hermes-imports
affaan-m/everything-claude-code
将本地 Hermes 操作员工作流转换为经过安全处理的 ECC 技能和发布包工件。在准备 Hermes 工作流以供公共 ECC 重用时,若需避免泄露私有工作区状态、凭据或仅限本地的路径,请使用此功能。
...展开全部关于hermes-imports
hermes-imports 技能可将本地 Hermes 操作员工作流转换为经过安全处理的 ECC 技能和发布包工件。它解决了将私有、临时性的操作员工作流准备为可供公开重用的关键问题,同时不会泄露敏感的工作区状态、凭据、本地文件路径或个人数据。 当某个 Hermes 工作流通过反复使用证明了其价值后,该技能提供了一个结构化的流程,将其转换为安全且可重用的 ECC 组件。
该技能的主要功能包括:将本地路径净化为相对于代码库的引用、用角色标签替换实际账户名称、移除凭据和令牌,以及将一次性指令转换为结构化文档。 它执行一份全面的净化检查清单,用于扫描绝对路径、API 密钥、个人联系信息、客户名称、健康数据、CRM 详细信息以及来自私有系统的原始日志。转换模式会引导用户识别可重复的操作员循环、剥离私有输入和输出、重写路径,并添加具体的输出要求。
该技能专为需要跨团队共享稳定工作流模式或将其公开发布的操作员、工程团队和内容创作者设计。 常见用例包括:将上线工作流转换为公开的交接文档、将研究流程转化为可复用的技能,以及准备供全团队采用的工程工作流。它确保了宝贵的运营知识能够安全地共享,同时不会损害安全、隐私或组织机密。
常见问题
何时应使用 hermes-imports 而不是将工作流保存在本地?
当 Hermes 工作流已重复执行足够多次以实现可复用,且您需要与他人共享时,请使用 hermes-imports。如果该工作流需要私有状态、凭据或个人数据才能正常运行,请将其保存在 Hermes 本地,而非转换为 ECC。
数据净化过程会移除哪些类型的敏感信息?
净化检查清单会移除绝对路径、API 密钥和令牌、OAuth 文件、电话号码、私人电子邮件地址、客户和家庭姓名、账户凭证、收入数据、健康信息、CRM 详细信息以及来自私有系统的原始日志。本地路径将转换为相对于仓库的示例或占位符。
在此背景下,Hermes 与 ECC 之间有何区别?
Hermes 是用于私有、临时工作流的操作员 shell,此类工作流可能包含敏感数据和本地状态。ECC 是用于公共、经过清理的工作流模式的可重用工作流层。导入操作会将稳定的模式从 Hermes 迁移到 ECC,同时不会迁移私有状态或凭据。
转换的输出应包含哪些内容?
输出应包括候选的 ECC 技能名称、经过净化处理的工作流摘要、必需的公共输入、已移除的私有输入的文档说明、剩余风险的评估,以及应创建或更新的文件列表。
如何处理引用本地凭据或账户名称的工作流?
将实际账户名称替换为角色标签,例如“操作员”、“默认配置文件”或“工作区所有者”。仅通过提供商名称描述凭据要求,切勿包含实际令牌或密钥。如果工作流高度依赖私有凭据,请考虑是否应将其保留在本地。
Hermes Imports
Use this skill when turning a repeated Hermes workflow into something safe to ship in ECC.
Hermes is the operator shell. ECC is the reusable workflow layer. Imports should move stable patterns from Hermes into ECC without moving private state.
When To Use
- A Hermes workflow has repeated enough times to become reusable.
- A local operator prompt should become a public ECC skill.
- A launch, content, research, or engineering workflow needs sanitized handoff docs.
- A workflow mentions local paths, credentials, personal datasets, or private account names that must be removed before publication.
Import Rules
- Convert local paths to repo-relative paths or placeholders.
- Replace live account names with role labels such as
operator,default profile, orworkspace owner. - Describe credential requirements by provider name only.
- Keep examples narrow and operational.
- Do not ship raw workspace exports, tokens, OAuth files, health data, CRM data, or finance data.
- If the workflow requires private state to make sense, keep it local.
Sanitization Checklist
Before committing an imported workflow, scan for:
- absolute paths such as
/Users/... ~/.hermespaths unless the doc is explicitly explaining local setup- API keys, tokens, cookies, OAuth files, or bearer strings
- phone numbers, private email addresses, and personal contact graphs
- client names, family names, or account names that are not already public
- revenue, health, or CRM details
- raw logs that include tool output from private systems
Conversion Pattern
- Identify the repeatable operator loop.
- Strip private inputs and outputs.
- Rewrite local paths as repo-relative examples.
- Turn one-off instructions into a
When To Usesection and a short process. - Add concrete output requirements.
- Run a secret and local-path scan before opening a PR.
Example: Launch Handoff
Local Hermes prompt:
Read my local workspace files and finalize launch copy.ECC-safe version:
Use the public release pack under docs/releases/<version>/.Return one X thread, one LinkedIn post, one recording checklist, and the missing assets list.Example: Quiet-Hours Operator Job
Local Hermes job:
Run my private inbox, finance, and content checks overnight.ECC-safe version:
Describe the scheduler policy, the quiet-hours window, the escalation rules, and the categories of checks. Do not include private data sources or credentials.Output Contract
Return:
- candidate ECC skill name
- sanitized workflow summary
- required public inputs
- private inputs removed
- remaining risks
- files that should be created or updated





首页
