woc-codex-audit

GitHub

用于审查 Codex 架构的合规性、安全性及文档一致性。通过只读审计 AGENTS.md、技能配置等,识别风险与冗余,评估模型中立性与 CI 集成,输出分级修复建议。

.agents/skills/woc-codex-audit/SKILL.md levy-street/world-of-claudecraft

Trigger Scenarios

审查或现代化 AGENTS.md 和 .codex 文件 检查仓库 AI 架构是否符合当前规范 评估 Codex 工作流、脚本及文档漂移

Install

npx skills add levy-street/world-of-claudecraft --skill woc-codex-audit -g -y
More Options

Non-standard path

npx skills add https://github.com/levy-street/world-of-claudecraft/tree/main/.agents/skills/woc-codex-audit -g -y

Use without installing

npx skills use levy-street/world-of-claudecraft@woc-codex-audit

指定 Agent (Claude Code)

npx skills add levy-street/world-of-claudecraft --skill woc-codex-audit -a claude-code -g -y

安装 repo 全部 skill

npx skills add levy-street/world-of-claudecraft --all -g -y

预览 repo 内 skill

npx skills add levy-street/world-of-claudecraft --list

SKILL.md

Frontmatter
{
    "name": "woc-codex-audit",
    "description": "Audit World of ClaudeCraft Codex support for current conventions, model neutrality, instruction quality, agent safety, skill design, hooks, CI integration, and documentation drift. Use when reviewing or modernizing AGENTS.md, .codex, .agents, Codex workflows, Codex-facing scripts, or the repository AI architecture."
}

Codex Architecture Audit

Evaluate whether Codex receives concise, safe, current, and scalable operating context without altering the Claude Code architecture. An audit request is read-only. Apply fixes only when the user explicitly requests implementation.

Preserve boundaries

  1. Read the root CLAUDE.md, AGENTS.md, and relevant local CLAUDE.md files.
  2. Run git status --short and preserve unrelated work.
  3. Treat root and local CLAUDE.md files as canonical repository truth.
  4. Do not edit CLAUDE.md or .claude/** as part of Codex support work.

Codex files should point to canonical instructions and add only Codex runtime guidance.

Research current behavior

Use current official OpenAI documentation for Codex configuration, skills, agents, hooks, permissions, model selection, and CI. Clearly separate documented facts from inference. Keep repository guidance model-neutral unless a task has an evidence-backed capability requirement, and prefer inheritance over project model pins.

Use the woc_docs_researcher custom agent for a bounded official-documentation pass when it is available. Verify consequential recommendations against the cited primary source.

Inventory

Inspect AGENTS.md, .codex/**, .agents/skills/**, custom agents, hooks, Codex GitHub workflows, AI-facing scripts and tests, documentation, ignore rules, and malware scanner coverage. Identify duplicated, abandoned, shadowed, untracked, or conflicting settings.

Assess

Verify that:

  • canonical instructions are referenced instead of copied;
  • guidance encodes decisions that a simple search cannot recover;
  • skill triggers and implicit-invocation policy match risk;
  • external writes require explicit authorization;
  • review-only workflows remain read-only;
  • the coordinator owns command execution and reviewers are scoped;
  • models, effort, permissions, and providers are not unnecessarily pinned;
  • hooks are fast, deterministic, local, and secret-safe;
  • CI isolates untrusted input, uses least privilege, and protects credentials;
  • worktree, dirty-tree, branch, and commit rules protect concurrent sessions;
  • shared and personal Codex state have deliberate tracking rules;
  • tests and scanners cover instruction-bearing Codex files;
  • documentation matches effective configuration.

Classify findings as P0 immediate credential or destructive risk, P1 architecture or reliability defect, or P2 drift and maintainability. Include evidence, impact, and the smallest change. Also report active surfaces, intentional Claude-only items, redundancy, missing verification, implementation order, and one verdict: CURRENT, NEEDS MAINTENANCE, or NEEDS REDESIGN.

Version History

  • 2edc3ac Current 2026-07-19 18:52

Same Skill Collection

.agents/skills/woc-extract-and-test/SKILL.md
.agents/skills/woc-feature-plan/SKILL.md
.agents/skills/woc-file-issue/SKILL.md
.agents/skills/woc-qa/SKILL.md
.agents/skills/woc-release-malware-audit/SKILL.md
.agents/skills/woc-release-merge-audit/SKILL.md
.agents/skills/woc-review-pr/SKILL.md
.claude/skills/feature-plan/SKILL.md
.claude/skills/file-issue/SKILL.md
.claude/skills/pr-screenshots/SKILL.md
.claude/skills/qa/SKILL.md
.claude/skills/extract-and-test/SKILL.md
.claude/skills/i18n-locale-fill/SKILL.md
.claude/skills/release-malware-audit/SKILL.md
.claude/skills/review-pr/SKILL.md

Metadata

Files
0
Version
2edc3ac
Hash
a330bd21
Indexed
2026-07-19 18:52

ホーム - Wiki
Copyright © 2011-2026 iteam. Current version is 2.155.2. UTC+08:00, 2026-07-20 15:30
浙ICP备14020137号-1 $お客様$