GitHub radar

A skill that turns access-control bugs into build errors

gdp-ts is a skill for your AI coding agent that teaches it to write permission checks in TypeScript so the code won't compile unless the check actually ran. Your agent closes access gaps right in the code, not just in a promise.

01rauchg/gdp-ts 730TypeScript

It's a set of instructions for an AI agent (Claude Code, Codex, etc.) that changes how it writes functions that check user permissions in a TypeScript project. Instead of a plain check buried inside the code, the agent requires proof that the right check already passed — without it, the code simply won't build.

When it helps

Useful if your agent writes backend TypeScript code with paid features or roles — who can see or change what. Skip it if your project isn't TypeScript or has no permission checks at all.

Pros

  • A missed permission check stops the code from compiling
  • Drops into any existing TypeScript project without a rewrite
  • Barely slows builds down — about 0.3 ms per checked call

Cons

  • Only works with TypeScript, no other languages supported
  • Can't catch forged or stale proofs — a TypeScript limitation
  • Locks you into one specific way of writing every check

How to set it up — step by step

  1. 1Open your AI agent (Claude Code, Codex) inside your TypeScript project folder.
  2. 2Make sure Node.js and TypeScript 5.4 or newer are installed.
  3. 3Send the agent the text from the block below.
  4. 4Let the agent install the skill with npx skills add rauchg/gdp-ts and add the @gdp-ts/core library.
  5. 5Check what compile error the code now shows if you remove a permission check.

Text for your agent

Copy this and send it to your agent — Claude Code, Codex, any of them:

Install the gdp-ts skill for my coding agent from https://github.com/rauchg/gdp-ts — via `npx skills add rauchg/gdp-ts`, and ask it to apply the pattern to one real permission check in my TypeScript project (say, who may change a paid setting), then show me the compile error the code now throws if that check gets skipped.

A regular laptop — just needs Node.js and TypeScript 5.4 or newer, no GPU or cloud required.

Open on GitHub