Token导航 LogoToken导航TokenDH.com
前端设计只读github未标认证来源可访问clear审计通过

brainstorming头脑风暴

Agent Skill

用于辅助安全审计、权限检查、凭据风险、认证流程和常见漏洞排查。它适合让 Agent 梳理敏感配置、检查依赖风险、分析鉴权逻辑或生成安全复核清单。使用时不能把工具输出直接当最终结论,涉及密钥、令牌、用户数据或生产系统时,应先确认最小权限、脱敏方式和操作边界。

总安装

186

周安装

8

GitHub Stars

3

下载量

65
CodexClaudeCursorGemini CLI

安装说明

本站只整理中文说明和来源信息,不托管安装包,也不代用户安装。

GitHub

来源数

3

许可证

MIT

最后核验

2026-05-01

来源状态

来源可访问

安装方式

通过对话安装

复制提示词发给支持本地命令或 Skills 的 AI 助手,先确认命令和权限,再让它执行。

请帮我安装这个 Agent Skill:brainstorming(头脑风暴)
来源仓库:https://github.com/trancong12102/ccc
仓库路径:skills/brainstorming
安装命令:
npx skills add https://github.com/trancong12102/ccc --skill brainstorming
安装前请先检查当前环境是否支持对应 CLI,并向我确认将要执行的命令、安装目录、联网范围和文件读写权限;确认后再执行。

命令行安装

复制命令到本机终端执行。不同来源提供的安装方式可能略有差异;本站展示可直接复制的安装命令,安装前请核对来源页面。

skills.shnpx skills
npx skills add https://github.com/trancong12102/ccc --skill brainstorming

简介

brainstorming 用于辅助安全审计、权限检查和凭据风险分析,适合梳理敏感配置和鉴权逻辑。

  • 适用于生成安全复核清单和排查常见漏洞。
  • 通过 npx skills add 命令从 GitHub 仓库安装使用。
  • 不能将工具输出直接当作最终结论,需确认最小权限和操作边界。
  • 涉及密钥或用户数据时应先进行脱敏处理。

SKILL.md

Brainstorming Ideas Into Designs

Overview

Help turn ideas into fully formed designs and specs through natural collaborative dialogue.

Start by understanding the current project context, then ask questions one at a time to refine the idea. Once you understand what you're building, present the design in small sections (200-300 words), checking after each section whether it looks right so far.

Tool Usage

ALWAYS use the AskUserQuestion tool when asking questions to the user. This provides a structured interface for gathering input.

  • Use multiSelect: false for single-choice questions (most common)
  • Use multiSelect: true when multiple options can be selected together
  • Provide 2-4 clear options with descriptions
  • Keep the header short (max 12 chars) - e.g., "Approach", "Auth type", "Storage"
  • Always include your recommendation: Put your recommended option first and add "(Recommended)" to the label
  • Always explain why: In the question text or option descriptions, explain your reasoning for the recommendation

The Process

Understanding the idea:

  • Check out the current project state first (files, docs, recent commits)
  • Use AskUserQuestion to ask one question at a time to refine the idea
  • Prefer multiple choice questions when possible, but open-ended is fine too
  • Only one question per message - if a topic needs more exploration, break it into multiple questions
  • Focus on understanding: purpose, constraints, success criteria

Exploring approaches:

  • Propose 2-3 different approaches with trade-offs
  • Present options conversationally with your recommendation and reasoning
  • Lead with your recommended option and explain why
  • Consult the Oracle when facing complex architectural decisions (see below)

Presenting the design:

  • Once you believe you understand what you're building, present the design
  • Break it into sections of 200-300 words
  • Use AskUserQuestion after each section to validate (e.g., "Does this section look right?")
  • Cover: architecture, components, data flow, error handling, testing
  • Be ready to go back and clarify if something doesn't make sense

Key Principles

  • Use AskUserQuestion tool - Always use the tool for structured user input
  • Recommend with reasoning - Every question must include your recommendation and why
  • Consult Oracle proactively - Get second opinions on complex decisions
  • One question at a time - Don't overwhelm with multiple questions
  • Multiple choice preferred - Easier to answer than open-ended when possible
  • YAGNI ruthlessly - Remove unnecessary features from all designs
  • Explore alternatives - Always propose 2-3 approaches before settling
  • Incremental validation - Present design in sections, validate each
  • Be flexible - Go back and clarify when something doesn't make sense

Oracle Consultation

Proactively invoke the Oracle skill to get a second opinion when:

  • Complex architectural decisions - Multiple viable patterns with significant trade-offs (e.g., microservices vs monolith, event-driven vs request-response)
  • Security-sensitive designs - Authentication flows, data encryption, access control patterns
  • Performance-critical choices - Caching strategies, database indexing, algorithm selection
  • You're uncertain - When you have a recommendation but want validation before presenting to the user

How to Consult

Use the Skill tool to invoke the oracle: Skill(skill: "oracle"). The oracle's instructions will be loaded and guide you through the consultation process.

Reaching Consensus

When Oracle's opinion differs from yours:

  1. Present both perspectives to the user with clear reasoning
  2. Highlight where opinions align - these are likely the right choices
  3. Explain disagreements honestly - "Oracle suggests X because [reason], but I lean toward Y because [reason]"
  4. Let the user decide on contentious points with full context

When NOT to Consult

  • Simple, straightforward decisions with obvious answers
  • Minor implementation details that don't affect architecture
  • When the user has already expressed a strong preference

适合场景

01

用户想查找某类 Agent Skill 时

02

需要根据任务场景推荐可安装能力包时

03

需要对比不同来源的安装命令和来源信息时

04

需要参考平台分布和安装热度时

能力概览

能力 1

按任务关键词查找相关 Skills

能力 2

展示可复制的安装命令

能力 3

保留来源站点、仓库和原始说明,方便继续核验

能力 4

补充不同宿主或平台的使用分布数据

能力 5

展示第三方安全扫描或审计结果

安装后应在对应宿主中按原始 README 的触发条件使用;具体调用方式请以来源页面和 README 为准。

平台分布

Antigravity

29.29%
按下载量换算19

Claude Code

22.96%
按下载量换算15

windsurf

20.44%
按下载量换算13

trae

12.71%
按下载量换算8

OpenCode

8.51%
按下载量换算6

Codex

3.34%
按下载量换算2

安全审计

Gen Agent Trust Hub

通过

Socket

通过

Snyk

通过

权限和风险

只读

该 Skill 主要提供规则、说明或参考内容,本身偏只读;真正读写文件、联网或执行命令仍取决于宿主 Agent 的任务。

安装前确认

本站仅展示第三方公开信息,不托管安装包,不提供自动安装或运行环境。安装前应自行审查源码、依赖和命令行为。

来源信息

继续浏览同类 Skills