Prd Skill Security Audit
What the author says it does (original text)
Generate high-quality Product Requirements Documents (PRDs) for software systems and AI-powered features. Includes executive summaries, user stories, technical specifications, and risk analysis.
No obvious risks found in this check
- Files checked
- 1
- Risks found
- 0
Inside this skill
The Skill instructs the agent to interview the user, analyze scope, and then draft a product requirements document using a fixed structure. The supplied material contains no executable scripts, installation steps, or network-operation instructions.
View source
## Operational Workflow### Phase 1: Discovery (The Interview)Before writing a single line of the PRD, you **MUST** interrogate the user to fill knowledge gaps. Do not assume context.### Phase 2: Analysis & ScopingSynthesize the user's input. Identify dependencies and hidden complexities.- Map out the **User Flow**.- Define **Non-Goals** to protect the timeline.### Phase 3: Technical DraftingGenerate the document using the **Strict PRD Schema** below.The interview asks for the core problem, success metrics, and constraints such as budget, technology stack, or deadline. These inputs support requirements analysis; the visible instructions do not request credentials, local-file scanning, or disclosure to a third party.
View source
**Ask about:**- **The Core Problem**: Why are we building this now?- **Success Metrics**: How do we know it worked?- **Constraints**: Budget, tech stack, or deadline?The required output structure asks the PRD to discuss tools/APIs, architecture, integrations, authentication, security, and privacy. These are documentation requirements, not authorization to connect services, change permissions, or deploy a system.
View source
### 3. AI System Requirements (If Applicable)- **Tool Requirements**: What tools and APIs are needed?- **Evaluation Strategy**: How to measure output quality and accuracy.### 4. Technical Specifications- **Architecture Overview**: Data flow and component interaction.- **Integration Points**: APIs, DBs, and Auth.- **Security & Privacy**: Data handling and compliance.The `codesearch`, `grep`, and `webfetch` names appear specifically in the architecture section of the “Intelligent Search System” example. They describe tools for the example product, rather than operational steps that this Skill itself must execute.
View source
## Example: Intelligent Search System### 1. Executive Summary**Problem**: Users struggle to find specific documentation snippets in massive repositories.**Solution**: An intelligent search system that provides direct answers with source citations.**Success**:### 3. AI System Architecture- **Tools Required**: `codesearch`, `grep`, `webfetch`.Files and check records1 files
Coverage and gaps
Content covered in each file
These are the source ranges included in this check, not a guarantee that every issue has been resolved.
SKILL.mdFull text included
This report is for the version above. We read the available code and instructions without running the skill or checking extra packages it installs. This is not a promise of safety: a different version or setup may behave differently.
SKILL.mdInstructions
- Lines read
- 144
- File checksum (to compare versions)
- d2a11dde3f5f077992b07de04271abe2e881f9376d3f22ca823a638dda5bc6dc