Constraint Driven Development

Establishes a project's quality bar as a written contract and stops agents quietly lowering it. Interviews the user on which dimensions matter, supplies sane default thresholds when they have no number in mind, records everything in CONSTRAINTS.md, and watches the diff for a weakened bar — new @ts-ignore or eslint-d...

概览

Constraint Driven Development is a SKILL.md workflow from addyosmani/agent-skills. It is categorized under security and links back to its reviewed source so users can inspect the complete instructions and bundled resources before installation.

使用场景

Apply Constraint Driven Development as a repeatable security workflow.
Evaluate the source instructions and bundled resources before installation.
Use the skill with a compatible Agent Skills runtime.

安装说明

# Review source first
open https://github.com/addyosmani/agent-skills/blob/main/skills/constraint-driven-development/SKILL.md

Copy the reviewed skill folder into the skills directory used by your compatible agent.

安全提示

AIToolly validated the published source structure and license automatically. Review addyosmani/agent-skills and any bundled scripts again before granting workspace, command, or network access.

相关 Skills

Yara Rule Authoring

trailofbits/skills

安全

指导编写用于恶意软件识别的高质量 YARA-X 检测规则。适用于编写、审查或优化 YARA 规则。涵盖命名规范、字符串选择、性能优化、从旧版 YARA 迁移以及减少误报。触发条件:YARA、YARA-X、恶意软件检测、威胁狩猎、IOC、签名、crx 模块、dex 模块。

Claude CodeClaude
designsecurity
6,924 Stars已链接来源

Cargo Fuzz

trailofbits/skills

安全

设置并运行 cargo-fuzz,这是基于 Cargo 的 Rust 项目的标准模糊测试工具。涵盖 cargo fuzz init、nightly 工具链要求、fuzz_target! 测试桩、Arbitrary 派生的结构化输入、sanitizer 选项、cargo fuzz coverage 以及重现崩溃产物。适用于模糊测试 Rust crate、编写 fuzz_target!、测试 Rust 中的 unsafe 块或 FFI,或排查 cargo fuzz 崩溃。

Claude CodeClaude
securityresearch
6,924 Stars已链接来源

Deep Agents Memory

langchain-ai/langchain-skills

安全

INVOKE THIS SKILL 当您的 Deep Agent 需要内存、持久化或文件系统访问时。涵盖了 StateBackend(临时)、StoreBackend(持久)、FilesystemMiddleware 和用于路由的 CompositeBackend。

CodexClaude
typescriptpython
1,187 Stars已链接来源

Security Audit

TerminalSkills/skills

安全

通过扫描 OWASP Top 10 漏洞、检查依赖项中的已知 CVE、检测泄露的机密和 API 密钥,并生成优先修复建议,对代码库进行全面的安全审计。此技能结合了静态分析模式与依赖项审计工具。

CodexClaude Code
securityaudit
72 StarsApache-2.0