一键导入
secrets-detector
Atomic skill — detect secrets, credentials, and sensitive strings in code and config (invoke before broader security-scan)
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Atomic skill — detect secrets, credentials, and sensitive strings in code and config (invoke before broader security-scan)
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
Generate Sprint Stories from Master Story + sprint scope — ADO-ready PRD lift, UI/Figma, non-redundant sections
Generate Master Stories (feature-level) from PRD — for Sprint Stories use sprint-story-generator; for tech tasks use tech-task-generator
Understands natural English language queries and converts them to SDLC commands. Supports hybrid pattern matching + AI understanding. Asks for ADO work item if missing, shows non-closed items for quick selection. Works with any stage, any role.
One-command setup for AI-SDLC IDE Plugin. Installs dependencies, creates env, bootstraps .sdlc/, wires Claude Code commands, Cursor MCP, and validates everything.
Security validation for Java/TEJ/Spring backend code
Backend developer skill for Java 17, TEJ, RestExpress, Kafka, Gradle, PostgreSQL
| name | secrets-detector |
| description | Atomic skill — detect secrets, credentials, and sensitive strings in code and config (invoke before broader security-scan) |
| model | sonnet-4-6 |
| token_budget | {"input":4000,"output":2000} |
Single responsibility: find exposed secrets and credential material.
Does not: OWASP AppSec audit, dependency CVEs, crash analysis — use security-scan for the full pass.
security-scan (frontend/backend) should start with or reference this skill for the secrets slice to avoid duplicating detection logic in prompts.