source-protection-plan
Assess and reduce the risk of exposing a confidential journalistic source. Use when a reporter is working with a confidential source, a whistleblower, or sensitive leaked material and needs to protect the source's identity. Produces a risk assessment (how the source could be identified — metadata, comms, patterns, documents), secure-communication and handling practices, a redaction/anonymization plan for what's published, and the promises to make (and not make) about protection. Guidance is defensive; it is not legal advice.
Profile →npx skills add mohitagw15856/pm-claude-skills --skill source-protection-plan --agent claude-code
Same command for any agent — swap --agent for codex, cursor, copilot.
Weekly change comes from our own snapshots, not the repository page — it measures attention, not adoption.
# Source Protection Plan Skill A source who trusts you can be burned by a metadata field, a predictable meeting pattern, or a document only three people had. Protecting a source is operational, not just a promise. This skill maps how the source could realistically be identified and closes those channels — before, during, and after publication. ## Working from a brief Given the situation, **produce the full plan** — reason about the specific ways *this* source could be exposed given who they are and who wants to find them. Be honest about residual risk; do not over-promise anonymity you can't guarantee. This is defensive practice, not legal advice — recommend a media lawyer for legal exposure. ## Required Inputs Ask for (if not provided, else infer and label): - **The source's exposure** — their access, how many people share it, and who would want to identify them (employer, state, litigant) - **How you're communicating** and what **material** they've shared (documents, files, messages) - **What will be published** and any deadline/legal context ## Output Format ### Threat model Who is the adversary, what can they access (comms metadata, building logs, document distribution lists, t
- Working from a brief
- Required Inputs
- Output Format
- Threat model
- Communication & handling
- Publication anonymization
- The promise
- Residual risk
- Quality Checks
- Anti-Patterns
What does the source-protection-plan skill do?
Assess and reduce the risk of exposing a confidential journalistic source. Use when a reporter is working with a confidential source, a whistleblower, or sensitive leaked material and needs to protect the source's identity. Produces a risk assessment (how the source could be identified — metadata, comms, patterns, documents), secure-communication and handling practices, a redaction/anonymization plan for what's published, and the promises to make (and not make) about protection. Guidance is defensive; it is not legal advice.
How do I install it?
Run `npx skills add mohitagw15856/pm-claude-skills --skill source-protection-plan --agent claude-code` — it drops the skill into your project so the agent can pick it up. Swap the --agent value for codex, cursor or copilot if you use one of those.
Where does this skill come from?
From mohitagw15856/pm-claude-skills, a repository with 1,255 stars. We read it straight from the repository tree rather than a submitted listing, so what you see here is what is actually published.
Is a popular skill a good skill?
Not necessarily. Stars measure attention, not adoption — a repository can trend for a week and be abandoned. That is why we show the weekly change from our own snapshots next to the total, instead of a single flattering number.