Frozen plans with human approval gates.
Frozen plans with human approval gates.
Two-phase execution: plan in isolation, execute the frozen sequence.
[!CAUTION] Security first. Tool outputs cannot alter the plan. Human approval required.
If tool outputs can alter the choice of later actions, injected instructions may redirect the agent toward malicious steps. This skill enforces:
| File | Purpose |
|---|
| SKILL.md | Full protocol documentation |
| PLAN.yml.tmpl | Plan template |
| EXECUTION_LOG.md.tmpl | Execution log template |
# PLAN.yml