Install
$ agentstack add skill-ada-ggf25-ai-tools-bootstrap-project ✓ scanned · ✓ verified — works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
About
Bootstrap A Project For Codex
Run the Codex-oriented new-repo setup workflow in one guided pass. This is a thin orchestrator: it owns sequencing and handoffs, and delegates detailed work to the focused skills.
Sequence:
AGENTS.md setup -> where-agents-md -> setup-permissions -> propose-automation -> setup-ci optional -> obsidian-vault optional -> durable memory suggestions.
Operating Principles
- Orchestrate, do not reimplement delegated skills.
- Pause after each step and continue only after user approval.
- Be idempotent: detect existing
AGENTS.md,.codex/,.agents/, and repo config. - Prefer shared repo guidance only when it is useful to teammates; keep personal Codex
config personal.
Procedure
0. Orient
- Confirm the working directory is the intended repo root.
- Detect existing setup: root/nested
AGENTS.md,AGENTS.override.md,.codex/,
.agents/, CLAUDE.md, README, CI, and project manifests.
- For a large repo, delegate broad exploration to a read-only subagent when available.
- Show the planned sequence and let the user drop steps.
1. Root Codex Instructions
- If no root
AGENTS.mdexists, propose creating one from observed repo facts. - If one exists, offer to review/update it instead of regenerating.
- If
CLAUDE.mdexists, use it as source context but do not copy Claude-only commands,
hook syntax, or permission syntax blindly.
2. Scoped Instruction Placement
- Invoke
where-agents-mdto identify high-value nestedAGENTS.mdcandidates. - Present recommendations and create files only for directories the user approves.
3. Codex Permissions And Config
- Invoke
setup-permissionsto review Codex sandbox, trusted project, and command
approval expectations.
- Do not edit global
~/.codex/config.tomlunless the user explicitly asks. Prefer
project-scoped guidance or a patch proposal.
4. Automation Proposal
- Invoke
propose-automationto suggest project Codex skills, custom agents, hooks, or
plugin packaging.
- Scaffold only approved items.
5. CI Pipeline
- Optionally invoke
setup-cifor GitHub Actions. Skip if the repo is not on GitHub or
if the user declines.
6. Obsidian Vault
- Optionally invoke
obsidian-vaultif the user wants a repo knowledge base.
7. Durable Memories
- Offer only genuinely durable, non-secret facts as project memories. Do not record
information already captured in AGENTS.md or README.
8. Wrap Up
- Summarize created/changed files.
- Remind the user that new Codex skills and agents are picked up in a new Codex session.
Guardrails
- Never run the full chain unattended.
- Never clobber existing setup; merge or propose targeted edits.
- Keep Claude and Codex artifacts separate unless the user explicitly asks for a shared
compatibility file.
- Never fabricate repo facts.
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: ada-ggf25
- Source: ada-ggf25/AI-Tools
- License: MIT
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet — be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.