Release v1.7.0: Add repomix-safe-mixer skill
Add new security-focused skill for safely packaging codebases with repomix by automatically detecting and removing hardcoded credentials. New skill: repomix-safe-mixer - Detects 20+ credential patterns (AWS, Supabase, Stripe, OpenAI, etc.) - Scan → Report → Pack workflow with automatic blocking - Standalone security scanner for pre-commit hooks - Environment variable replacement guidance - JSON output for CI/CD integration Also updates: - skill-creator: Simplified path resolution best practices - marketplace.json: Version 1.7.0, added repomix-safe-mixer plugin - README.md: Updated to 14 skills, added repomix-safe-mixer documentation 🤖 Generated with [Claude Code](https://claude.com/claude-code) Co-Authored-By: Claude <noreply@anthropic.com>
This commit is contained in:
@@ -81,9 +81,10 @@ Files not intended to be loaded into context, but rather used within the output
|
||||
- **Forbidden**: Absolute paths to user directories (`/home/username/`, `/Users/username/`, `/mnt/c/Users/username/`)
|
||||
- **Forbidden**: Personal usernames, company names, department names, product names
|
||||
- **Forbidden**: OneDrive paths, cloud storage paths, or any environment-specific absolute paths
|
||||
- **Forbidden**: Hardcoded skill installation paths like `~/.claude/skills/` or `/Users/username/Workspace/claude-code-skills/`
|
||||
- **Allowed**: Relative paths within the skill bundle (`scripts/example.py`, `references/guide.md`)
|
||||
- **Allowed**: Standard placeholders (`~/workspace/project`, `username`, `your-company`)
|
||||
- **Best practice**: Use generic examples and placeholders; all paths should reference bundled skill files or use standard environment-agnostic patterns
|
||||
- **Best practice**: Reference bundled scripts using simple relative paths like `scripts/script_name.py` - Claude will resolve the actual location
|
||||
|
||||
##### Versioning
|
||||
|
||||
|
||||
Reference in New Issue
Block a user