mirror of
https://github.com/mattpocock/skills.git
synced 2026-09-12 10:28:06 +07:00
Drop the curl exemplar and the enumerated secret and artifact lists — the model does not need to be told what a secret looks like. Three sentences carry the same rule. Co-Authored-By: Claude Opus 5 (1M context) <noreply@anthropic.com>
10 lines
729 B
Markdown
10 lines
729 B
Markdown
---
|
|
"mattpocock-skills": patch
|
|
---
|
|
|
|
Make `diagnosing-bugs` redact secrets.
|
|
|
|
- Add a **Redact** section to `SKILL.md`. The skill has the agent show commands, outputs and captured artifacts; the section makes redaction the first move on each — write `<REDACTED>`, build loops against env vars so the credential stays in the environment, and quote only the signal-carrying lines of a captured artifact.
|
|
- The Phase 1 completion criterion said "paste the invocation and its output". It now says show it redacted, and Phase 1 asks the user for a **redacted** captured artifact.
|
|
- Note in `scripts/hitl-loop.template.sh` that `capture` prints its value back to the terminal, so it takes observations while signing in stays a `step`.
|