Finishing a Development Branch
obra/superpowers
Walks the last step of a branch: confirm tests pass, detect the git environment, ask how to integrate, carry out your choice and clean up the worktree.
Sanctioned, logged bypass of a gate or hard rule — one audit line, then proceed.
$ npx skills add arbiterForge/codeArbiter --skill ca-override -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install arbiterForge/codeArbiter ca-override --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/arbiterForge/codeArbiter.git skills-src && mkdir -p .claude/skills && cp -r skills-src/plugins/ca-pi/skills/ca-override .claude/skills/ca-override && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "ca-override" agent skill from https://github.com/arbiterForge/codeArbiter/tree/main/plugins/ca-pi/skills/ca-override into .claude/skills/ca-override/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ca-override", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/arbiterForge/codeArbiter/tree/main/plugins/ca-pi/skills/ca-overrideType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add arbiterForge/codeArbiter --skill ca-override -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install arbiterForge/codeArbiter ca-override --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/arbiterForge/codeArbiter.git skills-src && mkdir -p .agents/skills && cp -r skills-src/plugins/ca-pi/skills/ca-override .agents/skills/ca-override && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "ca-override" agent skill from https://github.com/arbiterForge/codeArbiter/tree/main/plugins/ca-pi/skills/ca-override into .agents/skills/ca-override/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ca-override", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add arbiterForge/codeArbiter --skill ca-override -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install arbiterForge/codeArbiter ca-override --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/arbiterForge/codeArbiter.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/plugins/ca-pi/skills/ca-override .cursor/skills/ca-override && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "ca-override" agent skill from https://github.com/arbiterForge/codeArbiter/tree/main/plugins/ca-pi/skills/ca-override into .cursor/skills/ca-override/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ca-override", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/arbiterForge/codeArbiter.git --path plugins/ca-pi/skills/ca-override--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add arbiterForge/codeArbiter --skill ca-override -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install arbiterForge/codeArbiter ca-override --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/arbiterForge/codeArbiter.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/plugins/ca-pi/skills/ca-override .gemini/skills/ca-override && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "ca-override" agent skill from https://github.com/arbiterForge/codeArbiter/tree/main/plugins/ca-pi/skills/ca-override into .gemini/skills/ca-override/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ca-override", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install arbiterForge/codeArbiter ca-overrideInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add arbiterForge/codeArbiter --skill ca-override -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/arbiterForge/codeArbiter.git skills-src && mkdir -p .github/skills && cp -r skills-src/plugins/ca-pi/skills/ca-override .github/skills/ca-override && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "ca-override" agent skill from https://github.com/arbiterForge/codeArbiter/tree/main/plugins/ca-pi/skills/ca-override into .github/skills/ca-override/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ca-override", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add arbiterForge/codeArbiter --skill ca-override -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install arbiterForge/codeArbiter ca-override --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/arbiterForge/codeArbiter.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/plugins/ca-pi/skills/ca-override .opencode/skills/ca-override && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "ca-override" agent skill from https://github.com/arbiterForge/codeArbiter/tree/main/plugins/ca-pi/skills/ca-override into .opencode/skills/ca-override/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "ca-override", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
ca-overrideSanctioned, logged bypass of a gate or hard rule — one audit line, then proceed.
Ca Override is an agent skill from arbiterForge/codeArbiter. Sanctioned, logged bypass of a gate or hard rule — one audit line, then proceed.
Its SKILL.md is about 1.5k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Development. It works with Git. The repository describes itself as: Open-source governance and hard gates for AI coding agents across Claude Code, Codex CLI, and Pi. The licence is AGPL-3.0.
5 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit 9496cff. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
python3gitpythonFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md. Its commands use git, which can reach the network depending on how they are called.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Ca Override loads about 1.5k tokens when it runs. Until then it costs about 23 tokens; SKILL.md has 721 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from arbiterForge/codeArbiter at commit 9496cff, republished under its AGPL-3.0 licence (© arbiterForge). 721 words, ~1,475 tokens.
.claude/skills/ca-override/SKILL.md (or your agent's skills folder).The sanctioned escape hatch. Bypass is permitted only with an audit log entry. Overrides are always logged, always visible, never silent. Single identity, single confirm.
Validate $ARGUMENTS — the reason names the gate being bypassed and a justification. Reject a
vague reason ("just skip it") and ask for a specific one.
Detect the operator identity from git config user.email only. If it is unset, ask the user once
to state their identity for the log. (No platform ladder, no second confirmation.)
For an ordinary override, use the private locked audit helper from the repository root:
python3 "<plugin-root>/hooks/append-override.py" --gate "<gate bypassed>" --reason "<specific reason>"It appends one line to <project-root>/.codearbiter/overrides.log:
[ISO-8601 timestamp] | BY: <email> | GATE: <gate bypassed> | REASON: <reason>The log is append-only — never edited or deleted, committed as a permanent audit artifact. The helper fails closed if another official writer or conflict resolver owns the audit-path lock; the overridden action must not proceed unless the row lands. A guard-permitted raw append remains a cooperative operator escape hatch, but it must not run concurrently with conflict resolution.
A genuine three-stage Git conflict on an H-05 append-only path uses the dedicated helper instead of the ordinary step 3 append. Run it once from the conflicted repository, with the specific repo-relative path and the same reason:
python3 "<plugin-root>/hooks/resolve-append-only-conflict.py" ".codearbiter/overrides.log" --reason "<specific reason>"The helper derives the same git config user.email identity, validates the merge-base and both
append suffixes, writes the attributed H-05 record, and explicitly stages only the validated
deterministic union. It refuses a missing or malformed three-stage conflict, any edit to prior
bytes, unsupported paths, invalid encoding, dirty audit sink, or replay after resolution. This is
scoped to the immediate action only; it creates no marker, standing exception, or general H-05
bypass. It takes canonical per-audit-path locks and supports only overrides.log and the
repository-owned gate-events.log sink; official writers share those locks. Conflict resolution
is an exclusive cooperative operation: do not start a raw append before or during it. Never
hand-resolve the protected log with Write, patch, checkout, or restore.
Proceed with the overridden action. Note in the response that the override is logged.
A routine gate (lint, a style rule, a non-security review finding) takes the single-confirm path above. But a security-critical stop is NOT bypassable by a single confirm. The following require the heavier path below, never the one-line flow:
Heavier path (all required, in order):
Surface the specific finding verbatim — name the exact primitive/secret/operation and the concrete risk. A generic "security override" is rejected.
Explicit per-finding acknowledgement — the user must acknowledge that specific finding in
their own words (a bare "yes"/"go ahead"/"I trust you" is declined — this mirrors decision-variance).
Detect identity from git config user.email; if unset, ask once.
Heavier log entry — use the same locked helper so the mandatory row cannot race conflict resolution:
python3 "<plugin-root>/hooks/append-override.py" --security-finding "<specific finding>" --reason "<reason>"It appends a line tagged SECURITY-OVERRIDE that records the specific finding, not just the gate name:
[ISO-8601] | BY: <email> | SECURITY-OVERRIDE | FINDING: <specific finding> | REASON: <reason>Only then record the bypass. For the crypto/secret commit gate, that means resolving the
interpreter once by presence — PY=python3; { command -v python3 >/dev/null 2>&1 && python3 --version >/dev/null 2>&1; } || PY=python
— never python3 X || python X, which reruns X on any nonzero exit (#577), and running
"$PY" "<plugin-root>/hooks/security-pass.py",
which writes <project-root>/.codearbiter/.markers/security-gate-passed bound to the
sensitive lines it approves, so hook H-09b/H-10b allows the commit — recorded only after
steps 1–3, never to skip the gate proper.
Under /ca-sprint, a security-critical override is a hard-gate STOP: it surfaces to the user and is
never auto-decided, even in autonomous mode (SPRINT.md hard gates).
MUST write the log line before proceeding — it is not optional. MUST capture an operator identity —
"codeArbiter" or "automated" are not valid. MUST include a justification. The override is scoped to
the immediate action only; it creates no standing exception. MUST NOT edit or delete an existing
overrides.log entry. For an H-05 three-stage conflict, the dedicated helper's validated union and
audit write are the single immediate action; do not pre-edit the conflicted file. MUST route a
security-critical / crypto-secret / irreversible stop through the
Security ceiling path — never the single-confirm flow — and MUST NOT auto-decide such an override
under /ca-sprint.
/ca-conflict.© arbiterForge, AGPL-3.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in plugins/ca-pi/skills/ca-override of arbiterForge/codeArbiter.
Open the folder on GitHubat commit 9496cff
Ca Override next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Ca Override this skillarbiterForge/codeArbiter | 147 | — | ~1.5k | Automated safety check: Pass | AGPL-3.0 | |
| Finishing a Development Branchobra/superpowers | 296k | 5 repos | ~1.9k | Automated safety check: Pass | MIT | |
| Code Review ChecklistshareAI-lab/learn-claude-code | 78k | 5 repos | ~1.1k | Automated safety check: Pass | MIT | |
| Codebase Knowledge Graph Q&AEgonex-AI/Understand-Anything | 86k | 1 repos | ~1.2k | Automated safety check: Pass | MIT | |
| Code Design Rationale Investigatorcursor/plugins | 10k | 9 repos | ~2.6k | Automated safety check: Pass | None | |
| Understand Diff AnalysisEgonex-AI/Understand-Anything | 86k | 1 repos | ~1.4k | Automated safety check: Pass | MIT |
obra/superpowers
Walks the last step of a branch: confirm tests pass, detect the git environment, ask how to integrate, carry out your choice and clean up the worktree.
shareAI-lab/learn-claude-code
Reviews code against a five-part checklist covering security, correctness, performance, maintainability and testing, and reports findings in a fixed format.
Egonex-AI/Understand-Anything
Answers questions about a codebase by searching a prebuilt knowledge graph of its files, functions, classes and dependencies, not by rereading every source file.
cursor/plugins
Digs into why code is shaped the way it is by checking git history, pull requests and connected tools in parallel, then reporting a cited read on the tradeoffs.
Egonex-AI/Understand-Anything
Reads your git changes or a pull request against a prebuilt knowledge graph of the project to explain what changed, which components are affected and what is risky.
Egonex-AI/Understand-Anything
Gives an in-depth explanation of one file, function or module by reading the project's knowledge graph and checking that the graph is still fresh.
arbiterForge/codeArbiter
Run Claude Code INSIDE a ca-sandbox box (--with-claude). An agent skill from arbiterForge/codeArbiter.
arbiterForge/codeArbiter
Record user-decided ADRs or inspect their health read-only. An agent skill from arbiterForge/codeArbiter.
arbiterForge/codeArbiter
Stop everything and surface a rule conflict — persona vs. An agent skill from arbiterForge/codeArbiter.
arbiterForge/codeArbiter
Start a feature: brainstorm a spec, get it approved, then drive it test-first through the pipeline.
arbiterForge/codeArbiter
Opt this repo into codeArbiter — scaffold the root-level .codearbiter/ state store.
arbiterForge/codeArbiter
Read-only 3-metric governance glance — override rate, small-lane rate, sprint low-confidence ratio — each with a trend arrow vs.
Works with
Categories
Sanctioned, logged bypass of a gate or hard rule — one audit line, then proceed. Ca Override is an agent skill from arbiterForge/codeArbiter. Sanctioned, logged bypass of a gate or hard rule — one audit line, then proceed.
Ca Override fits situations like: development work in your project.
Run `npx skills add arbiterForge/codeArbiter --skill ca-override -a claude-code`. Or copy the skill folder (plugins/ca-pi/skills/ca-override in arbiterForge/codeArbiter) into .claude/skills/ca-override in your project. Claude Code loads it when a task matches its description.
Run `npx skills add arbiterForge/codeArbiter --skill ca-override -a codex`. Or copy the skill folder (plugins/ca-pi/skills/ca-override in arbiterForge/codeArbiter) into .agents/skills/ca-override in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add arbiterForge/codeArbiter --skill ca-override -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/ca-override, .gemini/skills/ca-override, .github/skills/ca-override and .opencode/skills/ca-override in your project.
Going by SKILL.md and its folder, Ca Override needs the command-line tools its instructions call (python3, git and python). Our summary lists: Python 3.
SKILL.md contains no URLs. Its commands use git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Ca Override is published under the AGPL-3.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.5k tokens (SKILL.md is roughly 5.9k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Ca Override: Finishing a Development Branch (obra/superpowers, 296k stars), Code Review Checklist (shareAI-lab/learn-claude-code, 78k stars), Codebase Knowledge Graph Q&A (Egonex-AI/Understand-Anything, 86k stars) and Code Design Rationale Investigator (cursor/plugins, 10k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
arbiterForge (a GitHub organization) maintains it in arbiterForge/codeArbiter, which has 147 GitHub stars. The repository holds 12 skills in this directory. The repository was last updated on October 8, 2026.
Source: arbiterForge/codeArbiter on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.