forked from bchanot/claude
feat(rules): user permanent rules — writing style, web building, web security (BDR-085)
Three rules/ files from the user's permanent-rules text: - writing-style.md (always-on): em-dash ban, no it's-not-X-it's-Y, no emoji, no decorative bold, no reflex triads, no hedging chains, slop vocabulary ban, sentence-length variety, deliverable self-check. Scope carve-outs keep caveman registries, code comments, skill templates intact. - web-building.md (path-scoped): design anti-default list + public-site done checklist (report missing items, never invent them). - web-security.md (path-scoped): browser-exposed keys, service-key/client split, RLS, server-side auth, IDOR, cookie flags, field minimization, rate limiting — extends §Security, no dup of the core. Project CLAUDE.md rules/ doctrine: 320-budget exception for standalone always-on user rule sets.
This commit is contained in:
@@ -0,0 +1,30 @@
|
||||
---
|
||||
paths: ["**/*.html", "**/*.astro", "**/*.css", "**/*.scss", "**/*.tsx", "**/*.jsx", "**/*.vue", "**/*.svelte"]
|
||||
---
|
||||
|
||||
# Web building — no default reflexes + done checklist
|
||||
|
||||
## Avoid unless the user asks for them
|
||||
- Purple gradient, purple/black, neon, washed-out pastels, rainbow.
|
||||
- Drop shadow on everything; the same border-radius on every element.
|
||||
- Bento grid, dot grid, glowing background orbs, decorative color strip.
|
||||
- Sparkle icons, animated arrows, emojis as icons, decorative fake
|
||||
terminal window.
|
||||
- Hover animation on every element; scroll-reveal animations everywhere.
|
||||
- Three aligned feature cards, three pricing tiers, checkmark bullets.
|
||||
- Vague hero title ("unleash your potential"): state what the product does.
|
||||
- Fake testimonials, fake visitor or client counters, invented numbers.
|
||||
Never, in any context.
|
||||
- Inter, Geist or Space Grotesk as the default font: propose an
|
||||
alternative and justify it. Existing brand identities keep their fonts.
|
||||
|
||||
## Before declaring a public site done
|
||||
Check: custom 404 · call to action in the first viewport · per-page
|
||||
title + description · share/OG image · favicons · robots.txt · sitemap ·
|
||||
alt text on images · layout tested at 375 px · loading states · form
|
||||
error messages · confirmation page · real legal mentions · cookie banner
|
||||
with a working refuse option · audience measurement · contact address ·
|
||||
compressed images.
|
||||
Report the missing items to the user instead of inventing them. Internal
|
||||
tools and dashboards: only the relevant items apply. Deep audits stay
|
||||
with /seo, /harden, /web-validate.
|
||||
Reference in New Issue
Block a user