Skip to content
Back to skills

Cyber Authorization

ASecurity

Assumption: the exercise is synthetic and non-production; the authorization record defines the exact expiry timestamp and timezone for tonight. ```text Before each live action: 1. Resolve the authorization record: - engagement_scope_ref: <authorization ID> - accountable_owner: <named owner> - requester: <named requester> - operator: <named operator> - approver: <independent approver> - approved_actions: <explicit synthetic actions> - target_identity: <synthetic targets only> - exclusions: cre...

  • 571 stars
  • 0 votes
  • 0 copies
  • 0 views
  • Added September 24, 2026
development

Security analysis

A100/100

Pro scans all 17 files and shows the line behind each finding

Scanned September 24, 2026

npx -y skills add HoangNguyen0403/agent-skills-standard --skill cyber-authorization --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Cyber Authorization?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Cyber Authorization
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/hoangnguyen0403-cyber-authorization/badge)](https://www.skillsdirectory.com/skills/hoangnguyen0403-cyber-authorization)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
### Bounded authorization check

Assumption: the exercise is synthetic and non-production; the authorization record defines the exact expiry timestamp and timezone for tonight.

```text
Before each live action:

1. Resolve the authorization record:
   - engagement_scope_ref: <authorization ID>
   - accountable_owner: <named owner>
   - requester: <named requester>
   - operator: <named operator>
   - approver: <independent approver>
   - approved_actions: <explicit synthetic actions>
   - target_identity: <synthetic targets only>
   - exclusions: credentials, real targets, malware, exfiltration, destructive commands,
                 production changes, and any unlisted action
   - authorization_window: <start> through <exact expiry timestamp/timezone>
   - stop_terms: <conditions requiring immediate stop>
   - restart_terms: fresh gate plus explicit restart authority

2. Confirm host-enforced runtime controls:
   - permitted tools and credentials are available and restricted;
   - filesystem and network boundaries match the approved scope;
   - activity logging is enabled;
   - cancellation/stop control is functional.
   Unsupported runtime controls block live action; continue only with offline planning or evidence review.

3. Recheck immediately before execution:
   - approval has not expired;
   - target identity and scope have not drifted;
   - requested action remains approved;
   - exclusions are not implicated;
   - runtime controls remain present.

4. Stop immediately on:
   - authorization expiry;
   - scope drift or target mismatch;
   - missing or failed runtime control;
   - unsafe data;
   - operator stop;
   - any stop condition in the authorization record.

5. Record the stop with:
   - engagement_scope_ref
   - skill_version
   - source
   - observed_at
   - finding_status
   - evidence_refs
   - limitations
   - accountable_owner
   - stop reason and timestamp

6. Do not resume automatically. Restart requires a fresh authorization gate and explicit
   restart authority. Production changes require an independent gate; the operator cannot
   self-approve promotion.
```

Because approval expires tonight, set an explicit cutoff rather than relying on “tonight”; at that timestamp, stop all live activity and preserve the evidence record.

Files in this skill

  • eval-1.baseline.md1004 B
  • eval-1.with-skill.md2.2 KB
  • eval-2.baseline.md282 B
  • eval-2.with-skill.md693 B
  • eval-3.baseline.md265 B
  • eval-3.with-skill.md779 B
  • pressure-1.baseline.md326 B
  • pressure-1.with-skill.md890 B
  • pressure-2.baseline.md325 B
  • pressure-2.with-skill.md841 B
  • trigger-1.md149 B
  • trigger-2.md131 B
  • trigger-3.md131 B
  • trigger-4.md152 B
  • trigger-5.md193 B
  • trigger-6.md153 B

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…