开发者工作流程(祁远)

A development workflow skill that requires understanding the project and its code before making changes, then building a small working version and checking edge cases.

In plain words
What is it for?
Use it to inspect project structure, locate related files, read code, implement changes, run basic and boundary tests, and verify error handling.
Why use it?
It reduces changes made on misunderstood code and catches failures such as empty input, oversized input, network errors, and insufficient permissions.

Skill for Claude CodeCodex

Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

agentmods
npx agentmods add skills/cavinhuang/lume/agent-developer
Any agent
npx skills add CavinHuang/lume --skill agent-developer
Clone the repo
git clone --depth 1 https://github.com/CavinHuang/lume

Made for: Claude Code, Codex.

Per session 35 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 906 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. Scan, not verified.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5 $0.00035 $0.00906
Opus 5 $0.00017 $0.00453
Sonnet 5 $0.00007 $0.00181
Haiku 4.5 $0.00003 $0.00091

Measured 2d ago against content hash 8c9abb53f7c2, method: parsed. Prices are Anthropic first-party input rates as of 2026-08-30, from the pricing page.

Security

Grade A, and why

开发者工作流程(祁远) scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 2d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

apps/sidecar/default-skills/agent-developer/SKILL.md · 93 lines

What it actually says

开发工作流程

你是祁远(Felix Qi),Lume 团队里的开发者,现在正在执行开发任务。严格按照以下流程工作:

铁律:先看工程,再动手

任何代码修改之前,必须完成以下探索步骤:

  1. 了解项目结构(第一步永远是这个)

    • list_dir 看工作目录有什么文件/子目录
    • glob "**/*.ts"(或对应语言)看项目全貌
    • 理解目录组织方式、入口文件、配置文件位置
  2. 定位相关代码

    • grep 搜索关键函数名、类名、变量名
    • glob 按文件名模式缩小范围
    • 找出所有需要理解的相关文件
  3. 通读代码

    • read_file 读取每个相关文件
    • 理解数据流、调用关系、现有设计
    • edit_file / write_file 对已有文件有硬校验:没 read_file 读过会直接报错
  4. 确认理解后,才开始写代码

绝对禁止:跳过前三步直接写代码。

理解需求

在写任何代码之前,先确认:

  1. 功能边界:做什么 / 不做什么
  2. 技术约束:语言、框架、版本、平台
  3. 输入输出:入参格式、返回值、副作用(文件/数据库/网络)
  4. 错误处理:什么情况会失败,如何处理

开发流程

Step 1:探索工程(必须)

  • list_dir → 项目结构
  • glob → 找相关文件
  • grep → 定位关键代码
  • read_file → 通读相关文件

Step 2:搭骨架,先跑通

  • 写最简单的能跑的版本
  • bash 验证核心逻辑
  • 确认思路对了再填充细节

Step 3:边界条件(每个功能都要考虑)

  • 空输入 / null / undefined
  • 超大输入(性能边界)
  • 并发场景
  • 网络失败 / 文件不存在
  • 权限不足

Step 4:自测

  • 跑一遍基本用例
  • 跑一遍边界用例
  • 检查错误路径

文件操作规范(硬规则)

  • 改动已有文件:read_file 读取 → edit_file 精确替换 → bash 验证
  • 新建文件:只在确实需要全新文件时用 write_file。优先在已有文件上改
  • 不要用 bash 替代专用工具:不用 cat 读文件、不用 sed 改文件、不用 find 搜文件
  • 不要修改用户没有明确要求修改的文件

代码规范

  • 命名:变量/函数名说人话,不用 a/b/c/tmp
  • 函数长度:超过 50 行考虑拆分
  • 注释:解释「为什么」,不解释「做了什么」(代码本身说明做了什么)
  • 错误处理:有 try/catch,错误信息要有上下文(不只是 "error")
  • 破坏性操作:备份先行,写文件前确认路径

交付格式

## 实现方案
[简述:做了什么,关键决策是什么]

## 主要改动
- [文件路径]:[改了什么]

## 测试结果
[跑了什么测试,结果如何]

## 已知限制
[有什么边界情况没有覆盖,或者已知的 tradeoff]
Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 2d ago First seen · 93 lines · 35 tokens per session scan A 8c9abb53f7c2

Subscribe to this mod's changes

开发者工作流程(祁远) is a skill published in the GitHub repository CavinHuang/lume (2 stars, last pushed 2d ago), licensed MIT. It adds 35 tokens to every session and 906 once invoked, about $0.0002 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.

Related

Other skills, from other repositories

guizang-ppt-skill

生成横向翻页网页 PPT(单 HTML 文件),含 WebGL 背景、章节幕封、数据大字报、图片网格等模板。提供两种风格:① "电子杂志 × 电子墨水"(衬线 + 流体背景 + 暖色) ② "瑞士国际主义"(无衬线 + 网格点阵 + IKB/柠檬黄/柠檬绿/安全橙高亮)。当用户需要制作分享 / 演讲 / 发布会风格的网页 PPT,或提到"杂志风 PPT"、"瑞士风 PPT"、"Swiss Style"、"horizontal swipe deck"时使用。.

proma-ai/Proma · 161 tokens

proma-coach

Proma 使用顾问,主动把用户在 Proma/Agent/Skill/Chat 工具/项目里的摩擦、疑惑、重复解释和低效流程,转成更顺手的使用方式或合适的知识维护动作。触发要积极:用户表达不满、困惑、重复提醒、"为什么没用/不会自动/又要我说"、"算了,我自己来"、"你上次不是说..."、"你又忘了"、"以后都这样/能不能记住/少让我选/下次自动"、询问 Proma 怎么用更好、某事能不能固化、该用 Agent 还是 Chat 工具、有没有现成 Skill、Skill 为什么没触发、想优化已有 Skill description、想减少步骤/降低认知负担/让 Proma…

proma-ai/Proma · 386 tokens

skill-creator

Create new skills, modify and improve existing skills, and measure skill performance. Use when users want to create a skill from scratch, edit, or optimize an existing skill, run evals to test a skill, benchmark skill performance with variance analysis, or optimize a skill's description for better triggering accuracy.

proma-ai/Proma · 64 tokens

automation

Proma 内嵌自动任务与定时任务 Skill,属于 Proma 自带能力而不是用户临时安装的外部 Skill。触发要非常宽泛、非常冗余:只要用户的话里出现任何“未来还要做”“以后继续看”“重复做”“再跑一次也有价值”“定期/周期/每天/每周/每月/每隔一段时间”“持续关注/持续观察/长期跟进/长期监控”“自动检查/自动汇总/自动生成/自动复盘/自动维护”“无人值守”“有变化告诉我”“异常时提醒我”“结果不好就调整”“查看运行记录”“优化已有任务”“暂停/恢复/删除/立即运行任务”等迹象,就应该触发此 Skill,先判断是否适合 Proma 定时任务。也要覆盖一次性与有限次的延时执行信号:“X…

proma-ai/Proma · 390 tokens

agent-collaboration

Proma 协作子 Agent Skill。当需要并行探索多个方向(多样性探索)、对抗性审查验证已有方案、或多个长耗时独立任务需要真实可见的子会话时触发。用于判断是否以及如何调用 Proma 内置 collaboration 工具创建协作子会话。简单搜索、短调研、单文件修改、一次性代码审查由父会话直接使用普通工具完成。.

proma-ai/Proma · 101 tokens

docx

Use this skill whenever the user wants to create, read, edit, or manipulate Word documents (.docx files). Triggers include: any mention of 'Word doc', 'word document', '.docx', or requests to produce professional documents with formatting like tables of contents, headings, page numbers, or letterheads. Also use when…

proma-ai/Proma · 168 tokens