Skills DirectorySkills Directory
SkillsLearnSecurityCategoriesDocsCommunityBlog
Sign InSubmit Skill
Skills Directory

Security-tested agent skills for Claude, coding agents, and AI workflows.

Directory

  • Browse Skills
  • All Skills A–Z
  • Claude Skills
  • Claude Code Skills
  • Agent Skills
  • Categories
  • Authors
  • Submit a Skill

Learn

  • Learn Hub
  • Install Claude Skills
  • Write SKILL.md
  • Skills vs MCP
  • Directories Compared

Security

  • Security
  • Methodology
  • Secure Claude Skills
  • Security Badges

Company

  • About
  • Community
  • Blog
  • API Docs
  • Advertise

2026 Skills Directory. All rights reserved.

ProTermsPrivacyRefunds
Back to skills

Derived Requirements

ASecurity

Use when you must identify, classify, and manage derived requirements per ARP4754A: decide whether a requirement is derived or allocated from its traceability fields, list the required rationale fields (design decision, implementation constraint, interface resolution, architectural choice, environmental assumption) plus the derivation rationale and impact analysis, and run the validation checklist before the requirement enters the requirements baseline. Derived requirements are not directly t...

2 stars
0 votes
0 copies
0 views
Added 9/27/2026
ai-agentspythongo

Works with

claude code

Security Analysis

A100/100

Scanned 9/27/2026

Install to Claude Code

$npx -y skills add ashfordeOU/aero-agent-skills --skill derived-requirements --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Derived Requirements?

Add the live security badge to your README — it updates automatically with every re-scan.

Security grade badge for Derived Requirements
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/ashfordeou-derived-requirements/badge)](https://www.skillsdirectory.com/skills/ashfordeou-derived-requirements)

More formats (shields.io, HTML) on the badges page.

Download with Pro
Files
SKILL.md
---
name: derived-requirements
description: "Use when you must identify, classify, and manage derived requirements per ARP4754A: decide whether a requirement is derived or allocated from its traceability fields, list the required rationale fields (design decision, implementation constraint, interface resolution, architectural choice, environmental assumption) plus the derivation rationale and impact analysis, and run the validation checklist before the requirement enters the requirements baseline. Derived requirements are not directly traceable to a parent requirement or source document; they arise from design choices and need their own justification and traceability path. Trigger: derived requirements, derivation rationale, impact analysis, derivation source, design decision, implementation constraint, interface resolution."
license: Apache-2.0
compliance: STANDARDS-REF
standards:
  - id: arp4754a
    reference-only: true
gated: false
domain: systems-engineering-safety
pack: systems-engineering-safety
compatibility: "agentskills.io SKILL.md; any SKILL.md host (Claude Code, Hermes, OpenClaw)"
metadata:
  domain: systems-engineering-safety
  subdomain: arp4754a
  tags: [derived-requirements, derivation-rationale, derivation-source, impact-analysis, requirements-baseline, design-decision]
  version: 0.1.0
  author: Aero Agent Skills
---

# ARP4754A Derived Requirements (systems-engineering-safety/arp4754a/derived-requirements)

Use when the task is derived requirements per ARP4754A: deciding
whether a requirement is derived or allocated, recording the
derivation rationale and impact analysis, and running the validation
checklist before the requirement enters the requirements baseline.

## Domain quick reference

- A derived requirement is a requirement whose content is not directly
  traceable to a parent requirement or to a source document (customer
  requirement, regulation, system requirement). It arises during the
  development process itself.
- Allocated requirements trace up to a parent or source; derived
  requirements have no such upward trace and must carry their own
  justification.
- Derivation sources are: design decision, implementation constraint,
  interface resolution, architectural choice, environmental assumption.
- Each derived requirement must record a derivation source, the
  derivation rationale (why the requirement exists), and an impact
  analysis (which requirements, designs, or plans it affects).
- Derived requirements join validation and verification planning and
  the requirements traceability matrix with the same rigor as allocated
  requirements, plus the extra rationale path.

Worked example: a low-level requirement states "the backup power unit
shall maintain 28 VDC output for 30 minutes after primary power loss."
No high-level requirement or source document states this; the content
came from a design decision on the power architecture. Categorized as
derived, source = design decision, rationale = the backup unit must
cover the full diversion duration, impact = the electrical load
analysis and the verification plan.

## Workflow

1. For each requirement, read the traceability fields: has parent
   trace, has source document trace, and any derivation source.
2. Classify: a requirement with a parent trace or a source document
   trace is allocated; a requirement with neither is derived.
3. For a derived requirement, record the derivation source from the
   five categories plus the derivation rationale and the impact
   analysis.
4. Run the validation checklist; every derived requirement must carry
   all three rationale fields or it fails.
5. Carry the derived requirement into validation, verification
   planning, and the traceability matrix with its rationale attached.

## Pitfalls

- Treating "not in the original requirements document" as derived: a
  requirement traced to any parent or source is allocated even when it
  appears late.
- Confusing with requirements-allocation: allocation assigns
  requirements to items and functions; derivation explains where a
  requirement came from. An unallocated requirement is not the same as
  a derived one.
- Confusing with requirements-traceability: traceability maps links
  between levels and flags derived requirements; this leaf classifies
  and justifies them. Traceability records the flag, derivation records
  the why.
- Confusing with validation: validation confirms the requirement set is
  correct and complete for the intended function. Derivation rationale
  does not validate the requirement; both run in parallel.
- Confusing with verification-planning: verification plans show the
  requirement is met. A derived requirement still needs a verification
  method; its rationale is not evidence of satisfaction.
- Confusing with functional-hazard-assessment: FHA identifies failure
  conditions and severities; a derived safety requirement may follow
  from FHA results, but FHA is a source, not a classification of the
  requirement.
- Dropping the impact analysis: a derived requirement that changes one
  design often changes several; an impact analysis missing its targets
  is an incomplete rationale.

## Behavior contract (gate 3)

The logic is exercised by the gate 3 contract test:
scripts/test_derived_requirements.py against
scripts/derived_requirements_logic.py (stdlib unittest, offline).
Run: python3 skills/systems-engineering-safety/arp4754a/derived-requirements/scripts/test_derived_requirements.py

## Compliance

- Standards referenced, not reproduced: ARP4754A text is proprietary
  (SAE); summary-only per standards-map.yaml and brief 06.
- Revision note: ARP4754B (2023) supersedes ARP4754A; this skill keys
  to ARP4754A as the certification-baseline revision (FAA AC 20-174
  cites A); see standards-map.yaml arp4754a.revision_decision.
- compliance: STANDARDS-REF, gated: false.

Attribution

ashfordeOUashfordeOU
View sourceMore from ashfordeOU →
SSkills DirectorySkills Directory

Know which skills are safe — weekly.

Best new skills + every skill we flagged as malicious. From the team that scanned 103,619.

Join free

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments (0)

No comments yet. Be the first to comment!

SSkills DirectorySkills Directory

Know which skills are safe — weekly.

Best new skills + every skill we flagged as malicious. From the team that scanned 103,619.

Join free

Related Skills

Caveman

Ultra-compressed communication mode that cuts output tokens while keeping technical accuracy. Levels: lite, full, ultra and the wenyan variants. Use for /caveman, "caveman mode", "talk like caveman", "be brief" or "less tokens".

1074701 votes

Hyperplan

Adversarial multi-agent planning skill. Self-orchestrates 5 hostile category members (unspecified-low, unspecified-high, deep, ultrabrain, artistry) via team-mode for ruthless cross-critique debate, distills only the defensible insights, then MANDATORILY hands the distilled insight bundle to the `plan` agent for executable plan formalization. Use when planning needs maximum rigor and surfacing of weak assumptions, blind spots, and over-engineering. Triggers: 'hyperplan', 'hpp', '/hyperplan', ...

694821 votes

Mcp Code Execution

Routes multi-tool workflows through MCP servers for large datasets and pipelines. Use when Bash tool overhead is limiting throughput on data-heavy tasks.

3351 votes

catchup

Recovers the conversation and failed tool calls of a previous Codex, Claude Code, Antigravity, Cline, Copilot CLI, Cursor, DeepSeek Harness, Kimi, OpenCode, Pi Agent, or ZCode session. Use when the user says "catch up", "what did the last session do", "get me up to speed", "I switched agents", asks to recover/summarize a previous session before continuing, or asks to diagnose or report a catchup failure. Do NOT use for the current conversation, git history, or any non-agent log.

691 votes

math-skill

A comprehensive mathematical reasoning skill for AI assistants — handles arithmetic to research-level problems with rigorous step-by-step reasoning, systematic verification, and transparent uncertainty handling

381 votes
View all in ai-agents →