en un clic
argus-framework
argus-framework contient 20 skills collectées depuis tecnosor, avec une couverture métier par dépôt et des pages de détail sur le site.
Skills dans ce dépôt
eIDAS (Electronic Identification, Authentication and Trust Services) compliance checklist. Validates electronic identity, qualified signatures, trust services, and KYC/AML workflows. Use for banking KYC, digital onboarding, remote identification, and electronic signatures in the EU.
ISO 20022 financial messaging standard compliance checklist. Validates payment messages (pain, pacs, camt), schema compliance, XML validation, and end-to-end payment flows. Use for banking payment systems, real-time transfers, and cross-border payments.
SEPA (Single Euro Payments Area) compliance checklist. Validates SEPA Credit Transfer, SEPA Direct Debit, and SEPA Instant payments. Checks IBAN/BIC rules, scheme compliance, mandate management, and settlement timing. Use for euro payment processing in the EU/EEA.
DEPRECATED meta-skill. Use the individual compliance skills instead: gdpr, dora, mica, psd2, pci-dss. This skill now acts as a dispatcher that loads only the sub-skills applicable to the project scope.
DORA (Digital Operational Resilience Act) compliance checklist. Validates ICT risk management, incident reporting, resilience testing, third-party risk, and business continuity. Use for financial entities and ICT service providers in the EU.
GDPR (General Data Protection Regulation) compliance checklist. Validates data processing principles, data subject rights, encryption, PII handling, and privacy-by-design. Use when reviewing features that process personal data of EU residents.
Git workflow management following {{GIT_WORKFLOW}} strategy. Enforces branch naming conventions ({{BRANCH_NAMING}}), commit message format ({{COMMIT_CONVENTION}}), and proper merge/rebase practices. Use for all git operations: branching, committing, merging, and PR creation.
Jira issue management via MCP or REST API. Creates epics, stories, subtasks, and bugs. Updates status transitions, adds comments, links PRs. Supports Jira Cloud and Server. Use for all issue tracker operations during the SDLC workflow.
MiCA (Markets in Crypto-Assets Regulation) compliance checklist. Validates authorization, white paper requirements, consumer protection, market integrity, and stablecoin rules. Use for crypto-asset issuance, trading, custody, and stablecoin operations in the EU.
PCI-DSS (Payment Card Industry Data Security Standard) compliance checklist. Validates cardholder data protection, encryption, access control, network security, and vulnerability management. Use when processing, storing, or transmitting payment card data.
PSD2 (Payment Services Directive 2) compliance checklist. Validates strong customer authentication, API security, access control, and transaction monitoring for payment services in the EU.
Validates project build pipeline in strict sequential order: install dependencies, lint, compile, unit tests, integration tests. Stops on first failure and reports which step failed. Auto-detects project type. Use before commits, PRs, or when verifying changes compile correctly.
Structured code review workflow covering architecture boundaries, business logic correctness, test coverage, security, language compliance, and style. Outputs categorized findings as blocking/warning/pass. Read-only — never modifies code. Use when reviewing PRs, auditing code, or validating implementation.
Analyzes git history to map commits, branches, and changes into structured documentation. Identifies contributors, change patterns, release history, and technical debt indicators. Use for release notes, changelog generation, audit trails, and understanding project evolution.
Detects and fixes non-English content in source code, documentation, and configuration files. Reports violations as LANG-NNN entries. Auto-fixes comments and documentation after confirmation. Requires explicit confirmation for identifier renames. Never modifies i18n/translation files.
OWASP Top 10 (2021) security vulnerability checklist. Systematically checks each vulnerability category against the codebase. Produces blocking findings for any vulnerabilities found. Use during code review, security audits, and before merge requests.
Reads and reports the current project status from issue tracker, git activity, and codebase health. Provides board overview, WIP tracking, blocker identification, and sprint progress. Use for status reports, standup summaries, and project health checks.
OWASP-based secure coding checklist. BLOCKING security validation that stops task progression if critical violations found. Checks for secrets in code, injection prevention, input validation, PII in logs, dependency CVEs, and least privilege access. Use before every PR and when reviewing security-sensitive changes.
Enforces TDD practices and test quality standards. Validates naming conventions, AAA structure (Arrange-Act-Assert), test isolation, and coverage minimums. Java: Mockito + @ExtendWith(MockitoExtension) only for unit tests — no @SpringBootTest. TypeScript: Vitest. Use when writing tests, reviewing test quality, or setting up TDD workflow.
UI/UX design standards and best practices for {{PROJECT_NAME}}. Covers design system usage, accessibility (WCAG), responsive design, interaction patterns, visual hierarchy, and usability heuristics. Use when implementing or reviewing frontend components and pages.