gates

A collection of quality-gate commands for deciding whether a project can move from one phase to the next. The phases cover discovery, conception, validation, architecture, and later work.

In plain words
What is it for?
Running phase reviews such as checking a problem definition, market assessment, legal requirements, validated assumptions, architecture, and other project deliverables.
Why use it?
It creates explicit checkpoints for checking completeness, assumptions, risks, and approval before more time or money is invested.

Command

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add commands/jonase47/ccpr/gates
Clone the repo
git clone --depth 1 https://github.com/jonase47/ccpr
Per session 0 Only the description is in the session, so the agent can decide to use it. The body loads when it is invoked.
When invoked 647 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00000 $0.00647
Opus 5 $0.00000 $0.00324
Sonnet 5 $0.00000 $0.00129
Haiku 4.5 $0.00000 $0.00065

Measured yesterday against content hash b16fbf109f74, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

gates scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured yesterday.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

Manual/commands/gates.md · 26 lines

What it actually says

Gates (12 commands)

Quality gates between phases — single-purpose decision points. Main gates (P0–P7) plus sub-gates for the dual-approval gates P6 (QA + Security) and P7 (Tech + Business).

Command Title Description
/gate-p0 Quality Gate 0: Discovery → Conception Checks whether all criteria of the Discovery phase have been met and prepares the Go/No-Go Decision. No argument – this gate always checks the complete checklist.
/gate-p1 Quality Gate 1: Conception → Validation Checks whether all results of the conception phase are complete and robust, and prepares the transition to the validation phase. No argument – this gate always checks the complete checklist.
/gate-p2 Quality Gate 2: Validation → Architecture Checks whether all critical Assumptions have been validated and a well-founded Go/No-Go/Pivot Decision can be made. This is the most important gate in the model – here it is decided whether to invest in the cost- and time-intensive architecture and implementation phase. No argument – this gate always checks the complete checklist.
/gate-p3 Quality Gate 3: Architecture & Design → Planning Checks whether all architecture and design decisions are completely documented and robust before transitioning into the planning and implementation phase. No argument – this gate always checks the complete checklist.
/gate-p4 Quality Gate 4: Planning → Implementation Checks whether all organizational and technical prerequisites are met to begin implementation. This is a readiness gate – all participants must know what to do first. No argument – this gate always checks the complete checklist.
/gate-p5 Sprint Gate: Check Implementation Quality Checks at the end of each sprint whether all tasks meet quality standards and the sprint can be considered successfully completed. Called repeatedly after each sprint. No argument – this gate always checks the complete current sprint status.
/gate-p6-qa QA Approval Evaluation Evaluates all QA-relevant points of the Gate-P6 checklist and grants QA approval.
/gate-p6-security Security Approval Evaluation Evaluates all security-relevant points of the Gate-P6 checklist and grants Security approval.
/gate-p6 Release Gate: QA & Security Approval Checks whether the system is ready for launch. Both QA and Security must explicitly grant approval. No go-live without dual approval.
/gate-p7-tech Technical Go-Live Check Checks technical go-live readiness: deployment, monitoring, rollback, smoke tests.
/gate-p7-business Business Readiness Check Checks business readiness: documentation, GTM, KPIs, legal mandatory documents.
/gate-p7 Go-Live Gate: Technical Readiness & Business Readiness Checks whether the system is fully ready for production operation. Last gate before the official go-live status.
Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. yesterday First seen · 26 lines · 0 tokens per session scan A b16fbf109f74

Subscribe to this mod's changes

gates is a command published in the GitHub repository jonase47/ccpr (1 stars, last pushed yesterday), licensed MIT. It costs nothing until one of its globs matches a file; then it loads 647 tokens. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.