一键导入
micronaut-security-review
Security review checklist for Micronaut source code, dependencies, build logic, CI/CD, release automation, and secure-default changes.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Security review checklist for Micronaut source code, dependencies, build logic, CI/CD, release automation, and secure-default changes.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
Build deterministic, complete 30-day issue-level evidence and rank recurring operating-system improvements for the CEO routine.
Decide when CEO self-improvement should stay in additive runtime guidance versus becoming a PR against the Micronaut Agent Company source repository.
"Reference the upstream GitHub gh CLI skill only for explicit human/operator exceptions where a non-plugin GitHub client is authorized. Normal GitHub API operations must use the GitHub Sync plugin tools, including the Hermes MCP-bridged runtime names when present. Do not depend on a propagated GITHUB_TOKEN and do not search the filesystem, plugin config, or other files for a token. Any maintainer-visible non-plugin GitHub write still requires the manual GitHub-flavored Markdown footer: one blank line, `---` on its own line, then `###### \u2728 This message was AI-generated using <exact model id>`."
Search-only Skills marketplace discovery for CEO Training; inspect candidates and prepare evidence-backed approval requests without installing, updating, assigning, or executing any skill.
Shared GitHub, GitHub Sync plugin, footer, PR-linking, and review-thread protocol used by Micronaut company agents.
Diagnose, plan, implement, verify, and review Micronaut-specific GraalVM native-image work across Native Build Tools, reachability metadata, micronaut-graal, micronaut-build GraalVM support, generated AOT/native assets, and CI reports.
| name | micronaut-security-review |
| description | Security review checklist for Micronaut source code, dependencies, build logic, CI/CD, release automation, and secure-default changes. |
Use this skill whenever work changes executable code, dependencies, build logic, CI/CD, release automation, secrets handling, security-sensitive configuration, or security-sensitive docs in a Micronaut repository.
Before you review:
changes_requested to security review, or the monthly-security-deep-scan routine invoked you.executionState.returnAssignee before you decide whether a finding should return to the executor as changes_requested.approved: pre-triage advances exactly to the next entry in the authoritative ordered qa-intake.stageSequence; final Security review advances to Code Reviewer. The stage artifact explains why the work is safe enough to proceed.changes_requested: the stage artifact identifies a concrete vulnerability, insecure default, leaked secret, excessive permission, or other plausible exploit path that must be fixed before the work can advance.Before you stop:
in_review and the next currentParticipant is correct.changes_requested and your artifact names the exact remediation or compensating control.followThroughOwner, then confirm that owner performs the thread mutation before you approve.When invoked by the monthly-security-deep-scan routine:
paperclip-github-plugin:search_repository_items