Safety Guard
affaan-m/ECC
Guard against destructive operations with three modes: Careful intercepts dangerous commands (rm -rf, git push --force, DROP TABLE) for confirmation, Freeze locks writes to one directory, and Guard…
Cost-safety discipline for paid AI / inference APIs: treat $-cost as a third complexity dimension alongside time and space.
$ npx skills add sickn33/agentic-awesome-skills --skill runaway-guard -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install sickn33/agentic-awesome-skills runaway-guard --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/sickn33/agentic-awesome-skills.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/runaway-guard .claude/skills/runaway-guard && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "runaway-guard" agent skill from https://github.com/sickn33/agentic-awesome-skills/tree/main/skills/runaway-guard into .claude/skills/runaway-guard/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "runaway-guard", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/sickn33/agentic-awesome-skills/tree/main/skills/runaway-guardType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add sickn33/agentic-awesome-skills --skill runaway-guard -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install sickn33/agentic-awesome-skills runaway-guard --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/sickn33/agentic-awesome-skills.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/runaway-guard .agents/skills/runaway-guard && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "runaway-guard" agent skill from https://github.com/sickn33/agentic-awesome-skills/tree/main/skills/runaway-guard into .agents/skills/runaway-guard/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "runaway-guard", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add sickn33/agentic-awesome-skills --skill runaway-guard -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install sickn33/agentic-awesome-skills runaway-guard --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/sickn33/agentic-awesome-skills.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/runaway-guard .cursor/skills/runaway-guard && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "runaway-guard" agent skill from https://github.com/sickn33/agentic-awesome-skills/tree/main/skills/runaway-guard into .cursor/skills/runaway-guard/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "runaway-guard", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/sickn33/agentic-awesome-skills.git --path skills/runaway-guard--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add sickn33/agentic-awesome-skills --skill runaway-guard -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install sickn33/agentic-awesome-skills runaway-guard --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/sickn33/agentic-awesome-skills.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/runaway-guard .gemini/skills/runaway-guard && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "runaway-guard" agent skill from https://github.com/sickn33/agentic-awesome-skills/tree/main/skills/runaway-guard into .gemini/skills/runaway-guard/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "runaway-guard", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install sickn33/agentic-awesome-skills runaway-guardInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add sickn33/agentic-awesome-skills --skill runaway-guard -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/sickn33/agentic-awesome-skills.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/runaway-guard .github/skills/runaway-guard && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "runaway-guard" agent skill from https://github.com/sickn33/agentic-awesome-skills/tree/main/skills/runaway-guard into .github/skills/runaway-guard/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "runaway-guard", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add sickn33/agentic-awesome-skills --skill runaway-guard -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install sickn33/agentic-awesome-skills runaway-guard --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/sickn33/agentic-awesome-skills.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/runaway-guard .opencode/skills/runaway-guard && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "runaway-guard" agent skill from https://github.com/sickn33/agentic-awesome-skills/tree/main/skills/runaway-guard into .opencode/skills/runaway-guard/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "runaway-guard", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
runaway-guardCost-safety discipline for paid AI / inference APIs: treat $-cost as a third complexity dimension alongside time and space.
Runaway Guard is an agent skill from sickn33/agentic-awesome-skills. Cost-safety discipline for paid AI / inference APIs: treat $-cost as a third complexity dimension alongside time and space. Forces a written per-run $-cap, per-day $-cap, max-iterations bound, concurrency limit, and a matching provider-dashboard hard cap BEFORE any call site is written.
Its SKILL.md is about 5.7k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
The repository describes itself as: AAS Core is the local, agent-first control plane for complete catalog discovery, agent-owned selection, stack validation, and planning, backed by 2,400+ agentic skills. Includes… The licence is Apache-2.0.
7 steps, taken from the first numbered list in SKILL.md.
Read from SKILL.md and the folder at commit b84d35a. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
No scripts in the folder and no shell commands in SKILL.md (its code samples are typescript).
From the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Runaway Guard loads about 5.7k tokens when it runs. Until then it costs about 75 tokens; SKILL.md has 2,967 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check noted patterns worth knowing about, such as sudo or a known installer.
- About to commit a paid API key to a `.env` shared across environments.Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from sickn33/agentic-awesome-skills at commit b84d35a, republished under its Apache-2.0 licence (© sickn33). 2,967 words, ~5,729 tokens.
.claude/skills/runaway-guard/SKILL.md (or your agent's skills folder).Every loop has time complexity and space complexity. A loop that calls a paid API has a third: dollars per execution. The model tracks the first two automatically. It does not track the third, so it ships code where a single bug — a retry without bound, a stream reconnect storm, an agent that re-queues itself, a webhook that fires the same job twice — silently spends real money.
The canonical incident: developer writes a Fal.ai image-generation loop. Loop "obviously terminates" because it iterates over a fixed list. The list comes from a callback that fires on every Inngest retry. Each retry doubles the list. By morning, the bill is $200. Tests pass. Code review passed. The bug is not in the loop body. The bug is that no one stated the wallet invariant.
runaway-guard fixes this. State the max calls. State the max dollars per run. State the max dollars per day. Set the same caps in the provider dashboard so a code bug cannot bypass them. Then write the code.
Violating the letter of these rules is violating the spirit of the skill. "I'm only testing locally" is the exact rationalization that ships the $200 bill — local code hits the same paid API as production.
Use runaway-guard when:
@fal-ai/*, fal-client, @anthropic-ai/sdk, anthropic, openai, replicate, elevenlabs, together-ai, groq-sdk, cohere-ai, @mistralai/*.NO CALL TO A PAID API WITHOUT A WRITTEN $-CAP AT BOTH THE CODE AND PROVIDER LEVELA cap only in code can be bypassed by a bug in that code. A cap only at the provider can be hit during normal usage and degrade the product. You need both. If you cannot state both in one sentence each, you have not designed the call site — you have written a wish.
Every call site gets a one-line cost contract. Before writing any paid-API call, state in one sentence:
max_calls × unit_cost — compute it, don't estimate.Examples:
If you cannot fill in all three numbers, you have not designed the call site.
Every loop calling a paid API gets an explicit iteration bound, not just a termination argument. invariant-guard requires a termination measure. runaway-guard requires the bound to be a concrete integer in code, not just "eventually terminates":
// ❌ Terminates in theory. Bills $200 in practice.
while (job.status !== 'done') {
await fal.run(...);
}
// ✅ Concrete bound — wallet invariant explicit.
const MAX_CALLS = 20;
for (let i = 0; i < MAX_CALLS && job.status !== 'done'; i++) {
await fal.run(...);
}
if (job.status !== 'done') throw new Error('exceeded MAX_CALLS budget');Every retry path is bounded by attempts AND total elapsed cost, not by time alone. Exponential backoff with no attempt cap is a wallet attack on yourself.
Every fan-out path declares a concurrency limit. Parallel calls multiply cost per wall-clock second. State the limit in code, at the queue (Inngest concurrency), and at the provider where supported:
concurrency: { limit: N } on the function.p-limit, semaphore, or batched Promise.all chunks — never an unbounded Promise.all(items.map(...)) on a paid API.Every paid API has a matching provider-side hard cap, configured out of band. Defense in depth: if the code is wrong, the provider stops the bleeding. Document the cap in the same file as the call site so future readers know it exists.
| Provider | Where to set the hard cap |
|---|---|
| Fal.ai | Dashboard → Billing → Spend Limit (e.g. $50/day). Hard stop on exceed. |
| Anthropic | Console → Workspaces → Workspace Budget with hard limit. Per-workspace, per-month. |
| OpenAI | Org → Settings → Usage limits (org-level hard limit blocks requests). ⚠️ Per-project monthly budgets are soft thresholds only — they alert but do not block. For a real hard cap use the org-level Usage limit, a billing gateway, or your own fail-closed budget check. |
| Replicate | Account → Billing → Spend limit. Per account. |
| ElevenLabs | Workspace → Usage limits per workspace / API key. |
| Together / Groq / Cohere / Mistral | Each has a billing dashboard with a monthly spend cap — set it before first deploy, not after. |
No hard cap, no call site. Set the cap before the first request, not after the first incident.
Idempotency keys on every mutating or charging call. A webhook that fires twice should bill once. Without an idempotency key, retry policies you cannot see (load balancer, framework, gateway) silently double-charge.
Make the "amplifier" patterns explicit and forbidden by default. These are the shapes that turn small bugs into large bills:
while (!done) await poll() with no maxWaitMs is a wallet leak.singleflight / request coalescing.Before producing code that calls a paid API, your message must contain — in this order:
max_calls × unit_cost. Compute it.If any of 1–7 is missing, do not emit code.
This is the canonical case. Observe how each rule would have caught it.
What shipped:
// inngest function: generate images for a campaign
export const generateCampaign = inngest.createFunction(
{ id: 'gen-campaign' }, // ❌ no concurrency limit
{ event: 'campaign/start' },
async ({ event, step }) => {
const prompts = await step.run('fetch', () => fetchPrompts(event.data.id));
// ❌ unbounded fan-out, no per-run cap, no idempotency
await Promise.all(prompts.map(p => fal.run('fal-ai/flux-pro', { input: { prompt: p } })));
}
);What went wrong. fetchPrompts had a bug: on a transient DB error it returned the partial list plus the previous run's list appended. Inngest retried the function at its default retry count (multiple attempts in addition to the initial one). Each retry re-ran fetchPrompts, each retry doubled the list (40 → 80 → 160 → 320 prompts). Promise.all fanned all 320 out concurrently. At $0.05/image: $16/retry × triangular growth across overnight retries on the schedule = ~$200 by morning.
Why each rule would have caught it.
| Rule | Catch |
|---|---|
| 1. Cost contract | Forces writing "max calls per run". The number prompts.length is not a known integer → rule fails → write a cap. |
| 2. Concrete iteration bound | Promise.all(prompts.map(...)) has no integer bound → rule fails → wrap in chunks with MAX_IMAGES_PER_RUN. |
| 3. Retry policy | Inngest default retries × no idempotency key = double-billed work. Rule forces an idempotency key per (campaignId, promptHash). |
| 4. Concurrency limit | Promise.all is unbounded concurrency. Rule forces p-limit(3) and Inngest concurrency: { limit: 3 }. |
| 5. Provider hard cap | Fal Spend Limit $50/day would have stopped the bleeding at $50 instead of $200. |
| 7. Amplifier audit | "Self-rescheduling jobs" — Inngest's retry IS self-rescheduling. The audit forces you to consider it. |
The fix that survives the protocol:
// cost contract:
// provider: Fal flux-pro @ $0.05/image
// max calls per run: 50
// max $ per run: $2.50
// provider hard cap: $50/day (set in Fal dashboard 2026-05-22)
// concurrency: 3 (Inngest + p-limit, matching)
// idempotency: key = `${campaignId}:${sha1(prompt)}` — provider-side dedup window 24h
const MAX_IMAGES_PER_RUN = 50;
const limit = pLimit(3);
export const generateCampaign = inngest.createFunction(
{
id: 'gen-campaign',
concurrency: { limit: 3 },
retries: 2, // attempts = 1 + retries
},
{ event: 'campaign/start' },
async ({ event, step }) => {
const prompts = await step.run('fetch', () => fetchPrompts(event.data.id));
if (prompts.length > MAX_IMAGES_PER_RUN) {
throw new NonRetriableError(
`prompt count ${prompts.length} exceeds MAX_IMAGES_PER_RUN=${MAX_IMAGES_PER_RUN}`
);
}
await Promise.all(prompts.map(p => limit(() => step.run(
`img:${event.data.id}:${sha1(p)}`, // idempotency key
() => fal.run('fal-ai/flux-pro', { input: { prompt: p } })
))));
}
);Note: the bug in fetchPrompts is still there. The protocol does not fix that bug — it makes the bug cost $2.50 instead of $200 while you find it. That is the entire point of defense in depth.
| Pattern | Wallet invariant to write | Hard cap to set |
|---|---|---|
| Fan-out over a list of items | total_cost ≤ list_len × unit_cost ≤ MAX_$_PER_RUN | provider daily spend limit |
| Retry on transient error | total_cost ≤ attempts × unit_cost, attempts ≤ 5 | provider daily spend limit; alert at 50% |
| Agent loop ("ask model what to do next") | total_cost ≤ MAX_STEPS × per_step_cost, depth ≤ MAX_DEPTH | per-agent-run cost ceiling, kill-switch |
| Polling for job completion | total_cost ≤ ceil(MAX_WAIT_MS / poll_interval) × poll_cost | absolute deadline + alert |
| Webhook handler → API call | idempotency key required; cycle if webhook is triggered by the same API | provider rate limit per key |
| Stream reconnect | attempts ≤ MAX_RECONNECTS, exponential backoff with cap | provider connection cap |
| Cache miss stampede | singleflight → cost ≤ 1 × unit_cost per key per window | n/a (deduped in code) |
| Self-scheduling job | recursion depth bounded by ledger row, not by code | scheduler-level dedup + max runs/day |
| Multi-provider fallback | sum across providers ≤ MAX_$_PER_RUN | hard cap on each provider separately |
Set these before the first deploy. None of them require code changes.
concurrency: { limit: N } on every function that calls a paid API.retries: 2 (Inngest default is 4 retries, i.e. up to 5 attempts including the initial — confirm against current Inngest docs) for paid call functions; fewer attempts on idempotent failures. Worst-case wallet math: attempts = 1 + retries, so a default step.run() can bill 5×, not 4×.NonRetriableError for 4xx — never retry a 4xx into a paid API.idempotency: ... on events you cannot deduplicate at the call site.| Scenario | Expected behavior |
|---|---|
| Empty input list | 0 calls, 0 cost, return early — do not even auth |
| Input list longer than MAX | reject with NonRetriableError, do not partial-process |
| All calls fail with 4xx | 1 attempt each, no retry, surface error |
| All calls fail with 5xx | bounded retries, total cost ≤ attempts × unit, alert on full exhaustion |
| Concurrent invocation of the same job | idempotency key dedups; second invocation costs $0 |
| Network partition mid-batch | partial cost banked; on resume, idempotency key prevents re-charge |
| Provider rate-limit (429) | respect Retry-After; do not multiply retries inside SDK and outside |
| Webhook retried by provider | idempotency at the handler boundary |
| Local dev accidentally pointing at prod key | per-env keys + per-env caps make this cost $0.50, not $50 |
| Cron fires while previous run still executing | concurrency limit = 1 OR explicit overlap-tolerant design |
Code you emit must:
// cost contract: block above each call site with the four numbers (unit cost, max calls, max $/run, provider hard cap setting).MAX_IMAGES_PER_RUN, MAX_AGENT_STEPS) for the bound — never a magic number inline.p-limit or equivalent — never raw Promise.all over a paid API.4xx retries via NonRetriableError or equivalent.| Excuse | Reality |
|---|---|
| "I'm only testing locally." | Local hits the same paid endpoint. A retry bug in test code bills the same dollars. |
| "The list is small, fan-out is fine." | The list is small today. Next week it is fetched from a table that grew 50×. The cap exists for next week. |
| "Inngest already retries, so I don't need a retry policy." | Inngest retries × your retry wrapper × SDK retries = 27 attempts. Each one bills. |
| "The API call is cheap, $0.001." | At 10,000 unintended invocations that is $10 — and the count is exactly what you failed to bound. |
| "I'll set the provider cap later." | The bug ships before "later". Set the cap in the 60 seconds it takes; the code can wait. |
| "Idempotency is overkill for this." | Webhooks retry. Load balancers retry. Browsers retry. Without an idempotency key, something will duplicate. |
| "We have monitoring, we'll catch it." | Monitoring catches it after $200 is spent. Caps prevent the $200 from being spent. |
| "It obviously terminates." | The $200/night incident also "obviously terminated". Write the integer bound. |
If any of these sound familiar mid-thought: stop, write the cost contract, set the provider cap, then write the code.
await Promise.all(items.map(x => paidApi(x))) with no p-limit.while (!done) await paidApi(...) with no integer bound..env shared across environments.All of these mean: stop, write the cost contract, set the provider cap, then write the code.
Before shipping any code that calls a paid API:
p-limit) AND at the queue (Inngest concurrency).Cannot check every box? The code is example-correct, not bill-correct. Either fill the gap or do not connect a billing-enabled key.
max calls is a proxy — the real cap is max input tokens × max output tokens × per-token rate. Adapt the protocol: replace max calls per run with max tokens per run.complexity-cuts for the corrective rewrite — runaway-guard prevents the next one, not the current one.Time bounds prevent stalls. Space bounds prevent OOMs. Dollar bounds prevent $200 mornings. AI assistants enforce the first two by default and ignore the third. runaway-guard makes them reason about the wallet first.
© sickn33, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in skills/runaway-guard of sickn33/agentic-awesome-skills.
Open the folder on GitHubat commit b84d35a
We found 5 copies of this SKILL.md (exact, near-identical or edited) in other folders, from 1 other GitHub owner. This page covers the copy in sickn33/agentic-awesome-skills, which our catalogue first saw on October 9, 2026.
Runaway Guard next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Runaway Guard this skillsickn33/agentic-awesome-skills | 47k | 1 repos | ~5.7k | Automated safety check: Notes | Apache-2.0 | |
| Safety Guardaffaan-m/ECC | 276k | 2 repos | ~554 | Automated safety check: Notes | MIT | |
| Safety Guardaffaan-m/ECC | 276k | — | ~323 | Automated safety check: Notes | MIT | |
| Safety Guardaffaan-m/ECC | 276k | — | ~255 | Automated safety check: Notes | MIT | |
| ONNX Runtime Shape Inference Safety Auditmicrosoft/onnxruntime | 22k | — | ~3.3k | Automated safety check: Pass | MIT | |
| Cost Trackingaffaan-m/ECC | 276k | 1 repos | ~1.3k | Automated safety check: Pass | MIT |
affaan-m/ECC
Guard against destructive operations with three modes: Careful intercepts dangerous commands (rm -rf, git push --force, DROP TABLE) for confirmation, Freeze locks writes to one directory, and Guard…
affaan-m/ECC
本番システムでの作業時や、エージェントを自律的に実行する際に破壊的な操作を防ぐためにこのスキルを使用してください. An agent skill from affaan-m/ECC.
affaan-m/ECC
使用此技能可防止在生产系统上工作或自主运行代理时进行破坏性操作。
microsoft/onnxruntime
Finds and fixes out-of-range output writes in ONNX Runtime operator shape-inference functions where a getNumOutputs guard admits too few outputs.
affaan-m/ECC
Track and report Claude Code token usage, spending, and budgets from the local ECC cost-tracker metrics log.
ruvnet/ruflo
Per-conversation cost view — list every session in cost-tracking with started-at, message count, top model, and total cost
sickn33/agentic-awesome-skills
Implements an interface in one of two named color modes, iridescent white or colorful black, from a parameterized starter that reports measured color intensity.
sickn33/agentic-awesome-skills
Saves a user's project decisions, rules and preferences into a project-local mdbase so later sessions and other agents can recover the intent.
sickn33/agentic-awesome-skills
Keeps project decisions, research and verified results available across coding-agent sessions through LWC memory, a document Wiki graph and a CodeGraph code index.
sickn33/agentic-awesome-skills
Guides an agent through assessing its own owner for cofounder fit, publishing an approved profile, and ranking complementary profiles other agents published for their owners.
sickn33/agentic-awesome-skills
Integracao com WhatsApp Business Cloud API (Meta). An agent skill from sickn33/agentic-awesome-skills.
sickn33/agentic-awesome-skills
Acts as a proxy for the Cline CLI, dispatching coding tasks one at a time, monitoring runs by hard evidence, relaying decisions to you and learning per-project preferences.
Cost-safety discipline for paid AI / inference APIs: treat $-cost as a third complexity dimension alongside time and space. Runaway Guard is an agent skill from sickn33/agentic-awesome-skills. Cost-safety discipline for paid AI / inference APIs: treat $-cost as a third complexity dimension alongside time and space.
Run `npx skills add sickn33/agentic-awesome-skills --skill runaway-guard -a claude-code`. Or copy the skill folder (skills/runaway-guard in sickn33/agentic-awesome-skills) into .claude/skills/runaway-guard in your project. Claude Code loads it when a task matches its description.
Run `npx skills add sickn33/agentic-awesome-skills --skill runaway-guard -a codex`. Or copy the skill folder (skills/runaway-guard in sickn33/agentic-awesome-skills) into .agents/skills/runaway-guard in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add sickn33/agentic-awesome-skills --skill runaway-guard -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/runaway-guard, .gemini/skills/runaway-guard, .github/skills/runaway-guard and .opencode/skills/runaway-guard in your project.
SKILL.md names no scripts, command-line tools or credentials: Runaway Guard is instructions for the agent only.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found notes only (mentions a .env file), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.
Runaway Guard is published under the Apache-2.0 licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 5.7k tokens (SKILL.md is roughly 23k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Runaway Guard: Safety Guard (affaan-m/ECC, 276k stars), Safety Guard (affaan-m/ECC, 276k stars), Safety Guard (affaan-m/ECC, 276k stars) and ONNX Runtime Shape Inference Safety Audit (microsoft/onnxruntime, 22k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
sickn33 (a GitHub user) maintains it in sickn33/agentic-awesome-skills, which has 47,405 GitHub stars. The repository holds 1,497 skills in this directory. The repository was last updated on October 9, 2026.
Source: sickn33/agentic-awesome-skills on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.