Getting it into your agent
One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.
npx skills add charlieviettq/awesome-agent-skill --skill biz-corporate-governancegit clone --depth 1 https://github.com/charlieviettq/awesome-agent-skillWrote this? Show the measurements
A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.
[](https://agentmods.dev/skills/charlieviettq/awesome-agent-skill/biz-corporate-governance)<a href="https://agentmods.dev/skills/charlieviettq/awesome-agent-skill/biz-corporate-governance"><img src="https://agentmods.dev/badge/skills/charlieviettq/awesome-agent-skill/biz-corporate-governance/github.svg" alt="Measured on agentmods" height="20"></a>Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.
<a href="https://agentmods.dev/skills/charlieviettq/awesome-agent-skill/biz-corporate-governance"><img src="https://agentmods.dev/badge/skills/charlieviettq/awesome-agent-skill/biz-corporate-governance.svg" alt="Reviewed on agentmods" width="80" height="20"></a>What it costs to keep this loaded
Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.
| Model | Per session | Once invoked |
|---|---|---|
| Fable 5.1 | $0.00252 | $0.06435 |
| Opus 5 | $0.00126 | $0.03217 |
| Sonnet 5 | $0.00050 | $0.01287 |
| Haiku 4.5 | $0.00025 | $0.00643 |
Grade A, and why
"biz-corporate-governance" scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 9d ago.
A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.
Nothing flagged
None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.
This is a copy
95% identical to biz-corporate-governance — 9 lines differ, which has more behind it and is treated as the original. This page carries a canonical link to it rather than competing with it.
How it starts
The opening of the file, as written. The whole thing — 472 lines — stays where its author put it; the contents beside it link to each section on GitHub.
公司治理實務工具箱(Corporate Governance Playbook)
定位
公司治理在 EMBA 作業常見兩種場景:
- 診斷個案:某公司治理失靈(舞弊、內線、利益衝突)的原因與改革建議
- 設計實務:IPO 前、家族企業法人化時的治理結構升級
本 skill 提供實務操作導向的 playbook,涵蓋董事會、委員會、三道防線、獨董治理、利害關係人溝通、危機情境。
與相近 Asgard skill 的邊界:
grad-governance— 公共治理 / 多層次治理學理grad-strat-agency— 代理理論(學理層)grad-strat-stakeholder— 利害關係人理論(學理層)tw-fintech-compliance— 金融科技合規- 本 skill — 上市公司 / IPO / 家族企業治理實務
何時使用
觸發條件
- IPO 前治理結構設計
- 董事會年度評估與改選
- 獨立董事選任
- 治理危機(舞弊、弊案、關聯交易爭議)
- ESG 治理報告撰寫
- 家族企業法人化
- EMBA 公司治理、金融、法律、ESG 課程作業
不適用
- 公共政策 / 非營利治理 → Asgard
grad-governance - 董事會薪酬技術細節 → Asgard
algo-hr-compensation - 財報舞弊識別 → Asgard
biz-financial-ratios、data-financial-analysis - 個人領導風格選擇 → 本 repo
ops-leadership-styles
IRON LAW — 公司治理的三條鐵律
IRON LAW 1:治理是「對的人在對的位置做對的事」,
不是「寫對章程」
許多公司有完整治理文件但仍爆雷,因關鍵職位被「人頭化」
(獨董是老闆的朋友、審計委員不敢挑戰 CEO)。
治理的實質 = 獨立性 + 能力 + 情境勇氣。
IRON LAW 2:三道防線不是三個部門,是三層責任
第一道:業務單位自我管控(不是「沒人管」)
第二道:風管、法遵、合規(不是「寫 SOP 就好」)
第三道:內部稽核(不是「主管機關檢查才動」)
三線間須有權責清楚的升級機制,
否則「業務跳過法遵直達 CEO」是多數弊案根源。
IRON LAW 3:家族企業治理 ≠ 家族成員坐董事會
家族成員自動進董事會 = 家族治理表層化。
真正治理化:
(1)家族議題由「家族委員會」先議,再向董事會提案
(2)董事會獨立董事席次足以形成實質制衡
(3)CEO/總經理需向董事會負責,非向「老闆個人」
Rationalization Table — 當 Claude 想「本案例外」時,先自問
| 可能想 | 但 Iron Law 仍適用,因為 |
|---|---|
| 「公司章程齊備、ESG 報告完整,就歸類為治理成熟」 | 文件齊 ≠ 治理實質;必須測試關鍵職位是否由有實權的人擔任(而非人頭) |
| 「第一道業務、第二道法遵、第三道內稽各部門 OK 就行」 | 三道是責任層而非組織圖;小公司可能一人兼兩層,必須檢視責任是否真落實 |
| 「家族成員都在董事會,算家族治理完備」 | 這是表層化;真治理化須有家族委員會、獨董制衡、所有權與經營權分離 |
核心架構:公司治理的四層次
┌────────────────────────────────────────────┐
│ Layer 4:外部監督 │
│ 主管機關、交易所、會計師、媒體、股東 │
│ 工具:公開揭露、公司治理評鑑 │
└────────────────────────────────────────────┘
↑ 監督
┌────────────────────────────────────────────┐
│ Layer 3:董事會與委員會 │
│ 董事會組成、審計/薪酬/提名委員會 │
│ 獨立董事、董事會評估 │
└────────────────────────────────────────────┘
↑ 指導與監督
┌────────────────────────────────────────────┐
│ Layer 2:管理階層(CEO 團隊) │
│ 執行長、財務長、法務長、稽核長 │
│ 策略執行、風險管理、內控制度 │
└────────────────────────────────────────────┘
↑ 執行
┌────────────────────────────────────────────┐
│ Layer 1:業務與營運單位 │
│ 第一道防線:業務自我管控 │
└────────────────────────────────────────────┘
What ships with it
7 files beside SKILL.md in the same directory: the scripts, references and assets a skill reads on demand. Not counted in the per-session cost; read them before you install if any of them is executable.
- examples/governance-crisis-diagnosis.md 10 KB
- examples/ipo-governance-design.md 9.2 KB
- references/board-composition.md 8.2 KB
- references/emba-governance-courses.md 5.8 KB
- references/ipo-governance-roadmap.md 8.4 KB
- references/three-lines-of-defense.md 3.5 KB
- references/tw-governance-regulation.md 8.1 KB
What this file has done since we first saw it
Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.
- 9d ago First seen · 472 lines · 252 tokens per session scan A dae10f6ed1e9
"biz-corporate-governance" is a skill published in the GitHub repository charlieviettq/awesome-agent-skill (25 stars, last pushed 1mo ago), licensed MIT. It adds 252 tokens to every session and 6,435 once invoked, about $0.0013 per session on Opus 5. A static security scan graded it A with 0 findings. It is 95% identical to biz-corporate-governance, differing in 9 lines, and is treated as a copy.
Other skills, from other repositories
subcontractor-payment-tracker
Track subcontractor payments, lien waivers, and compliance. Manage payment schedules and documentation.
procurement-reviewer
Reviews a proposal, business case, deck or vendor contract in character as a Head of Procurement archetype, then saves a structured review document with a verdict, findings that cite the artifact, commercial risks and five interrogation questions. Use when the user asks for a procurement review, a commercial or…
insurance-claims
Analyze an insurance claims processing system for lifecycle completeness, straight-through processing automation, fraud detection coverage, reserve estimation methodology, subrogation recovery workflows, and regulatory compliance with state prompt payment laws..
revrec-saas
Generate an ASC 606 / IFRS 15 revenue recognition engine for SaaS — the five-step model (identify contract, identify performance obligations, determine transaction price, allocate to performance obligations, recognize as POs are satisfied) applied to subscription contracts.
credit-risk
Audit credit risk modeling software for scoring algorithm accuracy, regulatory compliance (ECOA, FCRA, SR 11-7), bias and disparate impact testing, model governance lifecycle, and explainability..
kyc-aml-screener
Generate a production-grade KYC / AML / sanctions screening pipeline for customer onboarding, transaction monitoring, and ongoing review. Triggers: "KYC", "AML", "OFAC", "sanctions screening", "PEP".