prisma-auditAudit and validate Prisma Access configurations against best practices and security standards. Use when reviewing security policies, checking for misconfigur...
Install via ClawdBot CLI:
clawdbot install leesandao/prisma-auditGrade Fair — based on market validation, documentation quality, package completeness, maintenance status, and authenticity signals.
Calls external URL not in known-safe list
https://github.com/rali/prismaaccess-skillAudited Apr 17, 2026 · audit v1.0
Generated May 22, 2026
A financial institution needs to audit its Prisma Access security policies for compliance with CIS benchmarks and PAN-OS best practices. This scenario involves scanning all security rules for shadow rules, overly permissive rules, missing security profiles, and logging misconfigurations to ensure regulatory compliance and reduce attack surface.
A large enterprise with complex NAT configurations uses the skill to identify overlapping NAT translations, missing bidirectional NAT, and source NAT exhaustion risks. The audit helps optimize NAT policies to prevent connectivity issues and ensure efficient IP pool utilization.
A remote-first company reviews its GlobalProtect configurations for weak authentication, missing HIP checks, and overly permissive split tunneling. The audit strengthens remote access security, ensuring only compliant devices can connect and sensitive data remains protected.
A healthcare provider validates decryption policies to ensure all traffic inspection is justified and certificates are valid. The audit finds expired certificates and broad no-decrypt rules, helping to avoid compliance gaps in HIPAA requirements.
A managed security service provider (MSSP) uses the skill to clean up unused address objects, overlapping definitions, and empty groups across multiple Prisma Access tenants. This reduces policy clutter and improves operational efficiency.
Offer a recurring monthly or quarterly Prisma Access configuration audit as a subscription service. Customers receive detailed reports with health scores, prioritized fixes, and quick wins, generating predictable recurring revenue.
Provide expert consulting to remediate findings from the audit, focusing on high-severity issues and compliance alignment. This model charges per engagement or hourly, targeting organizations with strict regulatory requirements.
Offer a free basic audit (e.g., summary of critical issues) to generate leads, then upsell a premium version with detailed reports, trend analysis, and integration with other tools. Revenue comes from premium access and annual contracts.
💬 Integration Tip
Integrate with CI/CD pipelines by running the audit as a pre-deployment step using the config file argument, triggering alerts or blocking deployment if critical findings are detected.
Scored Jul 11, 2026
Control desktop applications on Windows — launch, close, focus, resize, move windows, simulate keyboard/mouse input, manage processes, control VSCode, read clipboard, and capture screen info. Use when the user wants to interact with any running program, switch windows, type text, press shortcuts, open files in VSCode, manage running processes, or get system display information.
Conduct rigorous, adversarial code reviews with zero tolerance for mediocrity. Use when users ask to "critically review" my code or a PR, "critique my code", "find issues in my code", or "what's wrong with this code". Identifies security holes, lazy patterns, edge case failures, and bad practices across Python, R, JavaScript/TypeScript, SQL, and front-end code. Scrutinizes error handling, type safety, performance, accessibility, and code quality. Provides structured feedback with severity tiers (Blocking, Required, Suggestions) and specific, actionable recommendations.
Coding style memory that adapts to your preferences, conventions, and patterns for consistent coding.
Pragmatic coding standards for writing clean, maintainable code — naming, functions, structure, anti-patterns, and pre-edit safety checks. Use when writing new code, refactoring existing code, reviewing code quality, or establishing coding standards.
Claude Code integration for OpenClaw. This skill provides interfaces to: - Query Claude Code documentation from https://code.claude.com/docs - Manage subagents and coding tasks - Execute AI-assisted coding workflows - Access best practices and common workflows Use this skill when users want to: - Get help with coding tasks - Query Claude Code documentation - Manage AI-assisted development workflows - Execute complex programming tasks
Plan, draft, version, and refine written content with enforced versioning and quality audits.