Skip to content
Back to skills

Tasks

ASecurity

Use when the user asks to validate derived skill, requests the stated deliverable, or supplies an artifact that requires this atomic workflow. Do not select by job title alone.

  • 3 stars
  • 0 votes
  • 0 copies
  • 3 views
  • Added September 19, 2026
ai-agentsgotestingsecurity

Security analysis

A100/100

Pro scans all 21 files and shows the line behind each finding

Scanned September 19, 2026

npx -y skills add kina2711/data-department-agent-skills --skill tasks --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Tasks?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Tasks
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/kina2711-tasks-d843643e/badge)](https://www.skillsdirectory.com/skills/kina2711-tasks-d843643e)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
# book-validate-derived-skill

## Trigger

Use when the user asks to validate derived skill, requests the stated deliverable, or supplies an artifact that requires this atomic workflow. Do not select by job title alone.

## Contract

- Profile: `advisory-analysis`
- Risk tier: `R0-light`
- Execution path: `fast-path`
- Contract version: `3.0`
- Criticality: `deep`
- Model tier: `strong` per [model selection](../model-selection.md); a lighter model never lowers the bar this output must clear.
- Goal: kiểm tra Claude format, triggering, progressive disclosure, broken links, token path và task behavior.
- Primary deliverable: **derived-skill validation report**.

## Inputs and readiness

- Confirm objective, consumer, owner, target/environment, scope, constraints and acceptance criteria.
- Identify relevant systems, data, artifacts, dependencies, authority, evidence and tests.
- For controlled work, establish containment, backup, rollback or recovery before execution.

If an absent input changes semantics, risk, cost, scope or acceptance, classify it as blocking. Otherwise state a bounded assumption and record it.

## Deep execution contract

- Contract version: `3.0`.
- Criticality: `deep`; treat this as a low-freedom protocol for **derived-skill validation report**.

Mandatory domain inputs:
- Source files, editions and rights.
- Conversion purpose and destinations.
- Content type and structure.
- Token and quality budget.

Invariants that must remain true:
- Named frameworks preserve author precision.
- Quotations stay bounded.
- Derived claims trace to locations.
- Destination packs distinguish author view, synthesis and user application.

Decision and execution sequence:
1. Inventory and fingerprint.
2. Extract and verify structure.
3. Distill frameworks and decisions.
4. Compile destination packs.
5. Test retrieval and application.
6. Scan rights, security and version.

Required proof:
- Source manifest.
- Chapter and locator coverage.
- Framework citation audit.
- Destination validation.
- Retrieval/application results and copyright decision.

Block before mutation or a positive completion decision when a mandatory input, authority, invariant, recovery path or proof source is unresolved. Preserve the failed state and route remediation explicitly; never weaken a test or threshold merely to pass.


## Procedure

1. Read [the lifecycle standard](../lifecycle-standard.md); apply its stages, gates and risk-adaptive path.
2. Load only applicable company context, then inspect live artifacts when facts may have changed.
3. Load technology or industry references only when they affect this deliverable.
4. Execute the stated goal; keep one primary deliverable and record provenance for material facts.
5. Run the tests below, resolve failures, obtain required approval and complete the lifecycle handoff.

Additional resources:
- Read [the Book-to-Knowledge operating system](../book-conversion-operating-system.md); extract actionable structure rather than chapter recap.
- Reuse only the matching source-manifest, framework-card, chapter-note, destination-plan, experiment or evidence asset from `../../assets/`.
- Read [the copyright, security and quality standard](../copyright-security-and-quality.md); run `../../scripts/validate_book_conversion.py` when a conversion manifest is available.


## Tests and evidence

- Source edition/hash, extraction coverage and framework-to-locator traceability.
- Copyright, quotation, prompt-injection, broken-link and hallucinated-framework audit.
- Unseen retrieval and changed-scenario application test for the selected destination.

Also verify scope and acceptance criteria, test relevant edge/failure paths, store evidence and keep failed mandatory checks visible. Use independent critical acceptance testing when practical.

## Approval and done

Explicit approval is normally not required for read-only work, but becomes mandatory if scope expands to a governed or mutating action. Approval is version- and scope-specific and never waives testing. Finish only when the deliverable meets acceptance criteria, mandatory tests pass, required approval exists, residual risks have owners, and handoff/monitoring is explicit. Stop as `blocked` or `failed` on missing authority, material ambiguity, failed validation or unsafe recovery; never fabricate success.

## Return

Return the task ID, lifecycle profile, risk tier, execution path, phase reached, primary deliverable, evidence links, test results, approvals, assumptions, open risks, affected assets, owner and one explicit next task. Route cross-role work through the department orchestrator.

Report it in the compact shape from [response compression](../response-compression.md): one state line, the deliverable, only the fields that carry content, then one next action. Blocked gates, unrun checks, assumptions, limitations and residual risks are printed in full even here.

Mirror the outcome into `../../assets/atomic-task-output.yaml` alongside the prose. Where the prose and the structured record disagree, the record stands and the task is not complete.

Files in this skill

  • book-assess-source-rights.md4 KB
  • book-audit-copyright-and-privacy.md5.1 KB
  • book-audit-source-traceability.md5.3 KB
  • book-build-action-experiment-plan.md5.2 KB
  • book-build-agent-skill.md5.2 KB
  • book-build-career-application-pack.md5.2 KB
  • book-build-concept-glossary.md5.4 KB
  • book-build-curriculum-pack.md5.2 KB
  • book-build-decision-cheatsheet.md5.4 KB
  • book-build-interview-knowledge-pack.md5.2 KB
  • book-build-knowledge-graph.md5.4 KB
  • book-build-progressive-chapter-pack.md5.6 KB
  • book-build-project-application-pack.md5.2 KB
  • book-build-second-brain-pack.md5.2 KB
  • book-build-source-manifest.md5.6 KB
  • book-build-technical-content-series.md5.6 KB
  • book-build-topic-index.md5.4 KB
  • book-build-workflow-checklists.md5.2 KB
  • book-classify-conversion-purpose.md3.5 KB
  • book-compare-multiple-books.md3.6 KB

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…