Agent skill

Poka Yoke

by sickn33 in sickn33/agentic-awesome-skills

Mistake-proof code, config and process: make the wrong action impossible or self-announcing rather than documented.

MITAuto-check passed

Install Poka Yoke

skills CLI
$ npx skills add sickn33/agentic-awesome-skills --skill poka-yoke -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install sickn33/agentic-awesome-skills poka-yoke --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/sickn33/agentic-awesome-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/poka-yoke .claude/skills/poka-yoke && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
poka-yoke
GitHub stars
47k
Used in
1 other repo
Token cost
~2.6k tokens
SKILL.md length
1,536 words
Files
1
Skills in repo
1,497
Repo updated
First seen
Licence
MIT

At a glance

Mistake-proof code, config and process: make the wrong action impossible or self-announcing rather than documented.

  • Works in 3 steps: Source inspection: check the conditions… → Self-check (informative): the work… → Successive check (informative): the next…
  • SKILL.md covers When to Use This Skill, The two axes, How to use this skill and How to talk about this, plus 3 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Poka Yoke is an agent skill from sickn33/agentic-awesome-skills. Mistake-proof code, config and process: make the wrong action impossible or self-announcing rather than documented.

Its SKILL.md is about 2.6k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

The repository describes itself as: AAS Core is the local, agent-first control plane for complete catalog discovery, agent-owned selection, stack validation, and planning, backed by 2,400+ agentic skills. Includes… The licence is MIT.

Example prompts

  • “/poka-yoke”

Workflow steps

3 steps, taken from the first numbered list in SKILL.md.

  1. Source inspection: check the conditions before the error can occur. Designed in
  2. Self-check (informative): the work checks itself as it happens. Runtime. Assertions,
  3. Successive check (informative): the next station checks the previous one. Review, CI,

What it can do on your machine

Read from SKILL.md and the folder at commit b84d35a. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Poka Yoke loads about 2.6k tokens when it runs. Until then it costs about 31 tokens; SKILL.md has 1,536 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~31
When it runs · the whole SKILL.md, loaded when a task matches
~2.6k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from sickn33/agentic-awesome-skills at commit b84d35a, republished under its MIT licence (© sickn33). 1,536 words, ~2,648 tokens.

Download SKILL.mdSave it as .claude/skills/poka-yoke/SKILL.md (or your agent's skills folder).
name
poka-yoke
description
Mistake-proof code, config and process: make the wrong action impossible or self-announcing rather than documented.
category
development
risk
safe
source
rainmanjam/poka-yoke
source_repo
rainmanjam/poka-yoke
source_type
community
date_added
2026-08-25
author
rainmanjam
tags
mistake-proofing, code-review, api-design, guardrails, reliability
tools
claude, cursor, codex
license
MIT

Poka-Yoke: Mistake-Proofing for Software

Shigeo Shingo's insight, from the Toyota Production System: people will always make mistakes; that is not the problem worth solving. The problem is letting a mistake become a defect. So you stop trying to make humans more careful and start redesigning the work so the mistake either cannot physically happen or announces itself immediately.

A poka-yoke ("poh-kah yoh-kay", ポカヨケ) is a device: a jig, a shape, a counter: not an instruction. In software: a type, a constraint, a hook, a schema, a state machine. The single most important consequence:

A comment, a docstring, a wiki page, a code review checklist, or a line in CLAUDE.md saying "don't do X" is not a poka-yoke. It is training. Training degrades. A device does not. If your proposed fix relies on someone remembering something, keep going.

When to Use This Skill

  • Use when the user says "poka-yoke this", "mistake-proof it", or "make this harder to get wrong".
  • Use when designing an interface, schema or state machine and the ask is "make invalid states unrepresentable" or "so callers cannot screw it up".
  • Use when auditing existing code for footguns: "what could bite us here", "what is easy to misuse".
  • Use after an incident, when the fix must close the class rather than the case: "make sure this never happens again", "this is the third time".
  • Especially for money, auth, permissions, deletion, migrations and pipelines, where failure is silent.

The two axes

Every real poka-yoke answers two questions. Use both when you classify a hazard or propose a device. They are the difference between this method and generic code review.

Axis 1, Regulatory function: what happens when the mistake occurs?

This is a strict preference ladder. Always reach for the highest rung you can afford.

RungNameWhat it doesSoftware examples
1ControlThe mistake is impossible. The work cannot proceed.Type won't compile · NOT NULL / CHECK / unique constraint · required function argument · private constructor + smart constructor · PreToolUse hook returns deny · protected branch
2WarningThe mistake is possible but announced at the moment it happens.Lint error in the editor · failing CI gate · runtime assertion that throws · confirmation prompt naming the exact thing being destroyed
3DetectionThe mistake ships, and something finds it afterward.Tests · monitoring · alerting · reconciliation job
0(not a poka-yoke)Relies on a human remembering.Docs · comments · training · "be careful" · review checklists

Shingo's rule: prefer control over warning, always, and only settle for warning when control is genuinely too expensive, then say why out loud. In software the honest reason is usually "the language can't express it" or "it would break every existing caller," and both are worth stating explicitly so the tradeoff is visible.

Axis 2, Setting function: how does the device notice?

Shingo's three detection methods map cleanly onto software. These are your inspection lenses, run all three over any interface and you will find hazards that a general code review misses.

MethodFactory floorThe question to ask codeSoftware devices
ContactThe part physically won't seat unless it's the right shape and orientationCan the wrong thing fit?Distinct types instead of shared primitives · branded/newtype IDs · parse-don't-validate at boundaries · units in the type · discriminated unions instead of bags of optionals
Fixed-valueA counter says all 6 screws were fittedCan the wrong count or an incomplete set pass?Exhaustive match/switch over an enum · required fields · "all migrations applied" check · row-count guard on a bulk write · checksums · config validated as a whole at boot
Motion-stepA sensor confirms step 3 happened before step 4Can the steps happen in the wrong order, or be skipped?Typestate · builder that cannot .build() until required steps run · state machines with illegal transitions unrepresentable · idempotency keys · RAII / defer / context managers · transactions
The third principle: inspect at the source

Shingo separated source inspection from informative inspection, which finds the defect only after it exists and comes in two forms. Ranked best first, that is three places you can put the device.

  1. Source inspection: check the conditions before the error can occur. Designed in where you can, enforced at runtime where you cannot. The type, the constraint, the signature.
  2. Self-check (informative): the work checks itself as it happens. Runtime. Assertions, fail-fast, validation at the boundary.
  3. Successive check (informative): the next station checks the previous one. Review, CI, QA.

Push every device as far up this list as it will go. A CI gate that catches a bad migration is good; a schema that makes the bad migration unwritable is better and costs less forever.

How to use this skill

Apply the method directly to the subject in front of you. A Terraform module, a support runbook, a spreadsheet everyone edits, a release checklist, a prompt template, an onboarding process, a physical workflow: the method works on any of them, because Shingo developed it on an assembly line, for people fitting springs into switches, and not for software at all.

Applying it directly means four steps, in order:

  1. Name what is being done, and by whom. A device protects a specific action taken by a specific person or system. "The pipeline" is not an action; "an engineer re-runs the deploy job after it fails halfway" is.
  2. Run the three lenses over that action, can the wrong thing fit, can an incomplete or wrong-sized set pass, can the steps happen in the wrong order. Most subjects yield something on at least one.
  3. For each hazard found, state it as a mistake someone could make, what happens when they do, whether it is silent, and what exists today to stop it.
  4. Propose the highest-rung device you can afford, and say which rung it reaches. If you land on Warning, say what Control would have required and why you did not take it.

Then apply the two rules in How to talk about this below: name the mistake rather than the mistaken, and never let the answer come out as "be more careful" or "document it". Those are rung zero, and the whole method exists because they do not work.

If the request is bare, /poka-yoke with nothing attached, look at what is actually in front of you: the current diff, the file under discussion, the thing the conversation has been about. Say what you picked in one line before starting, so it is cheap to redirect you. If there is genuinely no subject, ask what they want mistake-proofed rather than guessing.

Show full SKILL.md (460 more words)Show less

How to talk about this

Two habits keep the analysis honest and keep people from getting defensive:

Name the mistake, not the mistaken. "This signature lets a caller swap the two IDs" is actionable and true. "The developer should have been more careful" is neither. Shingo was emphatic that blaming the operator is how organizations avoid fixing the process. Write findings about the code's affordances, never about who wrote it.

Say which rung you achieved, and what stopped you going higher. A recommendation that reads "added a runtime assertion (warning), control would need a newtype, which touches 40 call sites" gives the reader a real decision. One that reads "added validation" does not.

Example

Suppose a destructive API accepts deleteAccount(accountId: string, tenantId: string). The two identifiers can be swapped, and the call can target an account outside the caller's tenant.

  1. Contact lens: two plain strings have the same shape, so the wrong value fits.
  2. Motion-step lens: deletion can run before tenant ownership is established.
  3. Control device: replace the strings with distinct validated ID types and expose a deletion operation that accepts only an account loaded through the authenticated tenant.
  4. Warning fallback: if compatibility prevents that interface change, reject ownership mismatches at the boundary and require a confirmation that names the exact account. State explicitly that this is weaker than making the invalid call unrepresentable.
  5. Detection: retain audit logging and reconciliation for failures the control does not cover; do not present those after-the-fact checks as the poka-yoke itself.

Applying changes

Propose before you edit. Show the hazard, the proposed device, and the rung it reaches, then wait for a go-ahead before changing files: the whole point of this method is that it changes the shape of an interface, and that is precisely the kind of change people want to see first. Once approved, apply it and record the prevented mistake where future maintainers can verify the constraint without mistaking the explanation itself for the device.

The exception is when someone has explicitly asked you to write new code: mistake-proofing is the code they asked for, so build it, then narrate which hazards you designed out and why.

Limitations

  • Poka-yoke reduces predictable misuse; it cannot prove that a design is correct or cover hazards the analysis never identifies.
  • The strongest control may be unavailable in the current language, platform or compatibility envelope. When that happens, state the tradeoff and retain appropriate tests, monitoring and recovery paths instead of presenting a warning as complete prevention.
  • A guard can itself be wrong, overbroad or operationally expensive. Validate proposed devices against real callers and failure modes, especially for destructive, financial, authentication and authorization flows.
  • This method complements, but does not replace, domain review, security review, testing, observability or incident response.

© sickn33, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/poka-yoke of sickn33/agentic-awesome-skills.

Open the folder on GitHubat commit b84d35a

Used in 1 other repository

We found 5 copies of this SKILL.md (exact, near-identical or edited) in other folders, from 1 other GitHub owner. This page covers the copy in sickn33/agentic-awesome-skills, which our catalogue first saw on October 7, 2026.

Compare with similar skills

Poka Yoke next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Poka Yoke compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Poka Yoke this skillsickn33/agentic-awesome-skills47k1 repos~2.6kAutomated safety check: PassMIT
Poka Yokegithub/awesome-copilot40k—~2.8kAutomated safety check: PassMIT
ActionsJetBrains/intellij-community21k—~341Automated safety check: PassCustom licence
Proof Videoopenclaw/openclaw392k—~2.4kAutomated safety check: PassMIT
Laravel Actionscoollabsio/coolify63k—~2.4kAutomated safety check: PassApache-2.0
ActionsBuilderIO/agent-native7.1k—~4.5kAutomated safety check: PassNone

Similar skills

  • Poka Yoke

    github/awesome-copilot

    Official

    Mistake-proof code so misuse cannot be expressed, rather than warning against it.

    40k GitHub stars~2.8k tokensUpdated 2 days ago
    DevelopmentAuto-check passed
  • Actions

    JetBrains/intellij-community

    Official

    Implement or change IntelliJ AnAction actions and registrations.

    21k GitHub stars~341 tokensUpdated today
    MobileAuto-check passed
  • Proof Video

    openclaw/openclaw

    Add subtitles, captions, narration cues, or zoom to a proof video or PR recording using repo-local capture helpers and a system ffmpeg renderer.

    392k GitHub stars~2.4k tokensUpdated today
    Media & CreativeAuto-check passed
  • Laravel Actions

    coollabsio/coolify

    Build, refactor, and troubleshoot Laravel Actions using lorisleiva/laravel-actions.

    63k GitHub stars~2.4k tokensUpdated yesterday
    Backend & APIsAuto-check passed
  • Actions

    BuilderIO/agent-native

    How to create and run agent actions. An agent skill from BuilderIO/agent-native.

    7.1k GitHub stars~4.5k tokensUpdated today
    Backend & APIsAuto-check passed
  • Official

    Analyze recent GitHub Actions workflow runs to identify patterns, mistakes, and improvements.

    63k GitHub starsUsed in 1 repo~1.3k tokens
    DevOps & CloudAuto-check passed

More from sickn33/agentic-awesome-skills

All 1,497 skills in this repo
  • Liuguang Banlan UI

    sickn33/agentic-awesome-skills

    Implements an interface in one of two named color modes, iridescent white or colorful black, from a parameterized starter that reports measured color intensity.

    47k GitHub starsUsed in 1 repo~2.5k tokens
    Auto-check passed
  • User Thoughts Memory

    sickn33/agentic-awesome-skills

    Saves a user's project decisions, rules and preferences into a project-local mdbase so later sessions and other agents can recover the intent.

    47k GitHub starsUsed in 1 repo~2.5k tokens
    Auto-check passed
  • Using LWC Memory and Graphs

    sickn33/agentic-awesome-skills

    Keeps project decisions, research and verified results available across coding-agent sessions through LWC memory, a document Wiki graph and a CodeGraph code index.

    47k GitHub starsUsed in 1 repo~2k tokens
    Auto-check passed
  • Find Complementary Founders

    sickn33/agentic-awesome-skills

    Guides an agent through assessing its own owner for cofounder fit, publishing an approved profile, and ranking complementary profiles other agents published for their owners.

    47k GitHub starsUsed in 1 repo~4.8k tokens
    Auto-check passed
  • Whatsapp Cloud API

    sickn33/agentic-awesome-skills

    Integracao com WhatsApp Business Cloud API (Meta). An agent skill from sickn33/agentic-awesome-skills.

    47k GitHub starsUsed in 2 repos~4.5k tokens
    Auto-check passed
  • Cline Pilot

    sickn33/agentic-awesome-skills

    Acts as a proxy for the Cline CLI, dispatching coding tasks one at a time, monitoring runs by hard evidence, relaying decisions to you and learning per-project preferences.

    47k GitHub starsUsed in 1 repo~4.6k tokens
    Auto-check passed

Questions about Poka Yoke

What does Poka Yoke do?

Mistake-proof code, config and process: make the wrong action impossible or self-announcing rather than documented. Poka Yoke is an agent skill from sickn33/agentic-awesome-skills. Mistake-proof code, config and process: make the wrong action impossible or self-announcing rather than documented.

How do I install Poka Yoke in Claude Code?

Run `npx skills add sickn33/agentic-awesome-skills --skill poka-yoke -a claude-code`. Or copy the skill folder (skills/poka-yoke in sickn33/agentic-awesome-skills) into .claude/skills/poka-yoke in your project. Claude Code loads it when a task matches its description.

How do I install Poka Yoke in Codex?

Run `npx skills add sickn33/agentic-awesome-skills --skill poka-yoke -a codex`. Or copy the skill folder (skills/poka-yoke in sickn33/agentic-awesome-skills) into .agents/skills/poka-yoke in your project. Codex loads it when a task matches its description.

Can I use Poka Yoke in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add sickn33/agentic-awesome-skills --skill poka-yoke -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/poka-yoke, .gemini/skills/poka-yoke, .github/skills/poka-yoke and .opencode/skills/poka-yoke in your project.

What does Poka Yoke need to run?

SKILL.md names no scripts, command-line tools or credentials: Poka Yoke is instructions for the agent only.

Does Poka Yoke access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Poka Yoke safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Poka Yoke use?

Poka Yoke is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Poka Yoke use?

About 2.6k tokens (SKILL.md is roughly 11k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Poka Yoke?

Skills that share tags, products or a category with Poka Yoke: Poka Yoke (github/awesome-copilot, 40k stars), Actions (JetBrains/intellij-community, 21k stars), Proof Video (openclaw/openclaw, 392k stars) and Laravel Actions (coollabsio/coolify, 63k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Poka Yoke?

sickn33 (a GitHub user) maintains it in sickn33/agentic-awesome-skills, which has 47,405 GitHub stars. The repository holds 1,497 skills in this directory. The repository was last updated on October 9, 2026.

Source: sickn33/agentic-awesome-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.