mirror of
https://github.com/mukul975/Anthropic-Cybersecurity-Skills.git
synced 2026-06-26 11:44:37 +03:00
feat: enrich 209 skills with MITRE ATLAS, D3FEND, and NIST AI RMF frontmatter
Added structured security framework mappings to SKILL.md frontmatter across all applicable skills: - atlas_techniques: MITRE ATLAS v5.5 AML.TXXXX IDs (81 skills, AI-targeted attack techniques) - d3fend_techniques: MITRE D3FEND v1.3 defensive technique labels (139 skills, mapped from ATT&CK IDs) - nist_ai_rmf: NIST AI RMF 1.0 subcategory IDs (85 skills, AI risk management functions) Also updates ATTACK_COVERAGE.md with coverage statistics for all three frameworks.
This commit is contained in:
@@ -1,18 +1,31 @@
|
||||
---
|
||||
name: implementing-api-key-security-controls
|
||||
description: >
|
||||
Implements secure API key generation, storage, rotation, and revocation controls to protect
|
||||
API authentication credentials from leakage, brute force, and abuse. The engineer designs
|
||||
API key formats with sufficient entropy, implements secure hashing for storage, enforces
|
||||
per-key scoping and rate limiting, monitors for leaked keys in public repositories, and
|
||||
builds key rotation workflows. Activates for requests involving API key management, API
|
||||
key security, key rotation policy, or API credential protection.
|
||||
description: 'Implements secure API key generation, storage, rotation, and revocation controls to protect API authentication
|
||||
credentials from leakage, brute force, and abuse. The engineer designs API key formats with sufficient entropy, implements
|
||||
secure hashing for storage, enforces per-key scoping and rate limiting, monitors for leaked keys in public repositories,
|
||||
and builds key rotation workflows. Activates for requests involving API key management, API key security, key rotation policy,
|
||||
or API credential protection.
|
||||
|
||||
'
|
||||
domain: cybersecurity
|
||||
subdomain: api-security
|
||||
tags: [api-security, api-keys, credential-management, key-rotation, secret-management]
|
||||
tags:
|
||||
- api-security
|
||||
- api-keys
|
||||
- credential-management
|
||||
- key-rotation
|
||||
- secret-management
|
||||
version: 1.0.0
|
||||
author: mahipal
|
||||
license: Apache-2.0
|
||||
nist_ai_rmf:
|
||||
- MEASURE-2.7
|
||||
- MAP-5.1
|
||||
- MANAGE-2.4
|
||||
atlas_techniques:
|
||||
- AML.T0070
|
||||
- AML.T0066
|
||||
- AML.T0082
|
||||
---
|
||||
# Implementing API Key Security Controls
|
||||
|
||||
|
||||
Reference in New Issue
Block a user