Microsoft Cloud Security Benchmark (MCSB v2) control-domain taxonomy and NIST 800-53 / CIS Controls crosswalk for planning and reviewing Azure cloud resources.
Idioma do texto original: inglês
Menu
Skills neste repositório
O SkillsMP coletou 72 skills de microsoft/hve-core. Abra uma skill para revisar a origem e os detalhes.
microsoft/hve-coreMostrando 32 de 72 skills coletadas.
Microsoft Cloud Security Benchmark (MCSB v2) control-domain taxonomy and NIST 800-53 / CIS Controls crosswalk for planning and reviewing Azure cloud resources.
Idioma do texto original: inglês
Performance, load, and reliability (SLO/SRE) planning for production readiness. Use when defining service level objectives, load characterization, capacity, latency budgets, stress/soak/spike test plans, false-positive baselines, and reliability targets. USE…
Idioma do texto original: inglês
Design Thinking handoff knowledge for research-ready rpi-research inputs and DT-aware rpi-plan, rpi-implement, and rpi-review context
Idioma do texto original: inglês
Compatibility alias for read-only prompt artifact review. Routes static and behavior analysis to hve-builder review mode.
Idioma do texto original: inglês
Compatibility alias for legacy prompt-building requests. Routes creation and improvement to the hve-builder skill.
Idioma do texto original: inglês
Compatibility alias for behavior-preserving prompt artifact cleanup. Routes refactoring to hve-builder refactor mode.
Idioma do texto original: inglês
Consolidated Responsible AI standards reference: NIST AI RMF 1.0, AI STRIDE threat-modeling overlay, EU AI Act risk tiers, and an open-standards catalog with phase mapping
Idioma do texto original: inglês
Challenge a confirmed task, decision, plan, or artifact through adaptive skeptical questions. Use when you need to expose assumptions before acting.
Idioma do texto original: inglês
Execute an approved RPI plan, maintain current planning state, and record implementation evidence. Use when implementation is ready to begin or resume.
Idioma do texto original: inglês
Independently critique an RPI plan and phase details against supplied evidence without editing plan sources. Use when planning credibility needs a read-only assessment.
Idioma do texto original: inglês
Create evidence-based RPI plans and phase details from supplied context, research, drafts, and decisions. Use when implementation planning is needed.
Idioma do texto original: inglês
Sequence Research, Plan, Implement, Review, and Follow-up for an RPI task. Use when one workflow should coordinate the full delivery lifecycle.
Idioma do texto original: inglês
Research-only RPI playbook that gathers task evidence, writes dated research artifacts under .copilot-tracking/research/, and hands off planning-ready findings. Use when the user needs evidence, alternatives, or task framing first.
Idioma do texto original: inglês
Compare RPI planning and implementation evidence, record review findings, and route follow-up work. Use when an implementation needs acceptance review.
Idioma do texto original: inglês
Guided, conversational walkthrough that explains code, UI, UX, features, or .copilot-tracking artifacts with navigable evidence links, deep subagent review, and a reconciled decisions-and-changes ledger. Use when the user wants to understand how something…
Idioma do texto original: inglês
Privacy planning reference for data-flow reasoning, standards mapping, and DPIA thresholds
Idioma do texto original: inglês
Foundational Python best practices, idioms, and code quality fundamentals
Idioma do texto original: inglês
Video-to-GIF conversion with FFmpeg two-pass optimization
Idioma do texto original: inglês
Generates PR reference XML with commit history and unified diffs between branches, with extension and path filtering. Use when creating pull request descriptions, preparing code reviews, analyzing branch changes, discovering work items from diffs, or…
Idioma do texto original: inglês
Design Thinking learning curriculum covering nine progressive modules across the full Problem, Solution, and Implementation Space methods plus a shared manufacturing reference scenario for teaching and practice
Idioma do texto original: inglês
Ultra-compressed response style that reduces output token count while preserving technical accuracy, with intensity levels and auto-clarity safety rules
Idioma do texto original: inglês
VS Code screenshot capture using Playwright MCP with serve-web for slide decks and documentation
Idioma do texto original: inglês
Software supply chain security reference for OpenSSF Scorecard, SLSA, Sigstore, SBOM, and posture/backlog taxonomies.
Idioma do texto original: inglês
Declarative OpenTelemetry-aligned telemetry vocabulary and instrumentation conventions for traces, metrics, logs, and PII handling
Idioma do texto original: inglês
OWASP Agentic Security Top 10 knowledge base for identifying, assessing, and remediating AI agent system security risks.
Idioma do texto original: inglês
OWASP CI/CD Top 10 knowledge base for identifying, assessing, and remediating CI/CD pipeline security risks.
Idioma do texto original: inglês
OWASP Infrastructure Top 10 knowledge base for identifying, assessing, and remediating internal IT infrastructure security risks.
Idioma do texto original: inglês
OWASP Top 10 for LLM Applications (2025) knowledge base for identifying, assessing, and remediating large language model security risks.
Idioma do texto original: inglês
OWASP MCP Top 10 knowledge base for identifying, assessing, and remediating Model Context Protocol security risks.
Idioma do texto original: inglês
OWASP Top 10 for Web Applications (2025) knowledge base for identifying, assessing, and remediating web application security risks.
Idioma do texto original: inglês
Secure by Design principles knowledge base for assessing security-first design, development, and deployment across the software lifecycle.
Idioma do texto original: inglês
Format specifications and data contracts for the security reviewer orchestrator and its subagents.
Idioma do texto original: inglês