Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension


Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
12 changes: 6 additions & 6 deletions .agents/plugins/marketplace.json
Original file line number Diff line number Diff line change
Expand Up @@ -9,20 +9,20 @@
"source": {
"source": "url",
"url": "https://github.com/partme-ai/partme-codeguard-plugin.git",
"ref": "v0.11.1"
"ref": "v0.12.0"
},
"policy": {
"installation": "AVAILABLE",
"authentication": "ON_USE"
},
"category": "Developer Tools",
"version": "0.11.1",
"description": "Cross-language code lint enforcement for AI coding assistants (ZCode, Claude Code, Codex CLI, Kimi Code): Java, Rust, TypeScript, Python. PostToolUse hook auto-runs the native linter on every AI-written file and blocks on failure in strict mode.",
"icon": "https://cdn.jsdelivr.net/gh/full-stack-plugins/codeguard-plugin@v0.11.1/assets/official-logo.png",
"version": "0.12.0",
"description": "Evidence-backed code checks and Git content gates for AI assistants, with Maven/Gradle module impact analysis. Save hooks provide feedback; unverified checks are explicit.",
"icon": "https://cdn.jsdelivr.net/gh/full-stack-plugins/codeguard-plugin@v0.12.0/assets/official-logo.png",
"interface": {
"displayName": "代码规范守卫",
"shortDescription": "Make AI-written code pass lint on first try",
"logo": "https://cdn.jsdelivr.net/gh/full-stack-plugins/codeguard-plugin@v0.11.1/assets/official-logo.png"
"shortDescription": "Trustworthy code checks and Java impact analysis",
"logo": "https://cdn.jsdelivr.net/gh/full-stack-plugins/codeguard-plugin@v0.12.0/assets/official-logo.png"
}
}
]
Expand Down
10 changes: 5 additions & 5 deletions .codex-plugin/plugin.json
Original file line number Diff line number Diff line change
@@ -1,7 +1,7 @@
{
"name": "codeguard",
"version": "0.11.1+codex.20260922",
"description": "Cross-language code lint enforcement for AI coding assistants (ZCode, Claude Code, Codex CLI, Kimi Code): Java, Rust, TypeScript, Python. PostToolUse hook auto-runs the native linter on every AI-written file and blocks on failure in strict mode.",
"version": "0.12.0+codex.20260922",
"description": "Evidence-backed code checks and Git content gates for AI assistants, with Maven/Gradle module impact analysis. Save hooks provide feedback; unverified checks are explicit.",
"author": {
"name": "Full Stack Skills / PartMe.AI",
"url": "https://github.com/partme-ai"
Expand All @@ -24,8 +24,8 @@
"skills": "./skills/",
"interface": {
"displayName": "代码规范守卫",
"shortDescription": "Make AI-written code pass lint on first try",
"longDescription": "Detects project languages, runs the appropriate linter (mvn javadoc+checkstyle, cargo clippy+fmt, npx eslint, ruff check) on every file the AI writes or edits, and blocks further writes when lints fail. Ships ready-to-use .pre-commit-config.yaml templates and AGENTS.md snippets for one-line project bootstrap. Supports ZCode, Claude Code, Codex CLI, and Kimi Code through their respective plugin manifests.",
"shortDescription": "Trustworthy code checks and Java impact analysis",
"longDescription": "Evidence-backed code checks and Git content gates for AI assistants, with Maven/Gradle module impact analysis. Save hooks provide feedback; unverified checks are explicit. Java planning is read-only; executing project checks runs trusted build/test commands, not a security sandbox.",
"developerName": "Full Stack Skills / PartMe.AI",
"category": "Developer Tools",
"capabilities": [
Expand All @@ -38,7 +38,7 @@
"defaultPrompt": [
"Run /check on the current project and fix what fails",
"Initialize codeguard on this repository with /init",
"Run Java javadoc + checkstyle on the current project"
"Analyze Java module impact, then run the project's verification plan"
],
"brandColor": "#2563EB",
"composerIcon": "./assets/composer-icon.png",
Expand Down
4 changes: 4 additions & 0 deletions .github/workflows/skills-check.yml
Original file line number Diff line number Diff line change
Expand Up @@ -17,6 +17,10 @@ jobs:
python-version: "3.12"
- name: Install requirements (mcp SDK so MCP server tests run, not skip)
run: python3 -m pip install --disable-pip-version-check -r requirements.txt
- name: Install test checker (deterministic real-process fixtures)
run: python3 -m pip install --disable-pip-version-check ruff==0.16.8
- name: Check executable code quality
run: ruff check hooks scripts tests
- name: Verify vendored skills match the lockfile digests
run: python3 scripts/vendor/skill_vendor.py check --offline
- name: Verify lockfile pins still match upstream refs and content
Expand Down
10 changes: 5 additions & 5 deletions .zcode-plugin/plugin.json
Original file line number Diff line number Diff line change
Expand Up @@ -5,11 +5,11 @@
"en": "CodeGuard",
"zh-CN": "代码规范检查"
},
"version": "0.11.1",
"description": "Cross-language code lint enforcement for AI coding assistants (ZCode, Claude Code, Codex CLI, Kimi Code): Java, Rust, TypeScript, Python. PostToolUse hook auto-runs the native linter on every AI-written file and blocks on failure in strict mode.",
"version": "0.12.0",
"description": "Evidence-backed code checks and Git content gates for AI assistants, with Maven/Gradle module impact analysis. Save hooks provide feedback; unverified checks are explicit.",
"description_i18n": {
"en": "Cross-language code lint enforcement. PostToolUse hook auto-runs the language-specific linter on every AI-written file; failed lint blocks further writes when strict_mode is on. Ships ready-to-go .pre-commit-config.yaml templates for Java/Rust/TypeScript/Python.",
"zh-CN": "跨语言代码规范强制门禁插件,专为 ZCode / Claude Code / Codex CLI / Kimi Code 等 AI 编程助手设计。PostToolUse 钩子在 AI 写完文件后自动跑对应语言 linter;严格模式下失败会阻塞 AI 继续。内含可直接接入的 .pre-commit-config.yaml 模板。"
"en": "Evidence-backed code checks and Git content gates for AI assistants, with Maven/Gradle module impact analysis. Save hooks provide feedback; unverified checks are explicit.",
"zh-CN": "基于证据的代码检查与 Git 内容门禁,含 Java 模块影响分析。保存钩子只反馈,未验证项明确标注。"
},
"author": {
"name": "Full Stack Skills / PartMe.AI",
Expand Down Expand Up @@ -42,7 +42,7 @@
"strict_mode": {
"type": "boolean",
"title": "严格模式",
"description": "启用后 PostToolUse 钩子会在 linter 失败时返回非 0 退出码,AI 必须修复后才能继续",
"description": "保留兼容字段,当前 PostToolUse 恒 exit 0;确定违规仅由 Git PreToolUse 门禁拦截。",
"default": true
},
"auto_fix_on_save": {
Expand Down
10 changes: 6 additions & 4 deletions PRIVACY.md
Original file line number Diff line number Diff line change
Expand Up @@ -8,17 +8,19 @@

- Does not phone home
- Does not send telemetry, analytics, or crash reports
- Does not read or transmit your source code
- Reads local source files and Git blobs for checking; does not include a built-in source-upload or LLM telemetry service
- Does not require authentication

All operations happen locally:
- Linter execution (`mvn javadoc:jar`, `cargo clippy`, `npx eslint`, `ruff check`)
- Local process execution (Maven verify / Gradle check, cargo clippy, ESLint, ruff)
- File reads (the file the AI just wrote)
- State files (`.session_state.json` for Stop hook summary)
- State files under CODEGUARD_HOME (default ~/.codeguard), diagnostic logs and temporary Git-content snapshots

## Network requests

The plugin **does not make network requests**. All linters it invokes are local binaries installed on your machine.
The Java planner only reads local build descriptions. Executed build tools, wrappers, project plugins and CVE scanners may access package registries, wrapper distributions and vulnerability databases. Online vendor verification contacts the skill source repository. A local subprocess is not a network sandbox.

Project-defined code and tools run with the invoking user's permissions and may have their own data practices. Review untrusted project commands before executing checks. Logs may contain file paths and tool diagnostics; review them before sharing.

If you opt into `pip install pre-commit`, pre-commit itself may download hook repositories from GitHub — but that's pre-commit's network policy, not ours.

Expand Down
Loading
Loading