xp-harness: Skill for Claude Code

.claude/skills/disclosure-guard/SKILL.md

disclosure-guard is a skill for Claude Code from sei-newbear/xp-harness. It costs 134 tokens per session (909 once invoked), scanned A, original, MIT.

A pre-publication review step for material based on internal projects or experience. It checks for organization-specific names, identifiers, paths, and similar details before they enter a public Git repository.

In plain words
What is it for?
Use it before committing or pushing retrospectives, project observations, documentation, or skills that came from internal work. It focuses on identifying names and does not inspect passwords, tokens, or secret keys.
Why use it?
Internal context can accidentally remain in documents or code, and public Git history is hard to remove. The step requires an independent reviewer and blocks publication when identifying details are flagged.

Skill for Claude Code

Written for Claude Code: installed under .claude/. Also seen: mentions subagents.

This is sei-newbear/xp-harness's own configuration. It tells Claude Code how to work on xp-harness itself, so it is not a mod to install elsewhere. Copy it as a starting point and replace the rules that are about this project. Everything xp-harness configures →

Reuse

Borrowing it

Nothing to install: this file belongs to sei-newbear/xp-harness. Take a copy, put it at the same path in your own repository, and replace the rules that are about this project with yours.

Copy the file
curl -O https://raw.githubusercontent.com/sei-newbear/xp-harness/main/.claude/skills/disclosure-guard/SKILL.md
Clone the repo
git clone --depth 1 https://github.com/sei-newbear/xp-harness

Made for: Claude Code.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for disclosure-guard

README.md
[![agentmods](https://agentmods.dev/badge/skills/sei-newbear/xp-harness/disclosure-guard/github.svg)](https://agentmods.dev/skills/sei-newbear/xp-harness/disclosure-guard)
Your own site
<a href="https://agentmods.dev/skills/sei-newbear/xp-harness/disclosure-guard"><img src="https://agentmods.dev/badge/skills/sei-newbear/xp-harness/disclosure-guard/github.svg" alt="Measured on agentmods" height="20"></a>

Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.

agentmods 80×15 button for disclosure-guard

Your own site · 80×15
<a href="https://agentmods.dev/skills/sei-newbear/xp-harness/disclosure-guard"><img src="https://agentmods.dev/badge/skills/sei-newbear/xp-harness/disclosure-guard.svg" alt="Reviewed on agentmods" width="80" height="20"></a>
Per session 134 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 909 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00134 $0.00909
Opus 5 $0.00067 $0.00454
Sonnet 5 $0.00027 $0.00182
Haiku 4.5 $0.00013 $0.00091

Measured 9d ago against content hash f7b9bc89c611, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-09, from the pricing page.

Security

Grade A, and why

disclosure-guard scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 9d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

.claude/skills/disclosure-guard/SKILL.md · 41 lines

What it actually says

公開前の固有名詞混入ガード

なぜこのスキルがあるか

このリポジトリの改修は、実際のプロジェクトを分析・検証した知見を、ふりかえりやドキュメント・カードとして記録する作業を含む。その「内部の知見 → 公開リポジトリへの記録」の段で、会社名・内部リポ名・顧客名などの組織固有の固有名詞が、意図せず公開 git 履歴に混入するリスクがある。

公開リポジトリの git 履歴は遡れて消せない。一度コミットに入った固有名詞は実質永久に残る=インシデント。main session の注意力だけに頼らず、外に出す前に独立点検を必ず通す ための規律をここに置く。

いつ通すか

内部由来の知見を含む変更を、公開リポジトリにコミット / push する前 に通す。具体的には:

  • ふりかえりの結果を記録するとき
  • 実プロジェクトの検証・観察から得た知見を、カード・ドキュメント・skill に反映するとき
  • 上記に類する、外部の利用実態に触れた内容を公開リポに出すとき

純粋に harness 内部の設計変更だけ(実プロジェクトに一切触れていない)なら不要。迷ったら通す(通すコストは小さく、漏れたコストは取り返せない)。

どう通すか

コミット / push の前に、disclosure-auditor subagent を呼ぶ

  • 対象: これから公開リポに出す差分(staged diff)、または対象ファイルを指定する
  • subagent が会話文脈なしの独立視点で読み、組織固有の固有名詞を flag する
  • FLAGGED が出たら、コミット / push しない。該当箇所を一般化・除去してから、もう一度通す
  • CLEAN を得てから 外に出す

なぜ subagent(独立点検)か

main session は会話の文脈を持つので「これは匿名化した」「文脈的に大丈夫」と自分の判断を甘くしがち。また、自分が思いついた語を grep で探すだけでは、リストに無い固有名詞を取りこぼす。会話文脈を持たない subagent が、書かれたものだけを読んで判断する ことで、その甘さと取りこぼしを破る。

何を防ぎ、何を防がないか

  • 防ぐ: 組織固有の固有名詞の、公開リポへの混入(何を固有名詞とみなすかの詳細は disclosure-auditor が持つ)
  • 防がない: 機密・認証情報(パスワード・トークン・秘密鍵 等)の検査。本機構では扱わない(必要なら別途用意する)
Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 9d ago First seen · 41 lines · 134 tokens per session scan A f7b9bc89c611

Subscribe to this mod's changes

disclosure-guard is a skill published in the GitHub repository sei-newbear/xp-harness (9 stars, last pushed 1mo ago), licensed MIT. It adds 134 tokens to every session and 909 once invoked, about $0.0007 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.

Related

Other skills, from other repositories

prowler-commit

Creates professional git commits following conventional-commits format. Trigger: When creating commits, after completing code changes, when user asks to commit.

prowler-cloud/prowler · 33 tokens

gh-auth-isolation

Safely manage multiple GitHub identities (EMU + personal) in agent workflows.

github/gh-aw · 20 tokens

comet-github

A routing guide for Comet-related GitHub work. It directs requests about pull requests, issues, CI failures, ideas, and fixes to the appropriate review or implementation process.

rpamis/comet · 72 tokens

github-skill

Work with GitHub via the gh CLI — clone repositories, create/list/merge pull requests, create/list issues, and run any other gh command (API calls, workflow runs, releases, repo administration). List operations return parsed JSON.

zeenie-ai/OpenCompany · 51 tokens

re0-merge

Review and land an external contribution the way this suite does: gate it against the thesis, land it with the author's credit intact, complete a new skill rather than merging it raw, then approve, credit, and explain before closing. Use when reviewing a pull request, as any collaborator or maintainer, not only the…

LilMGenius/paperthin · 70 tokens

nvca-chart-release

Release NVCA Operator chart changes from the native monorepo source to the vendored Helm chart. Use when updating the vendored NVCA Operator chart, changing NVCA image refs, publishing helm-nvca-operator, or validating the chart against a self-managed control plane.

NVIDIA/nvcf · 61 tokens