Agent skill

Ijfw Preflight

by FerroxLabs in FerroxLabs/ijfw

Run the IJFW preflight pipeline (11 gates, fail-fast). An agent skill from FerroxLabs/ijfw.

MITAuto-check passedDevelopment

Install Ijfw Preflight

skills CLI
$ npx skills add FerroxLabs/ijfw --skill ijfw-preflight -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install FerroxLabs/ijfw ijfw-preflight --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/FerroxLabs/ijfw.git skills-src && mkdir -p .claude/skills && cp -r skills-src/codex/skills/ijfw-preflight .claude/skills/ijfw-preflight && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
ijfw-preflight
GitHub stars
212
Token cost
~395 tokens
SKILL.md length
178 words
Files
1
Skills in repo
38
Repo updated
First seen
Licence
MIT

At a glance

Run the IJFW preflight pipeline (11 gates, fail-fast). An agent skill from FerroxLabs/ijfw.

  • Works in 11 steps: shellcheck -- shell script correctness → oxlint -- fast JS/TS linting → eslint-security -- high-signal JS… → …
  • Development work in your project
  • SKILL.md covers Usage, What it checks, Behavior and When to run
  • Calls npm and git

What it does

Ijfw Preflight is an agent skill from FerroxLabs/ijfw. Run the IJFW preflight pipeline (11 gates, fail-fast). Trigger: 'ijfw preflight', 'run preflight', 'check before ship', 'preflight gates', 'validate before release'.

Its SKILL.md is about 400 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Development. It works with npm. The repository describes itself as: IJFW — It Just Fcking Works. Ferrox Labs' local-first infrastructure for AI coding agents: shared memory, smart routing, multi-AI cross-audits, disciplined workflow. The licence is MIT.

When your agent uses it

  • Development work in your project

Example prompts

  • “ijfw preflight”
  • “run preflight”
  • “check before ship”
  • “/ijfw-preflight”

Workflow steps

11 steps, taken from the first numbered list in SKILL.md.

  1. shellcheck -- shell script correctness
  2. oxlint -- fast JS/TS linting
  3. eslint-security -- high-signal JS security rules
  4. psscriptanalyzer -- PowerShell scripts, with static fallback when pwsh is absent
  5. publint -- package.json publish hygiene
  6. gitleaks -- secret / credential scan
  7. audit-ci -- npm dependency vulnerability check
  8. knip -- dead code and unused exports
  9. license-check -- dependency license compatibility
  10. pack-smoke -- npm pack roundtrip + ijfw --help assert
  11. upgrade-smoke -- upgrade from floor version, assert settings key survives

What it can do on your machine

Read from SKILL.md and the folder at commit eda62f3. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Shell commands in SKILL.md call:

    • npm
    • git

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md. Its commands use npm and git, which can reach the network depending on how they are called.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Ijfw Preflight loads about 395 tokens when it runs. Until then it costs about 45 tokens; SKILL.md has 178 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~45
When it runs · the whole SKILL.md, loaded when a task matches
~395

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from FerroxLabs/ijfw at commit eda62f3, republished under its MIT licence (© FerroxLabs). 178 words, ~395 tokens.

Download SKILL.mdSave it as .claude/skills/ijfw-preflight/SKILL.md (or your agent's skills folder).
name
ijfw-preflight
description
Run the IJFW preflight pipeline (11 gates, fail-fast). Trigger: 'ijfw preflight', 'run preflight', 'check before ship', 'preflight gates', 'validate before release'.

IJFW Preflight

Runs 11 deterministic quality gates locally. Ordered fast-to-slow, fail-fast on blockers. Returns exit 0 on clean, exit 1 on findings.

Usage

ijfw preflight

What it checks

  1. shellcheck -- shell script correctness
  2. oxlint -- fast JS/TS linting
  3. eslint-security -- high-signal JS security rules
  4. psscriptanalyzer -- PowerShell scripts, with static fallback when pwsh is absent
  5. publint -- package.json publish hygiene
  6. gitleaks -- secret / credential scan
  7. audit-ci -- npm dependency vulnerability check
  8. knip -- dead code and unused exports
  9. license-check -- dependency license compatibility
  10. pack-smoke -- npm pack roundtrip + ijfw --help assert
  11. upgrade-smoke -- upgrade from floor version, assert settings key survives

Behavior

  • Each gate degrades gracefully to "skipped: tool not installed" when its CLI is absent (except blockers, which print actionable install hints).
  • All output uses positive framing. No "failed" headers -- findings are reported as "surfaced N points".
  • Runs under 90s on M-series laptop with warm caches.
  • Pinned tool versions tracked in .ijfw/preflight-versions.json.

When to run

  • Before every git tag / release.
  • After any change to shell scripts, package.json, or dependency list.
  • In CI (.github/workflows/ci.yml runs ijfw preflight on every push).

© FerroxLabs, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in codex/skills/ijfw-preflight of FerroxLabs/ijfw.

Open the folder on GitHubat commit eda62f3

Compare with similar skills

Ijfw Preflight next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Ijfw Preflight compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Ijfw Preflight this skillFerroxLabs/ijfw212—~395Automated safety check: PassMIT
Nx Run Tasksnomcopter/react-mosaic4.8k8 repos~613Automated safety check: PassCustom licence
Migrate Internal Package into GhostTryGhost/Ghost56k—~3.8kAutomated safety check: PassMIT
Open Code Review CLIalibaba/open-code-review45k—~3.1kAutomated safety check: PassApache-2.0
Cutting A ReleaseTriliumNext/Trilium38k—~3.2kAutomated safety check: PassAGPL-3.0
Install Anti-Slop Oxlint Rulesdmmulroy/anti-slop5.3k—~2.2kAutomated safety check: PassMIT

Similar skills

  • Nx Run Tasks

    nomcopter/react-mosaic

    Helps with running tasks in an Nx workspace. An agent skill from nomcopter/react-mosaic.

    4.8k GitHub starsUsed in 8 repos~613 tokens
    DevelopmentAuto-check passed
  • Moves a package from another TryGhost repository into Ghost as an internal workspace package while keeping its Git history, with checkpoints for the steps that need an administrator.

    56k GitHub stars~3.8k tokensUpdated today
    DevelopmentAuto-check passed
  • Open Code Review CLI

    alibaba/open-code-review

    Runs the ocr command-line tool to review Git changes, a commit or a branch comparison with an AI model, returning line-level comments and optionally applying fixes.

    45k GitHub stars~3.1k tokensUpdated yesterday
    DevelopmentAuto-check passed
  • Cutting A Release

    TriliumNext/Trilium

    A skill your agent uses when cutting, preparing, or debugging a Trilium release — bumping the monorepo version, tagging, or diagnosing a failed "Release" workflow run.

    38k GitHub stars~3.2k tokensUpdated today
    DevelopmentAuto-check passed
  • Installs, updates or migrates the vendored anti-slop Oxlint plugin in a repository, keeping local rule changes and the plugin's license and provenance files.

    5.3k GitHub stars~2.2k tokensUpdated 29 days ago
    DevelopmentAuto-check passed
  • Open Code Review Delegate

    alibaba/open-code-review

    Has the host agent do the code review itself while the ocr CLI handles file selection and rule lookup, covering workspace changes, branch ranges or single commits.

    45k GitHub stars~2k tokensUpdated yesterday
    DevelopmentAuto-check passed

More from FerroxLabs/ijfw

All 38 skills in this repo
  • Ijfw Agents Md

    FerroxLabs/ijfw

    Maintain canonical AGENTS.md (open spec). An agent skill from FerroxLabs/ijfw.

    212 GitHub stars~2.7k tokensUpdated 4 days ago
    Auto-check passed
  • Ijfw Design

    FerroxLabs/ijfw

    A skill your agent uses when the user says: 'design', 'redesign', 'UI', 'UX', 'dashboard', 'page', 'component', 'make it look better', 'polish', 'pretty', 'professional', 'user experience'…

    212 GitHub stars~2.2k tokensUpdated 4 days ago
    Auto-check passed
  • A skill your agent uses when a milestone is shipping and you need to archive its artifacts, generate a summary, and seed the next milestone.

    212 GitHub stars~1.5k tokensUpdated 4 days ago
    Auto-check passed
  • Ijfw Critique

    FerroxLabs/ijfw

    Challenge decisions, surface counter-arguments, flag assumptions.

    212 GitHub stars~1.2k tokensUpdated 4 days ago
    Auto-check passed
  • Ijfw Cross Audit

    FerroxLabs/ijfw

    Generate a cross-platform multi-model audit (Trident) on a diff, brief, or artifact.

    212 GitHub stars~594 tokensUpdated 4 days ago
    Auto-check passed
  • Ijfw Debug

    FerroxLabs/ijfw

    Root-cause analysis with hypothesis tracking. An agent skill from FerroxLabs/ijfw.

    212 GitHub stars~578 tokensUpdated 4 days ago
    Auto-check passed

Works with

Categories

Questions about Ijfw Preflight

What does Ijfw Preflight do?

Run the IJFW preflight pipeline (11 gates, fail-fast). An agent skill from FerroxLabs/ijfw. Ijfw Preflight is an agent skill from FerroxLabs/ijfw. Run the IJFW preflight pipeline (11 gates, fail-fast).

When should I use Ijfw Preflight?

Ijfw Preflight fits situations like: development work in your project.

How do I install Ijfw Preflight in Claude Code?

Run `npx skills add FerroxLabs/ijfw --skill ijfw-preflight -a claude-code`. Or copy the skill folder (codex/skills/ijfw-preflight in FerroxLabs/ijfw) into .claude/skills/ijfw-preflight in your project. Claude Code loads it when a task matches its description.

How do I install Ijfw Preflight in Codex?

Run `npx skills add FerroxLabs/ijfw --skill ijfw-preflight -a codex`. Or copy the skill folder (codex/skills/ijfw-preflight in FerroxLabs/ijfw) into .agents/skills/ijfw-preflight in your project. Codex loads it when a task matches its description.

Can I use Ijfw Preflight in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add FerroxLabs/ijfw --skill ijfw-preflight -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/ijfw-preflight, .gemini/skills/ijfw-preflight, .github/skills/ijfw-preflight and .opencode/skills/ijfw-preflight in your project.

What does Ijfw Preflight need to run?

Going by SKILL.md and its folder, Ijfw Preflight needs the command-line tools its instructions call (npm and git).

Does Ijfw Preflight access the network?

SKILL.md contains no URLs. Its commands use npm and git, which can reach the network depending on how they are called. This is read from the text; nothing was executed.

Is Ijfw Preflight safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Ijfw Preflight use?

Ijfw Preflight is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Ijfw Preflight use?

About 395 tokens (SKILL.md is roughly 1.6k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Ijfw Preflight?

Skills that share tags, products or a category with Ijfw Preflight: Nx Run Tasks (nomcopter/react-mosaic, 4.8k stars), Migrate Internal Package into Ghost (TryGhost/Ghost, 56k stars), Open Code Review CLI (alibaba/open-code-review, 45k stars) and Cutting A Release (TriliumNext/Trilium, 38k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Ijfw Preflight?

FerroxLabs (a GitHub user) maintains it in FerroxLabs/ijfw, which has 212 GitHub stars. The repository holds 38 skills in this directory. The repository was last updated on October 5, 2026.

Source: FerroxLabs/ijfw on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.