Install
$ agentstack add skill-45ck-skill-harness-noslop-pr-gate ✓ scanned · ✓ verified — works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
About
Use this skill before opening or updating a pull request in a noslop-protected repository.
Gate command:
noslop check --tier=slow
Run this after all commits are staged and before opening the PR. This tier runs type checking and the full test suite. The pre-push hook runs it automatically before git push, but running it manually first avoids a rejected push.
If the gate fails:
- fix the type error or test failure reported in the output
- never use
[skip ci],skip-checks, orSKIP_CIin commit messages or CI configuration - never add
continue-on-error: trueto workflow steps to force a green CI run - re-run
noslop check --tier=slowto confirm the gate is green before pushing
Escape hatch for intentional weakening:
If a change intentionally weakens a quality gate config (for example, removing an obsolete lint rule), the pre-commit hook will block it locally. To proceed:
- submit the change via a pull request
- have a human reviewer apply the
noslop-approvedlabel to the PR guardrails.ymlenforces the label requirement; the PR cannot merge without it
This escape hatch is for deliberate, reviewed decisions only. Do not use it to unblock failing gates. Do not apply the label yourself.
Protected files requiring the label:
.githooks/.github/workflows/.claude/settings.json.claude/hooks/
Any PR that modifies these paths without the noslop-approved label will be blocked by the guardrails CI check.
CI is authoritative:
The quality.yml workflow runs --tier=ci (all tiers combined) on every PR and every push to main. It is configured as a required status check. Bypassing local hooks does not bypass CI. The CI tier is the final gate and cannot be skipped by any local trick.
Checklist before opening a PR:
noslop check --tier=slowpasses locally- no
[skip ci],SKIP_CI, orskip-checksin commit messages - no
continue-on-error: trueadded to workflows - if protected files are modified, the
noslop-approvedlabel has been applied by a human reviewer
Avoid:
- pushing with
--forcewithout explicit human approval - adding CI-bypass patterns to get a failing check to pass
- requesting or applying the
noslop-approvedlabel without a human reviewer's explicit decision
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: 45ck
- Source: 45ck/skill-harness
- License: MIT
- Homepage: https://github.com/45ck/skill-harness/releases/tag/v0.1.0
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet — be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.