tool-permission-system is agent-read markdown (skill) from simbajigege/book2skills: Design and implement a layered, configurable permission/safety system for agent tools. Use this skill when building an agent that needs to control which tool calls are auto-allowed, which require user confirmation, and which are denied — especially when the system must be configurable across multiple scopes (project/user/enterprise) and extensible via hooks. Triggers on: "权限系统", "工具安全", "tool permission", "permission system", "tool safety", "allow/deny rules", "hook system", "构建安全机制"..
Indexed from public GitHub and served as immutable, content-addressed versions. Install it pinned to an exact SHA-256 with the mdr CLI, and every file is verified against the hash recorded here before it reaches your agent. The deterministic audit below grades the latest version, and the same file always earns the same grade.
mdr add simbajigege/book2skills/tool-permission-system@git:20260630.76c29e9mdr add simbajigege/book2skills/tool-permission-system@sha256:bd62cca62d196e13Pin to a label to follow the author's releases, or to a sha256 to freeze the exact bytes forever. Either way the resolved hash is written to mdr.lock, and mdr install reproduces it on any machine.
[](https://markdownregistry.com/a/art_spjktgk7342tdzcr)
0 badge views in 30 days
| version | committed | commit | size | audit | |
|---|---|---|---|---|---|
| git:20260630.76c29e9 latest | 2026-06-30 | 76c29e9 | 10,534 B | A | view · diff |
| git:20260604.cfc6e2d | 2026-06-04 | cfc6e2d | 8,167 B | A | view · diff |
| git:20260604.8c7f0ed | 2026-06-04 | 8c7f0ed | 8,165 B | A | view |
simbajigege/book2skills · 158 stars · license MIT · pushed 2026-08-26 · branch main
GET https://markdownregistry.com/api/v1/artifacts/art_spjktgk7342tdzcr GET https://markdownregistry.com/api/v1/resolve?ref=simbajigege/book2skills/tool-permission-system GET https://markdownregistry.com/api/v1/blob/bd62cca62d196e13f3aa5f46ceeec0d867ddcb1a72d7044893a2c8552b7891ce