Files
ECC/docs/ja-JP/skills
754b8dd76c fix: make the installer runtime pass strict supply-chain vetting (#2503)
* fix: make the installer runtime pass strict supply-chain vetting

Remediate the four enterprise supply-chain vetting blockers from
affaan-m/ECC#2502 so the installer runtime (package.json + manifests +
scripts/lib/**) passes strict exact-pin evidence policy:

1. Remove the package.json `postinstall` lifecycle script (it only echoed a
   post-install banner) and move that banner to an explicit opt-in
   `npm run welcome` command. No install-time lifecycle script remains.
2. Exact-pin every dependency in package.json (dependencies + devDependencies)
   to the versions already resolved in package-lock.json; no ^/~ ranges.
3. Replace non-ASCII characters on the installer runtime script/config surface:
   em-dashes (U+2014) in scripts/lib/{path-safety,install-executor,
   install/link-rewrite}.js comments and the two "Itô" (U+00F4) occurrences in
   manifests/{install-components,install-modules}.json descriptions become
   ASCII, so strict-surface Unicode scanners are clean.
4. Drop the bare `require("ajv")` from scripts/lib/install-state.js; the file
   already carries a complete hand-rolled validator enforcing the same
   schemas/install-state.schema.json (ecc.install.v1) constraints, so the
   installer closure is dependency-free (zero non-builtin bare requires).

Refs affaan-m/ECC#2502

* fix: avoid unpinned welcome invocations

Signed-off-by: Samar Tomar <samar_tomar@hotmail.com>

* fix: validate translated skill frontmatter

Signed-off-by: Samar Tomar <samar_tomar@hotmail.com>

* fix: repair skill frontmatter YAML

Signed-off-by: Samar Tomar <samar_tomar@hotmail.com>

* fix: add MIT license to core skill manifests; pin verification-loop tsc invocation

* fix: preserve tsc/pyright exit status in verification-loop type-check (set -o pipefail)

* chore(deps): sync lockfiles with exact-pinned package.json

Regenerate package-lock.json and yarn.lock so the pinned dependency
specs are reflected in both lockfiles. npm ci and Yarn's --immutable
install now pass the sync check. The resolution tree is unchanged
(231 yarn resolutions, byte-identical set; zero npm transitive drift);
only the root descriptor strings move from ranges to the versions
already resolved in the committed lockfiles.

Addresses the Codex P1 on #2503.

---------

Signed-off-by: Samar Tomar <samar_tomar@hotmail.com>
Co-authored-by: Samarjeet Singh Tomar <samartomar@gmail.com>
2026-07-17 17:13:49 -04:00
..
2026-05-12 09:30:26 -04:00

スキル

スキルは Claude Code が文脈に基づいて読み込む知識モジュールです。ワークフロー定義とドメイン知識を含みます。

スキルカテゴリ

言語別パターン

  • python-patterns/ - Python 設計パターン
  • golang-patterns/ - Go 設計パターン
  • frontend-patterns/ - React/Next.js パターン
  • backend-patterns/ - API とデータベースパターン

言語別テスト

  • python-testing/ - Python テスト戦略
  • golang-testing/ - Go テスト戦略
  • cpp-testing/ - C++ テスト

フレームワーク

  • django-patterns/ - Django ベストプラクティス
  • django-tdd/ - Django テスト駆動開発
  • django-security/ - Django セキュリティ
  • quarkus-patterns/ - Quarkus アーキテクチャ、Camel、CDI、Panache パターン
  • quarkus-security/ - Quarkus セキュリティ: JWT/OIDC、RBAC、バリデーション
  • quarkus-tdd/ - Quarkus テスト駆動開発
  • quarkus-verification/ - Quarkus 検証ループ
  • springboot-patterns/ - Spring Boot パターン
  • springboot-tdd/ - Spring Boot テスト
  • springboot-security/ - Spring Boot セキュリティ

データベース

  • postgres-patterns/ - PostgreSQL パターン
  • jpa-patterns/ - JPA/Hibernate パターン

セキュリティ

  • security-review/ - セキュリティチェックリスト
  • security-scan/ - セキュリティスキャン

ワークフロー

  • tdd-workflow/ - テスト駆動開発ワークフロー
  • continuous-learning/ - 継続的学習

ドメイン特定

  • eval-harness/ - 評価ハーネス
  • iterative-retrieval/ - 反復的検索

スキル構造

各スキルは自分のディレクトリに SKILL.md ファイルを含みます:

skills/
├── python-patterns/
│   └── SKILL.md          # 実装パターン、例、ベストプラクティス
├── golang-testing/
│   └── SKILL.md
├── django-patterns/
│   └── SKILL.md
...

スキルを使用します

Claude Code はコンテキストに基づいてスキルを自動的に読み込みます。例:

  • Python ファイルを編集している場合 → python-patternspython-testing が読み込まれる
  • Django プロジェクトの場合 → django-* スキルが読み込まれる
  • テスト駆動開発をしている場合 → tdd-workflow が読み込まれる

スキルの作成

新しいスキルを作成するには:

  1. skills/your-skill-name/ ディレクトリを作成
  2. SKILL.md ファイルを追加
  3. テンプレート:
---
name: your-skill-name
description: Brief description shown in skill list
---

# Your Skill Title

Brief overview.

## Core Concepts

Key patterns and guidelines.

## Code Examples

\`\`\`language
// Practical, tested examples
\`\`\`

## Best Practices

- Actionable guideline 1
- Actionable guideline 2

## When to Use

Describe scenarios where this skill applies.

覚えておいてください:スキルは参照資料です。実装ガイダンスを提供し、ベストプラクティスを示します。スキルとルールを一緒に使用して、高品質なコードを確認してください。