Framework for building Agent Factories. CLI Native. Everything you will need!
Security audit of a codebase via parallel agents â one per vulnerability class. Reads code fast with Explore agents, cross-checks against current advisories via web search, filters false positives hard. Triggers on 'security scan', 'security audit', 'vulnerability scan', 'check for leaked secrets', 'scan for injection', or scheduled security checks.
ai-advise
Proactive governance advisor â checks standards, decisions, and quality trends during development. Always advisory, NEVER blocks. Three modes: `advise` (post-edit), `gate` (pre-dispatch), `drift` (on-demand decision audit). Trigger for 'governance check', 'advise on this change', 'check for drift', 'is this aligned with active decisions', 'shift-left advisory'. Not for blocking gates â use /ai-verify. Not for narrative code review â use /ai-review.
key-amnesia hygiene
This skill is advisory: it describes the same detection vocabulary as the blocking `secret_guard` PreToolUse hook, so you can catch and avoid secret leaks *before* the hook (if installed) would deny the tool call â and so you still behave correctly if the hook isn't installed.
Konstruct
Knowledge graph for AI agents. Query concepts, walk edges, get advisories.
Cargo Audit Triage
This skill should be used when the user asks to "run cargo audit", "triage cargo audit", "fix audit vulnerabilities", "update audit.toml", "check cargo audit ignores", "clean up audit ignore list", "review audit.toml", "remove stale audit ignores", or mentions resolving Rust security advisories or RUSTSEC identifiers. Provides a systematic workflow for analyzing each vulnerability, attempting updates, and writing motivated ignore entries when updates are not possible.
Io.Github.M2ai Mcp Servers/Mcp Christensen
Clayton Christensen persona agent for strategic advisory using disruption theory
Accessibility Review - WCAG Conformance Audit
Advisory-only accessibility audit. Dispatches a `QA - Web A11y Reviewer` agent to evaluate web content against WCAG 2.2 Level AA, prioritize issues by real-world user impact, and recommend fixes. No changes are made.
safedeps
Gate dependency installs (npm/pip/cargo/go/gem/maven/nuget) with OSV-backed advisory checks, approved-spec ledger, and post-install reorg rollback. Run `safedeps check <eco> <pkg>@<range>` before any install command.
ç§è£ä¼ä¸å®¶ (Peers Advisory Group)
å¼å¯¼ç¨æ·å®æå®æ´çç§è£ä¼æµç¨ï¼éè¿é¡¶çº§åä¸é¢è¢çæºæ §å¸®å©æ¡ä¸»è§£å³å®é é®é¢ã
cast-subagents
Use when suggesting exactly one Codex subagent lineup before work begins for multi-lane tasks: branch/PR review across bugs, security, tests, maintainability, docs, or regression risk; codepath tracing plus docs/API verification; option research with tradeoff synthesis; auth/codebase mapping before risk assessment or planning. Advisory only; no auto-spawn; approval required. Do not use for delegated subagent handoffs, trivial single-file fixes, wording-only edits, one fact lookup, unclear requests, or explicit opt-out.