Rewrite 548 skill descriptions to the activation rubric

Each rewritten description now states both what the skill does (concrete
capability, named tools/artifacts) and an explicit when-to-use trigger,
improving agent discovery/activation. Grounded in each skill's own body;
changes confined to the `description` field only (bodies and all other
frontmatter untouched). Produced by a gated audit->rewrite->recheck loop
(548 -> 0 flagged) with a sampled anti-invention check (0 ungrounded).

Schema: 817/817 pass. Framework-ID gate: 0 defects.
This commit is contained in:
Mahipal
2026-08-02 09:32:13 -07:00
parent 04a207702e
commit 2fb6a9faff
548 changed files with 2189 additions and 1915 deletions
@@ -1,10 +1,10 @@
---
name: securing-github-actions-workflows
description: 'This skill covers hardening GitHub Actions workflows against supply
chain attacks, credential theft, and privilege escalation. It addresses pinning
actions to SHA digests, minimizing GITHUB_TOKEN permissions, protecting secrets
from exfiltration, preventing script injection in workflow expressions, and implementing
required reviewers for workflow changes.
description: 'Hardens GitHub Actions workflows against supply chain attacks, credential
theft, and privilege escalation: pinning actions to SHA digests, minimizing GITHUB_TOKEN
permissions, protecting secrets, preventing script injection in workflow expressions,
and requiring reviewers for workflow changes. Use when hardening GitHub Actions
workflows that handle secrets, deploy to production, or run with elevated permissions.
'
domain: cybersecurity