cybersecurityRuns defensive security: alert triage, compromise investigation, attack paths, vulnerability prioritization, detection, and risk reporting. Use when an alert, a suspicious login, a reported email, encrypted files, or a possible compromise needs scoping and containment; when deciding what to patch first out of a scanner or pentest backlog; when hardening identity, endpoints, segmentation, cloud tenants, or a build pipeline; when writing or tuning detections nobody trusts; when a vendor questionnaire, SOC 2, ISO 27001, PCI, HIPAA, GDPR or NIS2 evidence is due; when a notification clock may already be running; when scoping an authorized test or a disclosure; or when a finding has to be written so an engineer, an executive or a board decides. Covers evidence handling, token eviction, and building a security program from nothing. Not for line-by-line secure code fixes (`security-best-practices`), STRIDE notation depth (`threat-modeling`), or implementing login flows (`auth`).
Install via ClawdBot CLI:
clawdbot install ivangdavila/cybersecurityGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Calls external URL not in known-safe list
https://clawic.com/skills/cybersecurityAudited Apr 17, 2026 · audit v1.0
Generated May 2, 2026
When a security operations center receives an alert of potential data exfiltration, the skill guides triage: preserve evidence logs, label observations vs. inferences, and recommend containment steps without destroying artifacts. The cybersecurity skill ensures the analyst follows authorization boundaries and builds a hypothesis.
During a design review of a multi-tenant SaaS platform, the skill helps identify trust boundaries, assets (PII, tokens), and attack paths. It prioritizes controls that reduce immediate risk (e.g., input validation, rate limiting) and documents findings with severity explanations for engineering teams.
After a ransomware incident is contained, the skill compresses technical details into business impact (downtime cost, data loss likelihood) and decision-ready options (pay vs. restore from backup). The output avoids jargon and includes confidence levels for each recommendation.
When reviewing a payment gateway's code for OWASP Top 10 vulnerabilities, the skill flags potential SQL injection and insecure deserialization. It provides practical next steps: add parameterized queries, enable WAF rules, and schedule a penetration test post-deployment.
The skill helps design a tabletop scenario: attacker gains access via phishing email in hospital administration. It outlines success metrics (time to detection, decision-making under pressure) and adapts content for IT, privacy officers, and clinical leadership.
Offers cybersecurity consulting as a service (e.g., fractional CISO, incident response retainers). Revenue comes from hourly or project fees for triage, threat modeling, and reporting.
The skill is licensed as a plugin for Security Information and Event Management (SIEM) products, enhancing analyst workflows with structured triage and reporting features. Revenue via per-seat or per-incident licensing.
Uses the skill to run training exercises (tabletop, red/blue team simulations) for enterprises. Revenue from course fees or packaged simulation kits sold to internal training teams.
💬 Integration Tip
Integrate the skill with your SIEM or SOAR platform by configuring it to read alerts and output structured incident reports to your ticketing system.
Scored Jun 25, 2026
Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope,...
Security scanner for AI agent skills. 9 built-in detection signatures. Identifies secrets, unsafe execution patterns, and prompt injection. Sub-50ms results.
Wallet anti-theft guard. One-click scan for high-risk wallet approvals to protect user assets. Use when a user asks for a wallet security check, wallet healt...
Comprehensive security audit for an agent's full skill stack. Chains scanner, differ, trust-verifier, and health-monitor into a single assessment with priori...
GEO Audit — AI Search Visibility Checker for ChatGPT, Perplexity, Claude & Gemini. 29-point GEO readiness checklist: robots.txt AI crawler access, Index...
Audit and analyze Solidity smart contracts for security vulnerabilities. Use when reviewing, auditing, or analyzing smart contracts, Solidity code, DeFi prot...