pilot-threat-intelligence-setupDeploy a threat intelligence platform with 4 agents. Use this skill when: 1. User wants to set up a threat intelligence pipeline for IOC collection and distr...
Install via ClawdBot CLI:
clawdbot install teoslayer/pilot-threat-intelligence-setupGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Calls external URL not in known-safe list
https://pilotprotocol.networkAudited Apr 24, 2026 · audit v1.0
Generated Jul 30, 2026
A SOC deploys the four-agent threat intelligence pipeline to centralize IOC collection, enrichment, analysis, and distribution. This automates the ingestion of OSINT feeds, enriches IOCs with WHOIS and GeoIP, scores severity, and publishes STIX feeds to SIEM and firewall systems.
A financial institution uses the pipeline to aggregate IOCs from internal honeypots and external CVE databases, enrich with financial threat context, and distribute curated threat advisories to partner banks via STIX/TAXII.
A government CERT deploys the pipeline to process threat feeds from national honeypots and international partners, mapping IOCs to MITRE ATT&CK for campaign attribution, and pushing high-confidence indicators to perimeter defenses.
A healthcare organization uses the pipeline to collect IoCs targeting medical devices and patient data systems, enrich with threat databases, and distribute alerts to hospital network security teams for rapid containment.
An e-commerce company deploys the pipeline to monitor for credential stuffing and payment fraud indicators, analyze patterns for APT activity, and distribute blocklists to web application firewalls.
Offer a subscription-based service where customers receive curated, enriched threat intelligence feeds. The pipeline ingests multiple sources, adds context, and delivers structured IOCs that integrate with existing security tools.
Package the pipeline as part of a 24/7 MDR offering. Analysts use the enriched and scored IOCs to prioritize incidents and respond proactively, while clients get access to threat reports and distribution to their SIEM.
Provide retainer-based incident response services enhanced by real-time threat intel. Clients benefit from faster threat correlation and contextualized alerts, and the retainer includes periodic threat briefings.
💬 Integration Tip
Start with the collector and enricher roles to establish a basic pipeline, then add analyzer and distributor for full automation. Ensure each agent has the correct handshakes configured before testing data flows.
Scored Jun 2, 2026
Data analysis and visualization. Query databases, generate reports, automate spreadsheets, and turn raw data into clear, actionable insights. Use when (1) yo...
Data visualization, report generation, SQL queries, and spreadsheet automation. Transform your AI agent into a data-savvy analyst that turns raw data into actionable insights.
Automation skill for DELLIGHT Strategic Intelligence.
Automation skill for DELLIGHT Intelligence Operations.
通过调用 Prana 平台上的远程 agent 完成以下处理:使用7步分析法对中国A股进行全方位财务分析,自动生成包含ROE分解、盈利模式识别、行业对比和投资洞察的HTML报告。支持上海和深圳交易所所有股票。 IMPORTANT: This skill has a mandatory step-by-step p...
基于AI的中文数据分析助手,支持智能图表生成、预测分析、异常检测及一键生成多格式专业报告。