autospec — security grade SAFE, quality 65/100

Security audit verdict: SAFE · quality 65/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by ariel-frischer · Codex Skill · ★ 144

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is autospec safe to install? View the security audit →

About autospec

▄▀█ █ █ ▀█▀ █▀█ █▀ █▀█ █▀▀ █▀▀ █▀█ █▄█ █ █▄█ ▄█ █▀▀ ██▄ █▄▄ Spec-Driven Development Automation Build features systematically with AI-powered specification workflows. Stop AI slop. Autospec brings structure to AI coding: spec → plan → tasks → implement - all in one command. Built with a multi-agent architecture and inspired by GitHub SpecKit, Autospec reimagines the specification workflow with YAML-first artifacts for programmatic access and validation. These principles ensure reliable, performant, and maintainable software that developers can trust for their critical development workflows. Supported agents: Claude Code, Codex CLI, and OpenCode. 📦 Installation bash curl -fsSL https://raw.githubuserconten

agentic-workflowaiclaude-codecodexcommand-linedeveloper-toolsgolangopencodeprdspec

Quick Facts

Stars144
Forks8
LanguageGo
CategoryCodex Skill
LicenseMIT
Quality Score64.9003182755789/100
Last Updated2026-09-28
Created2025-12-15
Platformsclaude-code, cli, codex, go
Est. Tokens~19k

Compatible Skills

These tools work well together with autospec for enhanced workflows:

  • moai-adk — semantic(0.42)+complementary+same_lang+similar_pop+shared_platform (65%)
  • cc9s — semantic(0.20)+complementary+rare_topics+same_lang+similar_pop+shared_platform (56%)
  • eidos — semantic(0.48)+complementary+rare_topics+similar_pop+shared_platform (56%)
  • spec-kit — semantic(0.61)+complementary+rare_topics (55%)

autospec alternative? Top 6 similar tools

Looking for a autospec alternative? If you're comparing autospec with other codex skill tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • hcom by aannoo · ⭐ 530

    Let AI agents message, watch, and spawn each other across terminals. Claude Code, Codex, Antigravity CLI, Curs

  • Dossier by rwliebs · ⭐ 87

    Visual planning and context control for shipping big apps with AI coding. Build from scratch or map existing r

  • gob by juanibiapina · ⭐ 72

    Process manager for AI agents (and humans)

  • Conductor-for-all by hlhr202 · ⭐ 52

    Bring the Conductor spec-driven development methodology to any coding environment as skills.

  • sdd-pilot by attilaszasz · ⭐ 95

    Replace chaotic AI code generation with a disciplined, spec-driven workflow. SDD Pilot enforces structured dev

  • smart-ralph by tzachbon · ⭐ 544

    Spec-driven development with smart compaction. Claude Code plugin combining Ralph Wiggum loop with structured

More Codex Skill Tools

Explore other popular codex skill tools:

View all Codex Skill tools →

Popular Go Agent Tools

Frequently Asked Questions

What is autospec?

autospec is CLI for streamlined spec-driven development. It is categorized as a Codex Skill with 144 GitHub stars.

What programming language is autospec written in?

autospec is primarily written in Go. It covers topics such as agentic-workflow, ai, claude-code.

How do I install or use autospec?

You can find installation instructions and usage details in the autospec GitHub repository at github.com/ariel-frischer/autospec. The project has 144 stars and 8 forks, indicating an active community.

What license does autospec use?

autospec is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to autospec?

The top alternatives to autospec on Agent Skills Hub include hcom, Dossier, gob. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse Codex Skill tools