OverviewHistoryStatsSecurity
npx skills add ...
Documentation
SKILL.md
npx skills add praxstack/skills-and-personas --skill backend-principle-eng-cpp-pro-max
Principal backend engineering intelligence for C++ systems and performance-critical services. Actions: plan, design, build, implement, review, fix, optimize, refactor, debug, secure, scale backend code and architectures. Focus: correctness, memory safety, latency, reliability, observability, scalability, operability.
npx skills add praxstack/skills-and-personas --skill backend-principle-eng-cpp-pro-max
Principal-level guidance for C++ backend systems, low-latency services, and infrastructure. Emphasizes correctness, memory safety, and predictable performance.
| Priority | Category | Goal | Signals |
|---|---|---|---|
| 1 | Correctness & UB Avoidance | No undefined behavior | RAII, invariants, validated inputs |
| 2 | Reliability & Resilience | Fail safe under load | Timeouts, backpressure, graceful shutdown |
| 3 | Security | Hard to exploit | Hardened builds, safe parsing, least privilege |
| 4 | Performance & Latency | Predictable P99 | Stable allocs, bounded queues, zero-copy where safe |
| 5 | Observability & Operability | Fast triage | Trace ids, structured logs, metrics |
| 6 | Scalability & Evolution | Safe growth | Statelessness, sharding, protocol versioning |
| 7 | Tooling & Testing | Sustainable velocity | Sanitizers, fuzzing, CI gates |
raii - Own resources with RAII and deterministic lifetimesno-raw-ownership - Raw pointers only for non-owning referencesbounds - Validate all indices and sizes at boundariesinvariants - Assert core invariants and state transitionstime - Use monotonic clocks for durationstimeouts - Explicit timeouts for every external callbackpressure - Bounded queues; apply load sheddingshutdown - Drain in-flight work with deadlinesbulkheads - Isolate thread pools by dependencysafe-parse - Validate untrusted input; avoid unsafe string opsharden - Compile with stack protection, PIE, RELRO, FORTIFYsecrets - No secrets in logs or core dumpsleast-priv - Drop privileges and sandbox when possibleallocs - Minimize allocations in hot pathscopy - Prefer move or views; avoid unnecessary copiescache - Improve locality; avoid false sharingio - Use async I/O where appropriateprofiling - Measure before optimizinglogs - Structured logs with request and trace idsmetrics - RED/USE plus business KPIstracing - Propagate trace context across threadscrash - Symbolized crash reports and core dump policiesstateless - Externalize state, enable horizontal scalepartitioning - Shard by stable keysversioning - Protocol and schema versioninglimits - Explicit limits on payloads and queue sizessanitizers - ASan, UBSan, TSan in CIfuzzing - Fuzz parsers and protocol handlerstests - Unit, integration, and load testslint - clang-tidy, clang-format, warnings as errorsSee references/cpp-core.md for toolchain defaults, concurrency patterns, and hardening.