Skills DirectorySkills Directory
SkillsLearnSecurityCategoriesDocsBlogPro
Sign InSubmit Skill
Skills Directory

Security-tested agent skills for Claude, coding agents, and AI workflows.

Directory

  • Browse Skills
  • All Skills A–Z
  • Claude Skills
  • Claude Code Skills
  • Agent Skills
  • Categories
  • Authors
  • Submit a Skill

Learn

  • Learn Hub
  • Install Claude Skills
  • Write SKILL.md
  • Skills vs MCP
  • Directories Compared

Security

  • Security
  • Methodology
  • Secure Claude Skills
  • Security Badges
  • Chrome Extension
  • Skill Manager

Company

  • About
  • Community
  • Blog
  • API Docs
  • Advertise

2026 Skills Directory. All rights reserved.

ProTermsPrivacyRefunds
Back to skills

Incident Verify

ASecurity

第2層。査読で挙がった既出指摘が解消されたかのみを確認する。新規指摘は行わない(レビュー収束のため)。全指摘解消なら PASS(report へ)、未解消ありなら RETRY(fix へ)。

15 stars
0 votes
0 copies
1 views
Added 10/1/2026
ai-agentsbash

Security Analysis

A100/100

Scanned 10/1/2026

$npx -y skills add apokamo/kaji --skill incident-verify --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Incident Verify?

Add the live security badge to your README — it updates automatically with every re-scan.

Security grade badge for Incident Verify
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/apokamo-incident-verify/badge)](https://www.skillsdirectory.com/skills/apokamo-incident-verify)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
Files
SKILL.md
---
description: 第2層。査読で挙がった既出指摘が解消されたかのみを確認する。新規指摘は行わない(レビュー収束のため)。全指摘解消なら PASS(report へ)、未解消ありなら RETRY(fix へ)。
name: incident-verify
---

# Incident Verify(確認)

修正後の調査 artifact について、**既出指摘が解消されたかのみ**を確認する。

> **重要**: このスキルは「指摘が適切に解消されたか」のみを確認する。**新規の指摘は行わない**。
> これはレビューサイクルの収束を保証するため(`issue-verify-code` / `issue-verify-design` と同じ収束規則)。

**ワークフロー内の位置**: fix → **verify** →(PASS: report / RETRY: fix)

## 入力

| 変数 | 型 | 説明 |
|------|-----|------|
| `issue_id` | str | 対象インシデントイシュー ID |
| `issue_ref` | str | 人間可読の Issue 参照 |
| `step_id` | str | 現在のステップ ID |
| `cycle_count` / `max_iterations` | int | サイクル内ステップのため注入される |

手動実行時は `$ARGUMENTS` 第 1 トークンを `issue_id` とする。

## 共通ルール

`.claude/skills/incident-investigate/SKILL.md` § 全 incident-* skill 共通ルールに従う。

## verify と review の違い

| 項目 | review | verify |
|------|--------|--------|
| 目的 | 反証・独立検証を伴うフル査読 | 既出指摘の解消確認のみ |
| 新規指摘 | する | **しない** |
| 確認範囲 | 調査 artifact 全体 | 前回指摘箇所のみ |

## 実行手順

### Step 1: 指摘と対応の取得

artifact root を解決する(共通ルール参照。以降のパスはこの絶対 root 基準):

```bash
ART="$(kaji config artifacts-dir)"
kaji issue view [issue_id] --comments
```

直近の査読結果コメント(`指摘 N`)と、直近の fix 対応表を突き合わせる。

**さらに、調査 artifact 本体(`$ART/[issue_id]/investigation/report.md`)を必ず再読込する**。
fix コメントの主張だけで解消判定してはならない。fix が「citation を追加した / conclusion を
見直した」と報告していても、artifact 本体に実際に反映されているかを本文で確認する
(未反映のまま report へ進むと stale な報告が最終提案として publish される)。

### Step 2: 解消確認

指摘 N ごとに「解消 / 未解消 / 反論受理」を判定する。

- **解消**: 修正内容が指摘意図を満たす(追加 citation・再現結果が受理基準を満たす等)。
  **かつ** artifact 本体(`report.md`)に該当修正が実在すること。fix コメントの主張と
  artifact 本文が食い違う場合は **未解消** とする。
- **未解消**: 修正が不十分 / 意図と異なる / fix 報告と artifact 本文が不一致。
- **反論受理**: fix の反論が技術的に妥当(根拠が明確・論理に飛躍なし)→ 指摘取り下げ。

**新規指摘はしない**。確認中に前回指摘以外の問題を見つけた場合は、判定に含めず参考情報として記録する
(`_shared/report-unrelated-issues.md`)。

### Step 3: 確認結果のコメント投稿

チェックリスト形式(指摘 N ごと)でコメント投稿する。verdict マーカーを無条件付与する。

```bash
kaji issue comment [issue_id] --commit \
  --verdict-step verify --verdict-status <STATUS> \
  --body-file <確認結果 markdown>
```

## Verdict 出力

---VERDICT---
status: PASS
reason: |
  全指摘の解消 / 反論受理を確認した
evidence: |
  指摘 1..N をチェックリストで確認。未解消 0 件
suggestion: |
---END_VERDICT---

### status の選択基準

| status | 条件 |
|--------|------|
| PASS | 全指摘が解消 / 反論受理(report へ) |
| RETRY | 未解消の指摘あり(fix へ戻す) |
| ABORT | 前提崩壊(対象が非インシデント等) |

Attribution

apokamoapokamo
View sourceSee grades on GitHubMore from apokamo →
SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments (0)

No comments yet. Be the first to comment!

SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Related Skills

Caveman

Terse caveman voice: answer first, fluff gone, every technical fact kept. Use for /caveman, "caveman mode", "talk like caveman", "be brief", "less tokens". Stays on until "stop caveman" or "normal mode".

1100021 votes

Hyperplan

Adversarial multi-agent planning skill. Self-orchestrates 5 hostile category members (unspecified-low, unspecified-high, deep, ultrabrain, artistry) via team-mode for ruthless cross-critique debate, distills only the defensible insights, then MANDATORILY hands the distilled insight bundle to the `plan` agent for executable plan formalization. Use when planning needs maximum rigor and surfacing of weak assumptions, blind spots, and over-engineering. Triggers: 'hyperplan', 'hpp', '/hyperplan', ...

698431 votes

Writing Skills

Create and manage Claude Code skills in HASH repository following Anthropic best practices. Use when creating new skills, modifying skill-rules.json, understanding trigger patterns, working with hooks, debugging skill activation, or implementing progressive disclosure. Covers skill structure, YAML frontmatter, trigger types (keywords, intent patterns), UserPromptSubmit hook, and the 500-line rule. Includes validation and debugging with SKILL_DEBUG. Examples include rust-error-stack, cargo-dep...

3931 votes

Mcp Code Execution

Routes multi-tool workflows through MCP servers for large datasets and pipelines. Use when Bash tool overhead is limiting throughput on data-heavy tasks.

3421 votes

catchup

Recovers the conversation and failed tool calls of a previous Codex, Amp, Claude Code, Antigravity, Cline, Copilot CLI, Cursor, DeepSeek Harness, Grok Build, Kimi, OpenCode, Pi Agent, or ZCode session. Use when the user says "catch up", "what did the last session do", "get me up to speed", "I switched agents", asks to recover/summarize a previous session before continuing, or asks to diagnose or report a catchup failure. Do NOT use for the current conversation, git history, or any non-agent log.

741 votes
View all in ai-agents →