RepoPilot icon

RepoPilot

Snapshots each Codex session and stops the agent when it weakened tests, suppressions, or CI gates, once per signal; local and deterministic.

mykytastel/repopilot · v0.24.3 · Development & Workflow

MykytaStelcaution

Trust Score

60

Security

59

Surfaces

2

What is RepoPilot?

RepoPilot is a published development & workflow plugin for AI coding agents in the codex ecosystem, developed by MykytaStel and distributed through the HOL AI plugin registry. Snapshots each Codex session and stops the agent when it weakened tests, suppressions, or CI gates, once per signal; local and deterministic.

Canonical slug
mykytastel/repopilot
Version
v0.24.3 · updated Oct 9, 2026

Trust & Reputation

HOL Trust Score
60

Factor Analysis

Per-metric points (0–100 each) combined via a weighted average into the overall score.

Installability
64pts
Maintenance
55pts
MCP Posture
100pts
Plugin Security
59pts
Provenance
70pts
Publisher Quality
75pts

Registry Snapshot

Publisher verification
No
Marketplace source
Unknown
Scanner
Broker fallback
Safety label
caution
Digest verified
Yes
1 bundled skill — copy or download SKILL.mdOpen skills

Trust & reputation

Trust & Reputation

HOL Trust Score
60

Factor Analysis

Per-metric points (0–100 each) combined via a weighted average into the overall score.

Installability
64pts
Maintenance
55pts
MCP Posture
100pts
Plugin Security
59pts
Provenance
70pts
Publisher Quality
75pts

Provenance

Plugin root
integrations/claude-code/repopilot
Source repo
https://github.com/MykytaStel/repopilot
Source commit
29be824d7709…
Publisher verified
No
Owner verified
Not owner verified

Continuous scanner CI not detected

This plugin remains listed. Its overall trust score is reduced by 10% because security checks are not maintained in the source repository's CI.

Optional: maintain the scanner in the source repository's CI to receive the full trust score. Listing does not require that change.

Verified badge not detected

Add the HOL verified badge to the repository README to score +2% trust. Plugin owners can open that pull request from Guard Plugins.

Security Posture

caution
Safety label
59
Security score
0
High findings
Provider
registry-broker-fallback
Grade
F · caution
Version
Unknown
cisco-skill-scanner: unknown

Findings

mediumpublishabilitypublishability.link.missing.websiteURL

websiteURL should be present for marketplace readiness.

mediumpublishabilitypublishability.link.missing.privacyPolicyURL

privacyPolicyURL should be present for marketplace readiness.

mediumpublishabilitypublishability.link.missing.termsOfServiceURL

termsOfServiceURL should be present for marketplace readiness.

lowoperational-securitysupply-chain.lockfile-missing

Repository snapshot does not include a lockfile.

infoskill-securityskill-scan.unavailable

Cisco skill scanner timed out after 60000 ms

RepoPilot — Frequently asked questions

What is RepoPilot?
RepoPilot is an AI plugin in the HOL registry. Snapshots each Codex session and stops the agent when it weakened tests, suppressions, or CI gates, once per signal; local and deterministic.
How do I install RepoPilot?
Install RepoPilot in your harness: Codex — codex plugin marketplace add MykytaStel/repopilot; Claude Code — /plugin marketplace add MykytaStel/repopilot; Any agent — npx skills add MykytaStel/repopilot. Full step-by-step guidance is on the HOL plugin page.
How do I install RepoPilot in Codex?
To install RepoPilot in Codex, start with codex plugin marketplace add MykytaStel/repopilot. The complete step-by-step install guide for Codex is on the HOL plugin page.
How do I install RepoPilot in Claude Code?
To install RepoPilot in Claude Code, start with /plugin marketplace add MykytaStel/repopilot. The complete step-by-step install guide for Claude Code is on the HOL plugin page.
Is RepoPilot free?
Pricing for RepoPilot is published on its HOL plugin page when the maker schedules a launch.
Who publishes RepoPilot?
RepoPilot is published by MykytaStel and listed on HOL.
Is RepoPilot available now?
RepoPilot availability is listed on its HOL plugin page.

Install Guidance

Install in Claude Code

Install through the Claude Code plugin marketplace.

Claude Code plugin docs
  1. 1

    Add the marketplace

    Run this inside a Claude Code session.

    claude code
  2. 2

    Install the plugin

    Use the plugin name and the marketplace name shown by the previous command.

    claude code
  3. 3

    Scripted alternative

    Non-interactive equivalent for scripts and CI pipelines. Add --scope project to pin the install to one repository.

    shell

Plugin Manifest

{
  "name": "repopilot",
  "version": "0.24.3",
  "description": "Snapshot each session and review what the agent changed before it stops: tests it skipped, focused, removed, or weakened, new lint/type suppressions, relaxed CI gates, removed auth or error handling, and untrusted input reaching risky sinks. Deterministic and local; requires the repopilot CLI.",
  "author": {
    "name": "Mykyta Stelmashenko",
    "url": "https://github.com/MykytaStel"
  },
  "homepage": "https://github.com/MykytaStel/repopilot/blob/main/docs/agent-guardrail.md",
  "repository": "https://github.com/MykytaStel/repopilot",
  "license": "MIT OR Apache-2.0",
  "keywords": [
    "code-review",
    "testing",
    "test-integrity",
    "security",
    "git"
  ],
  "skills": "./",
  "mcpServers": "./.registry/mcp.json",
  "hooks": "./hooks/codex-hooks.json",
  "interface": {
    "displayName": "RepoPilot",
    "developerName": "MykytaStel",
    "shortDescription": "Stops the agent when it weakens tests, suppressions, or CI gates. Local and deterministic.",
    "composerIcon": "./.claude-plugin/icon.png"
  },
  "holManifestOrigin": "repository",
  "registryIndexVersion": 5
}

Marketplace Source

Repo URL
https://github.com/MykytaStel/repopilot
Marketplace path
Unknown
Source path
plugins/MykytaStel/repopilot
Install policy
AVAILABLE

Skills

1 SKILL.md file ship with this plugin. Preview, copy, or download each one, then install them with the Skills CLI.

Share
skills-cli
  • review-session

    skills/review-session/SKILL.md

    Review what changed in this session with RepoPilot before claiming work is done or that tests pass. Use after edits to tests, CI config, auth, or request handling, and whenever you are about to say "all tests pass".

    Raw SKILL.md

File Inventory

.claude-plugin/icon.png

file

16,684 bytes

9cfbd3fa48ed139d…

.claude-plugin/plugin.json

file

935 bytes

e8271c06ad9ccd39…

.codex-plugin/plugin.json

plugin-manifest

1,038 bytes

321976fc6bdaf39e…

.mcp.json

file

103 bytes

d0a1f09c7e0fdc25…

.registry/mcp.json

mcp-config

67 bytes

ca93ad3727b7014e…

hooks/codex-hooks.json

file

460 bytes

2ad13c21db9f86d6…

hooks/hooks.json

file

333 bytes

d17e454200871b2d…

README.md

file

2,849 bytes

5b52a7aedaffce9e…

SECURITY.md

file

1,037 bytes

7911b80e0fecf146…

skills/review-session/SKILL.md

skill

1,531 bytes

2110de7cc93b2028…