Skip to content
Back to skills

Cyber Scoped Validation

ASecurity

Assumption: the approved synthetic claim is **“A synthetic authentication event is redacted before evidence storage.”** No live runtime target, credentials, or network access are required. ```yaml engagement_scope_ref: "SYNTH-VAL-001" skill_version: "cyber-scoped-validation" authorization_window: "2026-09-22T00:00:00+07:00/2026-09-22T23:59:59+07:00" exclusions: - live targets - exploit scripts or operational attack commands - malware - exfiltration - credential collection claim: "A synthetic ...

  • 571 stars
  • 0 votes
  • 0 copies
  • 0 views
  • Added September 24, 2026
developmentsecurity

Security analysis

A100/100

Pro scans all 13 files and shows the line behind each finding

Scanned September 24, 2026

npx -y skills add HoangNguyen0403/agent-skills-standard --skill cyber-scoped-validation --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Cyber Scoped Validation?

Add the live security badge to your README. It updates with every re-scan.

Security grade badge for Cyber Scoped Validation
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/hoangnguyen0403-cyber-scoped-validation-bb97aa0d/badge)](https://www.skillsdirectory.com/skills/hoangnguyen0403-cyber-scoped-validation-bb97aa0d)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
SKILL.md
Assumption: the approved synthetic claim is **“A synthetic authentication event is redacted before evidence storage.”** No live runtime target, credentials, or network access are required.

```yaml
engagement_scope_ref: "SYNTH-VAL-001"
skill_version: "cyber-scoped-validation"
authorization_window: "2026-09-22T00:00:00+07:00/2026-09-22T23:59:59+07:00"
exclusions:
  - live targets
  - exploit scripts or operational attack commands
  - malware
  - exfiltration
  - credential collection

claim: "A synthetic authentication event is redacted before evidence storage."
expected_observation: "Credential and token fields are replaced with [REDACTED]; non-sensitive event metadata remains."

preflight:
  tool_allowlist: "offline parser and fixture comparison only"
  credential_source: "none"
  filesystem: "synthetic fixture and redacted output only"
  network: "disabled"
  logging: "local validation log with sensitive values excluded"
  cancellation: "operator stop available"

validation_mode: "safe offline analysis"
observation_count: 1
observed_at: "2026-09-22T10:00:00+07:00"
source: "synthetic fixture AUTH-EVENT-001"
evidence_refs:
  - "artifacts/security-review.md#SYNTH-VAL-001"
  - "redacted://AUTH-EVENT-001"
redacted_evidence:
  input: '{"event":"login","user":"[REDACTED]","password":"[REDACTED]","token":"[REDACTED]"}'
  output: '{"event":"login","user":"[REDACTED]","password":"[REDACTED]","token":"[REDACTED]"}'
finding_status: "supported-offline"
limitations:
  - "Synthetic offline validation only; runtime efficacy was not tested."
  - "No claim is made about compliance, authorization, or production effectiveness."
accountable_owner: "Security Validation Owner"
independent_review: "Required before acceptance or closure."
```

Stop and mark the result `blocked` if any runtime control is missing, scope drifts, the authorization window expires, unsafe impact appears, or the operator requests cancellation. If the observation cannot be reproduced, record `not-tested`, `suspected`, or `false-positive` as applicable rather than treating missing evidence as a pass.

Files in this skill

  • eval-1.baseline.md510 B
  • eval-1.with-skill.md2 KB
  • eval-2.baseline.md160 B
  • eval-2.with-skill.md587 B
  • eval-3.baseline.md254 B
  • eval-3.with-skill.md473 B
  • trigger-1.md188 B
  • trigger-2.md130 B
  • trigger-3.md183 B
  • trigger-4.md154 B
  • trigger-5.md150 B
  • trigger-6.md162 B

Attribution

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments

Loading comments…