SkillAgentSearch skills...

Guardrail

- **Runtime**: Node.js - **Framework**: Express 4.x - **Entry point**: `api/server.js` - **Port**: 3001

Install / Use

npx skills add codewithrakshit/Guardrail

Installs into whichever agent you are using.

About this skill
📦

Amazon Q Rules

Amazon Q Developer rules

Quality Score

56/100

Supported Platforms

Amazon Q

Our assessment of Guardrail

Guardrail scores 56/100 on our quality scale, 4161st of 4,578 Development & Engineering skills we index.

Its Amazon Q Rules is 2.6 KB long, well organised into 12 sections and no code examples: a solid amount of guidance for an agent.

It has no GitHub stars yet, so there is no community track record; judge it on its content.

Substance
26/30
Structure
13/20
Description
12/15
Adoption
0/20
Freshness
5/15

Maintenance, license and trust

  • We could not determine when the repository was last updated.
  • Our last check on 2026-09-27 found the source still online.
  • No license is declared. By default that means all rights are reserved: you can read it, but reusing or redistributing it is not clearly permitted. Ask the author before building on it commercially.
  • Its trust signals score 68/100, with 3 cautions from licensing, adoption, age or documentation. These come from repository metadata, not a code audit — read the skill file before letting an agent act on it.

Safety scan

No issues found

Our scan of the whole file found no instruction hijacking, hidden characters, credential access, data exfiltration or destructive commands. An AI review of the same text found nothing harmful.

AI review by kimi-k2.7-code on 2026-09-24. Automated pattern scan on 2026-09-24. It catches known dangerous patterns, not every risk — read a skill before letting an agent act on it.

Guardrail compared with similar skills

All 4 of these similar skills score higher than Guardrail; compare them before choosing.

SkillScoreStarsUpdatedFormat
Guardrail (this skill)by codewithrakshit560—Amazon Q Rules
Agent-Reachby Panniantong10095.5k3d agoCLAUDE.md
headroomby headroomlabs-ai10075.0ktodayCLAUDE.md
ai-job-searchby MadsLorentzen10045.8k2d agoCLAUDE.md
claude-howtoby luongnv8910041.8ktodayCLAUDE.md

Frequently asked questions

How do I install Guardrail?
Run npx skills add codewithrakshit/Guardrail. The install tabs above show the steps for each supported agent.
Which AI agents does Guardrail work with?
It is written for Amazon Q, as a Amazon Q Rules file. Other agents that read the same format can often use it too.
Is Guardrail safe to use?
Our scan of the whole file found no instruction hijacking, hidden characters, credential access, data exfiltration or destructive commands. An AI review of the same text found nothing harmful. It declares no license and scores 68/100 on trust signals. Skills are instructions an agent will follow, so read the file before installing it and do not approve commands you do not understand.
Is Guardrail still maintained?
We could not determine when the repository was last updated.

GuardRail AI — Tech Stack

Backend (api/)

  • Runtime: Node.js
  • Framework: Express 4.x
  • Entry point: api/server.js
  • Port: 3001

Middleware

  • helmet — security headers
  • cors — frontend at http://localhost:3000
  • express-rate-limit — 50 req/hour default
  • compression — gzip
  • joi — request validation (api/middleware/validation.js)

AWS SDKs (v3)

| SDK | Usage | |-----|-------| | @aws-sdk/client-bedrock-runtime | AI vulnerability analysis via Amazon Bedrock Nova Lite | | @aws-sdk/client-secrets-manager | Secret provisioning with 24h TTL | | @aws-sdk/client-dynamodb | Scan results + audit logs | | @aws-sdk/client-s3 | Patched code storage | | @aws-sdk/client-cloudwatch-logs | Event logging |

API Routes

| Method | Path | File | |--------|------|------| | POST | /api/scan | routes/scan.js | | GET | /api/result/:id | routes/result.js | | GET | /api/logs | routes/logs.js | | POST | /api/demo | routes/demo.js | | POST/GET | /api/session | routes/session.js | | GET | /health | inline in server.js |

Core Services (api/services/)

  • security-orchestrator.js — main workflow coordinator
  • bedrock-client.js — Bedrock Nova Lite AI calls
  • patch-generator.js — produces patched code
  • secret-lifecycle-manager.js — Secrets Manager + 24h TTL
  • session-manager.js — per-scan session isolation
  • event-logger.js — DynamoDB + CloudWatch audit trail
  • remediation-engine.js — vulnerability remediation logic
  • s3-storage.js — S3 upload/download

Frontend (web/)

  • Framework: Next.js 14 (App Router)
  • Language: TypeScript
  • Styling: Tailwind CSS
  • Port: 3000

Key Dependencies

  • axios — API calls to backend
  • lucide-react — icons
  • prismjs — code syntax highlighting
  • react-diff-viewer-continued — before/after patch diffs

Pages (web/app/)

  • / — landing page (page.tsx)
  • /scan — code submission
  • /results — vulnerability report + patch viewer
  • /dashboard — scan history
  • /demo — guided demo

IDE Extension (extensions/vscode/)

  • Built with VS Code Extension API
  • Works on: VS Code, Kiro, Cursor, Windsurf
  • Trigger: Ctrl+Shift+G
  • Features: inline diagnostics, quick-fix lightbulb, auto-scan on save
  • Packaged as .vsix

Infrastructure

  • Config: config/aws-config.json
  • Docker: api/Dockerfile, web/Dockerfile, docker-compose.yml
  • Deploy script: scripts/deploy-infra.js
  • Env: api/.env (copy from api/.env.example)

Supported Languages for Scanning

JavaScript, TypeScript, Python, Java, Go, Ruby, PHP

Related Skills

View on GitHub
GitHub Stars0
CategoryDevelopment
UpdatedNaNy ago
Forks0

Trust signals

68/100

From repository metadata: license, adoption, age and documentation. Not a code audit — see the Safety scan above for what the skill file itself contains.

2 medium1 low
Guardrail — Amazon Q Rules: Install & Safety Check | SkillAgent