alipajand/agent-readiness-action
GitHub Action that scores how ready a repository is for AI coding agents and checks its agent instruction files. Deterministic, no LLM.
ARCHETYPE
Fort Knox
Deny lists, pre-tool hooks, sandboxing. Nothing touches prod without a signature.
GUARDRAILS
4/5
Blocks destructive commands · Protects secrets · No YOLO mode · Sandbox or ask-first rules · details
Copy this rig
# review before running: this installs third-party code
$ npx degit alipajand/agent-readiness-action/.claude ./rig-agent-readiness-action # inspect, then merge into .claude/ MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.
$ npx degit alipajand/agent-readiness-action/.agents/skills/bumping-bundled-engines .claude/skills/bumping-bundled-engines $ npx degit alipajand/agent-readiness-action/.agents/skills/source-command-verify .claude/skills/source-command-verify
$ curl -fsSL --create-dirs -o .claude/agents/security-reviewer.md https://raw.githubusercontent.com/alipajand/agent-readiness-action/main/.claude/agents/security-reviewer.md Merge into .claude/settings.json (project) or ~/.claude/settings.json (user). Hook commands reference scripts in the source repo — copy those too.
{
"permissions": {
"deny": [
"Read(./.env)",
"Read(./.env.*)",
"Edit(./vendor/**)",
"Bash(curl:*)",
"Bash(wget:*)",
"Bash(rm -rf:*)",
"Bash(git push --force:*)",
"Bash(git reset --hard:*)"
],
"ask": [
"Bash(git commit:*)",
"Bash(git push:*)",
"Bash(git -C vendor/agent-readiness-kit:*)",
"Bash(git -C vendor/agent-context-doctor:*)",
"Bash(pnpm add:*)",
"Bash(pnpm install:*)",
"Bash(pnpm update:*)"
]
}
} Skills (2)
Subagents (1)
| security-reviewer | Reviews a change to agent-readiness-action against its security rules. Use before finishing changes to src/ or action.yml. |
Slash commands (1)
/verify
Permissions
deny (8)
Read(./.env)
Read(./.env.*)
Edit(./vendor/**)
Bash(curl:*)
Bash(wget:*)
Bash(rm -rf:*)
Bash(git push --force:*)
Bash(git reset --hard:*)
ask (7)
Bash(git commit:*)
Bash(git push:*)
Bash(git -C vendor/agent-readiness-kit:*)
Bash(git -C vendor/agent-context-doctor:*)
Bash(pnpm add:*)
Bash(pnpm install:*)
Bash(pnpm update:*)
allow (13)
Bash(pnpm format)
Bash(pnpm format:check)
Bash(pnpm typecheck)
Bash(pnpm lint)
Bash(pnpm test)
Bash(pnpm test:*)
Bash(pnpm build)
Bash(git status:*)
Bash(git diff:*)
Bash(git log:*)
Bash(git show:*)
Bash(git submodule status:*)
Bash(git submodule update --init)
Similar rigs
Seme4eg/dotfiles
My $HOME
Pragmatist 681 tok ·
alipajand/agent-context-doctor
Audit agent context files like AGENTS.md, CLAUDE.md, .cursor/rules/*.mdc, .github/copilot-instructions.md, and prompt docs for quality, safety, contradictions, and repo alignment.
Fort Knox 1.5k tok ·
alipajand/agent-readiness-kit
Audit whether a software repository is ready for AI coding agents (Cursor, Codex, Claude Code, GitHub Copilot, and similar tools).
Fort Knox 1.8k tok ·
caiolombello/claude-dotfiles
—
YOLO Cowboy 1.2k tok ·