AgentStack
Browse Sign in
Browse Why AgentStack Sell Docs
Sign in
SKILL verified MIT Self-run

Dzzen Cto Orchestrator

skill-stasdzzen-codex-skills-dzzen-cto-orchestrator · by stasdzzen

Проводит Setup-аудит и оркестрирует реализацию готовых Issues. Используйте только когда: пользователь явно вызывает `$dzzen-cto-orchestrator`; глобальная установка не активирует Controller.

No reviews yet
0 installs
24 views
0.0% view→install

Install

$ agentstack add skill-stasdzzen-codex-skills-dzzen-cto-orchestrator

✓ scanned · ✓ verified, works with Claude Code, Cursor, and more.

Security review

✓ Passed

No issues found. Passed automated security review. · v0.1.0 How review works →

  • Prompt-injection patterns
  • Secret / credential exfiltration
  • Dangerous shell & filesystem operations
  • Untrusted network calls
  • Known-malicious package signatures

What it can access

  • Network access No
  • Filesystem access No
  • Shell / process execution No
  • Environment & secrets No
  • Dynamic code execution No

From automated source analysis of v0.1.0. “Used” means the capability is present in the source — more access means more to trust, not that it’s unsafe.

View the full security report →

Verified badge

Passed review? Show it. Paste this badge into your README, it links to the public security report.

AgentStack Verified badge Links to your public security report.
[![AgentStack Verified](https://agentstack.voostack.com/badges/verified.svg)](https://agentstack.voostack.com/security/report/skill-stasdzzen-codex-skills-dzzen-cto-orchestrator)

Reliability & compatibility

Security review passed
0 installs to date
no reviews yet
2mo ago

Declared compatibility

Claude CodeClaude Desktop

Compatibility is declared by the source manifest. End-to-end runtime verification is coming, see below.

Preview Execution monitoring

We're building live execution health for every listing: tool-call success rate, median latency, uptime, and last-checked timestamps, measured, not self-reported. It isn't live yet, so we don't show numbers we can't stand behind.

How agent discovery & health will work →
Are you the author of Dzzen Cto Orchestrator? Claim this listing to set pricing, connect Stripe payouts, and keep 70% of every sale.
Sign up to claim

About

Dzzen CTO Orchestrator

Результат роли: готовые Issues реализованы через один уровень Workers, независимо проверены на текущем head SHA и доведены до разрешённого merge.

Активация и вход

Установка даёт доступ к скилу, но не полномочия. Следуйте контракту только когда пользователь явно вызывает $dzzen-cto-orchestrator. Для Controller также нужны явный режим, назначение текущей постоянной задачи, repository и workstream_id. Иначе оставайтесь в read-only Setup или controller-candidate.

Один раз прочитайте [модель команды](references/team-workflow.md), а при назначении или handoff — [контракт ролей](references/role-contract.md). Затем прочитайте применимые AGENTS.md, канон, registry, scoped CTO config и готовые Issues. Identity неизменна: repository + workstream_id + cto и repository + workstream_id + Issue = задача = worktree = ветка = PR.

Setup и troubleshooting

Setup — read-only аудит Git/GitHub, документации, config и test commands. Читайте [контракт аудита документации](references/documentation-audit.md) и при необходимости [config](references/config-contract.md) или [compatibility](references/compatibility.md). До apply покажите точный dry-run; одно подтверждение относится ко всему неизменившемуся plan. Setup не запускает Workers, не принимает PR и не выполняет merge.

Controller workflow

Перед мутациями прочитайте [полный workflow](references/controller-workflow.md). Явный запрос запусти ready Issues уже разрешает recovery и обычный in-scope delivery lifecycle:

  1. Выполните read-only recovery. Duplicate Controller, identity drift, missing

capability или material scope conflict блокируют затронутую работу; успешный recovery не требует новой команды владельца.

  1. Strict validator принимает только ready Issue с совпадающими config,

workstream block, exact label, touched paths и readiness source. Issues mode использует только настроенные labels. Project mode — только настроенный Project Status.

  1. До создания Worker выполните closed preflight по

[routing моделей](references/model-routing.md). Вычислите lane из проверенных metadata, проверьте exact host combination и передайте host только create_request; в inherit model override отсутствует. После успешного создания сохраните private receipt.

  1. Для одной Issue создайте одну пользовательскую Worker-задачу в managed

worktree. Сохраните ветку с prefix codex//; detached HEAD допустим до её создания. Candidate-файлы self-hosted скила являются объектом работы и не меняют правила активного Controller.

  1. Обрабатывайте event handoff или прямое сообщение пользователя. Не запускайте

polling, если пользователь сам сообщит о завершении. Fallback heartbeat нужен только по явному запросу или при recovery stale state и не запускает тесты.

  1. Возвращайте findings тому же Worker. Не создавайте replacement и не меняйте

Issue = задача = worktree = ветка = PR.

  1. Для текущего head SHA проверьте specification compliance, code quality,

evidence freshness и GitHub CI. Используйте заявленный fast, default или deep profile; один успешный deterministic full gate exact SHA не повторяйте без причины.

  1. После зелёных gates выполните разрешённый merge, проверьте merge SHA,

git status, unpushed commits и GitHub state, затем архивируйте задачу и переоцените зависимости.

Quality commands и отчёт об ошибке

Обычные non-destructive tests approved Issue запускаются без отдельного owner gate. Используйте argument arrays validated config:

python3 /scripts/run_quality.py \
  .codex/dzzen-skills/workstreams//cto.yaml --repo-root . --run

Перед новым repository script прочитайте его; allowlist не делает код доверенным. Для известного сбоя можно предложить offline preview:

python3 /scripts/report_bug.py preview \
  --error-code  --command  --summary 

Submit разрешён только отдельным сообщением пользователя и с совпадающим digest. Автоматическая отправка, analytics и telemetry запрещены.

Автономия и Definition of Done

Техническую closure direct consumers выполняйте в том же workstream без owner interruption, если outcome, acceptance criteria, risk и protected actions не меняются. Отдельный owner gate нужен для product/architecture choice, material scope expansion, release, deploy, production mutation, credentials, destructive action или обхода protection.

Готово означает: identity сохранена, все acceptance criteria сопоставлены с diff/evidence, checks и независимый verdict относятся к текущему head SHA, merge state перепроверен, blockers и следующий protected gate названы честно.

Source & license

This open-source skill is cataloged on AgentStack and links to its original source — we do not rehost the code.

Install and usage instructions live in the source repository linked above.

Reviews

No reviews yet, be the first.

Versions

  • v0.1.0 Imported from the upstream source.