PR Finalize Review
microsoft/garnet
Checks that a pull request's title and description match its implementation and reviews the code for Garnet best practices, reporting findings without posting them.
Pre-submit hygiene check for AI-agent-authored pull requests.
$ npx skills add Akimiya-z/codex-guard --skill codex-guard -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install Akimiya-z/codex-guard codex-guard --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/Akimiya-z/codex-guard.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/codex-guard .claude/skills/codex-guard && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "codex-guard" agent skill from https://github.com/Akimiya-z/codex-guard/tree/main/skills/codex-guard into .claude/skills/codex-guard/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "codex-guard", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/Akimiya-z/codex-guard/tree/main/skills/codex-guardType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add Akimiya-z/codex-guard --skill codex-guard -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install Akimiya-z/codex-guard codex-guard --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Akimiya-z/codex-guard.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/codex-guard .agents/skills/codex-guard && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "codex-guard" agent skill from https://github.com/Akimiya-z/codex-guard/tree/main/skills/codex-guard into .agents/skills/codex-guard/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "codex-guard", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add Akimiya-z/codex-guard --skill codex-guard -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install Akimiya-z/codex-guard codex-guard --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Akimiya-z/codex-guard.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/codex-guard .cursor/skills/codex-guard && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "codex-guard" agent skill from https://github.com/Akimiya-z/codex-guard/tree/main/skills/codex-guard into .cursor/skills/codex-guard/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "codex-guard", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/Akimiya-z/codex-guard.git --path skills/codex-guard--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add Akimiya-z/codex-guard --skill codex-guard -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install Akimiya-z/codex-guard codex-guard --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Akimiya-z/codex-guard.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/codex-guard .gemini/skills/codex-guard && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "codex-guard" agent skill from https://github.com/Akimiya-z/codex-guard/tree/main/skills/codex-guard into .gemini/skills/codex-guard/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "codex-guard", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install Akimiya-z/codex-guard codex-guardInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add Akimiya-z/codex-guard --skill codex-guard -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/Akimiya-z/codex-guard.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/codex-guard .github/skills/codex-guard && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "codex-guard" agent skill from https://github.com/Akimiya-z/codex-guard/tree/main/skills/codex-guard into .github/skills/codex-guard/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "codex-guard", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add Akimiya-z/codex-guard --skill codex-guard -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install Akimiya-z/codex-guard codex-guard --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/Akimiya-z/codex-guard.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/codex-guard .opencode/skills/codex-guard && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "codex-guard" agent skill from https://github.com/Akimiya-z/codex-guard/tree/main/skills/codex-guard into .opencode/skills/codex-guard/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "codex-guard", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
codex-guardPre-submit hygiene check for AI-agent-authored pull requests.
Codex Guard is an agent skill from Akimiya-z/codex-guard. Pre-submit hygiene check for AI-agent-authored pull requests. Use this skill whenever you are about to open or update a pull request: it runs the codex-guard CLI locally, verifies the diff contains no leftover TODO/FIXME/XXX markers and no hardcoded secrets, checks that commit subjects follow conventional commits, and blocks submission until the checks pass or exceptions are documented in the PR description.
Its SKILL.md is about 560 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Development, covering Pull requests, Commit messages and Secrets management. The repository describes itself as: Quality gate for AI/Codex-generated pull requests: blocks TODO leftovers, leaked secrets, sloppy commits and red CI before they reach main. The licence is MIT.
5 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 87e138c. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
nodenpxFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use npx, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Codex Guard loads about 564 tokens when it runs. Until then it costs about 106 tokens; SKILL.md has 270 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from Akimiya-z/codex-guard at commit 87e138c, republished under its MIT licence (© Akimiya-z). 270 words, ~564 tokens.
.claude/skills/codex-guard/SKILL.md (or your agent's skills folder).You are about to open or update a pull request. Before submitting, run the same hygiene checks that the codex-guard GitHub Action enforces in CI — locally, on the working tree.
node src/cli.jsnpx (works once the package is published):
npx -y codex-guardnode src/cli.js --git --commitsnode src/cli.js --git origin/main --commits0 means no blocking findings; 1 means blocking findings were
found; 2 is a usage error.WIP, fix stuff, empty subjects):
rewrite with conventional commits (feat, fix, docs, chore, ...).If you deliberately keep something the CLI flags (for example a task-list checkbox), state it explicitly in the PR description so a human reviewer can confirm it is intentional. Do not silently resubmit a failing diff.
Only open or update the PR after the checks exit 0 (or the exception is
documented in the description). This keeps the CI-side gate green and the
human review focused on real design questions.
© Akimiya-z, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in skills/codex-guard of Akimiya-z/codex-guard.
Open the folder on GitHubat commit 87e138c
Codex Guard next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Codex Guard this skillAkimiya-z/codex-guard | 136 | — | ~564 | Automated safety check: Pass | MIT | |
| PR Finalize Reviewmicrosoft/garnet | 12k | — | ~3.1k | Automated safety check: Pass | MIT | |
| Git Workflow and Versioningaddyosmani/agent-skills | 104k | 2 repos | ~3.5k | Automated safety check: Notes | MIT | |
| React Router Pull Request Creatorremix-run/react-router | 57k | — | ~2.5k | Automated safety check: Pass | MIT | |
| Verdaccio Pull Request Workflowverdaccio/verdaccio | 18k | — | ~1.9k | Automated safety check: Pass | MIT | |
| Citus Merge Loopcitusdata/citus | 13k | — | ~2.5k | Automated safety check: Pass | AGPL-3.0 |
microsoft/garnet
Checks that a pull request's title and description match its implementation and reviews the code for Garnet best practices, reporting findings without posting them.
addyosmani/agent-skills
Sets git habits for every change: short-lived branches, atomic commits with descriptive messages, clean pull requests, plus versioning, tagging and changelogs for releases.
remix-run/react-router
Packages finished React Router work into a draft pull request: branch, commit, push, a written PR body and the right GitHub labels.
verdaccio/verdaccio
Takes a change through a verdaccio pull request: branch, local checks, changeset, title and body, labels, CI and review rounds, and ports to other release lines.
citusdata/citus
Take a list of citusdata/citus PR links or numbers and merge each one independently: sync it with its base branch, fix a red check-style job with make reindent, retry other red checks a bounded…
baptisteArno/typebot.io
Sets the repository's convention for commit messages and pull request titles: one emoji prefix for the main intent, a concise title and clean follow-up commits.
Categories
Pre-submit hygiene check for AI-agent-authored pull requests. Codex Guard is an agent skill from Akimiya-z/codex-guard. Pre-submit hygiene check for AI-agent-authored pull requests.
Codex Guard fits situations like: you are about to open; update a pull request: it runs the codex-guard CLI locally; verifies the diff contains no leftover TODO/FIXME/XXX markers and no hardcoded secrets; checks that commit subjects follow conventional commits.
Run `npx skills add Akimiya-z/codex-guard --skill codex-guard -a claude-code`. Or copy the skill folder (skills/codex-guard in Akimiya-z/codex-guard) into .claude/skills/codex-guard in your project. Claude Code loads it when a task matches its description.
Run `npx skills add Akimiya-z/codex-guard --skill codex-guard -a codex`. Or copy the skill folder (skills/codex-guard in Akimiya-z/codex-guard) into .agents/skills/codex-guard in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add Akimiya-z/codex-guard --skill codex-guard -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/codex-guard, .gemini/skills/codex-guard, .github/skills/codex-guard and .opencode/skills/codex-guard in your project.
Going by SKILL.md and its folder, Codex Guard needs the command-line tools its instructions call (node and npx). Our summary lists: Node.js.
SKILL.md contains no URLs. Its commands use npx, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Codex Guard is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 564 tokens (SKILL.md is roughly 2.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Codex Guard: PR Finalize Review (microsoft/garnet, 12k stars), Git Workflow and Versioning (addyosmani/agent-skills, 104k stars), React Router Pull Request Creator (remix-run/react-router, 57k stars) and Verdaccio Pull Request Workflow (verdaccio/verdaccio, 18k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
Akimiya-z (a GitHub user) maintains it in Akimiya-z/codex-guard, which has 136 GitHub stars. The repository was last updated on October 1, 2026.
Source: Akimiya-z/codex-guard on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.