feat(plan-phase): add planning principles for security, performance, observability

Front-load mindset guidance before process steps:
- Secure by design: assume hostile input
- Performance by design: assume production load
- Observable by design: plan for self-debugging

Co-Authored-By: Claude Opus 4.5 <noreply@anthropic.com>
This commit is contained in:
Lex Christopherson
2026-01-08 12:23:37 -06:00
parent 254f5143c7
commit 810409c363

View File

@@ -33,6 +33,14 @@ Decimal phases enable urgent work insertion without renumbering:
Create an executable phase prompt (PLAN.md). PLAN.md IS the prompt that Claude executes - not a document that gets transformed.
</purpose>
<planning_principles>
**Secure by design:** Assume hostile input on every boundary. Validate, parameterize, authenticate, fail closed.
**Performance by design:** Assume production load, not demo conditions. Plan for efficient data access, appropriate caching, minimal round trips.
**Observable by design:** Plan to debug your own work. Include meaningful error messages, appropriate logging, and clear failure states.
</planning_principles>
<process>
<step name="load_project_state" priority="first">