Skip to content
Back to skills

Claude Cli Agent

ASecurity

Dispatches bounded tasks and persona-based analysis through Claude CLI. Use for authorized Claude reviews, audits, or work requiring a fresh model context.

  • 7 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added September 2, 2026
ai-agentspythongobashbackendsecurityperformance

Works with

  • cli

Security analysis

A100/100

Pro scans all 12 files and shows the line behind each finding

Scanned October 3, 2026

npx -y skills add richfrem/agent-plugins-skills --skill claude-cli-agent --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Claude Cli Agent?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Claude Cli Agent
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/richfrem-claude-cli-agent-agent-plugins-skills/badge)](https://www.skillsdirectory.com/skills/richfrem-claude-cli-agent-agent-plugins-skills)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: claude-cli-agent
plugin: cli-agents
description: Dispatches bounded tasks and persona-based analysis through Claude CLI. Use for authorized Claude reviews, audits, or work requiring a fresh model context.
allowed-tools: Bash, Read, Write
---

# Claude CLI Agent

Dispatch the authorized task using the bundled router.

## Contents

- [Constraints](#constraints)
- [Quick start](#quick-start)
- [Workflow](#workflow)
- [Verification](#verification)
- [Persona Registry](#-persona-registry-agents)
- [Dispatch details](references/claude-cli-dispatch.md)

## Constraints

Reuse the user's runtime/model/effort choice; do not start an unrequested review.
Use one backend; halt on failure without silent fallback. Analysis uses `--isolated`;
it suppresses dangerous flags and adds instructions, but is not an OS sandbox.
Non-isolated dispatch requires authorization and external containment where needed.

## Quick start

Run from this skill root; input and output paths are supplied by the caller:

```bash
python3 scripts/run_agent.py agents/security-auditor.md <input> <output> "Review supplied source." --cli claude --isolated --require-input
```

## Workflow

1. Read [dispatch details](references/claude-cli-dispatch.md) before selecting flags or models.
2. Read [execution rules](references/execution-contract.md) and [backend capabilities](references/backend-capabilities.md); user instructions govern authorization.
3. Use the selected model and optional effort; inspect the resolved executable/version.
4. Dispatch once, then check exit status, nonempty output and requested acceptance criteria.

[Profile contract](references/capability-profile-contract.md) applies when a caller supplies a profile.

## Verification

Record backend, executable/version, model, effort, scope and result. Empty or failed
output is not a completed review. Log failures in [Map Debt](references/map-debt.md).
For gated reviews, wrap supplied input in `---SOURCE---` blocks and record results through the control-plane `record-critic-review` command using canonical `PASS`, `REVISE`, or `REJECT`; only PASS approves.

## 🎭 Persona Registry (`agents/`)

These personas are mirrored across CLI agent dispatchers to ensure consistent analytical behavior across the ecosystem.

| Persona | Use For |
|:---|:---|
| `security-auditor.md` | Red team, vulnerability scanning, threat modeling |
| `refactor-expert.md` | Optimizing code for readability, performance, and DRY |
| `architect-review.md` | Assessing system design, modularity, and complexity |

### 🧩 Force Agent Behavior

Always add these instructions to your dispatch prompt to prevent the sub-agent from attempting to use external tools:
> "You are operating as an isolated sub-agent. Do NOT use tools. Do NOT access filesystem. Only use the provided input."

### 🛠️ Orchestration Pattern: `run_agent.py` (Cross-Platform)

For reusable sub-agent execution, use the provided Python orchestrator which handles temp file assembly and prompt concatenation reliably across Windows, macOS, and Linux:

```bash
python ./scripts/run_agent.py <PERSONA_FILE> <INPUT_FILE> <OUTPUT_FILE> "<INSTRUCTION>"
```

Files in this skill

  • SKILL.md2.9 KB
  • acceptance-criteria.md815 B
  • evals/evals.json739 B
  • evals/results.tsv301 B
  • fallback-tree.md1 KB
  • references/acceptance-criteria.md42 B
  • references/cheapest_models.json40 B
  • references/cheapest_models.md38 B
  • references/claude-models.json38 B
  • references/fallback-tree.md36 B
  • requirements.txt22 B
  • scripts/run_agent.py29 B

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…