選項
首頁首頁 Skill 安全 hermes-imports

將本機 Hermes 運算員工作流程轉換為經過安全處理的 ECC 技能及發佈套件。當您準備將 Hermes 工作流程公開供 ECC 重複使用時,可運用此方法,以避免洩露私有工作區狀態、憑證或僅限本機的路徑。

...展開全部
53
更新時間 2026-07-03

關於 hermes-imports

hermes-imports 技能可將本機的 Hermes 操作員工作流程轉換為經過安全處理的 ECC 技能及發佈套件建構成果。它解決了關鍵問題:如何將私有且臨時性的操作員工作流程準備好供公開重複使用,同時避免洩露敏感的工作區狀態、憑證、本機檔案路徑或個人資料。 當 Hermes 工作流程透過反覆使用證明其價值後,此技能提供了一個結構化的流程,將其轉化為安全且可重複使用的 ECC 元件。

此技能的主要功能包括:將本機路徑清理為儲存庫相對路徑、以角色標籤取代實際帳戶名稱、移除憑證與代幣,以及將一次性指令轉換為結構化文件。 它執行一套全面的淨化檢查清單,掃描絕對路徑、API 金鑰、個人聯絡資訊、客戶名稱、健康數據、CRM 詳情,以及來自私有系統的原始日誌。轉換模式引導使用者識別可重複的操作員迴圈、移除私有輸入與輸出、重寫路徑,並新增具體的輸出要求。

此技能專為需要跨團隊共享穩定工作流程模式,或將其公開發布的操作人員、工程團隊及內容創作者所設計。 常見的應用情境包括:將上線工作流程轉換為公開的交接文件、將研究流程轉化為可重複使用的技能,以及準備供全團隊採用的工程工作流程。它確保寶貴的營運知識能夠在無損安全、隱私或組織機密的前提下安全地分享。

常見問題

何時應使用 hermes-imports 而非將工作流程保留在本地?

當 Hermes 工作流程已重複執行足夠多次而具備可重複使用性,且您需要與他人分享時,請使用 hermes-imports。若該工作流程需依賴私有狀態、憑證或個人資料才能正常運作,請將其保留在 Hermes 本地,而非轉換為 ECC。

清理流程會移除哪些類型的敏感資訊?

淨化檢查清單會移除絕對路徑、API 金鑰與憑證、OAuth 檔案、電話號碼、私人電子郵件地址、客戶姓名與家族名稱、帳戶憑證、營收資料、健康資訊、CRM 詳細資料,以及來自私有系統的原始日誌。本機路徑將轉換為相對於儲存庫的路徑範例或佔位符。

在此情境下,Hermes 與 ECC 之間有何差異?

Hermes 是用於私有、臨時工作流的操作介面,這些工作流可能包含敏感資料和本地狀態。ECC 則是用於公開、已清理模式的可重複使用工作流層。透過匯入功能,可將穩定的模式從 Hermes 移入 ECC,同時不會移動私有狀態或憑證。

轉換的輸出應包含哪些內容?

輸出應包含候選 ECC 技能名稱、經淨化的工作流程摘要、所需的公開輸入參數、已移除的私有輸入參數相關文件、剩餘風險評估,以及應建立或更新的檔案清單。

如何處理引用本地憑證或帳戶名稱的工作流程?

請將實際帳戶名稱替換為角色標籤,例如「操作員」、「預設設定檔」或「工作區擁有者」。描述憑證需求時,僅需列出提供者名稱,切勿包含實際的憑證或金鑰。若工作流程高度依賴私有憑證,請評估是否應維持其本地化狀態。

在 GitHub 上查看

Hermes Imports

Use this skill when turning a repeated Hermes workflow into something safe to ship in ECC.

Hermes is the operator shell. ECC is the reusable workflow layer. Imports should move stable patterns from Hermes into ECC without moving private state.

When To Use

  • A Hermes workflow has repeated enough times to become reusable.
  • A local operator prompt should become a public ECC skill.
  • A launch, content, research, or engineering workflow needs sanitized handoff docs.
  • A workflow mentions local paths, credentials, personal datasets, or private account names that must be removed before publication.

Import Rules

  • Convert local paths to repo-relative paths or placeholders.
  • Replace live account names with role labels such as operator, default profile, or workspace owner.
  • Describe credential requirements by provider name only.
  • Keep examples narrow and operational.
  • Do not ship raw workspace exports, tokens, OAuth files, health data, CRM data, or finance data.
  • If the workflow requires private state to make sense, keep it local.

Sanitization Checklist

Before committing an imported workflow, scan for:

  • absolute paths such as /Users/...
  • ~/.hermes paths unless the doc is explicitly explaining local setup
  • API keys, tokens, cookies, OAuth files, or bearer strings
  • phone numbers, private email addresses, and personal contact graphs
  • client names, family names, or account names that are not already public
  • revenue, health, or CRM details
  • raw logs that include tool output from private systems

Conversion Pattern

  1. Identify the repeatable operator loop.
  2. Strip private inputs and outputs.
  3. Rewrite local paths as repo-relative examples.
  4. Turn one-off instructions into a When To Use section and a short process.
  5. Add concrete output requirements.
  6. Run a secret and local-path scan before opening a PR.

Example: Launch Handoff

Local Hermes prompt:

Read my local workspace files and finalize launch copy.

ECC-safe version:

Use the public release pack under docs/releases/<version>/.Return one X thread, one LinkedIn post, one recording checklist, and the missing assets list.

Example: Quiet-Hours Operator Job

Local Hermes job:

Run my private inbox, finance, and content checks overnight.

ECC-safe version:

Describe the scheduler policy, the quiet-hours window, the escalation rules, and the categories of checks. Do not include private data sources or credentials.

Output Contract

Return:

  • candidate ECC skill name
  • sanitized workflow summary
  • required public inputs
  • private inputs removed
  • remaining risks
  • files that should be created or updated

所有檔案

1 個檔案

安裝 hermes-imports

請下載並將技能檔案解壓縮至您的 .claude/skills/ 目錄中。

下載 ZIP

複製儲存庫並將技能檔案複製到您的專案中。

git clone https://github.com/affaan-m/ECC/blob/main/skills/hermes-imports/SKILL.md # Copy SKILL.md to your .claude/skills/ directory

複製 複製
快速設定: 將技能資料夾複製到 .claude/skills/,Claude 會自動偵測並使用該技能

相關技能

gmgn-portfolio
更新時間 2026-07-01
device-integrity
更新時間 2026-06-29
zeroize-audit
更新時間 2026-07-01
flutter-use-http-package
更新時間 2026-06-30
OR