common-agent-guardrail…
Define deterministic guardrails for agent tool calls — protected paths, test-file locks during bug fixes, post-edit formatters, production approval gates,…
Controls authorized cybersecurity exercises through inject scheduling, safety gates, stop and restart decisions, communications, and synthetic-data boundaries. Use when serving as exercise control or white-team coordinator, not as compliance assessor or whitehat operator.
$ npx -y skills add hoangnguyen0403/agent-skills-standard --skill cyber-exercise-control --agent claude-codeHow it fires
How this skill gets triggered: by you, by Claude, or both.
/cyber-exercise-controlContext preview
The summary Claude sees to decide when to auto-load this skill.
Controls authorized cybersecurity exercises through inject scheduling, safety gates, stop and restart decisions, communications, and synthetic-data boundaries. Use when serving as exercise control or white-team coordinator, not as compliance assessor or whitehat operator.
name: cyber-exercise-control
guardrail: true
description: Controls authorized cybersecurity exercises through inject scheduling, safety gates, stop and restart decisions, communications, and synthetic-data boundaries. Use when serving as exercise control or white-team coordinator, not as compliance assessor or whitehat operator.
metadata:
labels: [cybersecurity, exercise-control, white-team]
triggers:
keywords: [exercise control, white team, exercise inject, stop exercise, restart exercise, exercise safety gate]Coordinate a bounded exercise; control safety and adjudication handoffs without performing attacks or certifying compliance.
cyber-exercise-control/ ├── SKILL.md ├── references/control-log.md └── evals/evals.json
1. Confirm approved plan, authorization, exclusions, runtime support, roles, and synthetic-data boundary. 2. Publish schedule and injects with owner, trigger, expected channel, and abort condition. 3. Log each release, pause, stop, restart, scope change, and escalation with time and authority. 4. Stop on authorization expiry, scope drift, unsafe impact, data exposure, or unsupported runtime. 5. Restart only after fresh authorization/runtime gates and a recorded decision. 6. Hand observations to independent adjudication; preserve evidence and ground truth separately.
Control records carry `engagement_scope_ref`, `skill_version`, `source`, `observed_at`, `finding_status`, `evidence_refs`, `limitations`, and `accountable_owner`.
The portable SDLC standards layer for AI coding agents. Sync once, then work in your own runtime.
Repo: hoangnguyen0403/agent-skills-standard
Define deterministic guardrails for agent tool calls — protected paths, test-file locks during bug fixes, post-edit formatters, production approval gates,…
Draws architecture diagrams as editable draw.io files with a fixed house style, C4 levels, evidence-tagged shapes, and optional multi-view identity checks. Use…
Enforce SOLID principles, guard-clause style, function size limits, and intention-revealing naming across all languages. Use when refactoring for readability,…
Standardize BRD and BRD-lite discovery for business goals, stakeholder impact, current-to-future state, and measurable value outcomes. Use when creating BRD,…
Conduct high-quality, persona-driven code reviews. Use when reviewing PRs, critiquing code quality, or analyzing changes for team feedback.
Maximize context window efficiency, reduce latency, and prevent lost-in-middle issues through strategic masking and compaction. Use when token budgets are…