goal-forge — security grade SAFE, quality 65/100

Security audit verdict: SAFE · quality 65/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by michaelpersonal · Codex Skill · ★ 215

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is goal-forge safe to install? View the security audit →

About goal-forge

goal-forge Codex skill that turns a rough coding idea into a Codex -ready contract. Pipeline: rough idea → interviewed → tightened → → config readiness check. Goal Forge now treats long-running work as a runtime system with four explicit parts: Scorecard — the metric, checklist, threshold, regression checks, and stop condition Codex should use to judge progress. Feedback loop — the fastest representative check Codex can run repeatedly while iterating, plus the slower final check used before completion. Working memory — markdown files such as , , and that keep multi-hour runs coherent across context compaction. Human control surface — an optional compact with task-specific knobs, sidecar inputs, resource limits, and pivot gates the user can inspect or tune while a goal runs. Modes Interview — open-ended interview that forces decisions on scope, architecture, edge cases, verification. Hard gate: spec is not "done" until has user-approved measurable criteria. Tighten — read skeptically; surface ambiguities with two interpretations + a recommendation. Compile — emit using the XML block structure in .

Quick Facts

Stars215
Forks14
LanguagePython
CategoryCodex Skill
LicenseMIT
Quality Score65.3065392648644/100
Last Updated2026-07-15
Created2026-05-01
Platformscodex, python
Est. Tokens~4k

goal-forge alternative? Top 6 similar tools

Looking for a goal-forge alternative? If you're comparing goal-forge with other codex skill tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • Skills-Manager by jiweiyeah · ⭐ 991

    Free, open-source desktop manager for AI Agent Skills. Write a skill once, sync it to 32 AI coding tools (Clau

  • ai-maestro by 23blocks-OS · ⭐ 799

    AI Agent Orchestrator with Skills System - Give AI Agents superpowers: memory search, code graph queries, agen

  • upskill by huggingface · ⭐ 750

    Generate and evaluate agent skills for code agents like Claude Code, Open Code, OpenAI Codex

  • skills by wlzh · ⭐ 617

    开源了Codex Skills等集合,大部分是自己实际需要搞得,需要的自取。欢迎star

  • solana-dev-skill by solana-foundation · ⭐ 566

    Skills for agentic development on Solana

  • theorist by blader · ⭐ 191

    A Codex/Claude skill that maintains per-repo operating theory documents.

More Codex Skill Tools

Explore other popular codex skill tools:

View all Codex Skill tools →

Popular Python Agent Tools

Frequently Asked Questions

What is goal-forge?

goal-forge is Codex skill: turn a rough coding idea into a SPEC.md, GOAL.md, and /goal-ready contract.. It is categorized as a Codex Skill with 215 GitHub stars.

What programming language is goal-forge written in?

goal-forge is primarily written in Python.

How do I install or use goal-forge?

You can find installation instructions and usage details in the goal-forge GitHub repository at github.com/michaelpersonal/goal-forge. The project has 215 stars and 14 forks, indicating an active community.

What license does goal-forge use?

goal-forge is released under the MIT license, making it free to use and modify according to the license terms.

What are the best alternatives to goal-forge?

The top alternatives to goal-forge on Agent Skills Hub include Skills-Manager, ai-maestro, upskill. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse Codex Skill tools