threadlight-design
aiappsgbb/threadlight-skills
Spec out a business process or customer use case for an enterprise pilot, then generate agent architecture (AGENTS.md + Skills) — a durable SpecKit specification first (process flow, business rules, data models, tool contracts, mock data, KPIs, governance), then implementation artifacts derived from the spec. Targets named LOB processes in regulated industries (FSI, Mfg, Retail, Telco, Healthcare, Utilities) where a customer SME will judge the SPEC on industry realism before the demo even runs. USE FOR: design a process, spec out a use case, create agent architecture, automate a regulated workflow, threadlight design, skill factory, business process specification, speckit, define a customer scenario, mock backend systems, seller prep guide, demo script, demo prompts, lock the stack/model/hosting foundation. DO NOT USE FOR: running existing skills, executing code, deploying (use threadlight-deploy), general Q&A, internal Microsoft tooling automation, generic chatbot prototyping.
threadlight-govern
aiappsgbb/threadlight-skills
PROTECT-leg for threadlight pilots: makes the Microsoft Agent Governance Toolkit (AGT) actually govern a deployed agent — not just document it. Scaffolds a real, schema-valid, versioned `policy.yaml`, commits `agt test` fixtures, gates CI on `agt lint-policy` + `agt verify` (OWASP ASI 2026 attestation), and emits `specs/govern-manifest.json` for threadlight-production-ready pillars 2 and 7. USE FOR: agent action governance, AGT policy, agt lint-policy, agt test, agt verify, tool allow/deny, excessive-agency guardrail, default-deny policy, OWASP ASI 2026, governance CI gate, policy attestation, responsible-ai policy, PROTECT stage, govern leg, govern-manifest. DO NOT USE FOR: content filtering at the model edge (Azure AI Content Safety) — AGT governs actions; adversarial scanning (threadlight-redteam); quality evals (threadlight-evals); completeness gate (threadlight-safe-check); deep AGT authoring upstream (foundry-agt).
threadlight-production-ready
aiappsgbb/threadlight-skills
Use after threadlight-safe-check post-deploy returns green to take a deployed pilot from lab to ready for customer architecture review / CISO sign-off / paved path to production. Reads SPEC § 12 (posture, must-have pillars, residency, RTO/RPO, SLA, incident owner) and probes Azure to produce an advisory production-readiness scorecard + uplift plan + customer hand-off package across 13 pillars. Soft advisory — never fails a build. USE FOR: production readiness, prod-ready gate, customer architecture review, CISO sign-off prep, pilot-to-prod handover, paved path to production, citadel uplift, AGT uplift, AI gateway uplift, go-live readiness, hand-off package, SRE handover, Kratos export readiness. DO NOT USE FOR: deployment itself (threadlight-deploy), structural completeness gate (threadlight-safe-check), invocation testing (foundry-evals), middleware authoring (foundry-agt), citadel hub provisioning (citadel-hub-deploy), access contracts (citadel-spoke-onboarding).