Skip to content
Back to skills

Fsp Build

ASecurity

Build a feature end to end — spec, plan, implement, review, test — on a reviewable branch in one command.

  • 2 stars
  • 0 votes
  • 0 copies
  • 2 views
  • Added September 6, 2026
developmentrustgosqlangulargitapi

Works with

  • api

Security analysis

A100/100

Scanned September 6, 2026

npx -y skills add AgenticPawan/FullStack-Pilot --skill fsp-build --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Fsp Build?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Fsp Build
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/agenticpawan-fsp-build/badge)](https://www.skillsdirectory.com/skills/agenticpawan-fsp-build)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: fsp-build
description: Build a feature end to end — spec, plan, implement, review, test — on a reviewable branch in one command.
when_to_use: /fsp-build, build feature, implement feature, feature pipeline, end-to-end build, spec and implement, new feature, build GAP, resume build, one-shot feature
---

# /fsp-build — One-Shot Feature Pipeline

Build a feature, module, or assessment gap in the **current working repository** end to end — spec → scout → plan → implement → review → test → report — with one command. Work lands on branch `pilot/build-<feature-slug>`, never merged automatically. The whole delivery team runs: fsp-analyst (BA), fsp-scout (context), fsp-architect (plan), the stack implementors, the paired stack reviewers, and fsp-qa.

## Arguments

- `<feature | spec-file | GAP-id>`: required. A feature description in plain words, a path to an existing `.claude/pilot/specs/*.md` spec, a `GAP-<n>` id from `.claude/pilot/architecture/ASSESSMENT.md`, or `--resume <feature-slug>` to continue a stopped run.
- `--yes`: optional. Skip the plan confirmation gate (Step 4). **Hard safety gates are never waived** — auth/policy changes, public API contract changes, destructive migrations, and resource deletion/RBAC/network loosening always stop for explicit sign-off.
- `--max-files <n>`: optional, default 25. Maximum distinct product files the implement step may modify; the pipeline stops for confirmation if the plan exceeds it.

## Pipeline

| Step | Actor | Model | Output |
|------|-------|-------|--------|
| 1 Specify | fsp-analyst | sonnet | `.claude/pilot/specs/<feature>.md` (skipped if given a spec) |
| 2 Scout | fsp-scout | haiku | `.claude/pilot/context/*.md` briefs per affected stack |
| 3 Plan | fsp-architect | opus | `.claude/pilot/builds/<feature>/PLAN.md` |
| 4 Gate | user | — | plan summary in chat; proceed on confirm (or `--yes`) |
| 5 Implement | stack implementors | sonnet / opus per item complexity | edits on `pilot/build-<feature>`, each verified |
| 6 Review | paired stack reviewers | sonnet | diff-scoped findings; max 2 fix loops, then escalate |
| 7 Test | fsp-qa | sonnet | `.claude/pilot/builds/<feature>/QA-REPORT.md` |
| 8 Report | orchestrator | — | `.claude/pilot/builds/<feature>/SUMMARY.md` |

## Prerequisites

- `.claude/pilot/stack-profile.json` must exist — run `/fsp-init` first if absent.
- **The `pilot-<stack>` plugin for each detected stack must be installed.** The delivery team
  invokes the stack specialists (`@angular-implementor`/`@angular-reviewer`, `@dotnet-*`,
  `@sql-*`, `@infra-*`), which ship in their own plugins. pilot-core does **not** depend on them
  (that would be a circular dependency — the stack plugins depend on pilot-core, not the reverse),
  so the orchestrator checks each stack agent's availability at Step 5/6: if a detected stack's
  plugin is not installed, the pipeline **skips that layer with a logged warning** in `SUMMARY.md`
  and continues — it never silently no-ops. Install the missing plugin and `--resume` to cover it.
- A clean git working tree (the pipeline creates a branch; it never stashes without asking).
- On a detected-greenfield project with no `.claude/pilot/foundation/STATUS.md`, Step 0
  stops and asks you to run `/fsp-bootstrap` first (or explicitly confirm you want to build
  features without baseline auth/logging/error-handling/health-checks/CORS) — a hard gate,
  never silently skipped by `--yes`. Existing projects only get a recommendation, not a block.

## Execution

Run the `fsp-build-orchestration` skill now, following every step in order (Step 0 through Step 8). Non-negotiables the skill enforces (do not reinterpret them):

- **File handoffs, not chat handoffs** — every artifact is a file under `.claude/pilot/`; agents receive paths, never pasted content.
- **State after every step** — `builds/<feature>/STATE.json` is updated as each step completes, so `--resume` never re-pays a completed step.
- **QA write-scope check** — after Step 7, the QA step's working-tree changes (`git status --porcelain`, which also catches newly created files a plain diff misses) are verified against the test-path allowlist; any product-code change from QA is reverted and logged (deterministic enforcement, not trust).
- **Hard gates stop the pipeline** even under `--yes`.
- **The branch is left unmerged** — the summary tells the user how to review and merge.

## Output files

| File | Purpose |
|------|---------|
| `.claude/pilot/specs/<feature>.md` | The BA spec — the contract QA traces against |
| `.claude/pilot/builds/<feature>/PLAN.md` | Ordered, complexity-tagged work items |
| `.claude/pilot/builds/<feature>/STATE.json` | Pipeline state for `--resume` |
| `.claude/pilot/builds/<feature>/QA-REPORT.md` | AC-id → test → pass/fail traceability |
| `.claude/pilot/builds/<feature>/SUMMARY.md` | What was built, review outcomes, how to merge |

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…