
Research
/Security News
16 Malicious Firefox Extensions Steal Cryptocurrency Wallet Credentials
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.
@imdeadpool/guardex
Advanced tools
Guardian T-Rex for your multi-agent repo. Isolated worktrees, file locks, and PR-only merges stop parallel Codex & Claude agents from overwriting each other's work. Auto-wires Oh My Codex, Oh My Claude, OpenSpec, and Caveman.
Safe parallel work for Codex, Claude, and humans.
One task → one worktree → one PR → one clean merge.
Install · Why · Capabilities · VS Code view · Workflow · Code assist · Commands
npm i -g @imdeadpool/guardex
cd /path/to/your-repo
gx setup
gx onboard # optional 2-minute tour
Requires Node.js 18+, Git, and GitHub CLI (gh). Recommended on macOS or
Linux; use WSL on Windows.
[!WARNING] GitGuardex is an independent project. It is not affiliated with OpenAI, Anthropic, or Codex.
Parallel agents can edit the same files, overwrite tests, or commit directly to
main. More agents can create more conflicts instead of more progress.
| Isolate and coordinate | Ship with evidence | Recover without loss |
|---|---|---|
One agent/* branch and worktree per task. | Preflight, CI, and optional AI review block risky merges. | Dirty, locked, blocked, and uncertain lanes are preserved. |
| Shared file claims prevent silent overwrites. | The recorded base keeps unattended finishes on the correct target. | Successful lanes are merged, then their temporary branch and worktree are removed. |
| Protected branches stay behind a PR boundary. | Billing-aware fallbacks waive only explicitly named checks. | Cleanup fails closed instead of deleting work it cannot prove safe. |
tasks.md progress
deterministically and validate it before continuing. (#753)gx branch finish --help free of
repository side effects. (#742, #747, #748, #754)Create an explicit multi-root workspace when you want every managed worktree to appear as its own Source Control repository:
gx setup --vscode-worktree-view
code ../<repo>-branches.code-workspace
The generated workspace enables Git subfolder discovery, worktree detection,
and an empty repository-scan exclusion list. This is opt-in: GitGuardex does not
rewrite your repository's .gitignore or loosen the default single-repository
workspace. Disable future generation with --no-vscode-worktree-view.
# 1. Start an isolated lane
gx branch start "fix-auth" "codex"
# 2. Inside the printed worktree, claim what you will edit
gx locks claim --branch "$(git branch --show-current)" src/auth.ts test/auth.test.ts
# 3. Implement and verify
npm test
# 4. Commit, open a PR, merge, and clean up
gx branch finish --via-pr --wait-for-merge --cleanup
For a small change that you already verified locally, use the explicit fast profile:
gx branch finish --fast
--fast still opens a PR and uses squash merge, but skips the local preflight,
AI review, and review autofix. Repository branch protection and required CI
checks still control whether GitHub accepts the merge. Do not use fast mode for
security-sensitive, migration, dependency, or broad refactor changes.
Add --gate-review to review the PR before merge. Add --gate-autofix to let
the agent repair blocking findings and run the review again.
gx branch finish --via-pr --wait-for-merge --cleanup \
--gate-review --gate-autofix
High and critical findings block the merge. The review is posted directly on the PR as a readable severity, location, and finding table.
Real example: Wireless_KFB_Project PR #165 · open the full-size screenshot
| Command | Purpose |
|---|---|
gx / gx status | Show repo safety and the next action. |
gx setup | Install or refresh Guardex in a repo. |
gx doctor | Repair Guardex drift. |
gx branch start "task" "agent" | Create an isolated task lane. |
gx locks claim --branch <branch> <files...> | Claim files before editing. |
gx branch finish --via-pr --wait-for-merge --cleanup | Ship safely through a PR. |
gx branch finish --fast | Squash-merge a locally verified small change without local preflight or AI review. |
gx agents status | Show active agent lanes. |
gx agents send --session <id> --message <text> | Deliver safely to an idle agent or queue for its next turn. |
gx agents inbox [--ack <message-id>] | Read or acknowledge the authenticated standalone message queue. |
gx cleanup | Prune merged or stale worktrees. |
Need the terminal cockpit? Run gx cockpit; see the
cockpit guide. Run gx --help for every command.
GitGuardex preserves your instructions. It only manages content between:
<!-- multiagent-safety:START -->
<!-- multiagent-safety:END -->
npx skills add recodee/gitguardex
npx skills add recodee/ # browse the namespace
gx setup does not auto-run npx skills add .... If the picker does not show a separate guardex skill, that is expected; use the gitguardex skill.
gx release # create/update the current GitHub release from README notes
gx release is the maintainer path for package releases. It reads README.md,
finds the last published GitHub release, and writes one grouped GitHub release body.
gx sync.gx doctor from pruning dirty detached or managed worktrees during
stale-worktree repair.opencue/gitguardex for trusted OIDC
publishing.gx branch finish --fast for small tasks that should use the PR +
squash-merge path without repeating local preflight or opt-in AI review.cr.yml AI-review workflow; repository policy and explicit
Guardex review gates now control merge readiness.@imdeadpool/guardex from 7.1.0 to 7.1.1 so the current
main payload can publish under a fresh npm version after 7.1.0 reached
the registry.npm publish now checks npm during prepublishOnly and
bumps package release metadata to the next unpublished patch version when the
committed version is already published. GitHub Actions release publishes keep
the committed metadata so packed and signed assets stay aligned.FAQs
Guardian T-Rex for your multi-agent repo. Isolated worktrees, file locks, and PR-only merges stop parallel Codex & Claude agents from overwriting each other's work. Auto-wires Oh My Codex, Oh My Claude, OpenSpec, and Caveman.
We found that @imdeadpool/guardex demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Research
/Security News
Socket found 16 malicious Firefox extensions designed to steal crypto wallet recovery phrases and private keys using cloned Rabby and OKX interfaces.

Product
Socket now scans VS Code extensions, giving teams early detection of risky behaviors, hidden capabilities, and supply chain threats in developer tools.

Research
/Security News
Socket uncovered two malicious VS Code themes in a GlassWorm-linked cluster with thousands of installs across VS Code Marketplace and Open VSX.