Install
$ agentstack add skill-pax-k-build-right-build-right-execution ✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.
Security review
✓ PassedNo issues found. Passed automated security review. · v0.1.0 How review works →
- ✓ Prompt-injection patterns
- ✓ Secret / credential exfiltration
- ✓ Dangerous shell & filesystem operations
- ✓ Untrusted network calls
- ✓ Known-malicious package signatures
What it can access
- ✓ Network access No
- ✓ Filesystem access No
- ✓ Shell / process execution No
- ✓ Environment & secrets No
- ✓ Dynamic code execution No
From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.
Verified badge
Passed review? Show it. Paste this badge into your README, it links to the public security report.
Reliability & compatibility
Declared compatibility
Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.
We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.
How agent discovery & health will work →About
Build Right Execution
Use this skill after pre-execution work has produced product truth, MVP scope, operating rules, and an executable task queue.
Core rule:
Do one task.
Prove the current state.
Change narrowly.
Verify with the right evidence.
Update the tracker.
Then move to the next task.
Required Reading
- Always read
references/workflow.mdbefore acting. - Read
references/gates.mdbefore task selection, after task intake, and
before advancing to another task.
- Read
references/review-and-delegation.mdonly when review triggers apply,
subagent review is useful, or broad evidence/tracker changes are touched.
- Read
references/evidence-contract.mdbefore completing or updating a task. - Read
../build-right-engineering-principles/references/principles.mdbefore
implementation or review when a task touches architecture boundaries, public APIs, package ownership, provider adapters, generated code, error semantics, tests, observability, security, or enforceable policy.
- Use
assets/templates/task-template.mdwhen creating a missing task or
splitting an overbroad task.
- Use bundled helper scripts only through the full Bun command form shown
below. Do not rely on PATH aliases or invoke short names such as continue-check as shell commands.
- Use the state resolver before selecting a task or advancing through a queue.
Report and reconcile its decision before continuing.
- Use the execution helper for deterministic task, contract, and gate signals.
Treat script output as input to judgment, not authority.
Operating Mode
- Run the read-only state resolver when available:
``sh bun /scripts/continue-check.ts --cwd --format markdown --strict ``
- Report the resolver findings before selecting work:
``text Resolver decision: Confidence: Next action: Next task: Blocking gates: External follow-ups: ``
- Follow the resolver decision before selecting work:
ask-founder: ask or report the founder-owned gate; do not continue.wait-external: report the external-state gate; do not continue.create-blocker: create or propose the smallest AI-owned blocker.no-ready-task: stop and report that no AI-owned task is ready.invalid-state: stop and reconcile contradictory tracker/gate state.continue-active-taskorexecute-task: select exactly that task.
- Run the read-only execution helper when available:
``sh bun /scripts/execution-check.ts --cwd --mode next-task --format markdown ``
- Read task, sprint/milestone tracker, authority docs, and local agent
instructions.
- Print task intake:
``text Active task: Done means: Non-goals: Assumption basis: Reversibility: Learning hook: Source under test: Baseline evidence: Verification ladder: broader checks> Evidence destination: ``
- Run the execution helper in
task-contractorallmode when a task path
exists, then reconcile any missing fields before editing.
- Inspect current workspace state before editing.
- Capture baseline evidence.
- Implement the smallest change that satisfies the task.
- Verify in layers.
- Run subagent review when a required review trigger applies and subagent tools
are available. If unavailable or forbidden, record the skipped review and substitute verification before closing.
- Record evidence before marking the task complete.
- Update only the relevant tracker/docs.
- Run the full Bun state resolver command and the execution helper in
stop-gates mode before selecting another task.
- Report the resolver findings again before deciding whether another task is
safe to select.
- Stop at any founder, external-state, failed-verification, stale-task, source
mismatch, open-conflict, non-AI-owner, or release-claim gate. Do not advance to the next task until the gate is resolved or explicitly converted into a ready AI-owned task.
- Commit or hand off according to project workflow.
Not-Ready Rule
If authority docs, MVP scope, execution rules, or task files are missing, do not pretend execution is ready. Route the user to /build-right-preflight or create the smallest Sprint 0 blocker needed to establish the missing execution surface.
Prototype tasks may run from prototype-assumption only when reversibility, learning hook, and validation required before product truth are explicit.
For skill release/manual trials, record the exact source under test. If the installed or invoked skill is stale versus the repo-local skill source, mark the trial partial-needs-rerun and do not advance release gates to ready.
Scope Rule
Do not silently widen scope. If the task reveals unrelated work, create a follow-up issue and continue only inside the selected task boundary.
Stop/Ask Gate
After each task, check whether the next step is truly AI-owned and ready. Stop and ask or report the blocker when the next step requires:
- founder-owned product, positioning, buyer/user, or MVP decisions
- ready or active task ownership that is not AI
- open conflicts in
docs/conflicts.md - external discovery, search indexing, publishing, secrets, paid services, or
production access
- failed verification, stale task state, source mismatch, or ambiguous evidence
- required subagent review that was skipped without an equivalent substitute
Continuing through a prepared queue is allowed only while every next task is ready, AI-owned, evidence-backed, and not blocked by one of these gates.
User-Visible Status Badge
End every final response with exactly one status badge block:
✅ [DONE] Status: DONE
Decision:
Next action:
Needs user input:
Blocked by:
Use this status map:
✅ [DONE] Status: DONEfor a completed task with evidence,
verification, and tracker updates.
🟢 [GREEN] Status: ALL GREENforexecute-taskor
continue-active-task before implementation starts.
🟡 [YELLOW] Status: NEEDS INPUTforask-founder.🟠 [ORANGE] Status: NEEDS WORKfor AI-owned follow-up work that is
not yet a ready execution task.
🔵 [BLUE] Status: WAITING EXTERNALforwait-external, publishing,
indexing, credentials, paid services, production access, or third-party state.
🔴 [RED] Status: BLOCKEDforcreate-blocker,no-ready-task,
invalid-state, open conflicts, failed verification, stale/source mismatch, non-AI-owned task ownership, or skipped required review without substitute.
Source & license
This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.
- Author: pax-k
- Source: pax-k/build-right
- License: MIT
Install and usage instructions live in the source repository linked above.
Reviews
No reviews yet, be the first.
Write a review
Versions
- v0.1.0 Imported from the upstream source.