody downloads anything.
- Where to go
- Skill servers → open the server → the Skills tab → click the skill's name.
Edit the text in the Editor.
Click Save, or press
Ctrl+S(macOS:⌘+S).
Done when you see Skill saved. Your team's AI already has the new version. and the line under the editor reads No unsaved changes.
There are no drafts: clicking Save puts that version in front of the whole team at once. Updating with Replace package deletes every attached file that is not in the new package.
Step A11. Cut off access when someone leaves
- What this is for
- It cuts access immediately. The person who left can no longer read any skill, even though their machine is still configured.
- Where to go
- Members in the sidebar (
/b/<business ID>/members).
Find the person and click Manage at the end of their row.
Click Suspend, then confirm.
All their keys stop working right away. You can undo it with Reinstate.
If they are definitely not coming back, click Remove from business.
This deletes all their keys too. It cannot be undone. Old log entries are kept.
Only need to cut one key, say for a lost laptop? Go to Member keys and click Revoke on that key's row. The key holder gets an email about it.
Done when you see Member suspended. Their keys stopped working. Their next call with any of their keys shows as Denied in the log.
Part B: Employees using skills
You only read skills; you cannot change anything. This whole part takes about ten minutes.
Step B1. Accept your invitation
- What this is for
- It links your account to your company's business, in the department and role your manager chose. Your department decides which skills your AI can read.
- Where to go
- The invitation email in your work inbox, with an Accept invitation button.
In the email, click Accept invitation.
Click Sign in, or Create account if you don't have one yet.
Use the exact address the invitation was sent to. Any other address gets the Wrong account screen.
Just created a new account? Enter the 6-digit code, sign in, then click the link in the email again.
The Businesses page also reminds you with an Invitations waiting for you card.
Click Accept invitation.
Done when you see Welcome aboard! You're now a member of this business. on the business Dashboard.
Got an email with a key instead of an invitation?
A Your staff key is ready email with an Activate account button means your manager already created an account for you. Copy the key from the email and keep it, click Activate account, fill in your name, set a password and enter the 6-digit code sent by email. No invitation to accept; go straight to step B2.
Step B2. Open My access
- What this is for
- Your home page as an employee. It shows your role, your department, your keys, and the skill servers your AI can read.
- Where to go
- My access in the sidebar (
/b/<business ID>/my-access).
Click My access.
Check the Your membership card: is your department right?
Look at the Skill servers you can read card.
This is exactly what your AI will read.
Done when Skill servers you can read lists at least one server. If it says No skill server is shared with you yet, ask your manager to share a server with your department.
Step B3. Get your key
- What this is for
- A key is your AI's own password. The AI uses it to read skills on your behalf. Never share it: the log will record your name for everything the other person does.
- Where to go
- The Your staff key is ready email, or the My keys card on My access.
Open the Your staff key is ready email and copy the key.
The key starts with
cek_.No email yet? If you see Issue myself a key, click it, set a Key name after your device (
Laptop) and click New key.No such button? Ask your department head or a business admin to issue one for you.
Keep the key somewhere safe, such as a password manager.
Done when you hold a string starting with cek_, and the My keys card shows a row marked Active.
Step B4. Paste the key into your AI assistant
- What this is for
- It connects your AI assistant to the business hub. From then on the AI finds and reads skills whenever it needs them, and you never download a file.
- Where to go
- My access → the Connect your AI card.
Pick the tab for the app you use.
Desktop (Claude Desktop), claude.ai, Claude Code, Cursor, ChatGPT, Gemini.
Click copy on the snippet in that tab.
Paste it into the app's MCP (or connector) settings.
If you see
<YOUR_KEY>, replace it with your key. For each app's exact steps see Connect your AI assistant.Restart the app.
Done when the app reports CoreSkill as connected, or lists tools that include list_skills.
Step B5. Try a question
- What this is for
- It checks that your AI really can read skills before you rely on it for work.
- Where to go
- The chat window of the AI assistant you just connected.
Ask: "list the skills you have".
The AI reads out the skills for your department.
Give it a real task that fits, for example writing the weekly report.
The AI opens the matching skill on its own and follows it.
Done when the AI names your skills. On My access, the Recent activity card shows the call you just made.
Step B6. Lost a device or think your key leaked
- What this is for
- It stops anyone else using your key. Revoking takes effect on the very next call.
- Where to go
- My access → the My keys card.
Tell your department head or a business admin right away so they revoke that key.
If your business lets you issue your own keys, click Revoke on that device's key yourself.
Get a new key and paste it into the replacement device as in step B4.
Done when the old key shows Revoked and you receive the email A staff key was revoked.
Part C: Let your own AI do the admin work (optional)
- What this is for
- It lets a manager's own AI assistant run admin tasks from plain requests: create servers, write skills, invite people, issue keys. Only Owner and Admin can use it.
- Where to go
- Admin MCP in the sidebar (
/b/<business ID>/admin-mcp).
Click New agent key, set a Key name, tick the Permissions you need and click Create.
Leave Delete unticked unless you truly need it. Copy the key at once; it is shown only once.
Paste the key into your AI using the Connect your AI card on the same page, then ask it "list my skill servers".
See Admin MCP for details.
Done when the AI answers with your list of servers and the Recent AI activity card shows that call.
Something wrong?
- You closed the Copy this key now card before copying
- A key is shown only once and the real key is never stored. The recipient still has it in their email. If both copies are gone, Revoke that key and issue a new one.
- The invitation link shows Wrong account
- You are signed in with a different address from the one invited. Click Sign out and sign in with the exact address from the invitation.
- You see This invitation has expired or This invitation isn't valid
- A link works once and lasts 7 days. Ask the person who invited you to click Resend in the Invitations tab.
- The AI reports an authentication error (401) after working before
- The key was revoked, expired, or you are suspended. Check the status in My keys; in the log the Detail column reads
KEY_REVOKED,KEY_EXPIREDorMEMBER_SUSPENDED. Ask your manager for a new key or to reinstate you. - The AI connects but sees no skills
- No server is shared with your department yet (check Skill servers you can read), or the skill sits in a Whole business server and your manager has not ticked you in Who can read this skill.
- An employee opens Skill servers or Members and gets a not-found page
- That is expected. Employees only use Dashboard, My access and Usage logs.
To understand each area in depth, read on through the later sections, starting with Getting started (the core ideas and the four roles).
