~ / rigs / kyungseo / ai-workflow-harness

kyungseo/ai-workflow-harness

A manual-first, human-in-the-loop workflow harness for AI-assisted development—aligns plans, approval gates, validation, and project state across Claude Code, Codex, Antigravity, and Cursor.

↗ GitHub ★ 14 Apache-2.0 updated 2mo ago personal setup Claude CodeCodexCursor
share on X
ARCHETYPE
Skill Collector
Ten-plus skills loaded on demand. A procedural-knowledge library.
CONTEXT TAX · EVERY TURN
~5.2k tokens
Moderate · median rig: 2.3k · breakdown
GUARDRAILS
3/5
Blocks destructive commands · Protects secrets · No YOLO mode · details

Copy this rig

# review before running: this installs third-party code
$ npx degit kyungseo/ai-workflow-harness/.claude ./rig-ai-workflow-harness  # inspect, then merge into .claude/

MCP servers are added to Claude Code at local scope; env vars are shown as YOUR_… placeholders — we never store values. Files are fetched with degit into a separate folder so you can review before merging.

$ npx degit kyungseo/ai-workflow-harness/.agents/skills/workflow-cross-review .claude/skills/workflow-cross-review
$ npx degit kyungseo/ai-workflow-harness/.agents/skills/workflow-record-decision .claude/skills/workflow-record-decision
$ npx degit kyungseo/ai-workflow-harness/.agents/skills/workflow-repo-health .claude/skills/workflow-repo-health
$ npx degit kyungseo/ai-workflow-harness/.agents/skills/workflow-session-start .claude/skills/workflow-session-start
$ npx degit kyungseo/ai-workflow-harness/.agents/skills/workflow-session-summary .claude/skills/workflow-session-summary
$ npx degit kyungseo/ai-workflow-harness/.agents/skills/workflow-work-brief .claude/skills/workflow-work-brief
$ npx degit kyungseo/ai-workflow-harness/.agents/skills/workflow-work-close .claude/skills/workflow-work-close
$ npx degit kyungseo/ai-workflow-harness/.agents/skills/workflow-work-debug .claude/skills/workflow-work-debug
$ npx degit kyungseo/ai-workflow-harness/.agents/skills/workflow-work-doc .claude/skills/workflow-work-doc
$ npx degit kyungseo/ai-workflow-harness/.agents/skills/workflow-work-plan .claude/skills/workflow-work-plan
$ npx degit kyungseo/ai-workflow-harness/.agents/skills/workflow-work-register .claude/skills/workflow-work-register
$ npx degit kyungseo/ai-workflow-harness/.agents/skills/workflow-work-resume .claude/skills/workflow-work-resume
$ npx degit kyungseo/ai-workflow-harness/.agents/skills/workflow-work-select .claude/skills/workflow-work-select

Merge into .claude/settings.json (project) or ~/.claude/settings.json (user). Hook commands reference scripts in the source repo — copy those too.

{
  "permissions": {
    "deny": [
      "Read(./.env)",
      "Read(./.env.*)",
      "Read(./.claude/settings.local.json)",
      "Read(./secrets/**)",
      "Read(./**/*.key)",
      "Read(./**/*.pem)",
      "Read(./**/*.crt)",
      "Bash(sudo *)",
      "Bash(rm -rf*)",
      "Bash(rm -r *)",
      "Bash(bash -c*)",
      "Bash(kubectl *)",
      "Bash(terraform *)",
      "Bash(git push --force*)",
      "Bash(git push -f *)",
      "Bash(git reset --hard*)",
      "Bash(git clean -f*)",
      "Bash(chmod 777*)",
      "Bash(git config --global*)",
      "Bash(docker run --privileged*)"
    ]
  }
}

Skills (13)

Hooks (1)

eventmatcherruns
Stop*python3 -c "print('[hook] 세션 종료 전 확인: Work가 완료됐다면 /work-close를 먼저 실행하고, 그다음 /session-summary로 validation, STATUS/Tracking Finalization, Approval Matrix에 따른 상태 변경 필요 여부, DR-worthy 결정, commit 상태를 보고하세요.')"

Slash commands (13)

/cross-review/record-decision/repo-health/session-start/session-summary/work-brief/work-close/work-debug/work-doc/work-plan/work-register/work-resume/work-select

Cursor rules (12)

behavior-principles · alwayscoding · alwaysdebuggingexecution · alwaysgit-commitjava-springoutput-format · alwaysrole-harness-maintainer · alwayssafety-critical · alwaystestingworkflow · alwaysworkflow · always

Permissions

deny (20)
Read(./.env)
Read(./.env.*)
Read(./.claude/settings.local.json)
Read(./secrets/**)
Read(./**/*.key)
Read(./**/*.pem)
Read(./**/*.crt)
Bash(sudo *)
Bash(rm -rf*)
Bash(rm -r *)
Bash(bash -c*)
Bash(kubectl *)
Bash(terraform *)
Bash(git push --force*)
Bash(git push -f *)
Bash(git reset --hard*)
Bash(git clean -f*)
Bash(chmod 777*)
Bash(git config --global*)
Bash(docker run --privileged*)
ask (0)
—
allow (59)
Bash(./gradlew *)
Bash(git status)
Bash(git diff*)
Bash(git log*)
Bash(git show*)
Bash(git branch*)
Bash(git add *)
Bash(git commit*)
Bash(git checkout*)
Bash(git switch*)
Bash(git fetch*)
Bash(git pull*)
Bash(git push)
Bash(git push *)
Bash(git stash*)
Bash(git merge*)
Bash(git rebase*)
Bash(git tag*)
Bash(git mv *)
Bash(java *)
Bash(javac *)
Bash(javap *)
Bash(python3 *)
Bash(pip3 *)
Bash(pip *)
Bash(curl *)
Bash(docker *)
Bash(docker-compose *)
Bash(docker compose *)
Bash(ls*)
Bash(find *)
Bash(grep *)
Bash(rg *)
Bash(cat *)
Bash(head *)
Bash(tail *)
Bash(wc *)
Bash(stat *)
Bash(mkdir *)
Bash(cp *)
Bash(mv *)
Bash(rm *)
Bash(echo *)
Bash(which *)
Bash(env)
Bash(export *)
Bash(jq *)
Bash(sort *)
Bash(uniq *)
Bash(sed *)
Bash(awk *)
Bash(xargs *)
Bash(lsof *)
Bash(ps *)
Bash(kill *)
Bash(gh *)
Bash(open *)
Bash(unzip *)
Bash(./scripts/*.sh *)

Similar rigs

copied ✓