
Changelog Maintenance
- 451 installs
- 305 repo stars
- Updated March 4, 2026
- aj-geddes/useful-ai-prompts
changelog-maintenance is an agent skill that maintains CHANGELOG.md and release notes following Keep a Changelog format and Semantic Versioning for trustworthy release documentation.
About
changelog-maintenance is an aj-geddes/useful-ai-prompts agent skill for creating and updating structured changelogs and release notes using Keep a Changelog and Semantic Versioning conventions. It supplies CHANGELOG.md templates with Added, Changed, Deprecated, Removed, Fixed, and Security sections, plus release-note drafts with highlights, breaking changes, migration guides, and security patch guidance. Developers invoke it for version history documentation, deprecation notices, CVE-style security entries, and semver-friendly customer-facing announcements. The skill emphasizes dating releases (YYYY-MM-DD), linking issues and PRs, and separating security fixes with recommended upgrade actions. Outputs help maintainers keep releases transparent for users and API integrators without memorizing format rules each cut. Install via npx skills add aj-geddes/useful-ai-prompts --skill changelog-maintenance when preparing tagged releases or publishing integrator-facing notes that must follow industry-standard changelog structure, semver migration guidance, dated release sections, and linked PR references.
- Semver release grouping
- User-facing change summaries
- Breaking-change callouts
- PR-to-note mapping
- Publish-ready markdown formatting
Changelog Maintenance by the numbers
- 451 all-time installs (skills.sh)
- Ranked #50 of 248 Release Management skills by installs in the Skillselion catalog
- Data as of Aug 5, 2026 (Skillselion catalog sync)
npx skills add https://github.com/aj-geddes/useful-ai-prompts --skill changelog-maintenanceAdd your badge
Show developers this skill is listed on Skillselion. Paste this into your README.
| Installs | 451 |
|---|---|
| repo stars | ★ 305 |
| Last updated | March 4, 2026 |
| Repository | aj-geddes/useful-ai-prompts ↗ |
How do you write a Keep a Changelog release entry?
Keep product changelogs accurate across releases—parse commits and PRs, group user-facing changes, and publish semver-friendly notes customers and integrators can trust.
Who is it for?
Maintainers and release engineers who need consistent Keep a Changelog and SemVer documentation across frequent tagged releases.
Skip if: Teams that do not publish versioned releases or rely solely on auto-generated git logs without curated customer-facing notes.
When should I use this skill?
User asks to update CHANGELOG.md, write release notes, document breaking changes, security patches, or semver migration steps.
What you get
CHANGELOG.md sections, release notes with highlights, breaking-change callouts, migration guides, and security fix documentation.
- CHANGELOG.md entries
- Release notes draft
- Migration and security documentation
By the numbers
- Defines six changelog sections: Added, Changed, Deprecated, Removed, Fixed, and Security
Files
Changelog Maintenance
Overview
Create and maintain structured changelogs that document all notable changes to your project, following industry best practices like Keep a Changelog and Semantic Versioning.
When to Use
- Version history documentation
- Release notes generation
- Breaking changes tracking
- Migration guide creation
- Deprecation notices
- Security patch documentation
- Feature announcements
- Bug fix tracking
CHANGELOG.md Template
````markdown
Changelog
All notable changes to this project will be documented in this file.
The format is based on Keep a Changelog, and this project adheres to Semantic Versioning.
[Unreleased]
Added
- New feature or capability that has been added
- Can be multiple items
Changed
- Changes in existing functionality
- Updates to how features work
Deprecated
- Features that will be removed in upcoming releases
- Include timeline for removal
Removed
- Features that have been removed
- Previously deprecated features
Fixed
- Bug fixes
- Security patches
Security
- Security vulnerabilities that have been fixed
- Important security updates
[2.1.0] - 2025-01-15
Added
- Added OAuth2 authentication support for GitHub and Google
- New dashboard widget system for customizable layouts
- Bulk operations API for processing multiple records
- Export to Excel functionality with custom templates
- Dark mode theme support across all pages
- WebSocket support for real-time notifications
- GraphQL API alongside existing REST endpoints
- Internationalization support for 10 new languages
- Spanish, French, German, Italian, Portuguese
- Japanese, Korean, Chinese (Simplified/Traditional), Arabic
Changed
- Updated user profile page with improved layout and performance
- Migrated from REST to GraphQL for main API endpoints
- Improved error messages with more context and suggestions
- Refactored authentication system for better security
- Updated dependencies to latest versions
- React 18.2.0 → 19.0.0
- Node.js 16.x → 18.x (minimum required version)
- PostgreSQL 13 → 14
- Changed default pagination from 20 to 50 items
- Improved search algorithm for 3x faster results
Deprecated
- REST API v1 endpoints (will be removed in v3.0.0)
- Use GraphQL API or REST API v2 instead
- Migration guide: docs/migration-v1-to-v2.md
- Legacy authentication tokens (remove by 2025-06-01)
- Replace with JWT tokens
- Old configuration format in
config.json - Use new YAML format in
config.yaml
Removed
- Removed deprecated
/api/users/listendpoint - Use
/api/v2/usersinstead - Removed support for Internet Explorer 11
- Minimum browser versions: Chrome 90+, Firefox 88+, Safari 14+, Edge 90+
- Removed jQuery dependency (now pure JavaScript)
- Removed old dashboard widgets (replaced with new widget system)
Fixed
- Fixed race condition in order processing causing duplicate charges
- Affected versions: 2.0.0 - 2.0.5
- Issue: #1234
- Fixed memory leak in WebSocket connections
- Fixed incorrect timezone handling in date pickers
- Fixed CSV export not including all columns
- Fixed CSRF vulnerability in form submissions (CVE-2025-12345)
- Fixed accessibility issues in navigation menu
- Now fully keyboard navigable
- Screen reader friendly
- Fixed mobile responsive issues on iPad Pro
- Fixed SQL injection vulnerability in search (CVE-2025-12346)
- Security Impact: High
- Affected Versions: 2.0.0 - 2.0.9
- Recommended Action: Upgrade immediately
Security
- CRITICAL: Fixed SQL injection in user search (CVE-2025-12346)
- Impact: Allows unauthorized database access
- Affected: v2.0.0 to v2.0.9
- Action: Upgrade to v2.1.0 immediately
- Fixed XSS vulnerability in comment rendering (CVE-2025-12347)
- Updated all dependencies with known security vulnerabilities
- Implemented rate limiting on all API endpoints
- Added CSRF protection to all forms
- Enabled Content Security Policy headers
[2.0.5] - 2025-01-08
Fixed
- Hotfix: Critical bug causing data loss in export functionality
- Fixed authentication issues with LDAP integration
- Resolved performance degradation with large datasets
Security
- Patched authentication bypass vulnerability (CVE-2025-12344)
[2.0.0] - 2025-01-01
Added
- Complete UI redesign with modern look and feel
- New REST API v2 with better performance
- User roles and permissions system
- Audit logging for all administrative actions
- Email templates customization
- Two-factor authentication (2FA)
- API rate limiting
- Database backup automation
Changed
- BREAKING: Changed API response format from XML to JSON
- All API consumers must update their integration
- See migration guide: docs/api-v1-to-v2.md
- BREAKING: Renamed database tables for consistency
user→usersorder→orders- Run migration script:
npm run migrate:v2 - BREAKING: Changed authentication from session-based to JWT
- Existing sessions will be invalidated
- Users need to log in again
- Improved database query performance by 50%
- Updated minimum Node.js version to 16.x
Removed
- BREAKING: Removed support for Node.js 12 and 14
- BREAKING: Removed deprecated configuration options
USE_OLD_AUTH- Use JWT authenticationLEGACY_MODE- No longer supported
Migration Guide
From v1.x to v2.0:
1. Update Node.js to version 16 or higher 2. Update your API integration:
// Old (v1)
fetch("/api/users/list")
.then((res) => res.text())
.then((xml) => parseXML(xml));
// New (v2)
fetch("/api/v2/users")
.then((res) => res.json())
.then((data) => console.log(data));````
3. Run database migrations:
npm run migrate:v24. Update environment variables:
# Remove
USE_OLD_AUTH=true
LEGACY_MODE=true
# Add
JWT_SECRET=your-secret-key
JWT_EXPIRES_IN=7d[1.5.2] - 2024-12-15
Fixed
- Fixed pagination bug on user list page
- Resolved timezone issues in reports
- Fixed email notification delays
[1.5.0] - 2024-12-01
Added
- New reporting dashboard
- Custom fields for user profiles
- Webhook support for integrations
Changed
- Improved search performance
- Updated UI components library
[1.0.0] - 2024-10-01
Added
- Initial release
- User management
- Basic API
- Authentication and authorization
- Database migrations
- Unit and integration tests
[Unreleased]: https://github.com/user/repo/compare/v2.1.0...HEAD [2.1.0]: https://github.com/user/repo/compare/v2.0.5...v2.1.0 [2.0.5]: https://github.com/user/repo/compare/v2.0.0...v2.0.5 [2.0.0]: https://github.com/user/repo/compare/v1.5.2...v2.0.0 [1.5.2]: https://github.com/user/repo/compare/v1.5.0...v1.5.2 [1.5.0]: https://github.com/user/repo/compare/v1.0.0...v1.5.0 [1.0.0]: https://github.com/user/repo/releases/tag/v1.0.0
````
Release Notes Template
# Release Notes - Version 2.1.0
**Release Date:** January 15, 2025
**Download:** [v2.1.0](https://github.com/user/repo/releases/tag/v2.1.0)
## 🎉 Highlights
- **OAuth2 Authentication**: Sign in with GitHub and Google
- **GraphQL API**: New GraphQL endpoint alongside REST API
- **Dark Mode**: Full dark mode support across all pages
- **Real-time Notifications**: WebSocket-powered live updates
- **10 New Languages**: Expanded internationalization support
## 📦 What's New
### OAuth2 Authentication
You can now sign in using your GitHub or Google account. Configure OAuth in Settings > Authentication.
// Enable OAuth in your config { "auth": { "providers": ["github", "google"], "github": { "clientId": "your-client-id", "clientSecret": "your-client-secret" } } } ````
GraphQL API
Access your data with GraphQL for more efficient queries:
query GetUser {
user(id: "123") {
id
name
email
orders {
id
total
items {
product {
name
price
}
}
}
}
}Endpoint: https://api.example.com/graphql Documentation: GraphQL API Docs
Dark Mode
Enable dark mode in Settings > Appearance or use system preferences.
!Dark Mode Screenshot
🔧 Improvements
- 3x Faster Search: Improved search algorithm
- Better Error Messages: More helpful error messages with suggestions
- Enhanced Performance: 50% faster page loads
- Mobile Improvements: Better responsive design for tablets
🐛 Bug Fixes
- Fixed race condition in order processing
- Fixed memory leak in WebSocket connections
- Fixed timezone handling in date pickers
- Fixed accessibility issues in navigation
🔒 Security Updates
- CRITICAL: Fixed SQL injection vulnerability (CVE-2025-12346)
- Impact: High - Allows unauthorized database access
- Action: Upgrade immediately if using v2.0.0 - v2.0.9
- Fixed XSS vulnerability in comment rendering (CVE-2025-12347)
- Updated dependencies with security patches
📋 Breaking Changes
Deprecated APIs (Removal in v3.0.0)
The following REST API v1 endpoints are deprecated and will be removed in v3.0.0:
| Old Endpoint | New Endpoint | Migration Guide |
|---|---|---|
/api/users/list | /api/v2/users | Link |
/api/products/search | /api/v2/products?q= | Link |
Timeline: These endpoints will continue working until June 2025.
Updated Dependencies
- Node.js: Minimum version is now 18.x (was 16.x)
- React: Upgraded to 19.0.0
- PostgreSQL: Minimum version is now 14 (was 13)
📖 Documentation
- Full Changelog
- API Migration Guide
- Upgrade Guide
- API Documentation
🔄 Upgrading
From v2.0.x
# Backup your database first
pg_dump your_database > backup.sql
# Pull latest version
git pull origin main
# Install dependencies
npm install
# Run migrations
npm run migrate
# Restart application
npm startFrom v1.x
Please see the v1 to v2 Migration Guide for detailed upgrade instructions.
🙏 Contributors
Thanks to all contributors who made this release possible:
- @contributor1 - OAuth2 implementation
- @contributor2 - GraphQL API
- @contributor3 - Dark mode
- @contributor4 - Performance improvements
📞 Support
- Issues: GitHub Issues
- Discussions: GitHub Discussions
- Documentation: docs.example.com
- Email: support@example.com
🔜 What's Next?
Coming in v2.2.0:
- Advanced analytics dashboard
- Plugin system for extensibility
- Mobile apps (iOS and Android)
- Improved team collaboration features
Stay tuned!
## Semantic Versioning Guide
Version: MAJOR.MINOR.PATCH
MAJOR version: Incompatible API changes MINOR version: Add functionality (backwards-compatible) PATCH version: Backwards-compatible bug fixes
Examples:
- 1.0.0 → 1.0.1: Bug fixes
- 1.0.1 → 1.1.0: New features (backwards-compatible)
- 1.1.0 → 2.0.0: Breaking changes
## Best Practices
### ✅ DO
- Follow Keep a Changelog format
- Use Semantic Versioning
- Document breaking changes prominently
- Include migration guides
- Link to relevant issues/PRs
- Categorize changes (Added, Changed, Fixed, etc.)
- Include security fixes in separate section
- Date all releases (YYYY-MM-DD format)
- Link to release tags
- Document deprecations with timelines
- Include upgrade instructions
- Mention contributors
### ❌ DON'T
- Skip documenting breaking changes
- Forget to update changelog before release
- Mix multiple types in one category
- Use vague descriptions
- Skip dates on releases
- Forget semantic versioning
- Hide security issues
## Resources
- [Keep a Changelog](https://keepachangelog.com/)
- [Semantic Versioning](https://semver.org/)
- [Conventional Commits](https://www.conventionalcommits.org/)
- [Release Drafter](https://github.com/release-drafter/release-drafter)#!/bin/bash
# validate-api.sh - Validate API specification
# Usage: ./validate-api.sh <openapi_spec>
set -euo pipefail
SPEC_FILE="${{1:?Usage: $0 <openapi_spec>}}"
echo "Validating API spec: $SPEC_FILE"
# TODO: Add API validation
# - Validate OpenAPI/Swagger syntax
# - Check endpoint naming conventions
# - Verify response schemas
# - Check for required headers
# - Validate authentication definitions
echo "API validation complete."
# API Endpoint Scaffold
# TODO: Customize for your API framework
openapi: "3.0.3"
info:
title: "API Service"
version: "1.0.0"
paths:
/api/v1/resource:
get:
summary: "List resources"
# TODO: Define parameters and responses
responses:
"200":
description: "Success"
post:
summary: "Create resource"
# TODO: Define request body and responses
responses:
"201":
description: "Created"
Related skills
How it compares
Use changelog-maintenance for curated human-readable release docs; use git-cliff or conventional-changelog tools when fully automated commit parsing is preferred.
FAQ
Which formats does changelog-maintenance follow?
changelog-maintenance follows Keep a Changelog section conventions and Semantic Versioning rules, producing dated CHANGELOG.md entries and user-facing release notes with migration guidance.
Can changelog-maintenance document security fixes?
changelog-maintenance includes a dedicated Security section pattern with impact notes, recommended actions, and links suitable for CVE-style disclosures in release documentation.