Skills

All Skills

policy

Skills tagged with #policy

@chainloop-dev

custom-builtin-functions

Create a custom builtin function to be used in the Rego policy engine

chainloop-dev/chainloop+3 more
5mo ago
5340
@chromium

chrome-policy-creation

Guide for adding new enterprise policies to Chromium. Complete guide for policy definitions, pref mapping, and writing tests.

chromium/chromium+6 more
5mo ago
23.2K0
@h5i-dev

Driving h5i

A **box** is a disposable development environment: a git worktree on its own branch, confined by a pinned, fail-closed policy. Code, toolchain, dev server and agent run inside it. Nothing reaches the host except what you export.

h5i-dev/h5i
2mo ago
5020
@ankitjha67

product-architect

Complete product development system with 31 specialized agents and 23 frameworks. Use when user asks to build a product, write a PRD, create a roadmap, plan an MVP, design an app, do a security audit, create a financial model, plan hiring, launch a product, set up operations, prepare for IPO, or write a compliance policy. Also triggers on help me plan, product strategy, go-to-market, fundraising, pitch deck, unit economics, competitive analysis, user personas, sprint planning, SOP, checklist for, or how do I start a company. Do NOT use for general knowledge questions, coding tutorials, or creative writing unrelated to product development.

ankitjha67/product-architect
5mo ago
760
@spatie

laravel-permission-development

Build and work with Spatie Laravel Permission features, including roles, permissions, middleware, policies, teams, and Blade directives.

spatie/laravel-permission
5mo ago
12.9K0
@sirkirby

firewall-auditor

Audit UniFi firewall policies for conflicts, redundancies, security gaps, and best practices. Use when asked to review firewall rules, check for security issues, audit network policies, or optimize firewall configuration.

sirkirby/unifi-network-mcp+8 more
5mo ago
1930
@oliver-kriska

ash-framework

Ash Framework patterns — resources, actions, domains, policies, AshPhoenix forms, LiveView, AshPostgres migrations. Use when editing Ash resources, changes, checks, types, validations, or domain code interfaces.

oliver-kriska/claude-elixir-phoenix+42 more
3mo ago
4230
@subinium

Adding a new skill to vibesubin

This doc is canonical. If ADDING-A-SKILL.md and CLAUDE.md ever disagree on skill-authoring mechanics, CLAUDE.md wins on policy (what invariants exist) and this file wins on mechanics (what files and sections are needed). Both must stay in sync on category caps (10 + 1).

subinium/vibesubin+9 more
5mo ago
250
@kevin-burns

azadvertizer

[AzAdvertizer](https://www.azadvertizer.net) (by Julian Hayward) tracks Azure governance capabilities — Policies, Initiatives (policy sets), and RBAC Roles — and publishes them as **downloadable CSV exports**. There is **no API**. This skill turns those CSVs into deterministic offline lookups: f

kevin-burns/claude-skills+10 more
2mo ago
50
@PotatoDog1669

skills-hub

Use this skill when the user wants to discover, inspect, install, or apply Skills Hub presets, kits, AGENTS.md policies, or skill packages for a project. It guides the agent to use the Skills Hub CLI to search presets, inspect their policy and selected skills, install them as kit artifacts, and apply them with optional temporary skill overrides after user confirmation.

PotatoDog1669/skills-hub
5mo ago
80
@atharvnaik1

ipaship-audit

Use when auditing iOS/Android app submissions for compliance with Apple App Store Review Guidelines or Google Play Developer Policies. Scan .ipa, .apk, or .zip files against official store policies, generate structured compliance reports, and identify violations with remediation steps.

app-storecomplianceauditiosandroidapple
atharvnaik1/ipaship-audit
4mo ago
340
@Smana

crossplane-renderer

Renders and validates Crossplane compositions with security and policy checks. Automatically activates when testing compositions, rendering examples, or validating resources with Polaris, kube-linter, and Datree. Works standalone or as part of complete KCL validation workflow.

Smana/cloud-native-ref+3 more
5mo ago
900
@torkjacobs
MCP

Tork Governance

AI agent governance for MCP: PII detection, policy enforcement, compliance, and kill switch.

mcpgithubai
torkjacobs/tork-governance
5mo ago
0
@ChronoAIProject

api-fetch-wrapper

The case that breaks first in production — a skill that hits an external service. This example covers the four things every such skill needs: secret handling, retry policy, error normalisation, and no-leak-on-failure logging.

ChronoAIProject/Ornn
4mo ago
120
@sirkirby
MCP

UniFi Access MCP

Manage UniFi Access doors, credentials, policies, visitors, and events via MCP.

mcpgithub
sirkirby/unifi-mcp+2 more
5mo ago
0
@UseAI-pro

config-hardener

Audit and harden your OpenClaw configuration. Checks AGENTS.md, gateway settings, sandbox config, and permission policies for security weaknesses.

UseAI-pro/openclaw-skills-security+5 more
5mo ago
300
@Arcadi4

amortized-algorithms

Use when analyzing sequences of data-structure operations with aggregate analysis, accounting credits, potential functions, binary counters, multipop stacks, dynamic tables, resizing policies, or amortized versus average-case reasoning

Arcadi4/nerdy+19 more
5mo ago
50
@Guffawaffle
MCP

Lex

Episodic memory and architectural policy for AI agents. Frames, Atlas, and Policy.

mcpaimemory
Guffawaffle/lex+1 more
5mo ago
0
@ThirdKeyAI

symbiont

AI-native agent runtime with typestate-enforced ORGA reasoning loop, Cedar policy authorization, CommunicationPolicyGate for inter-agent governance, ToolClad declarative tool contracts, knowledge bridge, zero-trust security, multi-tier sandboxing, webhook verification, markdown memory, skill scanning, metrics, scheduling, symbi init/run/up CLI, and a declarative DSL

ThirdKeyAI/Symbiont
5mo ago
340
@Fulcrum-Governance
MCP

Io.Github.Dewars30/Fulcrum

AI governance MCP server for policy enforcement, cost control, and observability.

mcpgithubai
Fulcrum-Governance/fulcrum-io
5mo ago
0
@mblua

role-skill-boundary-audit

Audit where governance instructions belong (Role.md, skill, global policy, workflow docs, memory, or an agent-boundary change); enforce minimal verbosity in roles and skills. Diagnostic by default.

mblua/AgentsCommander
2mo ago
100
@managedcode

mcaf-ci-cd

Design or refine CI/CD workflows, quality gates, release flow, and safe AI-assisted pipeline authoring. Use when adding or changing build pipelines, release stages, IaC-driven environments, or deployment rollback policy.

managedcode/MCAF+4 more
5mo ago
460
@Azure-Samples

apim-bicep

Guide for building Bicep files for Azure API Management (APIM) and related Azure services. Use when users want to create, modify, or understand Bicep templates for APIM instances, APIs, backends, subscriptions, policies, products, loggers, diagnostics, and MCP servers. This skill provides Bicep syntax, patterns from Azure Verified Modules, and examples from this repository.

Azure-Samples/AI-Gateway+4 more
5mo ago
8870
@Acacian
MCP

Aegis — AI Agent Governance

Policy-based governance for AI agent tool calls. YAML policy, approval gates, audit logging.

mcpgithubai
Acacian/aegis
5mo ago
0
@laravel

laravel-best-practices

Apply this skill whenever writing, reviewing, or refactoring Laravel PHP code. This includes creating or modifying controllers, models, migrations, form requests, policies, jobs, scheduled commands, service classes, and Eloquent queries. Triggers for N+1 and query performance issues, caching strategies, authorization and security patterns, validation, error handling, queue and job configuration, route definitions, and architectural decisions. Also use for Laravel code reviews and refactoring existing Laravel code to follow best practices. Covers any task involving Laravel backend PHP code patterns.

laravel/boost+3 more
5mo ago
3.3K0
@automateyournetwork

aci-change-deploy

Safe ACI policy change deployment - ServiceNow CR lifecycle, pre/post-change fault baselines, APIC policy application, automatic rollback on fault delta, and GAIT audit trail. Use when deploying ACI policy changes, creating tenants or EPGs, pushing config to APIC, or running a change window with rollback protection.

automateyournetwork/netclaw+71 more
5mo ago
2720
@attilaszasz

adr-authoring

Defines the canonical MADR format, lifecycle rules, numbering policy, and SAD catalog contract for standalone ADRs under specs/adrs/.

attilaszasz/sdd-pilot+30 more
5mo ago
600
@ellanetworks

ella-core-api

Query and manage a live Ella Core 5G private network instance via its REST API. Use when the user asks about subscribers, data usage, QoS policies, radios, data networks, routes, NAT, flow reports, audit logs, operator configuration, or any runtime state of the Ella Core network. Also use when the user asks to provision, update, or delete network resources.

ellanetworks/core
5mo ago
670
@Azure

policy-authoring

Conventions and patterns for creating policy authoring types in the Azure API Management policy toolkit. Use this skill when creating or modifying config records in src/Authoring/Configs/ or adding methods to section context interfaces.

Azure/azure-api-management-policy-toolkit+5 more
5mo ago
830
@Hack23

architecture-documentation

C4 architecture model, security architecture, Mermaid diagrams, SECURITY_ARCHITECTURE.md, and comprehensive documentation per Hack23 Secure Development Policy

Hack23/European-Parliament-MCP-Server+16 more
2mo ago
220
@jeremylongshore

policy

Author MCP tool-call policy rules without hand-editing access.json

jeremylongshore/claude-code-slack-channel+1 more
5mo ago
150
@skill-mill

manage-governance

Manage governance policies for skills in config/governance.yaml. Set, remove, or list usage policies.

skill-mill/agent-skill-harbor+1 more
5mo ago
120
@zfy465914233

domain-routing

Use when deciding where a knowledge card should live in the knowledge tree, choosing a major domain and subdomain, designing routing policy, or diagnosing why a card was routed to the wrong folder. Reads the repository routing guide and policy before deciding.

zfy465914233/lore-agent
5mo ago
60
@imran-siddique
MCP

Io.Github.Imran Siddique/Agentos

Build and manage policy-compliant AI agents with safety enforcement and compliance checking

mcpgithubai
imran-siddique/agent-os
5mo ago
0
@mcp-registry
MCP

Policycheck

AI seller verification and policy risk analysis for any online store.

mcpgithubai
5mo ago
0
@MCPower-Security
MCP

MCPower Security Proxy

Security proxy that wraps MCP servers with real-time monitoring and policy enforcement

mcpgithubai
MCPower-Security/mcpower-proxy+1 more
5mo ago
0
@zap-studio

zap-permit-policy-authoring

Author typed authorization policies with @zap-studio/permit using createPolicy, allow/deny/when, condition combinators, has/hasRole, and mergePolicies vs mergePoliciesAny decision strategies.

zap-studio/monorepo+2 more
5mo ago
1540
@tpvasconcelos

dropping-and-adding-support-for-python-versions

Keeps supported Python versions aligned across CI, configs, and docs. Use when adding a new Python version or dropping an end-of-life version per the official Python support policy.

tpvasconcelos/ridgeplot
5mo ago
2390
@MakFly

symfony:api-platform-filters

Deliver robust API Platform contracts in Symfony with explicit operations, mapping, and policy-safe behavior. Use for api platform filters tasks.

MakFly/superpowers-symfony+29 more
5mo ago
860
@Azure-Samples

sample-creator

Guide for creating new Azure API Management (APIM) usage samples in this repository. Use when users want to create a new sample folder under `samples/` that demonstrates APIM policies, API configurations, or integration patterns. This skill provides the required folder structure, file templates, naming conventions, and step-by-step guidance based on the `samples/_TEMPLATE` structure.

Azure-Samples/Apim-Samples
5mo ago
800
@altmetric
MCP

Altmetric Mcp

MCP server for Altmetric APIs - track research attention across news, policy, social media, and more

mcpgithubapisearch
altmetric/altmetric-mcp
5mo ago
0
@microsoft

expense-report

File and validate employee expense reports according to Contoso company policy. Use when asked about expense submissions, reimbursement rules, receipt requirements, spending limits, or expense categories.

microsoft/agent-framework+7 more
5mo ago
7.9K0
@elliot35

deterministic-agent-control-protocol

Govern tool execution through the Deterministic Agent Control Protocol policy gateway

elliot35/deterministic-agent-control-protocol+1 more
5mo ago
1470
@thinkneo-ai
MCP

ThinkNEO Control Plane

Enterprise AI governance: spend, guardrails, policy, budgets, compliance, and provider health.

mcpai
thinkneo-ai/mcp-server
5mo ago
0
@managedcode

mcaf-adr-writing

Create or update an ADR under `docs/ADR/` for architectural decisions, dependency changes, data-model changes, or cross-cutting policy shifts. Use when the user asks to write, update, or document an ADR, record a design decision, capture architecture trade-offs, or justify a repo-wide technical policy.

managedcode/Storage+32 more
5mo ago
1320
@halfprice06

rlmgrep-usage

Default repo search policy: whenever you need to search or read through files or directories, start with rlmgrep. Use rg/grep first only for strict literal/regex exhaustiveness or very large raw scans. Includes scoping and high-signal rlmgrep flag patterns.

halfprice06/rlmgrep
5mo ago
640
@ya-xyz
MCP

Yault AESP

Crypto payments for the agent economy — policy-gated vault operations under human control

mcp
ya-xyz/aesp
5mo ago
0
@MicrosoftDocs

azure-active-directory-b2c

Expert knowledge for Azure Active Directory B2C development including troubleshooting, best practices, decision making, architecture & design patterns, limits & quotas, security, configuration, integrations & coding patterns, and deployment. Use when designing B2C user flows/custom policies, MFA/IdP sign-in, app/API registration, CI/CD deployment, or logging, and other Azure Active Directory B2C related development tasks. Not for Azure Information Protection (use azure-information-protection), Azure Security (use azure-security), Azure Role-based access control (use azure-rbac), Azure Sentinel (use azure-sentinel).

MicrosoftDocs/Agent-Skills+120 more
5mo ago
4090
@workstream-labs

add-policy

Use when adding, modifying, or reviewing VS Code configuration policies. Covers the full policy lifecycle from registration to export to platform-specific artifacts. Run on ANY change that adds a `policy:` field to a configuration property.

workstream-labs/workstreams+10 more
5mo ago
530
@SCStelz

ai-agent-posture

Use this skill when asked to audit, assess, or report on AI agent security posture across Copilot Studio and Microsoft 365 Copilot agents. Triggers on keywords like "AI agent posture", "agent security audit", "Copilot Studio agents", "agent inventory", "agent authentication", "unauthenticated agents", "agent tools", "MCP tools on agents", "agent knowledge sources", "XPIA risk", "agent sprawl", "AI agent risk", "agent governance", or when investigating AI agent configurations, access policies, tool permissions, or credential exposure. This skill queries the AIAgentsInfo table in Advanced Hunting to produce a comprehensive security posture assessment covering agent inventory, authentication gaps, access control misconfigurations, MCP tool proliferation, knowledge source exposure, XPIA email exfiltration risk, hard-coded credential detection, HTTP request risks, creator governance, and agent sprawl analysis. Supports inline chat and markdown file output.

SCStelz/security-investigator+18 more
5mo ago
520