一键导入
github-actions
GH Actions rules for Fawkes — pin SHA, timeout-minutes, path filtering. Load when editing workflows.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
GH Actions rules for Fawkes — pin SHA, timeout-minutes, path filtering. Load when editing workflows.
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
基于 SOC 职业分类
Architecture Decision Record template and quality checklist with DORA capability linkage. Use when documenting an architectural decision that agents must follow going forward.
Step-by-step OpenTelemetry and uFawkesObs setup: SDK init patterns for TypeScript, Python, Go; DORA metric spans; Grafana dashboard spec. Use when adding observability to a service.
Step-by-step guide to connect a uFawkesAI project to uFawkesPipe and fawkes platform: Dockerfile, ArgoCD manifest, DORA deployment spans. Use when setting up CI/CD for a new service.
Pre-merge security checklist covering secrets, dependencies, auth, data handling, and fawkes suite gates. Use when reviewing a PR for security issues or hardening a change before merge.
TDD patterns and language-specific test examples for TypeScript/Jest, Python/pytest, and Go. Use when writing tests, increasing coverage, or implementing test-driven development.
Add DORA metrics instrumentation to GitHub Actions workflows — job timestamps, deployment tracking, lead time calculation. Load when adding DORA logging to workflows.
| name | github-actions |
| description | GH Actions rules for Fawkes — pin SHA, timeout-minutes, path filtering. Load when editing workflows. |
| license | MIT |
| compatibility | opencode |
Rules:
uses: actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683timeout-minutes on every job${{ secrets.NAME }} only — never hardcoded secretspermissions per jobpaths-ignore for docs-only PRsTemplate:
jobs:
job-name:
runs-on: ubuntu-latest
timeout-minutes: 15
permissions:
contents: read
steps:
- uses: actions/checkout@SHA
DORA timestamps:
- run: echo "job-start:$(date -u +%Y-%m-%dT%H:%M:%SZ)"
- if: always() run: echo "job-finish:$(date -u +%Y-%m-%dT%H:%M:%SZ)"
Validate:
python -c "import yaml; yaml.safe_load(open('FILE'))"
grep "uses:" FILE | grep -v "@[a-f0-9]\{40\}" # find unpinned