_contract
01Calvin-LLC/agentic-hardening-skill
Agent
Inherited by every agent. Do not restate this file. One-line reference is enough: "Inherited contract applies. Read agents/contract.md before emitting findings.".
Evidence-driven codebase hardening skill. Audits OWASP Top 10:2025, supply chain (SBOM vs SLSA v1.2), reliability, tests, and WCAG 2.2 AA. Reports only. Agent Skills layout.
Calvin-LLC/agentic-hardening-skill
Agent
Inherited by every agent. Do not restate this file. One-line reference is enough: "Inherited contract applies. Read agents/contract.md before emitting findings.".
Calvin-LLC/agentic-hardening-skill
Agent
WCAG 2.2 AA static accessibility audit plus a human test plan. Skip unless recon.web is true.
Calvin-LLC/agentic-hardening-skill
Agent
Detects languages, frameworks, lockfiles, CI, sinks, and trust boundaries. Emits a schema-validated profile for downstream audits.
Calvin-LLC/agentic-hardening-skill
Agent
Observability and operational robustness. Logs/traces/metrics plus deadlines, retries, backpressure, races, and per-operation fail-closed vs fail-open.
Calvin-LLC/agentic-hardening-skill
Agent
OWASP Top 10:2025 appsec and supply-chain assessment with Source→Sink evidence. AI feature section only when recon.ai is true.
Calvin-LLC/agentic-hardening-skill
Agent
Discovers tests, coverage config, and gaps. Executes nothing at T0. Higher tiers require host sandbox attestation in the contract.
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: