Microsoft Cloud Security Benchmark (MCSB v2) control-domain taxonomy and NIST 800-53 / CIS Controls crosswalk for planning and reviewing Azure cloud resources.
Langue du texte source : anglais
Menu
Skills dans ce dépôt
SkillsMP a collecté 72 skills depuis microsoft/hve-core. Ouvrez un skill pour examiner sa source et ses détails.
microsoft/hve-coreAffichage de 32 skills collectés sur 72.
Microsoft Cloud Security Benchmark (MCSB v2) control-domain taxonomy and NIST 800-53 / CIS Controls crosswalk for planning and reviewing Azure cloud resources.
Langue du texte source : anglais
Performance, load, and reliability (SLO/SRE) planning for production readiness. Use when defining service level objectives, load characterization, capacity, latency budgets, stress/soak/spike test plans, false-positive baselines, and reliability targets. USE…
Langue du texte source : anglais
Design Thinking handoff knowledge for research-ready rpi-research inputs and DT-aware rpi-plan, rpi-implement, and rpi-review context
Langue du texte source : anglais
Compatibility alias for read-only prompt artifact review. Routes static and behavior analysis to hve-builder review mode.
Langue du texte source : anglais
Compatibility alias for legacy prompt-building requests. Routes creation and improvement to the hve-builder skill.
Langue du texte source : anglais
Compatibility alias for behavior-preserving prompt artifact cleanup. Routes refactoring to hve-builder refactor mode.
Langue du texte source : anglais
Consolidated Responsible AI standards reference: NIST AI RMF 1.0, AI STRIDE threat-modeling overlay, EU AI Act risk tiers, and an open-standards catalog with phase mapping
Langue du texte source : anglais
Challenge a confirmed task, decision, plan, or artifact through adaptive skeptical questions. Use when you need to expose assumptions before acting.
Langue du texte source : anglais
Execute an approved RPI plan, maintain current planning state, and record implementation evidence. Use when implementation is ready to begin or resume.
Langue du texte source : anglais
Independently critique an RPI plan and phase details against supplied evidence without editing plan sources. Use when planning credibility needs a read-only assessment.
Langue du texte source : anglais
Create evidence-based RPI plans and phase details from supplied context, research, drafts, and decisions. Use when implementation planning is needed.
Langue du texte source : anglais
Sequence Research, Plan, Implement, Review, and Follow-up for an RPI task. Use when one workflow should coordinate the full delivery lifecycle.
Langue du texte source : anglais
Research-only RPI playbook that gathers task evidence, writes dated research artifacts under .copilot-tracking/research/, and hands off planning-ready findings. Use when the user needs evidence, alternatives, or task framing first.
Langue du texte source : anglais
Compare RPI planning and implementation evidence, record review findings, and route follow-up work. Use when an implementation needs acceptance review.
Langue du texte source : anglais
Guided, conversational walkthrough that explains code, UI, UX, features, or .copilot-tracking artifacts with navigable evidence links, deep subagent review, and a reconciled decisions-and-changes ledger. Use when the user wants to understand how something…
Langue du texte source : anglais
Privacy planning reference for data-flow reasoning, standards mapping, and DPIA thresholds
Langue du texte source : anglais
Foundational Python best practices, idioms, and code quality fundamentals
Langue du texte source : anglais
Video-to-GIF conversion with FFmpeg two-pass optimization
Langue du texte source : anglais
Generates PR reference XML with commit history and unified diffs between branches, with extension and path filtering. Use when creating pull request descriptions, preparing code reviews, analyzing branch changes, discovering work items from diffs, or…
Langue du texte source : anglais
Design Thinking learning curriculum covering nine progressive modules across the full Problem, Solution, and Implementation Space methods plus a shared manufacturing reference scenario for teaching and practice
Langue du texte source : anglais
Ultra-compressed response style that reduces output token count while preserving technical accuracy, with intensity levels and auto-clarity safety rules
Langue du texte source : anglais
VS Code screenshot capture using Playwright MCP with serve-web for slide decks and documentation
Langue du texte source : anglais
Software supply chain security reference for OpenSSF Scorecard, SLSA, Sigstore, SBOM, and posture/backlog taxonomies.
Langue du texte source : anglais
Declarative OpenTelemetry-aligned telemetry vocabulary and instrumentation conventions for traces, metrics, logs, and PII handling
Langue du texte source : anglais
OWASP Agentic Security Top 10 knowledge base for identifying, assessing, and remediating AI agent system security risks.
Langue du texte source : anglais
OWASP CI/CD Top 10 knowledge base for identifying, assessing, and remediating CI/CD pipeline security risks.
Langue du texte source : anglais
OWASP Infrastructure Top 10 knowledge base for identifying, assessing, and remediating internal IT infrastructure security risks.
Langue du texte source : anglais
OWASP Top 10 for LLM Applications (2025) knowledge base for identifying, assessing, and remediating large language model security risks.
Langue du texte source : anglais
OWASP MCP Top 10 knowledge base for identifying, assessing, and remediating Model Context Protocol security risks.
Langue du texte source : anglais
OWASP Top 10 for Web Applications (2025) knowledge base for identifying, assessing, and remediating web application security risks.
Langue du texte source : anglais
Secure by Design principles knowledge base for assessing security-first design, development, and deployment across the software lifecycle.
Langue du texte source : anglais
Format specifications and data contracts for the security reviewer orchestrator and its subagents.
Langue du texte source : anglais