add
This commit is contained in:
@@ -32,6 +32,7 @@ Use for sources that are central to one of these durable themes:
|
||||
- Implementation-derived quality metrics that turn test traces, routes, APIs/RPCs, coverage denominators, evaluator outputs, or runtime evidence into durable feedback loops for development and release decisions
|
||||
- Code-to-knowledge and code-to-documentation systems that generate repo Wikis, C4 architecture views, diagrams, or durable onboarding material from source code, especially when they address documentation drift, agent instruction-file integration, scheduled diff-based updates, traceability, and review workflows
|
||||
- Agent identity/security standards and operational controls, especially MCP authorization, Cross App Access/XAA, least privilege, audit logs, command-execution guards, sandbox/approval boundaries, and supply-chain risks around agents
|
||||
- Package supply-chain incidents that explicitly affect AI coding tools, developer credential stores, CI/CD secrets, or agent configuration files; score high when the incident links package execution to agent persistence, credential theft, or cross-ecosystem self-propagation
|
||||
- Browser-agent harnesses with concrete tool surfaces: DOM/network/console/screenshot/page-interaction access, local browser MCP servers, tab/session boundaries, performance checks, and accessibility checks that make UI debugging verifiable by agents
|
||||
- Human-gated AI security workflows that reduce maintainer burden: vulnerability discovery, verification, patch drafting, responsible disclosure, release monitoring, and false-positive suppression before any report leaves the operator's workspace
|
||||
- Niche, exciting design/hack/Hacker News-like material, especially when it exposes an unusual technique, tool, interface, or way of thinking
|
||||
|
||||
Reference in New Issue
Block a user