ship-it
78Ship Changes Through Pull Requests and CI
Finishing a change requires careful verification, commits, pull-request setup, and CI follow-through. This skill manages that workflow until every check passes.
Manage SOPS Secrets in Repositories
Encrypted repository secrets require careful commands, keys, and environment handling. This skill guides SOPS workflows through an existing pnpm secrets wrapper.
Не устанавливайте этот Skill автоматически.
Каноническая политика требует проверки оператором перед любым действием по установке.
Скопируйте этот запрос в своего Агента. Он содержит каноническую страницу Skill и манифест.
Review the Skillstore skill "using-sops" from https://skillstore.io/skills/jssblck-using-sops.md and its manifest at https://skillstore.io/api/skills/jssblck-using-sops/manifest. Verify the artifact. Do not auto-install. Inspect the skill and report your findings, then wait for an operator or manual installation decision.Ваш Агент по-прежнему должен показать план и запросить все подтверждения, требуемые политикой безопасности.
Используйте эти ссылки, когда AI-агенту, crawler или script нужен чистый контекст вместо полной страницы.
Использование «using-sops». Retrieve the development Stripe key without showing other secrets.
Ожидаемый результат:
The assistant identifies the repository wrapper, requests confirmation, retrieves only the named value, and avoids echoing unrelated decrypted data.
Использование «using-sops». Add a required API endpoint to every accessible environment.
Ожидаемый результат:
Использование «using-sops». Rotate a lost production recipient.
Ожидаемый результат:
The assistant lists recipient replacement, file re-encryption, value rotation, deployment updates, verification, and encrypted history exposure.
The skill intentionally grants agents broad access to encrypted development secrets and supports persistent production elevation. The most serious design stores a shared private key in persistent cloud environment variables, creating cross-project credential exposure.
Это реальные локальные возможности, которые могут ожидаться для этого навыка, поэтому они требуют проверки, но не считаются подтверждённым вредоносным поведением.
Делитесь версионным отчетом об оценке, нейтральным значком, встраиваемой карточкой и цитатами. Skillstore публикует доказательства, не решая, безопасен ли этот Skill.
https://skillstore.io/skills/jssblck-using-sops/audits/1?utm_source=security_passport&utm_medium=share&utm_campaign=versioned_report[](https://skillstore.io/skills/jssblck-using-sops?utm_source=security_passport_badge)<a href="https://skillstore.io/skills/jssblck-using-sops?utm_source=security_passport_badge"><img src="https://skillstore.io/badges/skills/jssblck-using-sops/security.svg" alt="Skillstore security assessment" loading="lazy"></a><iframe src="https://skillstore.io/embed/skills/jssblck-using-sops.html" title="Skillstore Security Assessment" sandbox="allow-popups allow-popups-to-escape-sandbox" loading="lazy" referrerpolicy="no-referrer" width="420" height="180"></iframe>jssblck. (2026). using-sops security audit report (audit version 1) [Author version unspecified]. Skillstore. https://skillstore.io/skills/jssblck-using-sops/audits/1@techreport{jssblck-jssblck-using-sops-2026,
author = {jssblck},
title = {using-sops security audit report (audit version 1)},
institution = {Skillstore},
year = {2026},
number = {1},
url = {https://skillstore.io/skills/jssblck-using-sops/audits/1},
note = {Author version unspecified}
}cff-version: 1.2.0
message: "If you use this Skill, cite its author and this versioned security audit report."
title: "using-sops security audit report (audit version 1)"
version: "unspecified"
type: report
authors:
- name: "jssblck"
date-released: "2026-08-23"
url: "https://skillstore.io/skills/jssblck-using-sops/audits/1"
identifiers:
- type: other
value: "skillstore:jssblck-using-sops:audit:1"
description: "Skillstore immutable audit report identifier"
Inspect or change an encrypted development variable through the repository wrapper.
Prepare production decryption and service startup while keeping the key outside application files.
Replace a lost or compromised age recipient and re-encrypt affected secret files.
Use the repository secrets wrapper to retrieve [VARIABLE] from development. Explain the command first and avoid displaying unrelated values.
Add [VARIABLE] to the development secrets and environment schema. Confirm before changing files and report any environment you cannot decrypt.
Run [COMMAND] with development secrets through the repository wrapper. Verify the command scope and do not print decrypted values.
Review the SOPS recipients for [PROJECT]. Propose a rotation plan for [COMPROMISED_RECIPIENT], including affected files, approvals, re-encryption, and credential replacement.
Автор
jssblckЛицензия
MIT
Ревизия Skillstore
r1
Примечание о версии
Автор не указал версию.
Репозиторий
https://github.com/jssblck/agents/tree/4658295e88faed205cc134edf987f7ea4e0c8ea4/skills/using-sopsСсылка
0139ec01bdea5a1eaac3b0e3c90753dbfe65aaa1
Актуальность поддержки
23.08.2026
Использование
0 загрузок · 0 просмотров
Структура файлов
Ship Changes Through Pull Requests and CI
Finishing a change requires careful verification, commits, pull-request setup, and CI follow-through. This skill manages that workflow until every check passes.
Remove Machine-Written Tells from Durable Prose
Durable prose can sound generic when rhetoric obscures concrete facts. This skill removes formulaic patterns while preserving meaning, technical details, and voice.
Manage Stacked Pull Requests with gh-stack
Dependent pull requests are difficult to organize, update, and merge safely. This skill guides reliable gh-stack workflows for linear branch stacks.
Coordinate Parallel Agents With Fewer Conflicts
Parallel coding agents often collide in shared files and documentation. This skill provides structural and editing practices that reduce merge conflicts.
Merge Open Pull Requests as One Stack
Merging several open pull requests together requires careful ordering, conflict handling, and repeated verification. This skill builds one GitHub stack and merges it through repository protections.
Build Reliable Code with Durable Principles
Inconsistent engineering choices make code harder to review and maintain. This skill applies clear design, testing, error, and tooling defaults across common languages.
Создание регламентированных пакетов командования инцидентом
от yaojingang
В заметках об инцидентах часто не хватает четкой серьезности, владельца и коммуникации для конкретных аудиторий. Этот навык превращает операционные свидетельства в регламентированный пакет для реагирования, анализа и последующих действий.
Автоматизация DevOps-конвейеров и развертываний
от alirezarezvani
Работа DevOps часто требует повторяемых шаблонов для конвейеров, инфраструктуры и развертываний. Этот навык предоставляет скрипты и справочные руководства для CI/CD, IaC, развертывания и операционного ревью.
Координация облачных DevOps-процессов
от sickn33
Работа по облачной доставке часто охватывает множество инструментов и этапов. Этот навык организует работу с инфраструктурой, CI/CD, Kubernetes, мониторингом, безопасностью, затратами и восстановлением в понятные промпты.
Создавайте более качественные модули Terraform
от sickn33
Проекты Terraform часто разрастаются в несогласованные модули, неясные тесты и рискованные процессы релизов. Этот навык дает Claude, Codex и Claude Code практические паттерны Terraform и OpenTofu для более безопасной поставки инфраструктуры.
Проектирование архитектуры Helm Chart для production
от 92Bilal26
Команды часто копируют примеры Helm, которые не соответствуют их эксплуатационным ограничениям. Этот навык помогает проектировать архитектуру chart с учетом зависимостей, hooks, values, окружений и потребностей операторов.
Безопасная генерация манифестов Kubernetes
от sickn33
Манифесты Kubernetes легко настроить неправильно, когда команды пишут их по памяти. Этот навык превращает требования в структурированные рекомендации по YAML с учетом безопасности, probes, ресурсов и шаблонов Service.