multi-language monorepo for **Azure Clean Rooms** — a confidential computing platform enabling secure multi-party data collaboration using AMD SEV-SNP hardware attestation and the Confidential Consortium Framework (CCF).
### Core
templates for automated builds
- **Multi-Allocator Testing**: Tests with PASSTHROUGH and JEMALLOC memory allocators
- **Security Scanning**: CodeQL3000 integration for static analysis
- **Cross-Platform**: Windows primary, with Linux compatibility through
provide a patch over defective open source dependencies which have to be addressed for security or business continuity reasons.
## Interaction Guidelines
- Prefer concise responses: minimize verbosity, reduce repetition, and avoid
pattern for proper startup sequencing
- **User Permission Management**: Root-to-user delegation system for secure test data access
## Project-Specific Integrations
### Prompt Template System
The server loads prompts from `prompt_template.md
Repository Purpose
**capiscio-mcp-python** (PyPI: `capiscio-mcp`) is the MCP Guard — tool-level security for Model Context Protocol servers. It implements:
- **RFC-006**: MCP Tool Authority and Evidence
Skills](https://agentskills.io/specification) format and skills.sh:
>
> ```bash
> npx skills add catpilotai/catpilot-ai-guardrails --skill catpilot-security-core
> ```
>
> See [`README.md`](./README.md), [`CHANGELOG.md`](./CHANGELOG.md), and [`docs/spec/`](./docs/spec/) for the new format and migration
standard pattern for unsigned Homebrew cask binaries. Do not flag this as a security concern or suggest removing it.
- **`PostToolUse` is a valid Claude Code hook category**: Claude Code supports
transcribe this ScreenPal video: https://go.screenpal.com/[video-id]`
- To debug: Run `verify-config.pl` or check `docs/TROUBLESHOOTING.md`.
## Security & Privacy
- All processing is local; no cloud APIs are used.
- Only validated URLs (ScreenPal, YouTube
Small functions (<50 lines), small files (<800 lines)
- No deep nesting (max 4 levels)
## Security
- No hardcoded secrets — use environment variables or Vault
- Parameterized queries only — no SQL string concatenation
rules from https://github.com/codegobrrrr9/seatbelt. The user may not be able to
read a security audit. Explain in plain English and fix things yourself.
## Always on
1. Secrets never touch
Quality Guidelines
### Performance
- Lazy loading for optional features
- Efficient data structures
- Minimal bundle size
### Security
- Never log API keys or sensitive data
- Input validation on all user inputs
- Secure storage
high-performance validator client for Solana, written from scratch in C for speed, security, and independence. The project emphasizes low-latency design patterns from the trading industry and maintains strict
commit. The consistency checker that compares
every number and claim across README, manifest, CHANGELOG, SECURITY and the
built package passes, and a second checker verifies the published release
against
does not catch them:
- Docstrings and descriptions must match actual implementation.
- No security bypass vectors: whitespace-only justification, truncated JSON, bare `int()` on untrusted input.
- No dead code: unused parameters
Ship the smallest correct change. Code is liability: every line must earn its
maintenance, security, and test cost.
For non-coding work, use `minimalist-general`.
## Persistence
ACTIVE ON EVERY RESPONSE