Calvin-LLC/agentic-hardening-skill
Instructions file CodexOpenCode
Instructions for Calvin-LLC/agentic-hardening-skill, covering harden and rules.
Calvin-LLC/agentic-hardening-skill
Instructions file CodexOpenCode
Instructions for Calvin-LLC/agentic-hardening-skill, covering harden and rules.
Calvin-LLC/agentic-hardening-skill
Skill Claude CodeCodex
Evidence-driven codebase hardening. Audits security (OWASP Top 10:2025), supply chain (inventory vs SBOM vs SLSA v1.2), reliability (OTel + operational limits), tests (sandboxed tiers), and accessibility (WCAG 2.2 AA). Every finding is quoted, matrix-scored, and cited. Does not fix. Reports with file:line and a…
Calvin-LLC/agentic-hardening-skill
Agent
Inherited by every agent. Do not restate this file. One-line reference is enough: "Inherited contract applies. Read agents/contract.md before emitting findings.".
Calvin-LLC/agentic-hardening-skill
Agent
WCAG 2.2 AA static accessibility audit plus a human test plan. Skip unless recon.web is true.
Calvin-LLC/agentic-hardening-skill
Agent
Detects languages, frameworks, lockfiles, CI, sinks, and trust boundaries. Emits a schema-validated profile for downstream audits.
Calvin-LLC/agentic-hardening-skill
Agent
Observability and operational robustness. Logs/traces/metrics plus deadlines, retries, backpressure, races, and per-operation fail-closed vs fail-open.
Calvin-LLC/agentic-hardening-skill
Agent
OWASP Top 10:2025 appsec and supply-chain assessment with Source→Sink evidence. AI feature section only when recon.ai is true.
Calvin-LLC/agentic-hardening-skill
Agent
Discovers tests, coverage config, and gaps. Executes nothing at T0. Higher tiers require host sandbox attestation in the contract.