Current turn only

tcx-order-allow

Deliberately admit at most one later order-submit or order-cancel attempt in the current root native task when the final identifiers are not known at the beginning.

Use it only for a possible later action #

Use this protocol after deciding that the normal research workflow may be allowed to take one final action if every later ticket, approval, policy, broker, confirmation, idempotency, and audit condition passes. It is not needed for ordinary research or when the final identifiers are already known.

Use an exact first meaningful line #

The first meaningful line must be one of the following literal forms with no comments, aliases, or extra flags:

Allowed modes

$tcx-order-allow --mode paper
$tcx-order-allow --mode validation
$tcx-order-allow --mode live

The skill token may be its matching workspace Markdown link, but the mode syntax stays literal. Place a non-empty normal workflow request after that line. Plan mode rejects grant issuance and use.

Understand the grant lifecycle #

The resulting grant is bound to the workspace, session, turn, original complete prompt hash, Codex permission mode, and selected order mode. It permits at most one later submit or cancel attempt, expires after one hour, and is revoked on consumption, Stop, or the next user turn.

The grant is not approval and has no immediate broker effect. Only root Head Manager can consume it with hook-injected proof; fixed roles, subagents, the viewer, and direct MCP callers cannot mint or use it.