A shared project procedure with a defined action path
The Claude Code preview uses a reviewed project skill to invoke the scoped Gated CLI. Policy, approval, execution and receipts run through the hosted API for the branch-creation request. The controlled operation creates a uniquely named branch at an exact existing commit.
Claude Code skills use a SKILL.md file for reusable procedures; project skills can be shared in a repository and invoked directly. The official Claude Code skills documentation explains host behavior. Use the reviewed instructions supplied with your Gated invitation for the pilot.
Four questions for the team reviewing the skill
What should invoke this workflow?
Review the project skill with your team so the intended branch-creation request explicitly routes through the scoped Gated CLI. Broad instructions such as “finish the feature” do not identify a reviewable provider action.
Which credentials can the session reach?
Inspect GitHub access available through shell commands, other tools and environment variables. Direct provider credentials remain outside Gated’s controlled path even when a project skill is installed.
What exactly is the reviewer approving?
Record one selected non-critical repository, a unique new branch name and the full SHA of an existing commit. Assign an authorized human approver with a passkey, and review any changed target as a new request.
How will you know the pilot worked?
Define the policy, approval and receipt evidence before the run. For an authorized live pilot, compare GitHub readback with the reviewed branch and SHA and retain the revocation result.
Keep runtime and provider evidence separate
- Claude Code safe-mode rehearsal
- The actual Claude Code runtime completed a request, human approval, simulated execution and receipt check in safe mode. The test agent was revoked. This was a runtime rehearsal, not a live GitHub write.
- Live GitHub execution through the CLI
- A separate proof used the downloaded CLI to create the reviewed branch at the exact commit. Independent GitHub readback matched; replay and revoked-agent behavior were also verified.
A skill needs a controlled route to the provider
Installing a skill does not control every Claude Code tool or remove alternate GitHub credentials. Gated governs only the explicitly routed request. No universal interception or runtime identity attestation is implemented. The preview does not execute branch updates, deletion or pull requests, and it does not implement merge or force-push governance.