Ca checkpoint
Skill arbiterForge/codeArbiter/plugins/ca-codex/skills/ca-checkpoint
Periodic multi-reviewer sweep of the whole codebase — surfaces a triaged checkpoint report.From its SKILL.md
npx -y skills add arbiterForge/codeArbiter --skill ca-checkpointAssembled from the repository path, not quoted from the project. Check it against their README if it does not work.
SKILL.md
2.6 KB, 599 tokens by cl100k_base, as published. Nobody here has run it
$ca-checkpoint — codebase sweep
Periodic sweep of the entire codebase with the reviewer fleet, funneled to a single dated report. Surfaces findings — not a promotion gate, enforces no sign-off.
Flow
-
Build the unit list — the same fleet as
$ca-review, scoped to the whole codebase against the<project-root>/.codearbiter/docs:Reviewer Reads security-reviewersecurity-controls.md; reviews security postureauth-crypto-reviewersecurity-controls.md; authn/crypto/key/secret pathsdependency-reviewerdependency manifests; license + supply-chain posture migration-reviewermigration history; safety + classification coverage-auditortest coverage vs. obligations across the tree architecture-drift-reviewerdecisions/; drift between code and accepted ADRs -
Route to
dispatching-parallel-agentswith that unit list (read-only batch). It dedupes, then funnels throughfinding-triage→checkpoint-aggregator. -
checkpoint-aggregatorwrites the dated report to<project-root>/.codearbiter/checkpoints/YYYY-MM-DD.md: findings by severity with file:line, and out-of-scope items marked inline[NEEDS-TRIAGE]. -
Write the current override count to
<project-root>/.codearbiter/last-checkpoint— the integer baseline the startup briefing subtracts for its overrides-since-checkpoint counter. The value is the number of non-comment, non-blank lines inoverrides.logat this moment (0if the log is absent). This re-zeros theover:Nsegment until the next$ca-override. Write a bare integer, not a timestamp — the briefing treats any value above the current total as stale and falls back to showing every override. -
Report the checkpoint path.
Hard gate
Read-only except writing the checkpoint doc and last-checkpoint — MUST NOT modify code. MUST NOT
consume raw reviewer output — only the finding-triage → checkpoint-aggregator verdict. MUST NOT
resolve a [CONFIRM-NN] surfaced during the sweep by guessing. The report surfaces findings; it does
not block or sign off anything.
When NOT to use
- Reviewing just the current diff →
$ca-review. - A pre-implementation threat model →
$ca-threat-model. - ADR health only →
$ca-adr-status. - A whole-codebase deep audit →
$ca-tribunal(checkpoint is the lean periodic sweep; tribunal its rare deep counterpart).
What ships with it
Read from the repository
Just SKILL.md. No reference files, no scripts.