Skip to main content

Cosmian/kms

SkillsMP has collected 30 skills from Cosmian/kms. Open a skill to review its source and details.

Latest recorded source activity
SkillsMP catalog refreshed
skills collected
30
GitHub stars
347
GitHub forks
38

Showing 30 of 30 collected skills.

occupation
Software Developers
description

Scan Rust code for every form of panic or brutal process exit: panic!, todo!, unimplemented!, unreachable!, .unwrap(), .expect() in production, process::exit/abort, integer overflow, and out-of-bounds indexing. Produces a ranked report with patches. Use when…

updated
occupation
Software Developers
description

Hardcore Rust code review gate: orchestrates ALL Rust review skills in sequence (panic audit, error propagation, async refactor, simplify, refactor, patterns, security, cryptography). Each skill writes its report to ./review/. Produces a unified go/no-go…

updated
occupation
Software Developers
description

Write the next version entry at the top of CHANGELOG.md by summarizing all changes since the last tagged release. Use when preparing release notes.

updated
occupation
Software Developers
description

Create an Architectural Decision Record (ADR) under documentation/docs/adr/. Use when making or documenting an architectural decision.

updated
occupation
Software Quality Assurance Analysts & Testers
description

Acts as the final quality gate for Eviden KMS PRs. Assumes all automated tests pass upstream. Builds an ACC risk map from git diff, runs adversarial tours against a live KMS instance, and produces a finding report. Use when reviewing a PR, testing a new…

updated
occupation
Software Quality Assurance Analysts & Testers
description

Walk through the full KMS test vector creation workflow: directory, manifest.toml, TTLV steps, vector_runner.rs registration, README count. Use when creating test vectors.

updated
occupation
Information Security Analysts
description

Verify code and protocol implementations against the exact text of applicable standards (FIPS, NIST SP, RFC, KMIP, PKCS, BSI, ANSSI, OWASP). Every citation is URL-verified — no hallucinated section numbers. Use when checking standards compliance or before a…

updated
occupation
Information Security Analysts
description

STRIDE-A threat model analysis for the Eviden KMS. Two modes: full analysis or incremental update. Use when asked to perform a threat model, generate a DFD, or update threat analysis.

updated
occupation
Software Developers
description

Diátaxis documentation expert for the KMS docs site. Creates tutorials, how-to guides, reference pages, and explanations. Use when writing or updating documentation.

updated
occupation
Software Developers
description

Auto-detect changed files via git diff and emit only the applicable AGENTS.md synchronization sub-rules as a checklist. Use after every code change.

updated
occupation
Software Developers
description

Audit actix-web middleware ordering, LIFO `.wrap()` evaluation, Condition guard correctness, and request-extension injection. Use when adding or reordering middleware in start_kms_server.rs.

updated
occupation
Software Developers
description

Detect sequential .await chains that could be parallelized with tokio::join!/try_join!, unnecessary Arc/Box::pin in async contexts, and blocking calls on async paths. Use when performance-tuning transit/PKI or KMIP operation handlers.

updated
occupation
Software Developers
description

Analyze Result propagation chains: find missed ? opportunities, .map_err(|e| e.to_string()) anti-patterns, lost error context, and suggest KmsError enrichment. Use before PR for error-handling hygiene.

updated
occupation
Software Developers
description

Create or update the branch CHANGELOG entry. Use when writing a changelog entry for this branch.

updated
occupation
Software Developers
description

Simplify recently changed code for clarity, reuse, quality, and efficiency while preserving behavior. Use for tidy/refactor passes; use ce-debug for bugs.

updated
occupation
Software Developers
description

Scan Rust code for simplification opportunities — nested control flow, long functions, dead code, boolean param traps, redundant iterator chains, and Clippy-flagged complexity. Use when asked to simplify code, reduce cognitive complexity, clean up code, or…

updated
occupation
Software Developers
description

Audit GitHub Actions workflows for efficiency and recommend fixes to reduce CI minutes and costs. Use when asked to improve CI performance.

updated
occupation
Software Developers
description

Fix CI failures in a loop until all GitHub workflow runs on the current branch are green. Use when CI is failing and needs automated repair.

updated
occupation
Information Security Analysts
description

AI-powered security scanner — OWASP Top 10, CWE Top 25, KMIP authorization, FIPS gating, memory safety, side-channel, supply chain, and 20 vulnerability families. Use when asked to review code security, audit KMIP access control, or scan for vulnerabilities.

updated
occupation
Information Security Analysts
description

Comprehensive cryptographic audit: FIPS 140-3, BSI TR-02102, ANSSI, NIST SP 800-series compliance, algorithm allow-list, key sizes, feature-flag gating, OpenSSL provider init, key lifecycle, multi-standard matrix, and academic cryptanalysis cross-check. Use…

updated
occupation
Information Security Analysts
description

Comprehensive security audit orchestrator: invokes /security-review, /cryptography-review, /threat-model, and /standards-review in sequence. Produces a unified go/no-go report. Use for full security audit before release or after significant changes.

updated
occupation
Software Developers
description

Release readiness gate: runs all AI audit skills in sequence and produces a go/no-go report. Use before triggering the release workflow.

updated
occupation
Software Quality Assurance Analysts & Testers
description

Run a comprehensive code quality audit on Rust code: find duplication, check design patterns, enforce Clippy zero-warnings, and review CI efficiency. Use before a PR or when you want to improve code quality.

updated
occupation
Software Developers
description

Validate a KMIP operation against the KMIP 2.1 spec, dispatch table, and type definitions. Use when adding or modifying a KMIP operation.

updated
occupation
Software Developers
description

Implement a new REST endpoint following sync rule 4.2: handler, routes/mod.rs, start_kms_server.rs with LIFO middleware, openapi.yaml, validation tests. Use when adding a new REST endpoint.

updated
occupation
Software Quality Assurance Analysts & Testers
description

Create Playwright E2E tests for the KMS Web UI following project conventions: data-testid, Ant Design Select helpers, regex assertions, FIPS skips. Use when adding E2E tests.

updated
occupation
Web Developers
description

React 19 + Ant Design 5 + Tailwind 4 + Vite 7 patterns for the KMS Web UI: WASM integration, FIPS guards, data-testid placement, Playwright companion. Use as a reference for UI development patterns.

updated
occupation
Software Developers
description

Plan a multi-file Rust refactor safely: investigate, plan, confirm, implement. Use before any multi-file refactor.

updated
occupation
Software Developers
description

KMS-specific Rust design patterns: newtype wrappers, builder config, command pattern for KMIP ops, trait-based HSM/DB abstraction, key lifecycle state machine. Use as a reference for Rust patterns in this codebase.

updated
occupation
Software Developers
description

Find duplication in Rust code and consolidate it using Traits, Generics, shared functions, and macros. Use when asked to reduce Rust code duplication.

updated
Showing 30 of 30 collected skills.