Skills Plugins MCP Prompt Model 博客 我的中心

careful

Safety guardrails for destructive commands. (gstack)

DeepseekModel 官方收录技能 质量 优秀 · 90 v1.0.0

获取

https://deepseekmodel.com/api/download.php?id=garrytan-gstack-careful-skill-md&format=skill
下载 .skill 标准格式,含 system_prompt 与 model_config,导入任意 Agent 框架即可使用
.skill 文件中 system_prompt 字段的实际内容。
name careful version 0.1.0 description Safety guardrails for destructive commands. (gstack) triggers ["be careful","warn before destructive","safety mode"] allowed-tools ["Bash","Read"] hooks {"PreToolUse":[{"matcher":"Bash","hooks":"[Truncated]"}]} When to invoke this skill Warns before rm -rf, DROP TABLE, force-push, git reset --hard, kubectl delete, and similar destructive operations. User can override each warning. Use when touching prod, debugging live systems, or working in a shared environment. Use when asked to "be careful", "safety mode", "prod mode", or "careful mode". /careful — Destructive Command Guardrails Safety mode is now active . Every bash command will be checked for destructive patterns before running. If a destructive command is detected, you'll be warned and can choose to proceed or cancel. mkdir -p ~/.gstack/analytics echo '{"skill":"careful","ts":"' $( date -u +%Y-%m-%dT%H:%M:%SZ) '","repo":"' $( basename " $(git rev-parse --show-toplevel 2>/dev/null) " 2>/dev/null || echo "unknown" ) '"}' >> ~/.gstack/analytics/skill-usage.jsonl 2>/dev/null || true What's protected Pattern Example Risk rm -rf / rm -r / rm --recursive rm -rf /var/data Recursive delete DROP TABLE / DROP DATABASE DROP TABLE users; Data loss TRUNCATE TRUNCATE orders; Data loss git push --force / -f git push -f origin main History rewrite git reset --hard git reset --hard HEAD~3 Uncommitted work loss git checkout . / git restore . git checkout . Uncommitted work loss kubectl delete kubectl delete pod Production impact docker rm -f / docker system prune docker system prune -a Container/image loss Safe exceptions These patterns are allowed without warning: rm -rf node_modules / .next / dist / __pycache__ / .cache / build / .turbo / coverage How it works The hook reads the command from the tool input JSON, checks it against the patterns above, and returns a hookSpecificOutput payload with permissionDecision: "ask" and a warning reason if a match is found (the decision must be nested under hookSpecificOutput — Claude Code ignores a top-level permissionDecision ). You can always override a MEDIUM warning and proceed. HIGH tier (hard deny) Two catastrophic shapes are denied , not asked: rm -r / -R of exactly / , ~ , or $HOME , and force-push to the repo's default branch . SIMPLE commands only (no ; , && , || , | , newline) — compound shapes fall through to the MEDIUM ask; --force-with-lease is never HIGH. A best-effort advisory hard-stop, not a policy boundary: the escape hatch is ending the opt-in, session-scoped /careful session. Project patterns (additive only) Add warn rules — one POSIX ERE per line, # comments OK — in ~/.gstack/careful-patterns.txt (global) or ~/.gstack/projects/<slug>/careful-patterns.txt (per-project). Consulted after the built-in families, so config can only ADD rules, never suppress a baseline warning. Invalid regex lines are skipped. To deactivate, end the conversation or start a new one. Hooks are session-scoped.
Agent 识别该技能的关键词,点击任意一个即可复制。

该技能未提供触发词。

下载的 .skill 包内含以下字段。
字段 说明
format格式标识(skill/v1)
skill_id技能唯一 ID
name技能名称
version版本号
description技能描述
category所属分类(数组)
trigger_words触发词列表
tags标签列表
source来源标识
source_url来源链接(本页地址)
exported_at导出时间(每次下载生成)
system_prompt系统提示词正文
model_config模型参数:provider / model / temperature / max_tokens / top_p
examples示例
install_guide各平台导入说明(Coze / Dify / Claude / 自定义框架)
同一份技能可按不同平台格式导出。
.skill 标准格式,含 system_prompt 与 model_config,导入任意 Agent 框架即可使用 下载
.skillpro 增强格式,额外含脚本 / 工具 / 依赖 / 钩子占位 下载
.json 纯 JSON 导出,只含 system_prompt 与模型参数 下载
Coze 带 frontmatter 的 Markdown,Coze 平台导入用 下载
Dify Dify DSL,创建应用后直接导入 下载

每日精选 Skill 推荐,免费送到你邮箱

输入邮箱,每天接收一个精选 AI Agent 技能推荐。完全免费,持续更新。

验证码 --

提交后我们会发送一封确认邮件,点击邮件里的链接才会开始收信。

完全免费,取消任意时间。我们不会发送垃圾邮件。