跳到主要内容
知仓学习社ZHICANG

geminiignore-finops

Configure and optimize .geminiignore files for AI context window efficiency and token cost reduction (FinOps).

读凭据严重 5 · 高危 0sickn33/agentic-awesome-skills

它会碰到什么

扫了多少1 个文本文件,5 KB
它会碰到什么读凭据
命中总数5 处
命中统计严重 5 · 高 0 · 中 0 · 低 0
逐条看命中(5 条严重或高危)
  • 严重 SKILL.md:49cred-paths
    Verify that the AI can still see critical configuration blueprints (like `.env.example`, `package.json`, `composer.json`, `pyproject.toml`) but ignores the actu
  • 严重 SKILL.md:49cred-paths
    Verify that the AI can still see critical configuration blueprints (like `.env.example`, `package.json`, `composer.json`, `pyproject.toml`) but ignores the actu
  • 严重 SKILL.md:86cred-paths
    env/
  • 严重 SKILL.md:87cred-paths
    .env
  • 严重 SKILL.md:162cred-paths
    - ✅ **Whitelist config examples**: Use rules like `!.env.example` alongside `.env` ignores so the AI understands configuration structure without exposing creden

这一栏是扫描器报的事实,不是结论。命中多不等于有毒(安全工具、规则库、示例脚本本来就会包含危险写法),命中少也不等于干净。它和你手上的凭据、文件、网络有什么关系,需要你自己看。

技能内容

GeminiIgnore FinOps Setup & Optimization

Overview

A skill to construct, refine, and maintain high-performance .geminiignore files across diverse tech stacks. By filtering out machine-generated code, heavy logs, package locks, and binary assets, this skill optimizes the AI agent's context window, accelerates processing speed, and reduces token consumption costs (FinOps).

When to Use This Skill

  • Use when initializing a new repository or workspace for pair-programming with AI agents.
  • Use when the AI context window is reaching its limits or when billing optimization (FinOps) is a priority.
  • Use when the AI agent is accidentally reading build outputs, lock files, databases, or binary media.

How It Works

Step 1: Analyze the Workspace Tech Stack

Detect the languages, frameworks, and dependency managers present in the project (e.g., Node.js, Python, PHP, Dart/Flutter, Rust).

Step 2: Initialize or Update the .geminiignore File

Create a .geminiignore file at the root of the active workspace. If one already exists, review it to add missing categories.

Step 3: Implement the 7 Core Rules

Add rules divided into the following categories to filter out unnecessary machine noise while keeping human-written code visible:

  1. System & Editor Noise: Block OS temp files (.DS_Store, Thumbs.db) and user-specific IDE caches (.idea/, .vscode/*, Xcode user data).
  2. Dependency Folders & Lock Files: Ignore third-party package directories (node_modules/, vendor/) and giant machine-generated lock files (package-lock.json, yarn.lock, Cargo.lock, composer.lock).
  3. Build & Target Output: Block compiled folders (dist/, build/, .next/, .nuxt/).
  4. Caches & Tool Metadata: Block compiler caches (.tsbuildinfo, .vite/, .pytest_cache/, .eslintcache).
  5. Binary & Rich Assets: Block media types (.png, .pdf, .mp4, .woff2) to prevent triggering expensive vision/multimodal tokens.
  6. Local Databases & Logs: Block log files (.log) and SQL dumps or local SQLite DBs (.sqlite, *.db).
  7. Compiled Binaries & Mobile Builds: Block mobile package files (.apk, .ipa) and compiled binaries (.class, .pyc, *.dll).

Step 4: Validate Exclusions

Verify that the AI can still see critical configuration blueprints (like .env.example, package.json, composer.json, pyproject.toml) but ignores the actual .env files and compilation artifacts.

Examples

Example 1: Standard Universal .geminiignore Template

Here is a recommended baseline configuration for a multi-language project:

# ==============================================================================
# .geminiignore - BASELINE DE FINOPS E ARQUITETURA
# ==============================================================================

# 1. SISTEMA OPERACIONAL E IDEs
.DS_Store
Thumbs.db
Desktop.ini
$RECYCLE.BIN/
.vscode/*
!.vscode/settings.json
!.vscode/tasks.json
!.vscode/launch.json
.idea/
*.iml
.gradle/
local.properties
.history/

# 2. DEPENDÊNCIAS (ECONOMIA DE TOKENS EM LOCK FILES)
node_modules/
package-lock.json
yarn.lock
pnpm-lock.yaml
vendor/
composer.lock
venv/
.venv/
env/
.env
.env.*
!.env.example
poetry.lock
Cargo.lock
pubspec.lock

# 3. BUILDS E EXPORTAÇÕES
dist/
build/
out/
target/
.next/
.nuxt/
.output/
bin/
obj/

# 4. CACHES DE FRAMEWORKS
.vite/
.parcel-cache/
.eslintcache
.babel-cache/
.tsbuildinfo
.turbo/
.pytest_cache/
.ruff_cache/
storage/framework/
storage/logs/

# 5. ASSETS BINÁRIOS E MULTIMÍDIA EXTREMOS
*.png
*.jpg
*.jpeg
*.gif
*.webp
*.svg
*.ico
*.psd
*.fig
*.pdf
*.zip
*.tar.gz
*.woff
*.woff2
*.ttf

# 6. BANCOS DE DADOS E LOGS
*.log
*.db
*.sqlite
*.sqlite3
*.sql
*.sql.gz

# 7. ARQUIVOS COMPILADOS
*.apk
*.aab
*.ipa
*.jar
*.class
*.pyc
__pycache__/
*.so
*.dylib
*.dll
*.exe
*.js.map
*.css.map

Best Practices

  • Ignore dependency lock files: Standard lock files (e.g., package-lock.json, yarn.lock) contain thousands of lines of redundant package resolution trees. Ignoring them is the single largest FinOps win.
  • Keep configurations visible: Ensure manifests like package.json, composer.json, Cargo.toml, and pyproject.toml are NEVER ignored, as the AI needs them to understand dependencies.
  • Whitelist config examples: Use rules like !.env.example alongside .env ignores so the AI understands configuration structure without exposing credentials.
  • Do not ignore source code: Avoid overly broad folder patterns like lib/ or app/ if they contain primary source code. Be specific (e.g., block vendor/bundle/ but not your actual code).

Limitations

  • A .geminiignore file only affects AI tools parsing the workspace; it does not replace .gitignore for Git repository hosting.
  • Patterns must be formatted correctly according to gitignore-style globbing to avoid accidentally ignoring source files.

Related Skills

  • @context-optimization - Broad tactics for context window management.
  • @clean-code - Architectural practices for clean, human-readable codebases.

想直接用这个技能?

本站把开放许可(MIT / Apache 等)的技能按仓库打包整理到网盘,点一下转存到你自己的网盘,不用一个个从 GitHub 拉。许可未声明的技能只给原始仓库链接,不打包。

同名技能的其他版本

有 3 个不同仓库或目录里都有叫 geminiignore-finops 的技能。它们内容并不相同,别混用: