security-awareness-training

security-awareness-training is a skill for Claude Code, Codex from liuxinye23/CyberStrikeAI. It costs 13 tokens per session (1,277 once invoked), scanned A, original, Apache-2.0.

A security-awareness training guide for teaching people how to recognize and avoid common security risks. It covers passwords, accounts, phishing emails, social engineering, data handling, and physical security.

In plain words
What is it for?
Use it to plan online or in-person lessons, phishing exercises, incident-reporting practice, and training progress tracking.
Why use it?
It helps replace unsafe habits with clearer rules for protecting accounts, devices, information, and workplace access.

Skill for Claude CodeCodex

Written for no agent in particular: nothing here depends on one.

Good fit Use it to plan online or in-person lessons, phishing exercises, incident-reporting practice, and training progress tracking.

Compare 6 skills from other repositories ↓
Install with agentmods
npx agentmods add skills/liuxinye23/cyberstrikeai/security-awareness-training
Install

Getting it into your agent

One page per mod, every tool's command on it. A separate URL per tool would split the same page into five that compete with each other.

Any agent
npx skills add liuxinye23/CyberStrikeAI --skill security-awareness-training
Clone the repo
git clone --depth 1 https://github.com/liuxinye23/CyberStrikeAI

Made for: Claude Code, Codex.

Wrote this? Show the measurements

A badge with what this costs and how it scanned, read live from this page, so it follows the numbers instead of freezing them. Markdown for a README, HTML for a documentation site or a project page.

agentmods badge for security-awareness-training

README.md
[![agentmods](https://agentmods.dev/badge/skills/liuxinye23/cyberstrikeai/security-awareness-training/github.svg)](https://agentmods.dev/skills/liuxinye23/cyberstrikeai/security-awareness-training)
Your own site
<a href="https://agentmods.dev/skills/liuxinye23/cyberstrikeai/security-awareness-training"><img src="https://agentmods.dev/badge/skills/liuxinye23/cyberstrikeai/security-awareness-training/github.svg" alt="Measured on agentmods" height="20"></a>

Or the 80×15 button, for a site that already has a row of RSS and ATOM ones. Only the verdict fits; the numbers stay here.

agentmods 80×15 button for security-awareness-training

Your own site · 80×15
<a href="https://agentmods.dev/skills/liuxinye23/cyberstrikeai/security-awareness-training"><img src="https://agentmods.dev/badge/skills/liuxinye23/cyberstrikeai/security-awareness-training.svg" alt="Reviewed on agentmods" width="80" height="20"></a>
Per session 13 Skills are progressive disclosure: only the name and description are preloaded; the body loads when the skill is used.
When invoked 1,277 The whole file, excluding the scripts and references it only reads on demand.
Security scan A 0 findings. A grade says what 26 rules found in the file — not that it is safe.
Origin original No closer match found in the catalogue.
Token cost

What it costs to keep this loaded

Counted locally with the o200k_base tokenizer, which is exact for GPT models; Claude uses its own tokenizer and its counts differ. Treat this as one consistent yardstick across the catalogue rather than a bill. Prices are per million input tokens.

ModelPer sessionOnce invoked
Fable 5.1 $0.00013 $0.01277
Opus 5 $0.00006 $0.00639
Sonnet 5 $0.00003 $0.00255
Haiku 4.5 $0.00001 $0.00128

Measured 10d ago against content hash 65fe05d5912c, method: parsed. Prices are Anthropic first-party input rates as of 2026-09-10, from the pricing page.

Security

Grade A, and why

security-awareness-training scanned grade A with 0 findings against 26 rules in 11 categories — prompt injection, anti-refusal, data exfiltration, privilege escalation, supply chain, agent snooping, system-prompt leakage, SSRF and excessive agency — measured 10d ago.

A static scan of the body, not an audit. Every finding is printed with the line that produced it so you can judge whether it matters here. A mod is markdown that instructs an agent; that is exactly why what it instructs is worth reading.

Nothing flagged

None of the 26 patterns this scan looks for appear in this file: no shell pipes, no recursive deletes, no credential paths, no hidden text, no instruction-override or anti-refusal phrasing, no agent-config snooping. That is not a guarantee, it is the absence of the things that are checkable.

skills/security-awareness-training/SKILL.md · 285 lines

What it actually says

安全意识培训

概述

安全意识培训是提高组织整体安全水平的重要措施。本技能提供安全意识培训的方法、内容和最佳实践。

培训目标

1. 知识提升

目标:

  • 了解安全威胁
  • 识别安全风险
  • 掌握防护措施
  • 理解安全政策

2. 行为改变

目标:

  • 养成安全习惯
  • 遵守安全规范
  • 主动报告事件
  • 参与安全活动

3. 文化建立

目标:

  • 建立安全文化
  • 提高安全意识
  • 促进安全协作
  • 持续改进

培训内容

1. 基础安全

内容:

  • 密码安全
  • 账户安全
  • 设备安全
  • 网络安全

密码安全:

  • 使用强密码
  • 密码不重用
  • 启用多因素认证
  • 定期更换密码

账户安全:

  • 保护账户信息
  • 不共享账户
  • 及时注销账户
  • 监控账户活动

2. 邮件安全

内容:

  • 识别钓鱼邮件
  • 处理可疑邮件
  • 附件安全
  • 链接安全

钓鱼邮件识别:

  • 检查发件人
  • 检查链接
  • 检查附件
  • 检查内容

处理可疑邮件:

  • 不点击链接
  • 不打开附件
  • 报告安全团队
  • 删除邮件

3. 社交工程

内容:

  • 识别社交工程
  • 防范社交工程
  • 报告可疑行为

常见手段:

  • 假冒身份
  • 紧急情况
  • 权威要求
  • 利益诱惑

防范措施:

  • 验证身份
  • 不轻信
  • 报告可疑
  • 遵守流程

4. 数据安全

内容:

  • 数据分类
  • 数据保护
  • 数据共享
  • 数据销毁

数据保护:

  • 加密敏感数据
  • 安全存储
  • 安全传输
  • 访问控制

数据共享:

  • 最小化共享
  • 使用安全渠道
  • 验证接收方
  • 记录共享

5. 物理安全

内容:

  • 设备安全
  • 办公环境
  • 访客管理
  • 应急响应

设备安全:

  • 锁定屏幕
  • 保护设备
  • 安全存储
  • 及时报告丢失

培训方法

1. 在线培训

优势:

  • 灵活方便
  • 可重复学习
  • 成本较低
  • 易于跟踪

实施:

  • 使用LMS平台
  • 制作培训内容
  • 设置学习路径
  • 跟踪学习进度

2. 面对面培训

优势:

  • 互动性强
  • 即时反馈
  • 深度讨论
  • 建立关系

实施:

  • 定期培训
  • 分组讨论
  • 案例分析
  • 实践演练

3. 模拟演练

优势:

  • 真实场景
  • 实践操作
  • 检验效果
  • 提高能力

实施:

  • 钓鱼邮件演练
  • 社交工程演练
  • 应急响应演练
  • 安全事件演练

培训计划

新员工培训

内容:

  • 安全政策
  • 基础安全知识
  • 工具使用
  • 报告流程

时间:

  • 入职时
  • 第一周
  • 持续跟进

定期培训

内容:

  • 最新威胁
  • 安全更新
  • 案例分析
  • 最佳实践

频率:

  • 季度培训
  • 年度培训
  • 专项培训

专项培训

内容:

  • 特定角色培训
  • 深度培训
  • 认证培训

对象:

  • 管理员
  • 开发人员
  • 安全人员
  • 管理层

评估方法

1. 知识测试

方法:

  • 在线测试
  • 问卷调查
  • 技能评估

指标:

  • 测试分数
  • 通过率
  • 改进情况

2. 行为观察

方法:

  • 模拟演练
  • 实际观察
  • 事件分析

指标:

  • 演练结果
  • 事件数量
  • 报告数量

3. 反馈收集

方法:

  • 培训反馈
  • 满意度调查
  • 建议收集

指标:

  • 满意度
  • 改进建议
  • 培训效果

最佳实践

1. 内容设计

  • 针对性强
  • 实用易懂
  • 案例丰富
  • 持续更新

2. 实施策略

  • 定期培训
  • 多种形式
  • 互动参与
  • 跟踪效果

3. 文化建设

  • 领导支持
  • 全员参与
  • 持续改进
  • 奖励机制

注意事项

  • 内容要实用
  • 形式要多样
  • 跟踪要持续
  • 改进要及时
Changes

What this file has done since we first saw it

Hashed on every crawl. A supply-chain change to an agent config is a question of when, not whether, so the history is kept rather than the latest state alone.

  1. 10d ago First seen · 285 lines · 13 tokens per session scan A 65fe05d5912c

Subscribe to this mod's changes

security-awareness-training is a skill published in the GitHub repository liuxinye23/CyberStrikeAI (0 stars, last pushed 1mo ago), licensed Apache-2.0. It adds 13 tokens to every session and 1,277 once invoked, about $0.0001 per session on Opus 5. A static security scan graded it A with 0 findings. No closer match exists in the catalogue, so it is treated as the original; first seen 2026-08-31.

Related

Other skills, from other repositories

hr-onboarding

A new-hire onboarding plan as a single page — first week schedule, buddy + manager intro, learning track, equipment checklist, and "you're set when…" outcomes. Use when the brief mentions "onboarding", "new hire", "first week plan", or "入职".

nexu-io/open-design · 62 tokens

book-mirror

Take any book (EPUB/PDF), produce a personalized chapter-by-chapter analysis. Each chapter is preserved in detail (The Chapter) and mirrored back to the reader's actual life (The Mirror) using brain context. The mirror observes and resonates — a friend pointing out parallels, NOT a consultant rearranging the reader's…

garrytan/gbrain · 138 tokens

miniapp

Build a tiny interactive HTML playground only when someone asks to see, play with, or step through a mechanism.

yc-software/qm · 25 tokens

eli5

Explain research, papers, or technical ideas in plain English with minimal jargon, concrete analogies, and clear takeaways. Use when the user says "ELI5 this", asks for a simple explanation of a paper or research result, wants jargon removed, or asks what something technically dense actually means.

companion-inc/feynman · 63 tokens

deck-course-module

A course or workshop slide template with persistent learning goals, teaching pages, multiple-choice self-tests, and a wrap-up.

nexu-io/html-anything · 25 tokens

master-yinguang

A reference-based assistant for questions about Yinguang and Pure Land Buddhism, a Buddhist tradition focused on faith, ethical living, and practice connected with rebirth in the Pure Land. It can answer in Yinguang’s historical teaching style.

xr843/Master-skill · 274 tokens