Files
dev-backbone-template/SKILLS/60-security-safety.md
2026-02-02 14:12:33 -05:00

325 B

Security & Safety

Secrets

  • Never output secrets or tokens.
  • Never log sensitive inputs.
  • Never commit credentials.

Inputs

  • Validate external inputs at boundaries.
  • Fail closed for auth/security decisions.

Tooling

  • No destructive commands unless requested and scoped.
  • Prefer read-only operations first.