一键导入
canon-system-shaping
Use when you need a governed Canon system-shaping run to shape a new system with mandatory critique and persisted evidence.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Use when you need a governed Canon system-shaping run to shape a new system with mandatory critique and persisted evidence.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
Use when you need a governed Canon review of a real diff or pull-request range instead of a loose chat summary.
Use when a repository does not have Canon runtime state yet and you need to initialize .canon before any governed workflow.
Use when you need a governed Canon policy-shaping run to shape a new or modified policy with mandatory impact evaluation.
Use when you need a governed backlog run that decomposes bounded upstream decisions into delivery epics and slices.
Use when you need a governed Canon architecture run to record decisions, tradeoffs, and risk-gated approvals.
Use when you need a governed change run in a live codebase where invariants and existing behavior matter.
| name | canon-system-shaping |
| description | Use when you need a governed Canon system-shaping run to shape a new system with mandatory critique and persisted evidence. |
available-nowdefault visibility: discoverable-standardStart a real Canon system-shaping run from your AI assistant without making the user memorize the raw CLI.
$canon-requirements.RISKZONESYSTEM_CONTEXTOptional:
OWNER when the user wants to override Git-derived ownership explicitlycanon is on PATH. If missing, point to the install guide..canon/ exists. If missing, point to $canon-init.SYSTEM_CONTEXT, and at least one authored input are present before invoking Canon.canon-input/ as read-only source material. Do not rewrite, normalize, append to, or otherwise modify the user's input files during preflight, clarification, generation, critique, or summary.SYSTEM_CONTEXT explicitly with guided fixed choices new or existing; do not infer it from the mode name alone.canon-input/system-shaping.md or canon-input/system-shaping/ as the canonical authored-input locations for this mode.--input-text instead of materializing a repo file automatically.--input from the active editor file, open tabs, recent .canon/ artifacts, or any other path under .canon/.OWNER is optional. If omitted, Canon should try repository-local or global Git identity before asking for explicit owner input.Intent: and Constraint: markers before invoking Canon.canon inspect risk-zone --mode system-shaping --input <INPUT_PATH> to infer a provisional pair, explain the Canon rationale and confidence, and ask the user to confirm or override before invoking Canon.low confidence, present it as provisional and invite override rather than treating it as final.low-impact, bounded-impact, or systemic-impact.green, yellow, or red.Canon does not invent the system-shaping body for you. Canon governs,
validates, and persists the packet. You (the assistant) MUST author the real
system-shaping body from the bounded source material BEFORE calling
canon run --mode system-shaping.
Do this every time, even when the user starts from a short brief rather than a finished packet:
canon-input/system-shaping.md or a
folder-backed packet under canon-input/system-shaping/. The authored body MUST
include the following canonical H2 sections with concrete content tied to the
source you just read:system-shape.md
## System Shape## Boundary Decisions## Domain Responsibilitiesdomain-model.md
## Candidate Bounded Contexts## Core And Supporting Domain Hypotheses## Ubiquitous Language## Domain Invariants## Boundary Risks And Open Questionsarchitecture-outline.md
## Structural Options## Selected Boundaries## Rationale## Why Not The Otherscapability-map.md
## Capabilities## Dependencies## Gapsdelivery-options.md
## Delivery Phases## Sequencing Rationale## Risk per Phaserisk-hotspots.md
## Hotspots## Mitigation Status## Unresolved RisksIntent: and Constraint: remain required inline markers because the runtime
uses them to decide whether system-shaping has enough bounded evidence to
proceed.Contexts: or Vocabulary: do not satisfy this slice.
Near-miss headings such as ## Boundary Decision do not satisfy it either. Use
the canonical H2 headings above.## Missing Authored Body
naming the missing canonical heading instead of fabricating filler.$canon-requirements or ask targeted
clarification questions before invoking Canon rather than submitting an empty
brief.Author the packet as a system shaper and bounded system designer producing a domain map plus structural-options brief for downstream architects and implementers.
domain-model.md as the domain-map spine of the packet and
architecture-outline.md as the structural-options comparison surface.canon run --mode system-shaping --system-context <SYSTEM_CONTEXT> --risk <RISK> --zone <ZONE> [--owner <OWNER>] (--input <INPUT_PATH> | --input-text <INPUT_TEXT>).canon/runs/<RUN_ID>/artifacts/system-shaping/working-brief.md while keeping canon-input/ read-only.continue, refine, or same run, supplies a RUN_ID, or chooses Canon's explicit continuation path.$canon-status for the compact summary and canon inspect refinement --run <RUN_ID> when the user needs the working-brief path, clarification records, readiness delta, or lineage.After preflight succeeds and the real Canon run exists, the assistant is responsible for turning the system-shaping packet from templated stubs into a grounded, reviewable artifact set.
canon-input/system-shaping/, treat the directory as one authored packet and read it recursively before generation..canon/artifacts/<RUN_ID>/system-shaping/ exists and the packet stays attached to a real run id.canon-input/ as read-only source material. Do not rewrite, normalize, append to, or otherwise modify the user's input files during preflight, clarification, generation, critique, or summary..canon/artifacts/<RUN_ID>/system-shaping/..canon/artifacts/<RUN_ID>/system-shaping/.When the authored input is structurally present but materially ambiguous on points that would force the assistant to invent content, ask targeted clarification questions before generation rather than papering over the gap.
and, or, or comma-separated sub-questions.Each question must follow this shape:
- Question: <one-sentence question>
- Affects: <artifact or section it changes>
- Why it matters: <one short line on what changes if unanswered>
- Context: <≤2 lines from authored input, or `no input coverage`>
- Options:
a) <concrete option>
b) <concrete option>
c) <concrete option>
d) Other (free-form)
- Default if skipped: <explicit default>
- Status: Required | Optional
Question line as the main prompt and surface Why it matters and Context as secondary or tooltip text rather than dumping the full block inline.Write .canon/artifacts/<RUN_ID>/system-shaping/ai-provenance.md describing
how the packet was produced. It must include:
Clarification Loop section with: number of questions presented, number of Required questions answered, number of Required questions left unresolved, number of Optional questions answered or deferred, and the number of substantive clarifications that drove material changes per artifact section..canon/artifacts/... paths when Canon emitted them$canon-status, $canon-inspect-artifacts, and $canon-inspect-evidence.canon/artifacts/<RUN_ID>/system-shaping/ and .canon/artifacts/<RUN_ID>/system-shaping/ai-provenance.md, never back into canon-input/.canon/ is missing, point to $canon-init.--owner <OWNER> explicitly or tell the user to configure git user.name and git user.email.Intent: or Constraint: markers, ask only for the missing marker rather than discarding the rest of the brief.RISK, use guided fixed choices with the exact allowed values low-impact, bounded-impact, and systemic-impact.ZONE, use guided fixed choices with the exact allowed values green, yellow, and red.SYSTEM_CONTEXT, use guided fixed choices with the exact allowed values new and existing.--input-text content and do not restate already valid ownership metadata.Blocked, surface the concrete blocked gate and keep the emitted artifact paths visible for inspection.canon-input/, stop, restore the file from the user's last saved version, and report the rollback before continuing.$canon-inspect-artifacts first.$canon-inspect-artifacts as drill-down.$canon-inspect-evidence when the user needs critique lineage or artifact provenance details.$canon-approve only after the user has reviewed the packet or explicitly wants to record approval.$canon-status first and use $canon-resume only if Canon still leaves the run incomplete.$canon-status$canon-inspect-artifacts$canon-inspect-evidence$canon-approve$canon-resume