<< All versions
Skill v1.0.0
currentAutomated scan100/100jxoesneon/ciel/ciel-security-and-design
──Details
PublishedSeptember 27, 2026 at 11:09 PM
Content Hashsha256:31f51f75ea98b501...
Git SHA0a73bb6da1f0
──Files
Files (1 file, 1.6 KB)
SKILL.md1.6 KBactive
SKILL.md · 39 lines · 1.6 KB
version: "1.0.0" name: ciel-security-and-design description: CIEL's framework for Solidity security and visual design systems. license: MIT metadata: ciel-version: 1.0.0 ciel-extension: ciel.yaml
CIEL ADAPTATION: Security & Design (The Integrity Layer)
This skill manages the structural integrity of both value (Solidity) and appearance (Design Systems).
Solidity Security (DeFi)
- CEI Mandate: Checks-Effects-Interactions. Always update state BEFORE external calls.
- Reentrancy: Use
nonReentrantguards on all entry points handling token transfers. - Share Math: NEVER use
balanceOf(address(this))directly for shares. track internal_totalAssets. - Oracle Safety: Spot prices are manipulable. Use TWAP (Time-Weighted Average Price).
Design Systems
- Tokens First: Define primitive tokens (Colors, Spacing, Typography) in JSON/CSS vars early.
- Hierarchy: Enforce a clear
h1->h2->bodyhierarchy. Prohibit random hex values. - Consistency Audit: Similar elements (Buttons, Modals) MUST look identical across all pages.
- AI Slop Detection: Flag and remove purple-to-blue gradients, purposeless "glass morphism," and excessive rounded corners.
Visual Accessibility
- Contrast: Target WCAG AA (4.5:1) for all text.
- States: Every interactive element MUST have distinct Hover, Focus, and Active states.
Anti-Patterns
- Naked CSS: Adding styles directly to components instead of using design tokens.
- naive mulDiv: Performing
a * b / cin Solidity without checking for overflow. - The Gradient Trap: Using AI-suggested defaults instead of a cohesive brand palette.