@org/slug, the next version, and the list of secret-excluded files — plus a draftId. Nothing is uploaded. path defaults to the current directory.
This is the first half of the two-phase publish that keeps approval between packaging and upload:
Options
Same targeting options aspublish: --org, --slug, --name, --desc, --public — plus --json for the machine-readable manifest agents parse and show to the user.
Output
The JSON includes everything a reviewer needs to approve:draftId— pass topublish-draftafter approvalname,nextVersion— what will be created, e.g.@acme/review-checklistv4manifest.files— path, size, and sha256 of every included file, plus the totalexcludedSecrets— files excluded for looking like secrets. Show every entry; exclusions are reported, never silentwarnings— anything else worth a look before approving
publish: SKILL.md required, slug format, 100 MB / 50 MB caps, org membership.