Agent skill

Script Exec Blocked

by ashutoshsinghpr7 in ashutoshsinghpr7/wikiskill

Sandbox approval policy blocks executecode and python3 -c; use readfile/writefile + manual transforms instead of retrying both runners.

MITAuto-check passedResearch & Science

Install Script Exec Blocked

skills CLI
$ npx skills add ashutoshsinghpr7/wikiskill --skill script-exec-blocked -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install ashutoshsinghpr7/wikiskill script-exec-blocked --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/ashutoshsinghpr7/wikiskill.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/script-exec-blocked .claude/skills/script-exec-blocked && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
script-exec-blocked
GitHub stars
265
Token cost
~281 tokens
SKILL.md length
107 words
Files
1
Skills in repo
8
Repo updated
First seen
Licence
MIT

At a glance

Sandbox approval policy blocks executecode and python3 -c; use readfile/writefile + manual transforms instead of retrying both runners.

  • Research & Science work in your project
  • SKILL.md covers Problem, Fix and Evidence
  • Calls python3

What it does

Script Exec Blocked is an agent skill from ashutoshsinghpr7/wikiskill. Sandbox approval policy blocks executecode and python3 -c; use readfile/writefile + manual transforms instead of retrying both runners.

Its SKILL.md is about 280 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Research & Science. It works with Python. The repository describes itself as: WikiSkill (arXiv:2608.27454) for Hermes Agent — self-evolving agent skills via a persistent knowledge wiki. Faithful Algorithm 1 implementation with real agent runs, isolated… The licence is MIT.

When your agent uses it

  • Research & Science work in your project

Example prompts

  • “/script-exec-blocked”

Requirements

  • Python 3

What it can do on your machine

Read from SKILL.md and the folder at commit cdc291c. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • python3

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Script Exec Blocked loads about 281 tokens when it runs. Until then it costs about 40 tokens; SKILL.md has 107 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~40
When it runs · the whole SKILL.md, loaded when a task matches
~281

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from ashutoshsinghpr7/wikiskill at commit cdc291c, republished under its MIT licence (© ashutoshsinghpr7). 107 words, ~281 tokens.

Download SKILL.mdSave it as .claude/skills/script-exec-blocked/SKILL.md (or your agent's skills folder).
name
script-exec-blocked
description
Sandbox approval policy blocks execute_code and python3 -c; use read_file/write_file + manual transforms instead of retrying both runners.
version
1.0.0
license
MIT
platforms
linux, macos, windows

Script Execution Blocked in Sandbox

Problem

execute_code and python3 -c fail with "BLOCKED … single-query mode (-q) runs without a user present to approve it". Plain terminal commands (grep, ls, file, xxd) and file tools (read_file, write_file) still work.

Fix

  • Do NOT retry both runners back-to-back: a real task burned two turns on python3 -c then execute_code before falling back.
  • Compute small transforms manually from the files you read; write the deliverable with write_file; verify by re-reading it.
  • Keep parsing/sorting simple enough to verify by hand.

Evidence

  • Hit in 3/4 analyzed traces; all three recovered this way; the one failure was a spec-interpretation bug, not a tooling problem.

© ashutoshsinghpr7, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/script-exec-blocked of ashutoshsinghpr7/wikiskill.

Open the folder on GitHubat commit cdc291c

Compare with similar skills

Script Exec Blocked next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Script Exec Blocked compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Script Exec Blocked this skillashutoshsinghpr7/wikiskill265—~281Automated safety check: PassMIT
GitHub Deep Researchbytedance/deer-flow83k5 repos~1.3kAutomated safety check: PassMIT
NetworkxzLanqing/codex-claude-academic-skills4.6k16 repos~3.2kAutomated safety check: PassBSD-3-Clause
Nature-Style Scientific FiguresYuan1z0825/nature-skills46k—~2.9kAutomated safety check: PassApache-2.0
Preprint Search on bioRxivLigphiDonk/Oh-my--paper73813 repos~3.7kAutomated safety check: PassMIT
Neuropixels Data Analysisdavila7/claude-code-templates32k10 repos~2.8kAutomated safety check: PassMIT

Similar skills

  • GitHub Deep Research

    bytedance/deer-flow

    Researches a GitHub repository over four rounds using the GitHub API and web search, then writes a structured markdown report with timeline, metrics and Mermaid diagrams.

    83k GitHub starsUsed in 5 repos~1.3k tokens
    Research & ScienceAuto-check passed
  • Networkx

    zLanqing/codex-claude-academic-skills

    Comprehensive toolkit for creating, analyzing, and visualizing complex networks and graphs in Python.

    4.6k GitHub starsUsed in 16 repos~3.2k tokens
    Research & ScienceAuto-check passed
  • Nature-Style Scientific Figures

    Yuan1z0825/nature-skills

    Creates, revises, audits and exports manuscript-ready scientific figures in Python or R, and routes AI-generated graphical abstracts to a separate workflow.

    46k GitHub stars~2.9k tokensUpdated yesterday
    Research & ScienceAuto-check passed
  • Preprint Search on bioRxiv

    LigphiDonk/Oh-my--paper

    Searches bioRxiv life sciences preprints by keyword, author, date range or category with a Python script, returning JSON metadata and optional PDF downloads.

    738 GitHub starsUsed in 13 repos~3.7k tokens
    Research & ScienceAuto-check passed
  • Neuropixels Data Analysis

    davila7/claude-code-templates

    Analyzes Neuropixels recordings from SpikeGLX or Open Ephys through preprocessing, drift correction, Kilosort4 spike sorting, quality metrics and curation.

    32k GitHub starsUsed in 10 repos~2.8k tokens
    Research & ScienceAuto-check passed
  • Citation Management

    K-Dense-AI/claude-scientific-writer

    Finds papers in OpenAlex, PubMed and Google Scholar, turns DOIs, PMIDs and arXiv IDs into clean BibTeX, and validates citations for a manuscript or thesis.

    2.4k GitHub starsUsed in 2 repos~3.9k tokens
    Research & ScienceAuto-check: notes

More from ashutoshsinghpr7/wikiskill

All 8 skills in this repo
  • Wikiskill Evolve

    ashutoshsinghpr7/wikiskill

    Run the WikiSkill self-evolution loop (arXiv 2608.27454) on a Hermes workspace — raw→maintainer→proposer→gate with strict Rval Rbest gating.

    265 GitHub stars~655 tokensUpdated 22 days ago
    Auto-check passed
  • Wikiskill Proposer

    ashutoshsinghpr7/wikiskill

    Propose skills from wiki patterns and traces (WikiSkill). An agent skill from ashutoshsinghpr7/wikiskill.

    265 GitHub stars~668 tokensUpdated 22 days ago
    Auto-check passed
  • Wikiskill Maintainer

    ashutoshsinghpr7/wikiskill

    Consolidate traces into the persistent wiki (WikiSkill). An agent skill from ashutoshsinghpr7/wikiskill.

    265 GitHub stars~476 tokensUpdated 22 days ago
    Auto-check passed
  • Search Miss Binary

    ashutoshsinghpr7/wikiskill

    ripgrep/searchfiles silently skips binary-detected files — verify empty search results with grep -a / file / xxd before concluding 'not found'.

    265 GitHub stars~327 tokensUpdated 22 days ago
    Auto-check passed
  • Spec Literal Execution

    ashutoshsinghpr7/wikiskill

    Apply ONLY the spec clauses literally — no aggregation, dedup, or cleanup transforms; each input record maps to its own output line.

    265 GitHub stars~385 tokensUpdated 22 days ago
    Auto-check passed
  • Trace Harness Launch Failure

    ashutoshsinghpr7/wikiskill

    Empty session traces mean launch failure, not agent behavior — verify apicallcount/toolcallcount and stdout.txt before analyzing.

    265 GitHub stars~443 tokensUpdated 22 days ago
    Auto-check passed

Works with

Questions about Script Exec Blocked

What does Script Exec Blocked do?

Sandbox approval policy blocks executecode and python3 -c; use readfile/writefile + manual transforms instead of retrying both runners. Script Exec Blocked is an agent skill from ashutoshsinghpr7/wikiskill. Sandbox approval policy blocks executecode and python3 -c; use readfile/writefile + manual transforms instead of retrying both runners.

When should I use Script Exec Blocked?

Script Exec Blocked fits situations like: research & Science work in your project.

How do I install Script Exec Blocked in Claude Code?

Run `npx skills add ashutoshsinghpr7/wikiskill --skill script-exec-blocked -a claude-code`. Or copy the skill folder (skills/script-exec-blocked in ashutoshsinghpr7/wikiskill) into .claude/skills/script-exec-blocked in your project. Claude Code loads it when a task matches its description.

How do I install Script Exec Blocked in Codex?

Run `npx skills add ashutoshsinghpr7/wikiskill --skill script-exec-blocked -a codex`. Or copy the skill folder (skills/script-exec-blocked in ashutoshsinghpr7/wikiskill) into .agents/skills/script-exec-blocked in your project. Codex loads it when a task matches its description.

Can I use Script Exec Blocked in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add ashutoshsinghpr7/wikiskill --skill script-exec-blocked -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/script-exec-blocked, .gemini/skills/script-exec-blocked, .github/skills/script-exec-blocked and .opencode/skills/script-exec-blocked in your project.

What does Script Exec Blocked need to run?

Going by SKILL.md and its folder, Script Exec Blocked needs the command-line tools its instructions call (python3). Our summary lists: Python 3.

Does Script Exec Blocked access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Script Exec Blocked safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Script Exec Blocked use?

Script Exec Blocked is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Script Exec Blocked use?

About 281 tokens (SKILL.md is roughly 1.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Script Exec Blocked?

Skills that share tags, products or a category with Script Exec Blocked: GitHub Deep Research (bytedance/deer-flow, 83k stars), Networkx (zLanqing/codex-claude-academic-skills, 4.6k stars), Nature-Style Scientific Figures (Yuan1z0825/nature-skills, 46k stars) and Preprint Search on bioRxiv (LigphiDonk/Oh-my--paper, 738 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Script Exec Blocked?

ashutoshsinghpr7 (a GitHub user) maintains it in ashutoshsinghpr7/wikiskill, which has 265 GitHub stars. The repository holds 8 skills in this directory. The repository was last updated on September 15, 2026.

Source: ashutoshsinghpr7/wikiskill on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.