Tech-Skills / security
Yakoub-ai/Tech-Skills/skills/security/AGENTS.md
Coordinates security and compliance - manages Security Architects, Compliance Officers, and Security Hardeners
How real projects brief Codex, Cursor and every other agent that reads AGENTS.md.
Yakoub-ai/Tech-Skills/skills/security/AGENTS.md
Coordinates security and compliance - manages Security Architects, Compliance Officers, and Security Hardeners
Agent-Rules-Ecosystem/security-agent-skill/AGENTS.md
Transversal Cybersecurity, SecOps, OWASP Audit, Secret Scanning, and Encryption Skill for AI Agents.
aspose-words/agentic-net-examples/security-and-protection/AGENTS.md
Verified C# examples for security-and-protection scenarios in Aspose.Words for .NET
aspose-pdf/agentic-net-examples/facades-secure-documents/AGENTS.md
C# examples for facades-secure-documents using Aspose.PDF for .NET
aspose-pdf/agentic-net-examples/securing-and-signing-pdf/AGENTS.md
C# examples for securing-and-signing-pdf using Aspose.PDF for .NET
Nick2bad4u/Github-Security-CodeScanning-Alerts-Skill/.github/workflows/AGENTS.md
GitHub Actions guidance for the GitHub security alerts skill repository.
affaan-m/ECC/AGENTS.md
domain tasks 2. **Test-Driven** — Write tests before implementation, 80%+ coverage required 3. **Security-First** — Never compromise on security; validate all inputs 4. **Immutability** — Always create new objects, never mutate
deepseek-ai/deepseek-harness/packages/experimental/AGENTS.md
packages through `devDependencies`; examples may load them explicitly. - Experimental status does not relax engineering, security, documentation, lifecycle, testing, invariant, or snapshot requirements. - Publishing an experimental package does not promote
microsoft/vscode/extensions/copilot/assets/prompts/skills/agent-customization/references/agents.md
/hooks.md)). ### Supported Events `SessionStart`, `UserPromptSubmit`, `PreToolUse`, `PostToolUse`, `PreCompact`, `SubagentStart`, `SubagentStop`, `Stop` ### Example ```yaml --- description: "Secure code reviewer that blocks dangerous commands" tools: [read, search, execute] hooks: PreToolUse: - type: command command
microsoft/vscode/extensions/copilot/src/extension/chatSessions/copilotcli/AGENTS.md
Operations * Search Operations * Agent & Task Operations * User Interaction * Code Review & Git * Data, Memory & MCP * Security ### `common/copilotCLIPrompt.ts` Parses raw user prompts and extracts structured chat prompt references (files, locations, diagnostics) ### `node/copilotcliPromptResolver.ts
microsoft/vscode/src/vs/platform/agentHost/node/copilot/prompts/AGENTS.md
FAMILY`, which is process-scoped and would leak across every session in the window. > **Security note.** The setting is application-scoped (not workspace-configurable) and forwarded to the agent host
DietrichGebert/ponytail/AGENTS.md
efficiency), input validation at trust boundaries, error handling that prevents data loss, security, accessibility, the calibration real hardware needs (the platform is never the spec ideal, a clock drifts
microsoft/PowerToys/AGENTS.md
Top-level AI contributor guidance for developing PowerToys - a collection of Windows productivity utilities
addyosmani/agent-skills/AGENTS.md
parallel fan-out with a merge step** — used by `/ship` to run `code-reviewer`, `security-auditor`, and `test-engineer` concurrently and synthesize their reports. Do not build a "router" persona
addyosmani/agent-skills/docs/agents.md
Role | Best for | |---------|------|----------| | [code-reviewer](../agents/code-reviewer.md) | Senior Staff Engineer | Five-axis review before merge | | [security-auditor](../agents/security-auditor.md) | Security Engineer | Vulnerability detection, OWASP-style audit | | [test-engineer](../agents/test-engineer.md) | QA Engineer | Test
nexu-io/open-design/.github/AGENTS.md
burying branching in shell fragments. ## Fork PR approval `fork-pr-workflow-approval.yml` and `scripts/approve-fork-pr-workflows.ts` are a separate security boundary. They may approve low-risk fork PR `pull_request` runs, but must not approve
astral-sh/uv/AGENTS.md
webhook events instead of adding `pull_request_target` workflows - NEVER suppress the `dangerous-triggers` security lint; extend the automation dispatcher in a separate pull request if it does not support
koala73/worldmonitor/AGENTS.md
solutions](docs/solutions/) when the affected area has a prior fix — organized by category directory (`security-issues/`, `logic-errors/`, `conventions/`, …) with YAML frontmatter (`module`, `component`, `problem_type`, `tags`) to grep
elastic/elasticsearch/AGENTS.md
jobs expect ephemeral hosts; do not run packaging suites on your workstation. - **Security**: Default dev clusters enable security; use `elastic-admin:elastic-password` or disable with `-Dtests.es.xpack.security.enabled=false`. - **Cursor/Copilot rules
code-yeongyu/oh-my-openagent/.agents/AGENTS.md
form of the `/publish` command | | `remove-deadcode/` | NEW | Skill form of the `/remove-deadcode` command | | `security-research/` | NEW | Team Mode security research audit: 3 vulnerability hunters + 2 PoC engineers | | `codex
An open format for instructions to coding agents, read by Codex, Cursor and others. Think of it as a README written for agents.
At the repository root, with more specific files in subdirectories. Agents read the one closest to the file they're editing.
Setup and test commands, code style, and the rules a new contributor would need to know.
Claude Code reads CLAUDE.md. A one-line CLAUDE.md that points at AGENTS.md covers both.