Rewrite 548 skill descriptions to the activation rubric

Each rewritten description now states both what the skill does (concrete
capability, named tools/artifacts) and an explicit when-to-use trigger,
improving agent discovery/activation. Grounded in each skill's own body;
changes confined to the `description` field only (bodies and all other
frontmatter untouched). Produced by a gated audit->rewrite->recheck loop
(548 -> 0 flagged) with a sampled anti-invention check (0 ungrounded).

Schema: 817/817 pass. Framework-ID gate: 0 defects.
This commit is contained in:
Mahipal
2026-08-02 09:32:13 -07:00
parent 04a207702e
commit 2fb6a9faff
548 changed files with 2189 additions and 1915 deletions
@@ -1,12 +1,10 @@
---
name: performing-graphql-introspection-attack
description: 'Performs GraphQL introspection attacks to extract the full API schema
including types, queries, mutations, subscriptions, and field definitions from GraphQL
endpoints. The tester uses introspection queries to map the attack surface, identifies
sensitive fields and mutations, tests for query depth and complexity limits, and
exploits GraphQL-specific vulnerabilities including batching attacks, alias-based
brute force, and nested query DoS. Activates for requests involving GraphQL security
testing, introspection attack, GraphQL enumeration, or GraphQL API penetration testing.
description: 'Performs GraphQL introspection attacks that extract the full API schema
(types, queries, mutations, subscriptions, field definitions), map the attack surface,
test query depth/complexity limits, and exploit GraphQL-specific weaknesses such
as batching attacks, alias-based brute force, and nested query DoS. Use for GraphQL
security testing, schema enumeration, or GraphQL API penetration testing.
'
domain: cybersecurity