npx claudepluginhub agentsecops/secopsagentkit --plugin offsec-skillsThis skill uses the workspace's default tool permissions.
<!--
Designs and optimizes AI agent action spaces, tool definitions, observation formats, error recovery, and context for higher task completion rates.
Compares coding agents like Claude Code and Aider on custom YAML-defined codebase tasks using git worktrees, measuring pass rate, cost, time, and consistency.
Designs, implements, and audits WCAG 2.2 AA accessible UIs for Web (ARIA/HTML5), iOS (SwiftUI traits), and Android (Compose semantics). Audits code for compliance gaps.
Brief overview of what this skill provides and its security operations context.
Provide the minimal example to get started immediately:
# Example command or workflow
tool-name --option value
For straightforward step-by-step operations:
For complex multi-step operations, use a checkable workflow:
Progress: [ ] 1. Initial setup and configuration [ ] 2. Run primary security scan or analysis [ ] 3. Review findings and classify by severity [ ] 4. Apply remediation patterns [ ] 5. Validate fixes with re-scan [ ] 6. Document findings and generate report
Work through each step systematically. Check off completed items.
For more workflow patterns, see references/WORKFLOW_CHECKLIST.md
When validation and iteration are needed:
./scripts/validator_example.py output.yamlNote: Move detailed validation criteria to references/ if complex.
scripts/)Executable scripts for deterministic operations. Use scripts for low-freedom operations requiring consistency.
example_script.py - Python script template with argparse, error handling, and JSON outputexample_script.sh - Bash script template with argument parsing and colored outputvalidator_example.py - Validation script demonstrating feedback loop patternWhen to use scripts:
references/)On-demand documentation loaded when needed. Keep SKILL.md concise by moving detailed content here.
EXAMPLE.md - Template for reference documentation with security standards sectionsWORKFLOW_CHECKLIST.md - Multiple workflow pattern examples (sequential, conditional, iterative, feedback loop)When to use references:
assets/)Templates and configuration files used in output (not loaded into context). These are referenced but not read until needed.
ci-config-template.yml - Security-enhanced CI/CD pipeline with SAST, dependency scanning, secrets detectionrule-template.yaml - Security rule template with OWASP/CWE mappings and remediation guidanceWhen to use assets:
Description and example of common usage pattern.
Additional patterns as needed.
Solution: Steps to resolve.