Rewrite 548 skill descriptions to the activation rubric

Each rewritten description now states both what the skill does (concrete
capability, named tools/artifacts) and an explicit when-to-use trigger,
improving agent discovery/activation. Grounded in each skill's own body;
changes confined to the `description` field only (bodies and all other
frontmatter untouched). Produced by a gated audit->rewrite->recheck loop
(548 -> 0 flagged) with a sampled anti-invention check (0 ungrounded).

Schema: 817/817 pass. Framework-ID gate: 0 defects.
This commit is contained in:
Mahipal
2026-08-02 09:32:13 -07:00
parent 04a207702e
commit 2fb6a9faff
548 changed files with 2189 additions and 1915 deletions
@@ -1,10 +1,10 @@
---
name: implementing-infrastructure-as-code-security-scanning
description: 'This skill covers implementing automated security scanning for Infrastructure
as Code (IaC) templates using tools like Checkov, tfsec, and KICS. It addresses
detecting misconfigurations in Terraform, CloudFormation, Kubernetes manifests,
and Helm charts before deployment, establishing policy-based governance, and integrating
IaC scanning into CI/CD pipelines to prevent insecure cloud resource provisioning.
description: 'Implements automated security scanning for Infrastructure as Code using
Checkov, tfsec, and KICS to detect misconfigurations in Terraform, CloudFormation,
Kubernetes manifests, and Helm charts, plus policy-based governance and CI/CD
integration. Use when validating cloud infrastructure before deployment or blocking
insecure changes (public S3 buckets, open security groups) in pull requests.
'
domain: cybersecurity