# Github MCP Hero

> Governed GitHub over MCP; read is admitted, out-of-scope mutation is sealed as a denial.

- Skill: `runxhq/github-mcp-hero` (Agent Skill, multi-file: 3 files)
- Install (CLI): `npx skillmds@latest add runxhq/github-mcp-hero`
- Raw SKILL.md: https://api.skillmd.com/api/skills/runxhq/github-mcp-hero/raw
- Safety review: pending
- Works with: Claude Code, Claude.ai, OpenAI Codex
- Category: AI & ML
- Author: runxhq (https://skillmd.com/u/runxhq)
- Updated: 2026-09-17
- Page: https://skillmd.com/skills/runxhq/github-mcp-hero

---

# GitHub MCP Hero

This example drives a deterministic GitHub-shaped MCP fixture through the native
`mcp` source front. The read runner grants `repo.read` and seals a read-only issue
snapshot. The refusal runner grants the same read scope, then attempts a mutating
comment step that requires `repo.write`; the provider-permission effect blocks it
before the MCP mutation tool runs and seals a blocked graph receipt.

