~ / rigs / alipajand / agent-readiness-action

alipajand/agent-readiness-action

GitHub Action that scores how ready a repository is for AI coding agents and checks its agent instruction files. Deterministic, no LLM.

↗ GitHub ★ 1 MIT updated 1d ago project Claude CodeCodex
share on X
ARCHETYPE
Fort Knox
Deny lists, pre-tool hooks, sandboxing. Nothing touches prod without a signature.
CONTEXT TAX · EVERY TURN
~1.2k tokens
Featherweight · median rig: 2.3k · breakdown
GUARDRAILS
4/5
Blocks destructive commands · Protects secrets · No YOLO mode · Sandbox or ask-first rules · details

Copy this rig

# review before running: this installs third-party code
$ npx degit alipajand/agent-readiness-action/.claude ./rig-agent-readiness-action  # inspect, then merge into .claude/

MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.

$ npx degit alipajand/agent-readiness-action/.agents/skills/bumping-bundled-engines .claude/skills/bumping-bundled-engines
$ npx degit alipajand/agent-readiness-action/.agents/skills/source-command-verify .claude/skills/source-command-verify
$ curl -fsSL --create-dirs -o .claude/agents/security-reviewer.md https://raw.githubusercontent.com/alipajand/agent-readiness-action/main/.claude/agents/security-reviewer.md

Merge into .claude/settings.json (project) or ~/.claude/settings.json (user). Hook commands reference scripts in the source repo — copy those too.

{
  "permissions": {
    "deny": [
      "Read(./.env)",
      "Read(./.env.*)",
      "Edit(./vendor/**)",
      "Bash(curl:*)",
      "Bash(wget:*)",
      "Bash(rm -rf:*)",
      "Bash(git push --force:*)",
      "Bash(git reset --hard:*)"
    ],
    "ask": [
      "Bash(git commit:*)",
      "Bash(git push:*)",
      "Bash(git -C vendor/agent-readiness-kit:*)",
      "Bash(git -C vendor/agent-context-doctor:*)",
      "Bash(pnpm add:*)",
      "Bash(pnpm install:*)",
      "Bash(pnpm update:*)"
    ]
  }
}

Skills (2)

Subagents (1)

security-reviewerReviews a change to agent-readiness-action against its security rules. Use before finishing changes to src/ or action.yml.

Slash commands (1)

/verify

Permissions

deny (8)
Read(./.env)
Read(./.env.*)
Edit(./vendor/**)
Bash(curl:*)
Bash(wget:*)
Bash(rm -rf:*)
Bash(git push --force:*)
Bash(git reset --hard:*)
ask (7)
Bash(git commit:*)
Bash(git push:*)
Bash(git -C vendor/agent-readiness-kit:*)
Bash(git -C vendor/agent-context-doctor:*)
Bash(pnpm add:*)
Bash(pnpm install:*)
Bash(pnpm update:*)
allow (13)
Bash(pnpm format)
Bash(pnpm format:check)
Bash(pnpm typecheck)
Bash(pnpm lint)
Bash(pnpm test)
Bash(pnpm test:*)
Bash(pnpm build)
Bash(git status:*)
Bash(git diff:*)
Bash(git log:*)
Bash(git show:*)
Bash(git submodule status:*)
Bash(git submodule update --init)

Similar rigs

copied ✓