Devin
Prompts and configuration targeted at Devin (Cognition’s autonomous engineering agent).
These pages stay noindex so leftover drafts cannot rank as
authoritative CVE floors. Humans browse the cards below; agents can
fetch the same bounded files through the recipe JSON feed and MCP
search tools.
What usually lives here
- Devin Knowledge entries — per-repo runbooks Devin reads on every session. Include the commands Devin should run, the gotchas it should avoid, and the humans it should ping.
- Playbooks — longer, step-by-step descriptions for recurring remediation patterns (e.g. “bump a transitive dep behind a feature flag”).
- Task prompts — canned descriptions for the Devin task UI.
Browse entries
Every entry carries its author, team, and maturity. Click any card for the full prompt.
Devin Scheduled Vulnerability Remediation
developmentRun scheduled, cross-ecosystem vulnerability remediation with Devin using bounded version bumps, rescans, tests, SBOM diffs, rollback, and reviewed pull requests.
Devin Scheduled Sensitive Data Remediation
developmentUse Devin to scan repositories and Git history for secrets, PII, PHI, and PCI data, then produce bounded fixes, verification evidence, and a reviewed PR.