Skills DirectorySkills Directory
SkillsLearnSecurityCategoriesDocsBlogPro
Sign InSubmit Skill
Skills Directory

Security-tested agent skills for Claude, coding agents, and AI workflows.

Directory

  • Browse Skills
  • All Skills A–Z
  • Claude Skills
  • Claude Code Skills
  • Agent Skills
  • Categories
  • Authors
  • Submit a Skill

Learn

  • Learn Hub
  • Install Claude Skills
  • Write SKILL.md
  • Skills vs MCP
  • Directories Compared

Security

  • Security
  • Methodology
  • Secure Claude Skills
  • Security Badges
  • Chrome Extension
  • Skill Manager

Company

  • About
  • Community
  • Blog
  • API Docs
  • Advertise

2026 Skills Directory. All rights reserved.

ProTermsPrivacyRefunds
Back to skills

Redaction And Cleanup

ASecurity

Use when user says "redact", "clean up for sharing", "remove sensitive info", "prepare for external", when sharing .forge/ artifacts with investors or external reviewers, when sanitizing documents before external publication, or when pricing/credentials/strategy must be removed before sharing.

3 stars
0 votes
0 copies
0 views
Added 5/28/2026
developmentrustgoapisecuritydocumentation

Works with

cliapi

Security Analysis

A100/100

Scanned 5/28/2026

$npx -y skills add aneja5/forge-skills --skill redaction-and-cleanup --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Redaction And Cleanup?

Add the live security badge to your README — it updates automatically with every re-scan.

Security grade badge for Redaction And Cleanup
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/aneja5-redaction-and-cleanup/badge)](https://www.skillsdirectory.com/skills/aneja5-redaction-and-cleanup)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
Files
SKILL.md
---
name: redaction-and-cleanup
description: Use when user says "redact", "clean up for sharing", "remove sensitive info", "prepare for external", when sharing .forge/ artifacts with investors or external reviewers, when sanitizing documents before external publication, or when pricing/credentials/strategy must be removed before sharing.
---

# Redaction and Cleanup

## Overview

Prepare `.forge/` documents for external sharing by copying them to `.forge/redacted/` and replacing sensitive information with consistent placeholders. Original files are NEVER modified. The redaction manifest documents every change for internal reference.

## When to Use

- Sharing documents with investors, advisors, or partners
- Preparing materials for external review or cross-validation
- Publishing case studies or documentation based on internal artifacts
- Any situation where internal data must not leave the organization

## When NOT to Use

- Documents are already public — no redaction needed
- User wants to delete files — that's not redaction
- The sensitive data IS the deliverable (e.g., a security audit for the client)

## Common Rationalizations

| Thought | Reality |
|---------|---------|
| "I'll just manually remove the sensitive parts" | Manual redaction misses things. Automated scan + manifest catches more |
| "It's fine, the recipient is trusted" | Trust the person, redact the document. People forward things |
| "I'll edit the originals and restore later" | You won't. Original files must be untouched — copy first, always |
| "Only pricing needs redacting" | Credentials, internal metrics, employee names, strategy details — audit first |
| "A quick find-and-replace is enough" | Inconsistent placeholders leak information through correlation |

## Red Flags

- Original files modified in place (SAFETY VIOLATION — must copy first)
- Placeholder values are inconsistent (same entity gets different placeholders)
- Grep after redaction still finds sensitive terms
- Manifest is missing (no record of what was changed)
- Redaction categories not defined before scanning (ad-hoc misses patterns)

## SAFETY RULE

**NEVER modify original files in place.** All redaction happens on copies in `.forge/redacted/`. Original files in `.forge/` must remain untouched. If you are about to edit a file outside `.forge/redacted/`, STOP.

## Core Process

### Step 1: Define redaction categories

With the user, define what to redact and what to keep:

**Redact** (typical):
- Pricing, margins, unit economics
- API keys, credentials, connection strings
- Internal strategy, competitive positioning details
- Employee names, internal team structure
- Specific customer names (unless public case study)
- Internal metrics, revenue numbers

**Keep** (typical):
- Public pricing from competitors
- Architecture patterns and technology choices
- General cost categories (without specific numbers)
- Role titles (without names)
- Publicly available data

### Step 2: Define placeholder format

Use consistent, identifiable placeholders:
- Company names: `[COMPANY-A]`, `[COMPANY-B]` (consistent across all docs)
- Prices: `[PRICE-TIER-1]`, `[PRICE-TIER-2]`
- People: `[TEAM-MEMBER-1]`, `[TEAM-MEMBER-2]`
- Metrics: `[INTERNAL-METRIC]`
- Credentials: `[CREDENTIAL-REDACTED]`

Consistency rule: the same entity gets the same placeholder everywhere.

### Step 3: Scan all files

Scan every file in `.forge/` for matches against redaction categories. For each match, record:
- File path
- Line number
- Original content (summary, not full text)
- Redaction action (replace with which placeholder)

### Step 4: Generate manifest

Write `.forge/redaction-manifest.md`:
- Redaction categories defined
- Placeholder mapping (which entity → which placeholder)
- Per-file change list
- Total changes count

### Step 5: Copy and redact

1. Create `.forge/redacted/` directory
2. Copy all files from `.forge/` to `.forge/redacted/` (preserving structure)
3. Apply redactions to the copies only
4. Do NOT copy `.forge/redaction-manifest.md` to redacted/ (it contains the mapping)

### Step 6: Verify

Run grep on `.forge/redacted/` for every term in the redaction categories. Zero matches required. If any remain, fix and re-verify.

### Step 7: Sync check

If documents are updated later, the redacted copies are stale. Note in the manifest: "Redacted on [date]. If originals change, re-run redaction."

## Output

- `.forge/redaction-manifest.md` — what was redacted, placeholder mapping
- `.forge/redacted/*` — cleaned copies of all documents

## Verification

- [ ] Original files in `.forge/` are unchanged
- [ ] All files copied to `.forge/redacted/` before any edits
- [ ] Placeholders are consistent (same entity → same placeholder across all files)
- [ ] Grep confirms zero remaining matches for redacted terms in `.forge/redacted/`
- [ ] Manifest documents every change with file and line reference
- [ ] Redaction manifest is NOT copied to `.forge/redacted/`
- [ ] `.forge/redaction-manifest.md` written

Attribution

aneja5aneja5
View sourceSee grades on GitHubMore from aneja5 →
SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments (0)

No comments yet. Be the first to comment!

SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Related Skills

Clean Code

Pragmatic coding standards - concise, direct, no over-engineering, no unnecessary comments

304955 votes

Browser Extension Developer

Use this skill when developing or maintaining browser extension code in the `browser/` directory, including Chrome/Firefox/Edge compatibility, content scripts, background scripts, or i18n updates.

286712 votes

Seo Optimizer

SEO optimization with keyword analysis, readability assessment, technical validation, content quality. Use for search rankings, blog posts, content audits, or encountering keyword density, readability scores, meta tags, schema markup errors.

2222 votes

Google Official Seo Guide

Official Google SEO guide covering search optimization, best practices, Search Console, crawling, indexing, and improving website search visibility based on official Google documentation

1862 votes

Writing Plans

Use when you have a spec or requirements for a multi-step task, before touching code

2927051 votes
View all in development →