All authors

Claude Skills by chrishuffman5
github.com/chrishuffman5446 skills0 installs53 views
- Aws IamExpert agent for AWS IAM and IAM Identity Center. Provides deep expertise in IAM policies, roles, permission sets, SCPs, cross-account access, IAM Access Analyzer, ABAC with tags, and credential management. WHEN: \"AWS IAM\", \"IAM policy\", \"IAM role\", \"IAM Identity Center\", \"AWS SSO\", \"SCP\", \"permission set\", \"cross-account\", \"IAM Access Analyzer\", \"assume role\", \"trust policy\".Votes: 0GitHub stars: 4
- Aws SecretsExpert agent for AWS Secrets Manager and AWS KMS. Covers secret rotation (Lambda, native RDS), multi-region replication, resource policies, versioning (AWSCURRENT/AWSPREVIOUS), KMS key hierarchy, CMK, grants, key policies, envelope encryption, and multi-region keys. WHEN: \"AWS Secrets Manager\", \"AWS KMS\", \"secret rotation\", \"RDS rotation\", \"CMK\", \"customer managed key\", \"KMS key policy\", \"KMS grant\", \"envelope encryption AWS\", \"AWSCURRENT\".Votes: 0GitHub stars: 4
- Aws Security HubExpert agent for AWS Security Hub. Covers finding aggregation from GuardDuty, Inspector, Macie, Config, IAM Access Analyzer, security standards (CIS, PCI DSS, NIST), ASFF format, cross-account/cross-region aggregation, and EventBridge automated response. WHEN: \"AWS Security Hub\", \"Security Hub\", \"ASFF\", \"Security Hub findings\", \"Security Hub standards\", \"Security Hub aggregation\", \"Security Hub EventBridge\", \"AWS security findings\", \"CIS AWS Foundations Security Hub\".Votes: 0GitHub stars: 4
- Aws WafExpert agent for AWS WAF v2. Covers WebACLs, rule groups, managed rule groups (AWS + marketplace), rate-based rules, IP sets, regex pattern sets, Bot Control, Fraud Control ATP, and integration with ALB, CloudFront, API Gateway, and AppSync. WHEN: \"AWS WAF\", \"WebACL\", \"AWS managed rules\", \"WAF rule group\", \"Bot Control\", \"ATP\", \"AWS Shield\", \"waf.tf\", \"aws_wafv2\", \"WAF ALB\", \"WAF CloudFront\".Votes: 0GitHub stars: 4
- Azure Key VaultExpert agent for Azure Key Vault and Azure Managed HSM. Covers keys (RSA, EC, oct-HSM), secrets, certificates, RBAC vs. access policies, soft-delete, purge protection, managed identity integration, and Key Vault references. WHEN: \"Azure Key Vault\", \"AKV\", \"Azure Managed HSM\", \"Key Vault secret\", \"Key Vault certificate\", \"key vault reference\", \"soft-delete\", \"purge protection\", \"Azure HSM\".Votes: 0GitHub stars: 4
- Backup SecurityExpert routing agent for backup security. Covers ransomware protection, 3-2-1-1-0 rule, immutable backups, air-gapped vaults, and backup verification. Routes to Veeam, Rubrik, Cohesity, and Commvault agents. WHEN: \"backup security\", \"ransomware recovery\", \"immutable backup\", \"air-gapped backup\", \"3-2-1-1-0\", \"backup encryption\", \"cyber vault\", \"backup testing\", \"RTO RPO\", \"clean restore point\". Do NOT use for vendor-specific questions -- use the `veeam`, `rubrik`, `cohesit...Votes: 0GitHub stars: 4
- Black DuckExpert agent for Black Duck (Synopsys) SCA. Covers binary analysis, SOUP lists for medical device compliance, export control, BDBA (binary analysis), Detect CLI, SBOM generation, and enterprise license compliance. WHEN: \"Black Duck\", \"Synopsys Black Duck\", \"BDBA\", \"Black Duck binary analysis\", \"SOUP list\", \"Black Duck Detect\", \"Black Duck Hub\", \"Synopsys SCA\".Votes: 0GitHub stars: 4
- Burp SuiteExpert agent for Burp Suite Professional, Enterprise, and Community. Covers proxy interception, Scanner, Intruder, Repeater, BApp extensions, BCheck custom checks, Bambda filters, REST API, and CI/CD DAST automation. WHEN: \"Burp Suite\", \"Burp Pro\", \"Burp Enterprise\", \"BApp Store\", \"BCheck\", \"Bambda\", \"Intruder\", \"Repeater\", \"Burp proxy\", \"Burp scanner\", \"Burp DAST\", \"burp collaborator\".Votes: 0GitHub stars: 4
- Carbon BlackExpert agent for VMware Carbon Black (Broadcom) EDR platform. Covers CB Endpoint Standard, CB Enterprise EDR, process tree investigation, watchlists, live response, and Solr/Lucene query syntax. WHEN: \"Carbon Black\", \"CB Defense\", \"CB Response\", \"VMware Carbon Black\", \"CB Endpoint Standard\", \"CB Enterprise EDR\", \"watchlist\", \"CB query\".Votes: 0GitHub stars: 4
- CatoExpert agent for Cato Networks SASE. Covers single-vendor SASE cloud, SD-WAN, SWG, CASB, FWaaS, ZTNA, XDR, and Cato's 80+ PoP single-pass cloud engine. WHEN: \"Cato Networks\", \"Cato SASE\", \"Cato SD-WAN\", \"Cato ZTNA\", \"Cato XDR\", \"Cato FWaaS\", \"Cato socket\", \"single-vendor SASE\", \"Cato CTRL\".Votes: 0GitHub stars: 4
- CensysExpert agent for Censys ASM and Censys Search. Covers internet-wide scanning, certificate transparency, Censys ASM platform, risk scoring, exposure discovery, and the Censys Search API for threat hunting and security research. WHEN: \"Censys\", \"Censys ASM\", \"Censys Search\", \"internet scanning\", \"certificate transparency\", \"Censys API\", \"internet-wide scan\".Votes: 0GitHub stars: 4
- Cert ManagerExpert agent for cert-manager on Kubernetes (CNCF graduated). Covers Certificate resources, Issuers/ClusterIssuers (ACME, Vault, CA, Venafi, self-signed), DNS-01/HTTP-01 solvers, trust-manager for CA bundle distribution, and SPIFFE/CSI driver patterns. WHEN: \"cert-manager\", \"Kubernetes certificates\", \"ClusterIssuer\", \"Certificate resource\", \"cert-manager ACME\", \"cert-manager Vault\", \"trust-manager\", \"cert-manager CSI\", \"ACME solver\", \"certificate renewal Kubernetes\".Votes: 0GitHub stars: 4
- CheckmarxExpert agent for Checkmarx One unified AppSec platform. Covers SAST, SCA, DAST, IaC scanning, API security, CxQL custom rules, incremental scanning, results correlation, KICS, and CI/CD integration. WHEN: \"Checkmarx\", \"CxOne\", \"CxSAST\", \"CxQL\", \"KICS\", \"Checkmarx One\", \"Cx flow\", \"incremental scan\", \"Checkmarx IaC\", \"Checkmarx AI Security\".Votes: 0GitHub stars: 4
- ChronicleExpert agent for Google Security Operations (Chronicle). Provides deep expertise in YARA-L 2.0 rule development, Unified Data Model normalization, Mandiant threat intelligence integration, entity graph analysis, retroactive rule matching, curated detections, and Google Cloud-native SIEM architecture. WHEN: \"Chronicle\", \"Google SecOps\", \"YARA-L\", \"UDM\", \"Mandiant\", \"curated detections\", \"entity graph\", \"Google SIEM\", \"retroactive matching\", \"Chronicle detection\".Votes: 0GitHub stars: 4
- Cisco IseExpert agent for Cisco Identity Services Engine (ISE). Covers 802.1X (EAP-TLS, PEAP), RADIUS, TACACS+, endpoint profiling, posture assessment, guest access, BYOD, pxGrid, TrustSec SGT segmentation, and distributed PAN/MnT/PSN deployment. WHEN: \"Cisco ISE\", \"ISE\", \"802.1X\", \"RADIUS policy\", \"TACACS+\", \"TrustSec\", \"SGT\", \"pxGrid\", \"ISE profiling\", \"posture assessment\", \"NAC\", \"guest portal\", \"BYOD\".Votes: 0GitHub stars: 4
- ClearpassExpert agent for Aruba ClearPass Policy Manager (CPPM). Covers 802.1X NAC, device profiling/fingerprinting, OnGuard posture assessment, guest access with captive portals, TACACS+, ClearPass Insight analytics, OnConnect agentless enforcement, and REST API integration. WHEN: \"ClearPass\", \"CPPM\", \"Aruba NAC\", \"ClearPass policy\", \"OnGuard\", \"ClearPass guest\", \"ClearPass profiling\", \"ClearPass API\", \"ClearPass TACACS+\", \"HPE Aruba NAC\".Votes: 0GitHub stars: 4
- Cloud SecurityRouting agent for cloud security — CNAPP, CSPM, CWPP, CIEM, DSPM, and container/Kubernetes security. Covers shared responsibility, multi-cloud posture, cloud-native attack patterns, and tool selection across Wiz, Prisma Cloud, Orca, Defender for Cloud, and AWS Security Hub. WHEN: \"CNAPP\", \"CSPM\", \"CWPP\", \"CIEM\", \"cloud security posture\", \"cloud workload protection\", \"container security\", \"Kubernetes security\", \"cloud misconfiguration\", \"toxic combination\", \"attack path\",...Votes: 0GitHub stars: 4
- Cloudflare WafExpert agent for Cloudflare WAF. Covers managed rulesets, custom rules (Firewall Rules/WAF Rules), rate limiting, bot management, API Shield, Workers for custom logic, zone configuration, and Cloudflare's edge security platform. WHEN: \"Cloudflare WAF\", \"Cloudflare firewall\", \"Cloudflare managed rules\", \"Cloudflare rate limiting\", \"Cloudflare bot management\", \"API Shield\", \"Cloudflare Workers security\", \"Cloudflare zone\", \"Cloudflare transform rules\".Votes: 0GitHub stars: 4
- Cloudflare ZtExpert agent for Cloudflare Zero Trust. Covers Access (ZTNA), Gateway (SWG/DNS), Browser Isolation, CASB, DLP, Email Security (Area 1), Magic WAN, and Cloudflare's 300+ city anycast network. WHEN: \"Cloudflare Zero Trust\", \"Cloudflare Access\", \"Cloudflare Gateway\", \"Cloudflare ZTNA\", \"Cloudflare CASB\", \"Cloudflare Browser Isolation\", \"Cloudflare Workers\", \"Cloudflare Email Security\", \"Area 1\".Votes: 0GitHub stars: 4
- CohesityExpert agent for Cohesity Data Cloud and DataProtect. Covers SpanFS distributed filesystem, DataLock WORM immutable snapshots, FortKnox SaaS cyber vault, instant mass restore, DataHawk threat scanning, CyberScan, and ransomware resilience. WHEN: \"Cohesity\", \"DataProtect\", \"FortKnox\", \"DataLock\", \"SpanFS\", \"DataHawk\", \"CyberScan\", \"Cohesity cluster\", \"instant mass restore\".Votes: 0GitHub stars: 4
- CommvaultExpert agent for Commvault Cloud and Metallic. Covers CommServe orchestration, MediaAgent data movement, Cloud Rewind full-stack recovery, Metallic BaaS, Cleanroom Recovery, HyperScale X, and ransomware resilience across VM, physical, SaaS, database, and Kubernetes workloads. WHEN: \"Commvault\", \"CommServe\", \"MediaAgent\", \"Metallic\", \"Cloud Rewind\", \"Cleanroom Recovery\", \"HyperScale X\", \"Unity Platform\", \"Commvault Cloud\".Votes: 0GitHub stars: 4
- Container SecurityRouting and expertise agent for container and Kubernetes security. Covers image scanning, admission control (OPA Gatekeeper, Kyverno), Pod Security Standards, runtime protection, RBAC, network policies, secrets management, supply chain security (cosign/SLSA), and service mesh mTLS. WHEN: \"container security\", \"Kubernetes security\", \"K8s security\", \"image scanning\", \"admission control\", \"OPA Gatekeeper\", \"Kyverno\", \"Pod Security Standards\", \"RBAC Kubernetes\", \"Kubernetes net...Votes: 0GitHub stars: 4
- Cortex XdrExpert agent for Palo Alto Networks Cortex XDR. Covers XQL query language, BIOC rules, Analytics detection engine, Causality View, Live Terminal, XSOAR integration, and cross-domain XDR correlation with NGFW and Prisma Cloud. WHEN: \"Cortex XDR\", \"Palo Alto XDR\", \"XQL\", \"BIOC rule\", \"XSIAM\", \"Causality View\", \"Live Terminal\", \"Cortex analytics\", \"Palo Alto EDR\".Votes: 0GitHub stars: 4
- CrowdstrikeExpert agent for CrowdStrike Falcon EDR platform. Covers Falcon sensor deployment, prevention/detection policies, Real Time Response (RTR), IOA/IOC management, CQL threat hunting, OverWatch, and Charlotte AI. WHEN: \"CrowdStrike\", \"Falcon\", \"RTR\", \"Falcon Insight\", \"OverWatch\", \"CQL\", \"Threat Graph\", \"IOA tuning\", \"Falcon sensor\", \"Charlotte AI\".Votes: 0GitHub stars: 4
- CyberarkExpert agent for CyberArk PAM and Conjur. Covers Digital Vault, PVWA, CPM (auto-rotation), PSM (session recording), PTA (threat analytics), Privilege Cloud SaaS, Conjur for DevOps secrets, and Secrets Hub (sync to AWS SM/AKV). WHEN: \"CyberArk\", \"PAM\", \"privileged access\", \"PVWA\", \"CPM\", \"PSM\", \"Conjur\", \"Secrets Hub\", \"vault rotation\", \"session recording\", \"CyberArk machine identity\".Votes: 0GitHub stars: 4
- CyberhavenExpert agent for Cyberhaven DLP. Covers data lineage tracking, behavioral data flow analysis, real-time classification, browser extension and endpoint agent, generative AI data protection, insider risk detection, and SaaS platform configuration. WHEN: \"Cyberhaven\", \"data lineage\", \"data flow tracking\", \"behavioral DLP\", \"Cyberhaven agent\", \"generative AI DLP\", \"ChatGPT data leak\", \"Cyberhaven browser extension\".Votes: 0GitHub stars: 4
- DastExpert routing agent for Dynamic Application Security Testing (DAST). Covers runtime scanning fundamentals, active vs. passive scanning, authenticated scanning, API security testing, and CI/CD DAST integration. Routes to Burp Suite, OWASP ZAP, and StackHawk. WHEN: \"DAST\", \"dynamic analysis\", \"runtime scanning\", \"intercepting proxy\", \"active scan\", \"authenticated scan\", \"API security test\", \"web application scan\", \"fuzzing\". Do NOT use for tool-specific questions -- use the `...Votes: 0GitHub stars: 4
- Defender CloudExpert agent for Microsoft Defender for Cloud. Covers foundational CSPM, Defender plans (Servers, Containers, Databases, Storage), secure score, regulatory compliance, Azure Arc multi-cloud, DevOps Security, and Workload protection integrations. WHEN: \"Defender for Cloud\", \"Microsoft Defender for Cloud\", \"DfC\", \"secure score\", \"Defender for Servers\", \"Defender for Containers\", \"Defender plans\", \"Azure Arc security\", \"regulatory compliance Azure\", \"JIT VM access\", \"adaptiv...Votes: 0GitHub stars: 4
- Defender EasmExpert agent for Microsoft Defender EASM. Covers external attack surface discovery, inventory management, Azure integration, risk prioritization, Defender for Cloud integration, and dashboard configuration. WHEN: \"Defender EASM\", \"Microsoft EASM\", \"Defender External Attack Surface\", \"Azure EASM\", \"Microsoft attack surface management\".Votes: 0GitHub stars: 4
- Defender EndpointExpert agent for Microsoft Defender for Endpoint (MDE). Covers onboarding, ASR rules, advanced hunting with KQL, automated investigation, device groups, vulnerability management, and Defender XDR integration. WHEN: \"Defender for Endpoint\", \"MDE\", \"ASR rules\", \"advanced hunting\", \"KQL\", \"Microsoft EDR\", \"AIR\", \"Defender XDR\", \"MDE Plan 2\", \"threat analytics\".Votes: 0GitHub stars: 4
- Defender O365Expert agent for Microsoft Defender for Office 365. Covers EOP baseline, Safe Attachments/Links, anti-phishing policies, AIR, Threat Explorer, ZAP, and Attack Simulation. WHEN: \"Defender for Office 365\", \"MDO\", \"Microsoft email security\", \"Safe Links\", \"Safe Attachments\", \"EOP\", \"Exchange Online Protection\", \"Threat Explorer\", \"ZAP\", \"AIR\", \"anti-phishing policy\", \"M365 phishing\".Votes: 0GitHub stars: 4
- DependabotExpert agent for GitHub Dependabot. Covers dependabot.yml configuration, security alerts, version updates, auto-merge, grouped updates, private registries, and GitHub Advanced Security integration. WHEN: \"Dependabot\", \"dependabot.yml\", \"GitHub security alerts\", \"Dependabot alerts\", \"Dependabot version updates\", \"Dependabot security updates\", \"auto-merge dependencies\", \"GitHub dependency review\".Votes: 0GitHub stars: 4
- DigicertExpert agent for DigiCert CertCentral and Trust Lifecycle Manager. Covers OV/EV/DV certificate ordering, auto-renewal, DigiCert ONE platform, Trust Lifecycle Manager (vendor-agnostic CLM), CT log monitoring, ACME support, and API automation. WHEN: \"DigiCert\", \"CertCentral\", \"Trust Lifecycle Manager\", \"DigiCert ONE\", \"DigiCert ACME\", \"OV certificate\", \"EV certificate\", \"code signing\", \"DigiCert API\", \"certificate discovery DigiCert\".Votes: 0GitHub stars: 4
- Digital GuardianExpert agent for Digital Guardian (Fortra) DLP. Covers kernel-level endpoint agent, data visibility, classification (manual and automatic), policy configuration, Analytics and Reporting Cloud (ARC), network DLP, and integration with third-party classification tools. WHEN: \"Digital Guardian\", \"Fortra DLP\", \"DG agent\", \"ARC\", \"Analytics Reporting Cloud\", \"kernel-level DLP\", \"digital guardian endpoint\".Votes: 0GitHub stars: 4
- DlpExpert routing agent for Data Loss Prevention. Classifies DLP requests across endpoint, network, and cloud enforcement layers, then delegates to the appropriate technology agent. WHEN: \"DLP\", \"data loss prevention\", \"data exfiltration\", \"sensitive data leak\", \"data classification\", \"content inspection\", \"USB block\", \"email DLP\", \"cloud DLP\", \"CASB\", \"data discovery\". Do NOT use for vendor-specific questions -- use the `purview-dlp`, `symantec-dlp`, `forcepoint`, `digital...Votes: 0GitHub stars: 4
- DopplerExpert agent for Doppler SaaS secrets manager. Covers project/environment/config hierarchy, CLI integration, service tokens, EHR (Encrypted HTTP Relay), Kubernetes operator, native sync integrations (AWS, Vercel, GitHub), and audit logging. WHEN: \"Doppler\", \"Doppler CLI\", \"Doppler project\", \"Doppler service token\", \"Doppler sync\", \"Doppler Kubernetes\", \"Doppler environment\", \"doppler run\".Votes: 0GitHub stars: 4
- DrataExpert agent for Drata compliance automation. Covers Autopilot, 1,200+ automated tests, 170+ integrations, continuous control monitoring, personnel management, asset inventory, policy center, risk management, and trust center for SOC 2, ISO 27001, HIPAA, PCI DSS, and GDPR. WHEN: \"Drata\", \"Drata autopilot\", \"Drata SOC 2\", \"Drata evidence\", \"Drata personnel\", \"Drata asset inventory\", \"Drata policy center\", \"Drata integrations\".Votes: 0GitHub stars: 4
- EdrExpert routing agent for Endpoint Detection & Response (EDR). Routes to platform-specific agents for CrowdStrike, Defender for Endpoint, SentinelOne, Carbon Black, Cortex XDR, Elastic Defend, Sophos, and Wazuh. Covers cross-platform EDR concepts, detection methodology, and platform selection. WHEN: \"EDR\", \"endpoint detection\", \"endpoint protection\", \"behavioral detection\", \"IOC\", \"IOA\", \"MITRE ATT&CK\", \"threat hunting\", \"endpoint telemetry\", \"XDR\". Do NOT use for platform-...Votes: 0GitHub stars: 4
- EjbcaExpert agent for Keyfactor EJBCA enterprise PKI platform. Covers CA hierarchy setup, ACME/EST/CMP/SCEP/OCSP protocols, Registration Authority (RA), HSM integration, Common Criteria EAL4+ certification, Kubernetes deployment, and REST/WS APIs. WHEN: \"EJBCA\", \"Keyfactor EJBCA\", \"enterprise PKI\", \"EJBCA ACME\", \"EJBCA EST\", \"EJBCA CMP\", \"EJBCA SCEP\", \"registration authority\", \"EJBCA Kubernetes\", \"Common Criteria PKI\".Votes: 0GitHub stars: 4
- Elastic DefendExpert agent for Elastic Defend EDR. Covers Elastic Agent Fleet management, malware/ransomware/behavior prevention, detection rules (EQL, KQL, threshold, ML), response actions (isolate, kill process, get file), Osquery integration, and event filters. WHEN: \"Elastic Defend\", \"Elastic Security\", \"Elastic Agent\", \"Fleet\", \"EQL\", \"Elastic EDR\", \"Elastic detection rules\", \"Osquery\", \"Elastic endpoint\".Votes: 0GitHub stars: 4
- Elastic SecurityExpert agent for Elastic Security across all versions. Provides deep expertise in detection rules, EQL sequence detection, ES|QL piped analytics, Fleet/Elastic Agent management, Elastic Common Schema, ML anomaly detection, response actions, and Elasticsearch cluster operations. WHEN: \"Elastic Security\", \"Elastic SIEM\", \"EQL\", \"ES|QL\", \"Elastic Agent\", \"Fleet\", \"ECS\", \"Elastic detection rules\", \"Kibana security\", \"Elasticsearch cluster\".Votes: 0GitHub stars: 4
- Email SecurityExpert routing agent for email security. Covers email authentication (SPF/DKIM/DMARC/BIMI), secure email gateways, API-based protection, phishing/BEC defense, and post-delivery remediation. WHEN: \"email security\", \"phishing\", \"BEC\", \"email gateway\", \"SPF\", \"DKIM\", \"DMARC\", \"email authentication\", \"secure email gateway\", \"SEG\". Do NOT use for vendor-specific questions -- use the `proofpoint`, `mimecast`, `abnormal`, `defender-o365`, or `sublime` skill.Votes: 0GitHub stars: 4
- Entra IdExpert agent for Microsoft Entra ID (formerly Azure AD). Provides deep expertise in Conditional Access, PIM, Identity Protection, Entra Connect, B2B/B2C, app registrations, managed identities, and Entra ID Governance. WHEN: \"Entra ID\", \"Azure AD\", \"Conditional Access\", \"PIM\", \"Identity Protection\", \"Entra Connect\", \"B2B\", \"B2C\", \"app registration\", \"service principal\", \"managed identity\", \"passkeys Entra\", \"Entra Permissions Management\".Votes: 0GitHub stars: 4
- F5 WafExpert agent for F5 Advanced WAF (BIG-IP ASM). Covers behavioral DoS protection, credential stuffing defense, bot defense, DataSafe client-side encryption, API protection, positive security model, iRules, and BIG-IP or SaaS deployment. WHEN: \"F5 WAF\", \"F5 Advanced WAF\", \"BIG-IP ASM\", \"BIG-IP WAF\", \"F5 DataSafe\", \"F5 bot defense\", \"F5 credential stuffing\", \"F5 iRule security\", \"F5 NGINX App Protect\".Votes: 0GitHub stars: 4
- FalcoExpert agent for Falco CNCF runtime security. Covers kernel syscall monitoring via eBPF/kernel module, rule syntax (conditions, macros, lists, exceptions), 70+ default rules, plugins (CloudTrail, K8s Audit, Okta, GitHub), Falcosidekick routing to 60+ outputs, and falco-talon automated response. WHEN: \"Falco\", \"Falco rules\", \"Falco eBPF\", \"Falco kernel module\", \"Falcosidekick\", \"falco-talon\", \"Falco plugins\", \"Falco CloudTrail\", \"Falco runtime detection\", \"CNCF Falco\".Votes: 0GitHub stars: 4
- Falcon SurfaceExpert agent for CrowdStrike Falcon Surface EASM. Covers internet asset discovery, exposure scoring, CrowdStrike Falcon platform integration, EDR-to-EASM correlation, and attack surface reduction workflows. WHEN: \"Falcon Surface\", \"CrowdStrike EASM\", \"CrowdStrike attack surface\", \"Falcon Surface exposure\", \"external attack surface CrowdStrike\".Votes: 0GitHub stars: 4
- ForcepointExpert agent for Forcepoint DLP. Covers risk-adaptive protection, dynamic data protection, behavioral analytics, endpoint/network/cloud/email DLP policy configuration, incident management, and Forcepoint ONE integration. WHEN: \"Forcepoint DLP\", \"Forcepoint ONE\", \"dynamic data protection\", \"risk-adaptive DLP\", \"Forcepoint endpoint\", \"Forcepoint email DLP\", \"Forcepoint web DLP\", \"behavioral analytics DLP\".Votes: 0GitHub stars: 4
- FortinacExpert agent for FortiNAC network access control. Covers agentless device discovery and profiling, wired and wireless 802.1X, MAC-based authentication, network access policies, Fortinet Security Fabric integration, FortiGate firewall policy enforcement, and OT/IoT device onboarding. WHEN: \"FortiNAC\", \"FortiNAC policy\", \"FortiNAC profiling\", \"Fortinet NAC\", \"FortiNAC OT\", \"FortiNAC IoT\", \"FortiNAC FortiGate integration\".Votes: 0GitHub stars: 4
- Gcp IamExpert agent for Google Cloud IAM and Cloud Identity. Provides deep expertise in IAM roles, policies, Workload Identity Federation, Organization policies, VPC Service Controls, IAM Conditions, IAM Recommender, and BeyondCorp Enterprise. WHEN: \"GCP IAM\", \"Google Cloud IAM\", \"Cloud Identity\", \"Workload Identity Federation\", \"Organization policy\", \"VPC Service Controls\", \"IAM Recommender\", \"BeyondCorp\", \"GCP roles\", \"Google Cloud roles\".Votes: 0GitHub stars: 4
- GrcExpert routing agent for GRC and compliance automation. Classifies governance, risk, and compliance requests and delegates to the appropriate platform agent. WHEN: \"GRC\", \"compliance automation\", \"SOC 2\", \"ISO 27001\", \"risk management\", \"audit readiness\", \"vendor risk\", \"TPRM\", \"control framework\", \"compliance monitoring\", \"policy management\", \"risk register\". Do NOT use for platform-specific questions -- use the `vanta`, `drata`, `onetrust`, `archer`, or `servicenow-g...Votes: 0GitHub stars: 4