Agent skill

Control

by ww-w-ai in ww-w-ai/bkit-claude-code

Control bkit automation level (L0-L4), view trust score, and manage guardrails.

Apache-2.0Auto-check: notesAI & LLM Engineering

Install Control

skills CLI
$ npx skills add ww-w-ai/bkit-claude-code --skill control -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install ww-w-ai/bkit-claude-code control --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/ww-w-ai/bkit-claude-code.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/control .claude/skills/control && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
control
GitHub stars
601
Token cost
~1.6k tokens
SKILL.md length
437 words
Files
1
Skills in repo
44
Repo updated
First seen
Licence
Apache-2.0

At a glance

Control bkit automation level (L0-L4), view trust score, and manage guardrails.

  • Works in 4 steps: Read runtime control state from… → Read trust score from… → Read active guardrails from lib/control/… → …
  • Tasks that involve LLM guardrails
  • SKILL.md covers Arguments, Automation Levels, Action Details and State Files, plus 2 more sections
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md

What it does

Control is an agent skill from ww-w-ai/bkit-claude-code. Control bkit automation level (L0-L4), view trust score, and manage guardrails. Trust level directly drives SPRINTAUTORUNSCOPE (v2.1.13): L0 manual+stopAfter=prd, L4 full-auto+stopAfter=archived. Also gates PDCA phase transitions and destructive operations. Triggers: control, automation level, trust score, guardrail

Its SKILL.md is about 1.6k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in AI & LLM Engineering, covering LLM guardrails and PRD writing. The repository describes itself as: bkit Vibecoding Kit - PDCA methodology + Claude Code mastery for AI-native development. The licence is Apache-2.0.

When your agent uses it

  • Tasks that involve LLM guardrails
  • Tasks that involve PRD writing

Example prompts

  • “/control”

Requirements

  • Pre-approved tools (allowed-tools): Read, Write, Glob, Grep, Bash, AskUserQuestion

Workflow steps

4 steps, taken from the first numbered list in SKILL.md.

  1. Read runtime control state from .bkit/runtime/control-state.json
  2. Read trust score from .bkit/state/trust-score.json
  3. Read active guardrails from lib/control/ configuration
  4. Display formatted status panel

What it can do on your machine

Read from SKILL.md and the folder at commit 85b4913. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves these tools, so the agent can use them without asking each time:

    • Read
    • Write
    • Glob
    • Grep
    • Bash
    • AskUserQuestion

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md (its code samples are bash).

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Control loads about 1.6k tokens when it runs. Until then it costs about 82 tokens; SKILL.md has 437 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~82
When it runs · the whole SKILL.md, loaded when a task matches
~1.6k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check: notes

The automated check noted patterns worth knowing about, such as sudo or a known installer.

  • NotePre-approves every shell command (allowed-tools: Bash)SKILL.md
    allowed-tools: Read, Write, Glob, Grep, Bash, AskUserQuestion

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from ww-w-ai/bkit-claude-code at commit 85b4913, republished under its Apache-2.0 licence (© ww-w-ai). 437 words, ~1,555 tokens.

Download SKILL.mdSave it as .claude/skills/control/SKILL.md (or your agent's skills folder).
name
control
description
Control bkit automation level (L0-L4), view trust score, and manage guardrails. Trust level directly drives SPRINT_AUTORUN_SCOPE (v2.1.13): L0 manual+stopAfter=prd, L4 full-auto+stopAfter=archived. Also gates PDCA phase transitions and destructive operations. Triggers: control, automation level, trust score, guardrail
allowed-tools
Read, Write, Glob, Grep, Bash, AskUserQuestion
classification
workflow
classification-reason
Automation control persists regardless of model advancement
deprecation-risk
none
effort
medium
argument-hint
[status|level|pause|resume|trust]
user-invocable
true
task-template
[Control] {action}

Control Skill

User-invocable skill for managing bkit automation level and system status.

Arguments

ArgumentDescriptionExample
(none)Show current status (same as status)/control
statusShow automation level, trust score, guardrails/control status
level <0-4>Set automation level manually/control level 2
pausePause all automation (equivalent to L0)/control pause
resumeResume to previous automation level/control resume
trustShow trust score details and history/control trust

Automation Levels

LevelNameDescriptionApproval Gates
L0ManualAll actions require explicit user approvalEvery phase transition
L1GuidedSuggestions provided, user confirms each stepEvery phase transition
L2Semi-AutoRoutine transitions auto, key decisions gateddo->check, check->report, report->archive
L3AutoMost transitions auto, only destructive ops gatedreport->archive
L4Full-AutoFully automated PDCA cycle, minimal interventionInitial feature approval only

Action Details

status (Default)

Display the current automation control state.

  1. Read runtime control state from .bkit/runtime/control-state.json
  2. Read trust score from .bkit/state/trust-score.json
  3. Read active guardrails from lib/control/ configuration
  4. Display formatted status panel

Output Format:

--- bkit Control Panel ----------------------------
Automation Level : L2 (Semi-Auto)
Trust Score      : 72/100
Active Guardrails: 8/8
Paused           : No
Features Active  : 2/3
---------------------------------------------------
Guardrails:
  [ON] Destructive operation detection
  [ON] Blast radius limiter (max 10 files)
  [ON] Loop breaker (max 5 iterations)
  [ON] Checkpoint auto-creation
  [ON] Permission escalation gate
  [ON] Stale feature timeout (7d)
  [ON] Context overflow protection
  [ON] Concurrent write lock
---------------------------------------------------
level <0-4>

Set the automation level manually.

  1. Validate input is a number 0-4
  2. Read current level from .bkit/runtime/control-state.json
  3. If escalating (going higher), warn user about reduced oversight
  4. If de-escalating, apply immediately without confirmation
  5. Update .bkit/runtime/control-state.json with new level
  6. Write audit log entry via lib/audit/audit-logger.js
  7. Display confirmation with new level details

Escalation Rule: Level increases require explicit confirmation via AskUserQuestion. Level decreases are immediate (safe direction).

Level Mapping to Automation:

LevelautomationLevelDescription
L0manualAll manual
L1guideGuided suggestions
L2semi-autoSemi-automatic (default)
L3autoMostly automatic
L4full-autoFully automatic
Show full SKILL.md (171 more words)Show less
pause

Pause all automation immediately.

  1. Save current level to .bkit/runtime/control-state.json as previousLevel
  2. Set level to L0 (Manual)
  3. Set paused: true flag
  4. Write audit log: automation_paused
  5. Display confirmation: "Automation paused. All operations require manual approval."
resume

Resume automation to the previous level before pause.

  1. Read previousLevel from .bkit/runtime/control-state.json
  2. If not paused, display: "Automation is not paused."
  3. Restore level to previousLevel
  4. Clear paused flag
  5. Write audit log: automation_resumed
  6. Display confirmation with restored level
trust

Show trust score details and contributing factors.

  1. Read trust score from .bkit/state/trust-score.json
  2. Calculate score breakdown:
    • PDCA completion rate (0-25 points)
    • Match rate average (0-25 points)
    • Error recovery rate (0-20 points)
    • Session stability (0-15 points)
    • User override frequency (0-15 points, inverse)
  3. Display detailed breakdown

Output Format:

--- Trust Score Details ---------------------------
Overall Score: 72/100

Breakdown:
  PDCA Completion Rate  : 18/25  (72% cycles completed)
  Match Rate Average    : 22/25  (88% average)
  Error Recovery Rate   : 14/20  (70% recovered)
  Session Stability     : 12/15  (80% stable)
  User Override Freq    :  6/15  (40% override rate)
---------------------------------------------------
Level Recommendation: L2 (Semi-Auto)
  Score 0-30  -> L0 (Manual)
  Score 31-50 -> L1 (Guided)
  Score 51-70 -> L2 (Semi-Auto)
  Score 71-85 -> L3 (Auto)
  Score 86+   -> L4 (Full-Auto)
---------------------------------------------------

State Files

FilePurpose
.bkit/runtime/control-state.jsonRuntime control state (level, paused, previousLevel)
.bkit/state/trust-score.jsonTrust score and contributing metrics

Module Dependencies

ModuleFunctionUsage
lib/control/automation-controller.jsgetLevel(), setLevel()Read/write automation level
lib/control/automation-controller.jspause(), resume()Pause/resume automation
lib/audit/audit-logger.jswriteAuditLog()Record control changes

Usage Examples

bash
# Check current status
/control

# Set to Semi-Auto
/control level 2

# Pause all automation
/control pause

# Resume previous level
/control resume

# View trust score
/control trust

© ww-w-ai, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in skills/control of ww-w-ai/bkit-claude-code.

Open the folder on GitHubat commit 85b4913

Compare with similar skills

Control next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Control compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Control this skillww-w-ai/bkit-claude-code601—~1.6kAutomated safety check: NotesApache-2.0
Agent Specmohitagw15856/pm-claude-skills1.4k—~1.1kAutomated safety check: PassMIT
App Spec Packagerinstructa/agent-skills139—~1.5kAutomated safety check: PassNone
Team Deliverablesslgoodrich/agents139—~2.2kAutomated safety check: PassCustom licence
Aisafetyhotwuyoscar/AISafetyHot-Hub641—~1.4kAutomated safety check: PassCustom licence
ObliteratusRedWoodOG/Hermes-Desktop1775 repos~3.8kAutomated safety check: PassMIT

Similar skills

  • Agent Spec

    mohitagw15856/pm-claude-skills

    Specify an autonomous or tool-using AI agent before building it.

    1.4k GitHub stars~1.1k tokensUpdated today
    AI & LLM EngineeringAuto-check passed
  • App Spec Packager

    instructa/agent-skills

    A skill your agent uses when the user wants to turn an application, product, startup idea, SaaS, mobile app, web app, API, AI product, or internal tool into a production-ready Markdown specification…

    139 GitHub stars~1.5k tokensUpdated 10 days ago
    Product & Project ManagementAuto-check passed
  • Team Deliverables

    slgoodrich/agents

    Output templates and scoring rubrics for multi-agent team workflows.

    139 GitHub stars~2.2k tokensUpdated 6 mo ago
    EducationAuto-check passed
  • Aisafetyhot

    wuyoscar/AISafetyHot-Hub

    Query AI Safety HOT news, research papers, incidents, hot topics, and daily/weekly/monthly reports through its public read-only MCP service.

    641 GitHub stars~1.4k tokensUpdated today
    AI & LLM EngineeringAuto-check passed
  • Obliteratus

    RedWoodOG/Hermes-Desktop

    Remove refusal behaviors from open-weight LLMs using OBLITERATUS — mechanistic interpretability techniques (diff-in-means, SVD, whitened SVD, LEACE, SAE decomposition, etc.) to excise guardrails…

    177 GitHub starsUsed in 5 repos~3.8k tokens
    AI & LLM EngineeringAuto-check passed
  • Turns a natural-language description of routing intent into a valid Lemonade collection.router policy JSON.

    406 GitHub stars~4k tokensUpdated today
    AI & LLM EngineeringAuto-check passed

More from ww-w-ai/bkit-claude-code

All 44 skills in this repo
  • Audit

    ww-w-ai/bkit-claude-code

    View audit logs, decision traces, and session history for AI transparency.

    601 GitHub stars~1.6k tokensUpdated 12 days ago
    Auto-check: notes
  • Bkend Auth

    ww-w-ai/bkit-claude-code

    bkend.ai authentication — email/social login, JWT tokens, RBAC, session management.

    601 GitHub stars~937 tokensUpdated 12 days ago
    Auto-check: notes
  • Bkend Cookbook

    ww-w-ai/bkit-claude-code

    bkend.ai project tutorials (todo to SaaS) and common error troubleshooting.

    601 GitHub stars~891 tokensUpdated 12 days ago
    Auto-check: notes
  • Bkend Quickstart

    ww-w-ai/bkit-claude-code

    bkend.ai onboarding — MCP setup, resource hierarchy, tenant/user model, first project.

    601 GitHub stars~1.2k tokensUpdated 12 days ago
    Auto-check passed
  • Bkend Storage

    ww-w-ai/bkit-claude-code

    bkend.ai file storage — upload (presigned URL), download (CDN), visibility levels, buckets.

    601 GitHub stars~901 tokensUpdated 12 days ago
    Auto-check: notes
  • Bkit

    ww-w-ai/bkit-claude-code

    bkit plugin help - list available functions including /pdca (9-phase feature cycle), /sprint (8-phase feature container, v2.1.13), /control (Trust L0-L4 + SPRINTAUTORUNSCOPE), /bkit-explore, and 40+…

    601 GitHub stars~1.4k tokensUpdated 12 days ago
    Auto-check passed

Questions about Control

What does Control do?

Control bkit automation level (L0-L4), view trust score, and manage guardrails. Control is an agent skill from ww-w-ai/bkit-claude-code. Control bkit automation level (L0-L4), view trust score, and manage guardrails.

When should I use Control?

Control fits situations like: tasks that involve LLM guardrails; tasks that involve PRD writing.

How do I install Control in Claude Code?

Run `npx skills add ww-w-ai/bkit-claude-code --skill control -a claude-code`. Or copy the skill folder (skills/control in ww-w-ai/bkit-claude-code) into .claude/skills/control in your project. Claude Code loads it when a task matches its description.

How do I install Control in Codex?

Run `npx skills add ww-w-ai/bkit-claude-code --skill control -a codex`. Or copy the skill folder (skills/control in ww-w-ai/bkit-claude-code) into .agents/skills/control in your project. Codex loads it when a task matches its description.

Can I use Control in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add ww-w-ai/bkit-claude-code --skill control -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/control, .gemini/skills/control, .github/skills/control and .opencode/skills/control in your project.

What does Control need to run?

SKILL.md names no scripts, command-line tools or credentials: Control is instructions for the agent only. Its frontmatter pre-approves these tools: Read, Write, Glob, Grep, Bash, AskUserQuestion.

Does Control access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Control safe to install?

Our automated static check of SKILL.md found notes only (pre-approves every shell command (allowed-tools: bash)), nothing it rates as a warning. It is not a guarantee. Review the folder before installing.

What licence does Control use?

Control is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Control use?

About 1.6k tokens (SKILL.md is roughly 6.2k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Control?

Skills that share tags, products or a category with Control: Agent Spec (mohitagw15856/pm-claude-skills, 1.4k stars), App Spec Packager (instructa/agent-skills, 139 stars), Team Deliverables (slgoodrich/agents, 139 stars) and Aisafetyhot (wuyoscar/AISafetyHot-Hub, 641 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Control?

ww-w-ai (a GitHub organization) maintains it in ww-w-ai/bkit-claude-code, which has 601 GitHub stars. The repository holds 44 skills in this directory. The repository was last updated on September 27, 2026.

Source: ww-w-ai/bkit-claude-code on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.