بنقرة واحدة
cosign-validate
Validates an AI resource using SHA-256 integrity and Sigstore authenticity sidecars.
التثبيت باستخدام Codex أو Claude انسخ هذا Prompt والصقه في Codex أو Claude أو مساعد آخر ليراجع صفحة Skill ويثبّتها لك.
القائمة
Validates an AI resource using SHA-256 integrity and Sigstore authenticity sidecars.
التثبيت باستخدام Codex أو Claude انسخ هذا Prompt والصقه في Codex أو Claude أو مساعد آخر ليراجع صفحة Skill ويثبّتها لك.
استنادا إلى تصنيف SOC المهني
Stop CodeQL residual thrashing on Percussion CMS PRs. Use when working code-scanning alerts, security advisories, SSRF/LDAP/path/XXE fixes, // codeql suppressions, query-filters, model packs, or PR checks named CodeQL / Analyze (java-kotlin).
Strict pre-commit / pre-PR code review for Percussion CMS (Erlang persona). Use when the user says "Erlang", "review my changes", "pre-commit review", "pre-PR review", "strict review", or before git commit / gh pr create. Independent review only; blocks on bugs, missing behavioral tests, and non-portable (Windows/Unix) file path handling. Loads review memory and writes durable reports under docs/ai-generated/code-reviews/.
A skill for writing clean, maintainable, and effective Java unit tests using JUnit 5 and Mockito. Use when the user asks for "unit tests", "test cases", "tests", "JUnit", "Mockito", or related terms. Also use for migrating JUnit 3/4 tests to JUnit 5.
Best practices and version-correct Javadoc comment generation for percussioncms. Use when the user asks for "Javadoc", "Java documentation", "doc comments", "doc", "documentation", or related terms.
Use when the user needs to create, apply, verify, or revert patches for source files using the Linux diff and patch utilities, or when generating sed-based inline edits as a lightweight alternative.
Centralized skill to verify the integrity and authenticity of AI resources (skills, prompts, instructions). Uses SHA-256 hashing and Sigstore sidecar signatures.
| name | cosign-validate |
| description | Validates an AI resource using SHA-256 integrity and Sigstore authenticity sidecars. |
| version | 1 |
Purpose: Verify the status of an AI resource.
#!/bin/bash
REPO_ROOT=$(git rev-parse --show-toplevel)
"$REPO_ROOT/mvn-env.sh" -pl modules/ai-shared-develop exec:java \
-Dexec.mainClass="com.percussion.ai.signing.ResourceVerifier" \
-Dexec.args="$1"