common-architecture-di…
Draws architecture diagrams as editable draw.io files with a fixed house style, C4 levels, evidence-tagged shapes, and optional multi-view identity checks. Use…
Define deterministic guardrails for agent tool calls — protected paths, test-file locks during bug fixes, post-edit formatters, production approval gates, secret deny rules. Use when writing or reviewing a hook policy, or moving an always-do-X rule out of prose into enforcement.
$ npx -y skills add hoangnguyen0403/agent-skills-standard --skill common-agent-guardrails --agent claude-codeHow it fires
How this skill gets triggered: by you, by Claude, or both.
/common-agent-guardrailsContext preview
The summary Claude sees to decide when to auto-load this skill.
Define deterministic guardrails for agent tool calls — protected paths, test-file locks during bug fixes, post-edit formatters, production approval gates, secret deny rules. Use when writing or reviewing a hook policy, or moving an always-do-X rule out of prose into enforcement.
name: common-agent-guardrails
description: Define deterministic guardrails for agent tool calls — protected paths, test-file locks during bug fixes, post-edit formatters, production approval gates, secret deny rules. Use when writing or reviewing a hook policy, or moving an always-do-X rule out of prose into enforcement.
metadata:
triggers:
files:
- "guardrails.yaml"
- "hooks.json"
- ".claude/settings.json"
- "**/hooks/*.py"
- "**/hooks/*.js"
keywords:
- guardrail
- protected path
- block edit
- approval gate
- hook policy
- pretooluseA rule that must always hold belongs in a hook, not in a prompt. Prompts persuade; hooks decide.
| Class | Trigger | Decision | | --- | --- | --- | | Protected paths | edit to generated, vendored, or frozen files | block | | Secret deny | edit or read of `.env*`, `.ssh/`, `credentials*.json\|yaml`, identity files | block | | Test lock | test-file edit while a bug-fix workflow is active | block | | Formatter | after any accepted edit | run, then report | | Production action | deploy, migration, or destructive command against production | ask named owner | | Scope fence | writes outside the declared task scope | ask |
When this skill applies, preserve the following domain terminology or equivalent concrete examples in the answer when relevant:
The portable SDLC standards layer for AI coding agents. Sync once, then work in your own runtime.
Repo: hoangnguyen0403/agent-skills-standard
Draws architecture diagrams as editable draw.io files with a fixed house style, C4 levels, evidence-tagged shapes, and optional multi-view identity checks. Use…
Enforce SOLID principles, guard-clause style, function size limits, and intention-revealing naming across all languages. Use when refactoring for readability,…
Standardize BRD and BRD-lite discovery for business goals, stakeholder impact, current-to-future state, and measurable value outcomes. Use when creating BRD,…
Conduct high-quality, persona-driven code reviews. Use when reviewing PRs, critiquing code quality, or analyzing changes for team feedback.
Maximize context window efficiency, reduce latency, and prevent lost-in-middle issues through strategic masking and compaction. Use when token budgets are…
Standardize dynamic application security testing for backend APIs, frontend web apps, and mobile clients. Covers ZAP, Nuclei, Nikto, sqlmap, ffuf, browser…