test-strategy
Design test strategies including security testing, write test plans, and identify test scenarios for banking features with DevSecOps integration
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
菜单
Design test strategies including security testing, write test plans, and identify test scenarios for banking features with DevSecOps integration
用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
Run chaos security engineering tests — AI agent attempts to hack the Sprint output and reports findings to the team
Validate Java and TypeScript code against banking naming conventions, style rules, quality standards, and secure coding practices
Perform OWASP Top 10 security assessments, vulnerability scanning, and PCI-DSS compliance checks
Perform STRIDE threat modeling during Sprint Planning for new features and APIs
Run UX review checklist for banking user flows, validate WCAG accessibility compliance, assess security UX patterns, and review customer interface design
Design, review, and validate API contracts and OpenAPI specifications for banking services
基于 SOC 职业分类
| name | test-strategy |
| description | Design test strategies including security testing, write test plans, and identify test scenarios for banking features with DevSecOps integration |
Invoke when planning test coverage for a new feature, reviewing test adequacy, or integrating security testing into the CI/CD pipeline.
/ E2E \ <- Few: critical user journeys (login -> transfer -> verify)
/ Contract \ <- Medium: API contract validation against OpenAPI spec
/ Integration \ <- Medium: real DB (Testcontainers), real HTTP (WireMock)
/ Unit \ <- Many: business logic, validators, calculators
| Category | Line Coverage | Branch Coverage |
|---|---|---|
| Transaction logic | 95% | 95% |
| Authentication | 95% | 90% |
| API controllers | 80% | 80% |
| Utility classes | 80% | 70% |
| Configuration | 60% | N/A |