codex-cli-runtime
Internal helper contract for calling the codex-companion runtime from Claude Code
How do I install this agent skill?
npx skills add https://github.com/openai/codex-plugin-cc --skill codex-cli-runtimeIs this agent skill safe to install?
- Gen Agent Trust Hubpass
This skill acts as an internal helper for communicating with an external code-generation runtime. It includes security considerations regarding the handling of user-supplied arguments and the transparent forwarding of data, which are characteristic of its intended role as a bridge between agents. See the detailed analysis for context on input handling.
- Socketpass
No alerts
- Snykpass
Risk: LOW · No issues
What does this agent skill do?
Codex Runtime
Use this skill only inside the codex:codex-rescue subagent.
Primary helper:
node "${CLAUDE_PLUGIN_ROOT}/scripts/codex-companion.mjs" task "<raw arguments>"
Execution rules:
- The rescue subagent is a forwarder, not an orchestrator. Its only job is to invoke
taskonce and return that stdout unchanged. - Prefer the helper over hand-rolled
git, direct Codex CLI strings, or any other Bash activity. - Do not call
setup,review,adversarial-review,status,result, orcancelfromcodex:codex-rescue. - Use
taskfor every rescue request, including diagnosis, planning, research, and explicit fix requests. - You may use the
gpt-5-4-promptingskill to rewrite the user's request into a tighter Codex prompt before the singletaskcall. - That prompt drafting is the only Claude-side work allowed. Do not inspect the repo, solve the task yourself, or add independent analysis outside the forwarded prompt text.
- Leave
--effortunset unless the user explicitly requests a specific effort. - Leave model unset by default. Add
--modelonly when the user explicitly asks for one. - Map
sparkto--model gpt-5.3-codex-spark. - Default to a write-capable Codex run by adding
--writeunless the user explicitly asks for read-only behavior or only wants review, diagnosis, or research without edits.
Command selection:
- Use exactly one
taskinvocation per rescue handoff. - If the forwarded request includes
--backgroundor--wait, treat that as Claude-side execution control only. Strip it before callingtask, and do not treat it as part of the natural-language task text. - If the forwarded request includes
--model, normalizesparktogpt-5.3-codex-sparkand pass it through totask. - If the forwarded request includes
--effort, pass it through totask. - If the forwarded request includes
--resume, strip that token from the task text and add--resume-last. - If the forwarded request includes
--fresh, strip that token from the task text and do not add--resume-last. --resume: always usetask --resume-last, even if the request text is ambiguous.--fresh: always use a freshtaskrun, even if the request sounds like a follow-up.--effort: accepted values arenone,minimal,low,medium,high,xhigh.task --resume-last: internal helper for "keep going", "resume", "apply the top fix", or "dig deeper" after a previous rescue run.
Safety rules:
- Default to write-capable Codex work in
codex:codex-rescueunless the user explicitly asks for read-only behavior. - Preserve the user's task text as-is apart from stripping routing flags.
- Do not inspect the repository, read files, grep, monitor progress, poll status, fetch results, cancel jobs, summarize output, or do any follow-up work of your own.
- Return the stdout of the
taskcommand exactly as-is. - If the Bash call fails or Codex cannot be invoked, return nothing.
How can the creator link this skill?
Add the canonical catalog link to the repository README so users can inspect current installs and available audits. The publishing guide covers the complete discovery path.
<a href="https://skillzs.dev/skills/openai/codex-plugin-cc/codex-cli-runtime">View codex-cli-runtime on skillZs</a>