Install
$ agentstack add skill-iml1s-agent-cli-skills-codex-cli-agent ✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
Verified badge
Passed review? Show it. Paste this badge into your README, it links to the public security report.
Reliability & compatibility
Declared compatibility
Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.
We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.
How agent discovery & health will work →About
Codex CLI (codex exec) Executor
When to use
- User wants Codex /
codex execas the coding agent - Need Codex subagents, agent TOML profiles, or CSV fan-out
- Sandboxed writes (
-s workspace-write) vs strict read-only reviews (-r)
Wrapper
./codex-exec.sh -C /path/to/repo -s workspace-write "Implement X. NO git."
./codex-exec.sh -r -C /path/to/repo "Review for bugs" # sandbox read-only
./codex-exec.sh -T -C /path/to/repo "Parallelize with subagents"
./codex-exec.sh -j -o /tmp/last.txt -f /tmp/bundle.txt
./codex-exec.sh --enable some_feature -m "…"
Flags: -m · -t · -C · -s read-only|workspace-write|danger-full-access · -o last-message file · -f · -j/--json · -r · -T · --skip-git-repo-check (default on) · --require-git-repo · --ephemeral · --add-dir · --image · --enable · --profile · --no-git · -- passthrough.
-C is absolutized before use (avoids nested relative cwd).
Sandbox vs writing answer files
If the prompt must write a file under the workspace, do not use -r / read-only. That fails with writing is blocked by read-only sandbox after the model finishes reasoning. Use -s workspace-write and instruct “only write the designated path”, or capture stdout.
Native multi-agent
- Subagents (parallel spawn + synthesize); custom roles in
~/.codex/agents/*.tomlor.codex/agents/ - Experimental batch:
spawn_agents_on_csv(one worker per CSV row) - Feature flags:
codex features list|enable|disable -Tasks Codex to prefer subagents / CSV fan-out when useful
Models
Do not hard-code a stale model table. Discover via your Codex build / account docs. Pin with -m when automation requires stability.
Discipline
Always --skip-git-repo-check outside git repos. Exit code untrusted. Orchestrator owns git.
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: ImL1s
- Source: ImL1s/agent-cli-skills
- License: MIT
- Homepage: https://iml1s.github.io/agent-cli-skills/
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet, be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.