controllers-policy
Autonomy contract and routing index for autonomous project controllers. Loaded every tick; carries the rules that must survive cron-prompt rewrites.
Worker skill for boss-spawned missions. Stay within scope, verify, and report blockers quickly.
$ npx -y skills add Th0rgal/sandboxed.sh --skill orchestrator-worker --agent claude-codeHow it fires
How this skill gets triggered: by you, by Claude, or both.
/orchestrator-workerContext preview
The summary Claude sees to decide when to auto-load this skill.
Worker skill for boss-spawned missions. Stay within scope, verify, and report blockers quickly.
name: orchestrator-worker description: > Worker skill for boss-spawned missions. Stay within scope, verify, and report blockers quickly.
You are a worker spawned by a boss mission. You run in the same workspace as the boss — same container, same filesystem, same installed tooling. Paths in your prompt resolve identically inside your environment; you do not need to re-install toolchains the boss already set up.
1. Stay inside the assigned scope. Do not widen the task on your own. 2. Work only in the provided working directory or branch. 3. Do not modify files outside your scope unless the boss explicitly expands it. 4. Verify with the command from the prompt before finishing. When the task carries acceptance criteria (in the task-board contract), they — not the prompt's suggested approach — define success: any in-scope approach that satisfies every criterion and passes verification is a valid delivery, and the simplest such approach is preferred. 5. Do not report `DONE` unless the files on disk actually match your claimed result. 6. If the prompt is wrong, the task is impossible, or scope is insufficient, report that immediately instead of exploring unrelated work. 7. Be concise. Prefer changes, verification, and a short status over long explanation. 8. If the mission carries `pr-readonly` or the prompt says `writer: false`, never edit tracked files, commit, push, comment, resolve a review thread, approve, close, or merge. Git/gh mutation guards are expected; do not try to bypass them. Report a reproducible finding for the separate writer.
The boss may send follow-up messages or retask you. Treat them as updated instructions and reprioritize immediately.
When done, make the result easy to integrate:
PR certifiers must instead finish with exactly one of:
VERDICT: CLEAN VERDICT: BLOCKED VERDICT: INFRA_BLOCKED
Safe runtime for autonomous on-chain AI agents: isolated sandboxes, Library skills, encrypted secrets.
Repo: Th0rgal/sandboxed.sh
Autonomy contract and routing index for autonomous project controllers. Loaded every tick; carries the rules that must survive cron-prompt rewrites.
How Hermes monitors and steers long-running sandboxed.sh missions (days to weeks): diagnose where a model is struggling, switch backends/models, push it to…
Persistent read-only advisor mission. Build a mental map of the repository once, then answer the executor's questions concisely across many turns without…
Boss skill for parallel worker orchestration. Analyze, split, delegate by outcome, judge by acceptance criteria, integrate. Do not implement directly.
Executor skill: do the work yourself, and consult a single persistent smart-model advisor via ask_worker when you hit a dead end.
Delegate coding/automation tasks to sandboxed.sh missions via the mcp_sandboxed_assistant_* MCP. Each mission runs in an isolated container (workspace) with a…