Chain Reference Index
Every reference/ file chain owns, and the condition that makes it worth
reading. chain/SKILL.md keeps only the shared-contract rows and a pointer here.
Read this when you need a reference and the Recipe registry did not already name it, or when scanning what this skill can consult at all.
| File | Read this when... |
|---|---|
reference/intake-checklist.md |
You are running a new-skill intake audit and need the full per-item procedure |
reference/unicode-tag-scan.md |
You need the codepoint ranges, allowlist policy, and scan command for Unicode Tag / bidi / zero-width |
reference/bundled-artifact-review.md |
You are auditing bundled scripts, binaries, or external resources referenced by SKILL.md |
reference/supply-chain-malware-ioc-database.md |
You need dated campaign hashes, paths, package pins, persistence, C2, or propagation IoCs. |
reference/supply-chain-malware-scan-procedures.md |
You are scanning macOS, Linux, Windows/WSL, containers, CI runners, lockfiles, passive logs, or maintainer publishes. |
reference/supply-chain-malware-eradication.md |
You are producing persistence-first quarantine, verify-clean, credential-rotation, or re-onboarding steps. |
reference/supply-chain-malware-handoffs.md |
You need malware-specific handoff payloads for Triage, Sentinel, Gear, Vigil, or Lore. |
reference/autorun-schema.md |
You are emitting the AUTORUN _STEP_COMPLETE block — Chain-specific Output/Next schema. |
_common/BOUNDARIES.md |
Role boundaries with Sentinel / Gauge / Hone / Gear are ambiguous |
_common/OPERATIONAL.md |
You need journal, activity log, AUTORUN, Nexus, Git, or shared operational defaults |