Back to skills
SKILL.md
Tutorials
ASecurityUpstream → Midstream → Downstream のフローに従うシンプルな River Review スキルを作成します。
- 4 stars
- 0 votes
- 0 copies
- 3 views
- Added September 2, 2026
Security analysis
92/100- Installs packages at runtime which could introduce malicious dependencies
Pro scans all 9 files and shows the line behind each finding
npx -y skills add s977043/river-review --skill tutorials --agent claude-codeAre you the author of Tutorials?
Add the live security badge to your README. It updates with every re-scan.
[](https://www.skillsdirectory.com/skills/s977043-tutorials)# 最初のスキルを作成する
Upstream → Midstream → Downstream のフローに従うシンプルな River Review スキルを作成します。
## 前提条件
- Node.js がインストールされていること
- リポジトリをクローンし、依存関係がインストールされていること (`npm install`)
## 1. スキルメタデータの作成
`skills/` 配下にスキル ID と同名のディレクトリを作成し、その中に `SKILL.md` を置きます(例: `skills/midstream/hello-skill/SKILL.md`)。各スキルを独立したディレクトリに格納することで、フィクスチャや eval 用の兄弟ディレクトリ(`fixtures/`、`eval/` など)を同じ場所に置けます。`/schemas/skill.schema.json` に一致するメタデータを先頭に含めます:
```yaml
---
id: hello-skill
name: Hello World Skill
description: Markdown 内の TODO コメントを検出する
category: midstream
applyTo:
- '**/*.md'
tags:
- content
- hygiene
severity: minor
---
# ここから指示を書きます...
```
## 2. フローを明確にする
- **Upstream:** チェックの意図を説明し、設計資料へのリンクを含める。
- **Midstream:** 指示本文で検出ロジックを定義する。
- **Downstream:** 発見事項の検証方法や自動修正方法を記載する。
## 3. スキルの検証
バリデータを実行して、スキーマと構造が正しいことを確認します:
```bash
npm run skills:validate
```
スキルが特定のフェーズ向けである場合、対象ファイルに対してのみレビューアが読み込むことを確認するために、簡単なテスト PR を追加してください。
## 4. レビューによる改善
スキルをコミットし、PR を開き、River Review の PR テンプレートを使用して関連する Issue をリンクし、検証が通過したことを証明してください。
Files in this skill
- authoring-skills.en.md
- authoring-skills.md
- creating-your-first-skill.en.md
- creating-your-first-skill.md
- getting-started.en.md
- getting-started.md
- integrating-with-github-actions.en.md
- integrating-with-github-actions.md
Attribution
Comments
Loading comments…