vouch
v0.53.0Skills for installing and operating the vouch allow-list permission gate with Codex, Claude Code, and Google Antigravity; vouch-setup provisions from evidence, vouch-status reports installed versus released versions, and vouch-update moves the gate on an explicit accept.
By vouchLicense: WTFPL1 GitHub starsUpdated 2 hours ago
Directory evidence
- Runtimes
- Codex and Claude Code
- Parsed components
- 5 skill or MCP entries
- Source updated
- Sep 30, 2026
- Manifest status
- Canonical path parsed
The directory validates manifest shape and source location. It does not execute the plugin or provide a security endorsement. Review the indexing methodology →
Install vouch for Codex and Claude Code
codex plugin marketplace add polston/vouch
codex plugin marketplace upgrade vouch
codex plugin add vouch@vouchPaste and run these commands in a terminal with Codex. They add and refresh the vouch catalog, then install this plugin.
Compatibility: the page URL and API slug “vouch” remain stable.
- Codex:
vouch@agent-plugin-marketplace→vouch@vouch
The installer fetches third-party code from the source repository shown on this page. This directory validates manifest structure and source location, but does not perform a security audit; review the manifest, components, and source before installing.
Get the source manually
git clone https://github.com/polston/vouchClone the source repository, then follow its setup instructions to add the plugin to a compatible client. The plugin root is plugin/.
Plugin files
├── .codex-plugin/plugin.json├── .claude-plugin/plugin.json├── skills/vouch-model/SKILL.md├── skills/vouch-setup/SKILL.md├── skills/vouch-status/SKILL.md├── skills/vouch-trust/SKILL.md└── skills/vouch-update/SKILL.md
Included Skills5
Use when describing objective program syntax, CLI subcommands, value flags, write destinations, or harness/MCP tool schemas in my-knowledge.toml — enforces honest claims (CLAUDE.md §3), discovers flags, and verifies boundaries
Use when installing vouch on a machine or auditing an existing vouch setup — surveys the machine, replays its own session history to show what would fire, proposes scoped changes with evidence, and writes only on explicit accept.
Use when checking what vouch is installed on this machine — reports installed binary, knowledge, and plugin versions against the newest public release, entirely read-only; it writes nothing, proposes nothing, and hands any actual move to vouch-update.
Use when authorizing execution boundaries, write scratch paths, trust zones, or repository build program families in config.toml — manages policy grants safely while syntax modeling lives in vouch-model
Use when updating an installed vouch to a newer release — compares the installed pair against the newest public release, downloads and verifies the platform bundle, installs binaries and knowledge together, proves the result, and writes nothing without an explicit accept.
Plugin manifests2
{
"name": "vouch",
"version": "0.53.0",
"description": "Skills for installing and operating the vouch allow-list permission gate with Codex, Claude Code, and Google Antigravity; vouch-setup provisions from evidence, vouch-status reports installed versus released versions, and vouch-update moves the gate on an explicit accept.",
"author": {
"name": "vouch"
},
"license": "WTFPL",
"keywords": [
"permissions",
"security",
"hooks",
"allow-list"
],
"skills": "./skills",
"interface": {
"displayName": "Vouch",
"shortDescription": "An allow-list gate for coding agents",
"longDescription": "Install, configure, inspect, and operate vouch as a local tool-call gate for Codex, Claude Code, or Google Antigravity.",
"developerName": "vouch",
"category": "Developer Tools",
"capabilities": [
"Skills"
],
"defaultPrompt": [
"Set up vouch for this coding agent.",
"Check my installed vouch versions against the newest release.",
"Explain why vouch blocked this tool call.",
"Review my vouch configuration from evidence."
]
}
}{
"name": "vouch",
"version": "0.53.0",
"description": "An allow-list permission gate for Claude Code, Codex, and Google Antigravity: every observed tool call is judged against declared knowledge, and every prompt names the setting that turns it off. /vouch:setup provisions a machine from evidence; /vouch:status reports installed versus released versions; /vouch:update moves the gate on an explicit accept.",
"author": {
"name": "vouch"
},
"license": "WTFPL"
}For maintainers
If you maintain this plugin, link to this source-backed listing from your README so users can review its manifest and indexed components.
[vouch on Agent Plugins Marketplace](https://pluginsmp.com/plugins/vouch)