DevOps & Security skills

Browse reusable Agent Skills, each with a clear purpose and practical guidance.

atmos-vendoring

Component vendoring: vendor.yaml manifests, pulling from Git/S3/HTTP/OCI/Terraform Registry, native vendor update, vendor diff, vendor config, and reviewed local component copies

1.33k repo starsObserved in 1 repos
DevOps & Security

atmos-version

Atmos Version Tracker: version tracks, lock files, managed external dependency versions, atmos version track commands, !version, file managers, update policy, pinning, and CI verification

1.33k repo starsObserved in 1 repos
DevOps & Security

atmos-workflows

Workflow automation: native step types, multi-step workflows, parallel/matrix/wait/container/emulator steps, when: conditions (CEL), require/assert preconditions, output steps, retries, dependencies, and cross-component orchestration

1.33k repo starsObserved in 1 repos
DevOps & Security

security-remediate

Fix open Dependabot and CodeQL/code-scanning alerts directly on the current branch. Triggered automatically by the security-remediate-trigger PostToolUse hook after a git push where GitHub reports open vulnerabilities; can also be invoked manually. Never opens a new PR or issue - commits land on the branch that's already open.

1.33k repo starsObserved in 1 repos
DevOps & Security

cso

Chief Security Officer mode. Infrastructure-first security audit: secrets archaeology, dependency supply chain, CI/CD pipeline security, LLM/AI security, skill supply chain scanning, plus OWASP Top 10, STRIDE threat modeling, and active verification. Two modes: daily (zero-noise, 8/10 confidence gate) and comprehensive (monthly deep scan, 2/10 bar). Trend tracking across audit runs. Use when: "security audit", "threat model", "pentest review", "OWASP", "CSO review". (gstack) Voice triggers (speech-to-text aliases): "see-so", "see so", "security review", "security check", "vulnerability scan", "run security".

1.33k repo starsObserved in 1 repos
DevOps & Security

arbeitnehmerueberwachung-it

Wenn es um Arbeitnehmerueberwachung It in NIS-2, Cybersecurity und IT-Sicherheits-Compliance geht: prüft Frist, Form, Zuständigkeit, Rechtsweg und Sofortmaßnahmen; liefert eine Fristen- und Risikoampel mit Sofortschritten.

1.33k repo starsObserved in 1 repos
DevOps & Security

audit-nachweisordner

Wenn es um Audit Nachweisordner in NIS-2, Cybersecurity und IT-Sicherheits-Compliance geht: prüft Frist, Form, Zuständigkeit, Rechtsweg und Sofortmaßnahmen; liefert eine Fristen- und Risikoampel mit Sofortschritten.

1.33k repo starsObserved in 1 repos
DevOps & Security

automation-monitoring

Wenn es um Automationen und Monitoring in Mittelstands-Corporate/M&A geht: prüft Frist, Form, Zuständigkeit, Rechtsweg und Sofortmaßnahmen; liefert eine Fristen- und Risikoampel mit Sofortschritten.

1.33k repo starsObserved in 1 repos
DevOps & Security

automatischer-aktualisierer

Wenn es um /automatischer-aktualisierer — Automatische Aktualisierung mit Diff-Review in Kanzlei-Builder-Hub geht: prüft Frist, Form, Zuständigkeit, Rechtsweg und Sofortmaßnahmen; liefert eine Fristen- und Risikoampel mit Sofortschritten.

1.33k repo starsObserved in 1 repos
DevOps & Security

backup-ransomware-banking-dual-besonders

Wenn es um Backup Ransomware Resilience in NIS-2, Cybersecurity und IT-Sicherheits-Compliance geht: prüft Frist, Form, Zuständigkeit, Rechtsweg und Sofortmaßnahmen; liefert eine Fristen- und Risikoampel mit Sofortschritten.

1.33k repo starsObserved in 1 repos
DevOps & Security