create-override
Create a governed session override for a policy that would otherwise deny — mandatory justification, server-clamped TTL, blocked for critical-risk p…
它会碰到什么
这一栏是扫描器报的事实,不是结论。命中多不等于有毒(安全工具、规则库、示例脚本本来就会包含危险写法),命中少也不等于干净。它和你手上的凭据、文件、网络有什么关系,需要你自己看。
技能内容
Use this skill when a user has been blocked by a non-critical policy and wants to bypass it for the rest of their session with a documented justification.
Before calling this skill, the user MUST provide:
policy_id— the ID of the policy to override (typically surfaced byexplain-decision)policy_type—"static"(system / dynamic registry policy) or"dynamic"override_reason— free-text justification (1-500 chars). This is mandatory and recorded in the audit trail.
Optional:
tool_signature— restrict the override to a specific tool name (recommended; narrower scope)ttl_seconds— requested duration. Server clamps to[60, 86400]; default 3600 (1h).
Call the create_override MCP tool. The platform will reject the request (HTTP 403) when:
- The policy is critical-risk (no override permitted)
- The policy has
allow_override: false - The justification is missing or empty
Surface the response's id, expires_at, and any clamped flag (set when the requested TTL was clamped down). Tell the user: "Override <id> active until <expires_at> — the next attempt at the blocked tool will succeed within that window."
想直接用这个技能?
本站把开放许可(MIT / Apache 等)的技能按仓库打包整理到网盘,点一下转存到你自己的网盘,不用一个个从 GitHub 拉。许可未声明的技能只给原始仓库链接,不打包。
它属于哪个仓库
plugins/getaxonflow/axonflow-codex-plugin/skills/create-override/SKILL.md