Zum Hauptinhalt springen
tsecurity.de LIVE
Echtzeit-Radar & Feeds
Alle RSS Feeds
👥 Community & Social
AI & KI NachrichtenKI-Firmenchefs warnen bei UN-Sicherheitsrat vor Risiken - ZDFheute(24.09.2026 um 09:59 Uhr)
Hacking & PentestingVibe Hacking: Hacker erpresst Unternehmen mit Claude Code(24.09.2026 um 10:01 Uhr)
Apple iOS & macOSApple plant offenbar größere Home-Offensive für Oktober(24.09.2026 um 09:33 Uhr)
Android Tipps & SecurityGoogle veröffentlicht Update, von dem alle Pixel-Handys profitieren(24.09.2026 um 09:08 Uhr)
Android Tipps & SecurityHuawei hat geschafft, womit niemand so schnell gerechnet hat(24.09.2026 um 09:40 Uhr)
AI & KI NachrichtenThe Wild West of A.I. Needs to End. Here’s How.(24.09.2026 um 08:55 Uhr)
YouTube Security VideosGolemDE: Leben als IT-Freiberufler – zwei Perspektiven(24.09.2026 um 07:03 Uhr)
AI & KI NachrichtenKI-Firmenchefs warnen bei UN-Sicherheitsrat vor Risiken - ZDFheute(24.09.2026 um 09:59 Uhr)
Hacking & PentestingVibe Hacking: Hacker erpresst Unternehmen mit Claude Code(24.09.2026 um 10:01 Uhr)
Apple iOS & macOSApple plant offenbar größere Home-Offensive für Oktober(24.09.2026 um 09:33 Uhr)
Android Tipps & SecurityGoogle veröffentlicht Update, von dem alle Pixel-Handys profitieren(24.09.2026 um 09:08 Uhr)
Android Tipps & SecurityHuawei hat geschafft, womit niemand so schnell gerechnet hat(24.09.2026 um 09:40 Uhr)
AI & KI NachrichtenThe Wild West of A.I. Needs to End. Here’s How.(24.09.2026 um 08:55 Uhr)
YouTube Security VideosGolemDE: Leben als IT-Freiberufler – zwei Perspektiven(24.09.2026 um 07:03 Uhr)
Intelligence View
⚡ tsecurity.de Intelligence

Kiro Did It: Streamlining Comments, Structure, and Logging Using Steering Docs!

Hi! I’m Girish, an AWS Community Builder and Cloud Tech Enthusiast, with expertise in delivering customer-focused and business-impacting cloud transformation programs of high complexity. In my previous article, I shared how I used AWS K…

0
↗ Quelle (dev.to)
Reagiere als Erste:r — dein Feedback zählt!

Hi! I’m Girish, an AWS Community Builder and Cloud Tech Enthusiast, with expertise in delivering customer-focused and business-impacting cloud transformation programs of high complexity.



In my previous article, I shared how I used AWS Kiro’s vibe coding feature to build a Customer Lookup API powered by API Gateway, Lambda, DynamoDB, and AWS SAM.



In another article, I also talked about Kiro's hooks using a simple HelloWorld Python program. I explained how hooks can automatically update a README.md file whenever the Python code is modified.



Unlike traditional IDEs, Kiro is a GenAI-enabled IDE that supports both specs-driven development and vibe coding.



In addition to specs, vibe coding and Hooks, Steering Docs is another powerful feature that helps developers by streamlining Comments, Structure, and Logging in your code.



In this article, I will explore how Kiro's steering doc feature works using a simple HelloWorld Python program. I’ll show how steering docs can help guide the code generation using the product definition, structure and tech stack defined in the steering docs.






What Did I Build and Why?



I wanted to demonstrate how Kiro Steering docs are another value-added feature of this GenAI-enabled IDE. Steering docs can provide guidance when generating code by defining product, code structure and tech stack upfront.



When you add steering docs, Kiro adds three docs product.md, structure.md and tech.md. These files contain the guidelines that Kiro uses when generating the code.



I created a hello world document and added steering docs.



The goal wasn’t to build production-ready code right away, but to use a simple function to demonstrate how Kiro Steering Docs is another feature that can help developer increase the productivity and accelerate software development.






Architecture/Design



Before diving in, let’s review the diagram to understand how these components interact.



Image arch






What Are Steering Docs in Kiro IDE?



The Kiro Steering Docs are a key feature that helps Kiro understand what guidance to follow when generating code. By specifying the desired product goals, tech stack, and code structure, these guidelines allow Kiro to automatically implement best practices upfront. This ensures the resulting code consistently follows standards for comments, logging, and structure, yielding clean, safe, and maintainable code without manual intervention.



To generate the steering docs, you click on Kiro icon and then generate Steering Docs.



Image steer1



Kiro will scan your project file and will generate the Steering Docs.



Image steer2



Kiro will generate 3 files as Steering Docs:




  • Product.md

  • Structure.md

  • Tech.md



Let's see what each of these file contains:



product.md



Provides a high-level overview of what the HelloWorld service does, why it exists, and the core behavior users should expect.



tech.md



Lists the technology stack, tools, and essential commands required to run, test, and deploy the HelloWorld service.



structure.md



Describes the project’s folder layout and explains the organizational principles applied to keep the code clean and maintainable.






Review the Steering Docs



Once the Steering Docs have been generated, you would see these 3 files in your project view.



Image steerdocs






Review product.md



You’ll see that:



The product.md contains section to describe the product purpose, key features and target users.



I will update product.md to add detail about HelloWorld project. Updated file will look similar to below:



Image reviewupdateprod






Review tech.md



You’ll see that:



The tech.md contains section to describe the tech stack like what language to use, logging, run time, testing and more.



Image techdoc






Review structure.md



You’ll see that:



The structure.md contains section to describe the structure and organization of the code directory.



Image struc



With Kiro, you can further refine your steering docs as well. Once you click on 'Refine', Kiro will refine the steering docs.



Image reviewandrefine






Kiro Code Generation



Now that I have steering docs in place, I will ask Kiro to generate the hello world function. Below is the prompt, I provided:



Image codeprompt



Kiro responded by confirming that it will generate the asked code.



Image codegen






Review Generated Code



Generated code for python function.



Image codefunc



Generated code for lambda handler.



Image codelambda






Test the function



I can validate the generated function using the Python command as below:



Image testfunc



Since Steering docs in place, if I add a new function, Kiro will follow the guidance from these steering docs to follow the same pattern.



I added another function as below and as you can see, this one uses comments and logging based on the guidance noted in the steering docs.



Image addfunc






Conclusion



In this article, I demonstrated how Kiro can accelerate development by applying Steering Docs directly into the workflow, guiding code generation toward consistent structure, clear documentation, proper logging, and reliable exception handling. This shifts effort away from repetitive cleanup and review, allowing developers to focus on higher-value logic and design.



Whether you’re defining code comments, enforcing Python structure, standardizing logging practices, or ensuring proper error handling, Steering Docs act as your silent co-developer by shaping every output to match your standards.



By starting with small, practical examples and gradually expanding your Steering Docs, you can establish a development environment where every code change automatically aligns with best practices and maintains consistent quality.



Experiment with these Steering Docs and see how Kiro transforms your everyday coding experience.



Generative AI is transforming the way code is built, and tools like Kiro make the process even easier. While debugging can become more challenging as more code is generated with GenAI, Kiro’s features such as spec-driven development and design documentation generation can help address these challenges.



I believe this is just the beginning, and these tools will continue to evolve rapidly!



Thanks for reading, and I hope you found this insightful.



Watch the video here:







𝒢𝒾𝓇𝒾𝓈𝒽 ℬ𝒽𝒶𝓉𝒾𝒶

𝘈𝘞𝘚 𝘊𝘦𝘳𝘵𝘪𝘧𝘪𝘦𝘥 𝘚𝘰𝘭𝘶𝘵𝘪𝘰𝘯 𝘈𝘳𝘤𝘩𝘪𝘵𝘦𝘤𝘵

𝘈𝘞𝘚 𝘊𝘦𝘳𝘵𝘪𝘧𝘪𝘦𝘥 𝘋𝘦𝘷𝘦𝘭𝘰𝘱𝘦𝘳 𝘈𝘴𝘴𝘰𝘤𝘪𝘢𝘵𝘦

𝘈𝘞𝘚 𝘊𝘦𝘳𝘵𝘪𝘧𝘪𝘦𝘥 𝘎𝘦𝘯𝘈𝘐 𝘗𝘳𝘢𝘤𝘵𝘪𝘵𝘪𝘰𝘯𝘦𝘳

𝘈𝘞𝘚 𝘊𝘭𝘰𝘶𝘥 𝘛𝘦𝘤𝘩𝘯𝘰𝘭𝘰𝘨𝘺 𝘌𝘯𝘵𝘩𝘶𝘴𝘪𝘢𝘴𝘵

CTI Threat Relationship Graph2 Knoten / 1 Relationen
CVE / Incident Software MITRE ATT&CK CWE Weakness IoC
SOC Incident Playbook: Vulnerability Remediation & Verification
title: Detect Exploitation - Kiro Did It: Streamlining Comments, Structure, and Logging Using Steering Docs!
id: 0bbf17fb-a4a5-416f-abd3-a4b8885f6d97
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
  - https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-24
logsource:
  category: network_connection
  product: any
detection:
  selection:
      CommandLine|contains:
        - 'exploit'
  condition: selection
falsepositives:
  - Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
  - attack.initial_access
rule CTI_Threat_Indicator {
    meta:
        author = "iShareStuff CTI Automated Detection Engine"
        date = "2026-09-24"
        description = "YARA Signature for "
    strings:
        $str = "Kiro Did It: Streamlining Comm" ascii wide
    condition:
        any of them
}
tsecurity.de Cognitive Threat RAG
Fokus-Vektor:

Kognitive Analyse für identifizierte Bedrohung: Erhöhte Bedrohungslage im Bereich Kiro Did It: Streamlining Comments, Stru.... Basierend auf 368k Vektor-Korrelationen werden sofortige Isolationsmaßnahmen für betroffene Endpunkte empfohlen.

🛡️ Angriffsfläche & Exposure

Netzwerk/Remote-Zugriff ohne Vorauthentifizierung möglich.

Empfohlene Sofortmaßnahmen
  • 1. Perimeter-Inspektion: Relevante Portfreigaben und exponierte Endpunkte unverzüglich scannen.
  • 2. Patch-Applikation: Hersteller-Hotfix einspielen oder betroffene Daemons in isolierte DMZ-Segmente überführen.
  • 3. Telemetrie & EDR-Alerts: Prozessaufrufe und Child-Processes auf anomale Shell-Spawns überwachen.
🔗 Semantisch verwandte Zero-Days MariaDB 11.7 VEC
Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten Kiro Did It: Streamlining Comments, Structure, and Logging Using Steering Docs!

Thematisch verwandte Begriffe: Kiro, Streamlining, Comments, Structure · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Zum Aktualisieren ziehen
ZERO-DAY CVE-2026-97056 | SigNoz versions from v0.98.0 up to (but not including) v0.143.0, when co…
Advisory →
TTS Reader • tsecurity.de Voice
tsecurity.de Icon
tsecurity.de App
Offline-Lesen, Eilmeldungen & 0ms Ladezeit

Installiere tsecurity.de direkt auf deinen Home-Bildschirm für das ultimative Vollbild-Magazinerlebnis ohne Browser-Leisten.

Nächster Beitrag
Themen-Radar & Intelligence Matrix
Echtzeit-Taxonomie nach Angriffsvektoren & Plattformen

tsecurity.de Live Threat Radar

🔴 LIVE RADAR
MONITORING
AKTIV
CVE-DATENBANK
LIVE
🔍
Community Radar & Live Chat
Sentinel Bot online • Live-Stream
Dein Cluster: Security Explorer
Match:
lädt…
Verbindung zum Community-Stream wird aufgebaut...
Bearbeitungsmodus — Senden überschreibt deine Nachricht
Community-Puls — was gerade passiert
lädt…
Aktivitäten deiner Analysten
lädt…
Neues Thema oder Eilmeldung einreichen

Reiche interessante Links, Zero-Days oder Debatten ein. Die Community entscheidet per Upvote über die Veröffentlichung.

Heiß diskutierte Einreichungen
🔖 Gespeicherte Artikel
📂 Keine gespeicherten Artikel vorhanden.
Zurück Ziehen Vor
Links: vorheriger Artikel Rechts: nächster Artikel unten: schließen
News NIS-2 Frühwarnung Tier-1 Intel TTP ⏱️ 3 Min vor 10 Min
Artikeldaten werden geladen...

Zurück: vorheriger Vor: nächster
↗ Original-Quelle
Social Reaktionen Deine Reaktion zählt
Einstufung & Relevanz-Poll 0 Stimmen
In sozialen Netzwerken teilen 1-Klick