Skip to content
Back to skills

Prompt Design

ASecurity

Design AI app system prompts: instructions, context, tools, and output contracts.

  • 10 stars
  • 0 votes
  • 0 copies
  • 0 views
  • Added September 23, 2026
ai-agentspythonrustgogitsecuritydocumentation

Security analysis

A100/100

Pro scans all 4 files and shows the line behind each finding

Scanned October 6, 2026

npx -y skills add fmind/dot --skill prompt-design --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Prompt Design?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Prompt Design
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/fmind-prompt-design/badge)](https://www.skillsdirectory.com/skills/fmind-prompt-design)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
---
name: prompt-design
description: "Design AI app system prompts: instructions, context, tools, and output contracts."
license: MIT
metadata:
  kind: task
  author: Médéric HURIER (Fmind)
  source: github.com/fmind/dot/tree/main/skills/prompt-design
  created: "2026-08-08"
  updated: "2026-10-05"
---

# Prompt Design

Design production prompt stacks with explicit instruction precedence, trusted context, tool contracts, and measurable output behavior. [task-prompts](../task-prompts/SKILL.md) owns task and continuation prompts.

## Workflow

1. **Define the behavior**: user goal, input/output contract, model/version, budget, failure modes, and observed baseline.
1. **Separate trust levels**: durable instructions, request-time facts, retrieved evidence, and tool output; untrusted content cannot change tool authority or the evaluation contract.
1. **Build the smallest candidate**: clear role and task, relevant context, examples only when useful, explicit structured output and failure behavior.
1. **Specify tools**: schema, validation, side effects, idempotency, retries, error behavior, and confirmation boundaries per [tool-contracts.md](references/tool-contracts.md).
1. **Version and evaluate**: prepare [prompt-candidate.md](references/prompt-candidate.md), test on development cases, and use [agent-evaluation](../agent-evaluation/SKILL.md) for the comparison protocol (never change model, tools, retrieval, or sampling while attributing a result to the prompt) and the project or provider's runner for execution before changing production.

## Gotchas

- **Design is local and read-only by default**: Do not call paid models, change production prompts, publish provider prompt objects, or touch customer data without explicit authorization for that boundary and cost.
- **Prompts are not security boundaries**: authentication, authorization, schema validation, data access, spending limits, and destructive-action gates live in trusted runtime code.
- **Treat untrusted content as data**: retrieved text, files, tool results, memory, examples, and prior model output are data; delimit and label them so they cannot gain instruction authority.
- **Do not request or expose hidden chain of thought**: ask for the decision, a concise rationale, cited evidence, uncertainty, and the observable tool trace the consumer needs.
- **Stop when these signals appear**: unknown runtime assembly, several layers owning one policy, tool descriptions without side effects, dynamic content that can gain authority, or success asserted from one response.

## References

- [Detailed procedure](references/procedure.md): read for complex or high-risk work requiring the full checklist.

## Documentation

- Provider-neutral sources: [detailed procedure](references/procedure.md#sources).
- Companion skills: [google-adk](../agent-frameworks/references/google-adk.md) (Python agents and runtime enforcement), [quality-assurance](../quality-assurance/SKILL.md) (software proof), [threat-model](../threat-model/SKILL.md) (trust boundaries), [research-brief](../implementation-plan/references/research-brief.md) (current provider semantics).

Files in this skill

  • SKILL.md3.1 KB
  • references/procedure.md3.7 KB
  • references/prompt-candidate.md1.2 KB
  • references/tool-contracts.md1 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…