Skip to content
Back to skills

Codex Sol Claude Orchestrator

ASecurity

Route non-trivial repository features, debugging, refactors, tests, algorithms, migrations, and data/model work between Codex and Claude Code (CC). Trigger before broad exploration; delegate concrete verifiable work while Codex keeps material decisions, critical reasoning bottlenecks, failed-repair takeover, and final acceptance. Not for discussion-only requests or tiny mechanical edits.

  • 11 stars
  • 0 votes
  • 0 copies
  • 1 view
  • Added October 4, 2026
ai-agentsrustgodebugging

Works with

  • claude code
  • cli
  • mcp

Security analysis

A100/100

Pro scans all 4 files and shows the line behind each finding

Scanned October 4, 2026

npx -y skills add xiangshazaosha/codex-cc-orchestrator --skill codex-sol-claude-orchestrator --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Codex Sol Claude Orchestrator?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Codex Sol Claude Orchestrator
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/xiangshazaosha-codex-sol-claude-orchestrator/badge)](https://www.skillsdirectory.com/skills/xiangshazaosha-codex-sol-claude-orchestrator)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: codex-sol-claude-orchestrator
description: Route non-trivial repository features, debugging, refactors, tests, algorithms, migrations, and data/model work between Codex and Claude Code (CC). Trigger before broad exploration; delegate concrete verifiable work while Codex keeps material decisions, critical reasoning bottlenecks, failed-repair takeover, and final acceptance. Not for discussion-only requests or tiny mechanical edits.
---

# Codex / CC orchestration

CC means the Claude Code harness. Optimize useful offload and Codex context, not call count.

## License boundary

This skill's covered first-party material is noncommercial source-available under
the bundled [LICENSE](LICENSE), version 2.0; retain [NOTICE](NOTICE). Commercial
tool/skill use needs separate written authority unless the user is the relevant
rightsholder. When distributing covered copies/adaptations or exposing them for
network use, publish matching Corresponding Source under the same terms. Do not
publish client repositories, secrets, sessions or independently generated output
merely because this tool handled them. Third-party and valid older grants remain
independent; do not claim this is OSI-approved open source.

## Route once, early

- Keep only discussion/planning, tiny understood mechanical edits, and work CC cannot access local.
- Otherwise delegate one coherent package when scope, material constraints, and acceptance are clear enough for independent investigation. Unknown files, root cause, or difficulty do not disqualify it; “Codex can do it” is not a reason to keep it.
- Codex resolves user intent and material product, public-contract, architecture, permission/safety, consistency, compatibility, irreversible-migration, and modeling-assumption decisions. CC makes reversible local choices and handles concrete investigation/implementation.
- Do not explore the repository or solve the task merely to prepare delegation. If a decisive bottleneck clearly exceeds CC, Codex solves only that part and delegates the stable remainder; otherwise give CC a bounded reproduction, hypothesis test, counterexample, baseline, prototype, or measurement.
- Re-route only for a real blocker, scope change, or new evidence. For difficult algorithms/modeling, visuals, critical bottlenecks, or ineffective repairs, read [capability boundaries](references/capability-boundaries.md).

## Dispatch

Send only `job_id`, `cwd`, goal, allowed scope, material constraints, inaccessible facts/artifacts, and checkable acceptance; CC locates files. Request summary, changed/evidence paths, checks, and blockers—not code dumps, full logs, or hidden reasoning.

Always pass `project_root` as the trusted active Codex workspace root or the explicitly selected project root. `cwd` must equal it or be inside it. Never infer it from the MCP process, guess it, or pass a drive root. It temporarily authorizes only that job even outside `ALLOWED_PROJECT_ROOTS`; review inherits it and continue cannot widen it.

Tell the executor: **Run necessary validation proportional to scope/risk. For a Bug with unclear trigger or cause, reproduce before editing and rerun the same condition; an existing reliable failing test or clear error evidence already counts. Report exact checks and unverified outcomes; never claim an unrun check.**

## Two assurance layers

1. **Fresh CC-2 review:** default for substantive behavior or logic changes, whoever implemented them. Skip read-only work and truly mechanical behavior-preserving edits unless requested. Give the original task, acceptance, and scoped baseline; CC-2 uses Read/Grep/Glob only, cites actionable evidence, and never repairs.
2. **Codex final acceptance:** always judge the user goal, constraints, evidence, findings, and deliverable state. Do not repeat routine tests/review; inspect deeper or run a key check only when evidence is missing or contradictory, review FAIL remains unresolved, risk is high, repair repeatedly failed, or the goal may be misunderstood.

Executor validation is implementation, not a third review layer. Resume CC-1 for fixes or targeted runtime evidence, then use a fresh CC-2 for substantive changes.

## Run and recover

- Use `run_job(review=true)` for short, ready substantive packages; prefer `execute_task(background=true)` for unknown-scope work, long implementations or large tests. Submit once, then check `get_job_status` with spaced polls while doing independent work; QUEUED/RUNNING/EXECUTING is not success. After COMPLETED, decide fresh review by the rules above; background never reviews automatically. Use `review=false` only intentionally.
- On timeout or lost response, call `get_job_status(job_id, cwd)` and inspect the workspace. Continue only when `execution_session_confirmed=true`; an allocated but unconfirmed session is not resumable. Retry a transient unconfirmed execution with a new job ID. Recover `REVIEW_INCOMPLETE` with a fresh `review_task` on the same job.
- Never retry billing 402, authentication, invalid request, or protocol/invalid-output failures unchanged. Retry transient network, timeout, rate-limit, and provider 408/5xx/529 failures only a bounded number of times.
- Use `continue_task` while evidence and causal progress advance. If the same failure persists, changes mask symptoms/create regressions, evidence stalls, or a material reasoning issue appears, Codex takes the minimum decisive part. Transport/tool failure is not model incapability.
- A `job_id` stays bound to its exact task, acceptance, resolved `cwd`, and root; changed scope/root requires a new ID. Review is fresh; continue resumes only that job's confirmed CC-1 session. Use `run_jobs` only for independent packages with stable interfaces and disjoint writes.
- Use `ping` only to diagnose MCP/SDK/CLI/buffer versions; it makes no provider call. Discover tools once. Preserve user model, permission, and safety restrictions; prompt scope is not an OS sandbox.

Files in this skill

  • LICENSE17.6 KB
  • NOTICE2 KB
  • SKILL.md5.8 KB
  • references/capability-boundaries.md2.9 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…