sageox
01Plugin Claude Code
Plugin marketplace listing 1 plugin: ox.
Plugin Claude Code
Plugin marketplace listing 1 plugin: ox.
Agent Claude Code
BYOK (Bring-Your-Own-Key) and OAuth token security expert. Deep on cross-platform OS keychain integration (macOS Keychain, Linux Secret Service / kwallet / gnome-keyring, Windows Credential Manager), token caching tradeoffs, env-var hygiene, accidental-commit prevention beyond gitleaks, sub-process credential leakage…
Agent Claude Code
Model Context Protocol (MCP) security expert. Deep on tool dispatch validation, schema enforcement, server impersonation defenses, transport (stdio/SSE) trust assumptions, and the emergent attack surface that opens when LLM output drives tool execution. Use PROACTIVELY when reviewing MCP server code (internal/mcp/ in…
Agent Claude Code
Expert in OpenGrep (FOSS Semgrep fork) and Semgrep rule authoring. Writes precise patterns, taint-tracking rules, framework-specific entry-point detectors, and metavariable-based queries. Knows the YAML rule format inside out and the cross-function taint analysis OpenGrep restored after the late-2024 Semgrep CE…
Agent Claude Code
Adversarial security expert. Thinks like an attacker — chains primitives into exploits, finds auth bypass, IDOR, SSRF, deserialization, race conditions, business-logic abuse. Use PROACTIVELY when reviewing new auth/authz code, public endpoints, mutation handlers, or anything touching the trust boundary. Use when…
Agent Claude Code
Software supply-chain security expert. Deep on Socket.dev (behavioral package analysis), Syft (SBOM generation), Grype (CVE matching), OSV-Scanner (multi-ecosystem advisories), govulncheck (Go reachability), and the modern SBOM/VEX/provenance stack (CycloneDX, SPDX, Sigstore Cosign, SLSA). Use PROACTIVELY when…
Agent Claude Code
Threat-modeling specialist using STRIDE, PASTA, and LINDDUN. Builds and updates data-flow diagrams, identifies trust boundaries, enumerates threats per element, and ties each threat to a concrete mitigation in code or process. Use PROACTIVELY when designing a new feature, evolving an existing system, authoring or…
Command Claude Code
Use this skill when a user wants to think through, design, or spec out a feature, product decision, or technical capability. Triggers include: "I'm thinking about adding X", "help me design Y", "let's spec out Z", "what should I consider for this feature", or any request to reason through a change before building it.…
Command Claude Code
List available expert coworker agents and their specialties.
Command Claude Code
Mark cart(s) as completed.
Command Claude Code
Abandon a cart (back to open, unassigns you).
Command Claude Code
Claim a cart and start working on it.
Command Claude Code
Show ready carts and cart lifecycle commands.
Command Claude Code
pinning, errors) belongs in the ox CLI JSON output (guidance field) and ox guide conversations, not here. Skills are agent-specific wrappers; ox serves all agents (Codex, etc.). --> Read recorded team conversations locally: list, summaries, distillation topics, and transcript slices.
Command Claude Code
Run diagnostic checks on SageOx configuration and integrations.
Command Claude Code
Command "ox-init" from sageox/ox, covering common issues, already initialized, permission denied and not a git repository.
Command Claude Code
Load SageOx team context for this AI coworker session.
Command Claude Code
belongs in the ox CLI JSON output (guidance field), not here. Skills are agent-specific wrappers; ox serves all agents (Codex, etc.). --> Abort a session, discarding all local data without uploading to the ledger. This is destructive and cannot be undone. Use /ox-session-stop to save instead.
Command Claude Code
belongs in the ox CLI JSON output (guidance field), not here. Skills are agent-specific wrappers; ox serves all agents (Codex, etc.). --> List recent sessions from the project ledger and offer to view one.
Command Claude Code
belongs in the ox CLI JSON output (guidance field), not here. Skills are agent-specific wrappers; ox serves all agents (Codex, etc.). --> Suspend the current session recording. Local cache continues to receive entries, but the upload at stop time will exclude the suspended range.
Command Claude Code
Command "ox-session-recover" from sageox/ox, covering recovery flow, step 1: find the claude code transcript, step 2: try the built-in recover command first, step 3: convert transcript to web viewer format and step 4: lint the converted jsonl.
Command Claude Code
belongs in the ox CLI JSON output (guidance field), not here. Skills are agent-specific wrappers; ox serves all agents (Codex, etc.). --> Resume a previously suspended session recording. Closes the open pause range; the suspended interval will be excluded from upload at stop time.
Command Claude Code
Command "ox-session-review" from sageox/ox, covering failure-mode watch-list (read first), from the ledger root. should print 0, phase 1 — scan & score (read-only), quality buckets (first match wins) and removal candidates.
Command Claude Code
belongs in the ox CLI JSON output (guidance field), not here. Skills are agent-specific wrappers; ox serves all agents (Codex, etc.). Exception: Post-Command sections that require agent-side actions (e.g., displaying a notice, generating a summary) are legitimate here. --> Start recording this agent session to the…