Agent skill

Conventions Security

by stella in stella/stella

Apply when writing code that touches auth, data access, file handling, or external APIs.

Apache-2.0Auto-check passedLegal & Compliance

Install Conventions Security

skills CLI
$ npx skills add stella/stella --skill conventions-security -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install stella/stella conventions-security --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/stella/stella.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.agents/skills/conventions-security .claude/skills/conventions-security && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
conventions-security
GitHub stars
258
Token cost
~1.7k tokens
SKILL.md length
845 words
Files
1
Skills in repo
24
Repo updated
First seen
Licence
Apache-2.0

At a glance

Apply when writing code that touches auth, data access, file handling, or external APIs.

  • Tasks that involve Legal research
  • SKILL.md covers SOC 2 / ISO 27001 Principles and Structural Guardrails
  • Instructions only: no scripts, shell commands, URLs or credentials in SKILL.md
  • Tasks that involve SOC 2 and security compliance

What it does

Conventions Security is an agent skill from stella/stella. Apply when writing code that touches auth, data access, file handling, or external APIs. Stella handles privileged legal data (attorney-client privilege, litigation holds, personal data).

Its SKILL.md is about 1.7k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.

It sits in Legal & Compliance, covering Legal research and SOC 2 and security compliance. The repository describes itself as: Open-source legal workspace. The licence is Apache-2.0.

When your agent uses it

  • Tasks that involve Legal research
  • Tasks that involve SOC 2 and security compliance

Example prompts

  • “/conventions-security”

What it can do on your machine

Read from SKILL.md and the folder at commit 269655d. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Conventions Security loads about 1.7k tokens when it runs. Until then it costs about 52 tokens; SKILL.md has 845 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~52
When it runs · the whole SKILL.md, loaded when a task matches
~1.7k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from stella/stella at commit 269655d, republished under its Apache-2.0 licence (© stella). 845 words, ~1,719 tokens.

Download SKILL.mdSave it as .claude/skills/conventions-security/SKILL.md (or your agent's skills folder).
name
conventions-security
description
Apply when writing code that touches auth, data access, file handling, or external APIs. Stella handles privileged legal data (attorney-client privilege, litigation holds, personal data).

Security Conventions

Apply when writing code that touches auth, data access, file handling, or external APIs. Stella handles privileged legal data (attorney-client privilege, litigation holds, personal data).

SOC 2 / ISO 27001 Principles

  • Least privilege — minimum permissions needed. No wildcard IAM policies, no admin-by-default.
  • Audit trail — state-changing operations traceable to an actor and timestamp. Never silently mutate data.
  • Encryption in transit and at rest — TLS everywhere, S3 SSE, no plaintext secrets in code or logs.
  • Input validation at boundaries — all external input validated and sanitised before processing.
  • Workspace isolation — data from one workspace must never leak to another.
  • Ethical walls — workspace (matter) boundaries enforce information barriers for the member role at the RLS layer (not just the UI): a member has zero visibility into workspaces they are not assigned to via workspace_members — no names, no members, no metadata. Known limitation: org owner/admin roles carry a deliberate firm-admin override granting access to every client matter (client_id IS NOT NULL) regardless of assignment, and there is no per-matter screening to wall a specific admin out of a specific matter. Do not describe admin access as "absolute confidentiality." Screening a matter from an admin requires a matter-level exclusion consulted by the RLS view (stella_authorized_workspaces), which is not yet built.
  • Access control — every endpoint enforces auth and authorisation. No "internal-only" endpoints without guards.
  • Dependency hygiene — minimal, pinned, audited.
  • Logging without leaking — never log secrets, tokens, PII, or document contents.
  • Change management — all changes go through PR review. No direct commits to main.
  • Data retention — when data is deleted, it is actually deleted (not soft-deleted indefinitely).

Structural Guardrails

Prefer solutions that make security bugs structurally impossible (compile-time, lint-time) over ones that rely on developer discipline.

Authorized database boundary

Workspace-scoped handlers use createSafeHandler, declare permissions beside the route, derive workspaceId: SafeId<"workspace"> from the authorized context, and access tenant data through scopedDb. Never accept ownership IDs from body/query input or fall back to root db because a relation is awkward to express. Root/system handlers require a documented non-tenant purpose and tables whose RLS posture denies ordinary application access. Enforced by require-safe-route-handlers/require-safe-route-handlers and no-body-ownership-ids/no-body-ownership-ids.

When an identifier comes from a related row, authorize it in the same query or transaction that uses it. A prior UI filter, cache lookup, or separate read-then-write check is not an access-control boundary.

Server-bound audit events

Actors, workspace/organization ownership, request metadata, and before/after identifiers come from authenticated server context. Clients may supply a user action or reason where the domain requires it, but never the authoritative actor or tenant. Required audit writes participate in the same transaction as the mutation, or use a durable outbox when the sink is external. Enforced by require-audit-on-mutation/require-audit-on-mutation.

Workspace status filtering

resolveAccessibleWorkspaces returns all workspaces (including deleting). The auth macro exposes two fields:

  • activeWorkspaceIds — excludes deleting workspaces (includes active and archived). Use this for search, chat, MCP, and any query that builds a workspace allowlist. This is the default; reach for it first.
  • accessibleWorkspaces — includes all statuses. Only use in workspaceAccessMacro (which needs the status to return appropriate HTTP codes). Never pass these IDs as a search/query allowlist.

If you need workspace IDs for a new feature, use activeWorkspaceIds unless you have an explicit reason to include deleting workspaces and document that reason in a comment.

Show full SKILL.md (308 more words)Show less
CSV and file exports

Use escapeCSV from @/api/lib/csv for all CSV cell values. Never hand-roll CSV escaping; the shared utility handles both delimiter quoting and spreadsheet formula neutralization (=, +, -, @, tab, CR prefixes). This prevents CSV injection attacks where user-controlled values starting with formula characters execute in Excel/LibreOffice.

Multi-entry-point validation

Validate untrusted input at each entry boundary with the owning shared schema. Generated MCP capabilities validate the live endpoint's body, params, and query schemas in apps/api/src/mcp/capability-tools.ts; do not repeat that parsing inside the handler. Native MCP tools and chat registry tools normalize input through normalizeObjectInputAtBoundary before dispatch; any other caller that bypasses the HTTP route (cron jobs, workers) must apply the same normalizer and schema before calling the operation. Keep business invariants and related-resource authorization in the owning operation: an ID's valid shape does not establish its ownership.

Filename sanitization

All user-supplied filenames must pass through sanitizeFilename (@/api/lib/sanitize-filename) before storage or use in file operations (ZIP entries, Content-Disposition headers, S3 keys). The sanitizer strips path separators, traversal sequences, and dangerous characters. Enforced by security-guards/no-raw-filename-write.

Cross-org user ID validation

When a handler accepts a userId from user input (body, query, or params) and uses it in a query that returns user data (names, emails, images), validate org membership first using validateOrgUserId from @/api/lib/validated-org-user-id. The returned ValidatedOrgUserId proves the check happened at the type level, making cross-org user ID injection structurally impossible. For read paths that resolve userIds stored in the database (not from user input), scope the user query with an innerJoin on the member table filtered by session.activeOrganizationId; enforced by security-guards/no-unscoped-user-query.

CI workflow permissions

GitHub Actions workflows must declare the minimum permissions needed. Never use permissions: write-all. For PR-triggered workflows, scope to contents: read + pull-requests: write. Pin third-party actions to commit SHAs, not mutable tags. For SBOM/provenance, use the shared stella/.github reusable workflows which handle pinning, checksums, and PR-based updates.

© stella, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

Just SKILL.md in .agents/skills/conventions-security of stella/stella.

Open the folder on GitHubat commit 269655d

Compare with similar skills

Conventions Security next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Conventions Security compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Conventions Security this skillstella/stella258—~1.7kAutomated safety check: PassApache-2.0
Find Law Firmjeremylongshore/tons-of-skills-marketplace2.8k—~3.6kAutomated safety check: NotesMIT
Tw Legal RAGaa0101181514/tw-legal-rag327—~580Automated safety check: PassCustom licence
Design Award SearchSeanJ1ang/design-judge-skills712—~3kAutomated safety check: PassApache-2.0
China Lawyer AnalystCSlawyer1985/china-lawyer-analyst194—~3.3kAutomated safety check: PassNone
Billing And Litigation BudgetTHUYRan/Legal-Skills-Chinese868—~5kAutomated safety check: PassNone

Similar skills

  • Find Law Firm

    jeremylongshore/tons-of-skills-marketplace

    A skill your agent uses whenever the user wants to find, shortlist, vet, or enrich US B2B law firms — corporate, IP/patent, M&A and securities, employment, commercial litigation…

    2.8k GitHub stars~3.6k tokensUpdated today
    Legal & ComplianceAuto-check: notes
  • Tw Legal RAG

    aa0101181514/tw-legal-rag

    Retrieve real Taiwan court judgments with verifiable citations before answering any question about Taiwan law or case law.

    327 GitHub stars~580 tokensUpdated 4 days ago
    Legal & ComplianceAuto-check passed
  • Design Award Search

    SeanJ1ang/design-judge-skills

    Find and verify award-winning designs in the same or adjacent functional category through eight explicit relevance dimensions: problem and user, core function, sensing technology, intervention…

    712 GitHub stars~3k tokensUpdated 1 mo ago
    Legal & ComplianceAuto-check passed
  • China Lawyer Analyst

    CSlawyer1985/china-lawyer-analyst

    通过中国法律视角分析事件,运用成文法解释、指导案例参照、请求权基础分析等方法, 理解权利义务、评估责任风险、识别法律依据并推荐合规策略。

    194 GitHub stars~3.3k tokensUpdated 8 mo ago
    Legal & ComplianceAuto-check passed
  • Billing And Litigation Budget

    THUYRan/Legal-Skills-Chinese

    A skill your agent uses when the user needs to track or manage attorney hours, expert fees, and investigation costs; control litigation spend; or prepare timesheets or expense statements for clients.

    868 GitHub stars~5k tokensUpdated 1 mo ago
    Legal & ComplianceAuto-check passed
  • Hard Predict Future

    davepoon/buildwithclaude

    Activate this agent for any future-oriented question that requires deep quantitative analysis, historical precedents, and structured scenario planning.

    3.6k GitHub starsUsed in 1 repo~4.2k tokens
    Legal & ComplianceAuto-check passed

More from stella/stella

All 24 skills in this repo
  • Plan

    stella/stella

    Create a concise, evidence-backed implementation plan in the repository planning area when the user explicitly asks for a plan.

    258 GitHub stars~917 tokensUpdated today
    Auto-check passed
  • Answer From Sources

    stella/stella

    Answers data-protection (GDPR) questions grounded in the regulation and supervisory guidance, with a citation for every claim.

    258 GitHub stars~735 tokensUpdated today
    Auto-check passed
  • Check Against Rules

    stella/stella

    Reviews a non-disclosure agreement against the firm's NDA checklist and reports findings with citations.

    258 GitHub stars~856 tokensUpdated today
    Auto-check passed
  • Intake To Draft

    stella/stella

    Collects the facts of an unpaid invoice, then drafts a payment demand letter.

    258 GitHub stars~537 tokensUpdated today
    Auto-check passed
  • Conventions Perf

    stella/stella

    Apply when a performance-guard check (network baseline, bundle baseline, DB query count, loader-prefetch lint, RC bailouts) fails or when touching a hot route/endpoint.

    258 GitHub stars~2.9k tokensUpdated today
    Auto-check passed
  • Apply when writing or reviewing React effects in apps/web. An agent skill from stella/stella.

    258 GitHub stars~2.8k tokensUpdated today
    Auto-check passed

Questions about Conventions Security

What does Conventions Security do?

Apply when writing code that touches auth, data access, file handling, or external APIs. Conventions Security is an agent skill from stella/stella. Apply when writing code that touches auth, data access, file handling, or external APIs.

When should I use Conventions Security?

Conventions Security fits situations like: tasks that involve Legal research; tasks that involve SOC 2 and security compliance.

How do I install Conventions Security in Claude Code?

Run `npx skills add stella/stella --skill conventions-security -a claude-code`. Or copy the skill folder (.agents/skills/conventions-security in stella/stella) into .claude/skills/conventions-security in your project. Claude Code loads it when a task matches its description.

How do I install Conventions Security in Codex?

Run `npx skills add stella/stella --skill conventions-security -a codex`. Or copy the skill folder (.agents/skills/conventions-security in stella/stella) into .agents/skills/conventions-security in your project. Codex loads it when a task matches its description.

Can I use Conventions Security in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add stella/stella --skill conventions-security -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/conventions-security, .gemini/skills/conventions-security, .github/skills/conventions-security and .opencode/skills/conventions-security in your project.

What does Conventions Security need to run?

SKILL.md names no scripts, command-line tools or credentials: Conventions Security is instructions for the agent only.

Does Conventions Security access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Conventions Security safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Conventions Security use?

Conventions Security is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Conventions Security use?

About 1.7k tokens (SKILL.md is roughly 6.9k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Conventions Security?

Skills that share tags, products or a category with Conventions Security: Find Law Firm (jeremylongshore/tons-of-skills-marketplace, 2.8k stars), Tw Legal RAG (aa0101181514/tw-legal-rag, 327 stars), Design Award Search (SeanJ1ang/design-judge-skills, 712 stars) and China Lawyer Analyst (CSlawyer1985/china-lawyer-analyst, 194 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Conventions Security?

stella (a GitHub organization) maintains it in stella/stella, which has 258 GitHub stars. The repository holds 24 skills in this directory. The repository was last updated on October 8, 2026.

Source: stella/stella on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.