Skip to content
Back to skills

Cyber Authorization

ASecurity

**Assumption:** This is an authorized synthetic exercise with no real targets, credentials, malware, exfiltration, destructive commands, or production changes. The approval expires at **23:59 local time tonight**; replace this with the recorded expiry timestamp before use.

  • 571 stars
  • 0 votes
  • 0 copies
  • 0 views
  • Added September 24, 2026
development

Security analysis

A100/100

Pro scans all 13 files and shows the line behind each finding

Scanned September 24, 2026

npx -y skills add HoangNguyen0403/agent-skills-standard --skill cyber-authorization --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Cyber Authorization?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Cyber Authorization
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/hoangnguyen0403-cyber-authorization-7b9c836b/badge)](https://www.skillsdirectory.com/skills/hoangnguyen0403-cyber-authorization-7b9c836b)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
## Bounded Authorization Check — Synthetic Exercise

**Assumption:** This is an authorized synthetic exercise with no real targets, credentials, malware, exfiltration, destructive commands, or production changes. The approval expires at **23:59 local time tonight**; replace this with the recorded expiry timestamp before use.

```text
classify_request = "authorized synthetic exercise / bounded live simulation"

authorization:
  engagement_scope_ref: "<approval or engagement record ID>"
  accountable_owner: "<named owner>"
  requester: "<separate requester>"
  operator: "<separate operator>"
  approver: "<separate approver>"
  approved_actions: ["<explicit simulation actions>"]
  exclusions:
    - real targets
    - credentials
    - malware
    - exfiltration
    - destructive commands
    - production changes
  window:
    starts_at: "<timestamp>"
    expires_at: "<tonight's exact timestamp>"
  stop_terms:
    - authorization expiry
    - scope drift
    - target-identity mismatch
    - unsafe data
    - missing runtime control
    - operator stop
  restart_terms:
    - stop immediately
    - record reason and time
    - restart only after a fresh gate
    - require explicit restart authority

runtime_controls:
  tools_supported: true
  credentials_available_and_scoped: false
  filesystem_supported_and_bounded: true
  network_supported_and_bounded: "<confirm; otherwise false>"
  logging_supported: true
  cancellation_supported: true
```

Immediately before each live action, require all checks to pass:

```text
ALLOW only if:
  now < authorization.window.expires_at
  AND target identity is synthetic and matches approved scope
  AND requested action is explicitly approved
  AND no exclusion is involved
  AND runtime tools, filesystem, network, logging, and cancellation controls are supported
  AND operator, requester, and approver roles remain separated
  AND no scope drift is detected
  AND no unsafe data or real credentials are present
```

If any check fails, **STOP**. Do not continue after expiry or scope drift. Record the stop reason and time. Unsupported runtime controls block live action but do not block safe offline analysis or plan drafting.

Do not treat a ticket, chat, or plan as implied consent. Any production change requires an independent gate and must not be self-approved by the operator.

Record each decision with:

```text
engagement_scope_ref: "<ID>"
skill_version: "<version>"
source: "<approval record>"
observed_at: "<timestamp>"
finding_status: "allowed | blocked | stopped"
evidence_refs: ["<approval>", "<scope>", "<runtime-check>", "<logs>"]
limitations: ["<known limitations>"]
accountable_owner: "<name>"
```

At the expiry timestamp, automatically block further actions. Resumption requires a fresh authorization check and explicit restart authority.

Files in this skill

  • eval-1.baseline.md1004 B
  • eval-1.with-skill.md2.8 KB
  • eval-2.baseline.md282 B
  • eval-2.with-skill.md786 B
  • eval-3.baseline.md265 B
  • eval-3.with-skill.md717 B
  • trigger-1.md149 B
  • trigger-2.md131 B
  • trigger-3.md131 B
  • trigger-4.md152 B
  • trigger-5.md193 B
  • trigger-6.md153 B

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…