nitinjain999

54 mods across 1 repository, 40 stars between them.

setup-agents

49

nitinjain999/platform-skills

Command

Scaffold a multi-agent AI setup for any repo. Scans the codebase, interviews the developer, generates agent configs for whichever AI tools the repo uses (Copilot, Claude Code, Cursor, Codex, Windsurf). Use when asked to "set up agents", "scaffold Copilot agents", or "create an AGENTS.md".

40 2d ago A 74 tokens original Apache-2.0

supply-chain

50

nitinjain999/platform-skills

Command

Secure the software supply chain from source to running container. Covers Cosign keyless image signing (Sigstore/Rekor), SBOM generation and attestation (Syft), vulnerability scanning with severity gates (Trivy/Grype), SLSA Level 2 provenance, and Kyverno/OPA admission enforcement. All open-source, no license cost.…

40 2d ago A 116 tokens original Apache-2.0

terraform

51

nitinjain999/platform-skills

Command

Runs through the full Terraform validation pipeline — fmt, validate, tflint, security scan — and reviews a module or plan for blast radius, IAM risk, and state impact.

40 2d ago A 38 tokens original Apache-2.0

triage

52

nitinjain999/platform-skills

Command

Triages a PR comment — from a bot (Copilot, CI) or a human reviewer. Fetches the comment and diff via gh CLI, classifies it, applies the fix directly to the file if valid, posts a reply on the thread, and resolves it. Run from inside the repo.

40 2d ago A 64 tokens original Apache-2.0

trivy

53

nitinjain999/platform-skills

Command

Scan container images, filesystems, git repos, and existing SBOMs for CVEs, secrets, and license violations using Trivy. Covers local CLI, CI severity gates with SARIF upload, and continuous monitoring via Trivy Operator (Flux HelmRelease). Use when asked to "scan my image", "check for CVEs", "scan this repo for…

40 2d ago A 131 tokens original Apache-2.0

zizmor

54

nitinjain999/platform-skills

Command

Audit GitHub Actions workflows, composite actions, Dependabot configs, and pre-commit configs for security findings using zizmor — template injection, credential persistence, unpinned uses, over-broad permissions, impostor commits. Covers local CLI, auto-fix, zizmor.yml policy, severity-based CI gates, SARIF upload…

40 2d ago A 175 tokens original Apache-2.0