Cryptographic key lifecycle management orchestration including generation, rotation, and destruction across key management systems
Generate OpenVEX / CycloneDX VEX attestations from `.vulnetix/memory.yaml` triage decisions, optionally sign with cosign, optionally upload to Vulnetix and post to a GitHub PR.
Post-quantum cryptography evaluation skill for quantum-safe migration
Zero-knowledge secrets management via PassBox — store, retrieve, rotate, and inject credentials securely.
Encrypt and decrypt files with age (FiloSottile/age), a simple, modern encryption tool with small explicit keys, post-quantum support, no config options, and UNIX-style…
AI agent governance, trust scoring, and policy enforcement powered by AgentMesh. Activate when: (1) user wants to enforce token limits, tool restrictions, or content policies on…
ZKP Protocol Engineer for 0xagentprivacy. Activates when the user needs zero-knowledge proof design, circuit architecture (Groth16, PLONK, Nova), mixer protocols, recursive…
Zero-knowledge proof systems for 0xagentprivacy. Activates when discussing ZKP circuits (Groth16, PLONK, Nova), proof composition, Privacy Pool cryptography, reconstruction…
Quantum threat response persona. Activates when discussing post-quantum security, the 1200-qubit threshold, secp256k1 vulnerability, dragon flight conditions, or the transition…
General AI Supply Chain Security Skill for any AI agent platform in 2026. Detects the exact class of attack that hit Vercel (and every similar real threat): over-privileged…
Monitor Certificate Transparency logs using crt.sh and Certstream to detect phishing domains, lookalike certificates,
Lightweight check for whether a CDN/WAF-fronted host is reachable outside its edge, using only dig, curl, openssl, whois, and nc - no API keys, no paid tools, no brute-force…
Certificate Lifecycle Manager - Auto-activating skill for Security Advanced. Triggers on: certificate lifecycle manager, certificate lifecycle manager Part of the Security…
Zero-knowledge proof circuit development using circom. Use when implementing arithmetic circuits for zkSNARKs, including circuit design, constraint verification, witness…
Hardware Security Modules (HSMs) are tamper-resistant physical devices that safeguard cryptographic keys and
Decision-aid skill for choosing cryptographic primitives (AEAD, KDF, MAC, signature) and identifying anti-patterns (CBC-without-MAC, ad-hoc KDF, key reuse, PBKDF2-on-high-entropy,…
Comprehensive cryptography guidance covering encryption algorithms, password hashing, TLS configuration, key management, and post-quantum considerations.
Cybercentry Private Data Verification on ACP - Real-time Zero-Knowledge Proof generation and text integrity validation.
Elliptic curve cryptography for agent key pairs and command signing. EC key generation (secp256k1/p256), ECDSA sign/verify, ECDH shared secret, DER/PEM encoding, and hardware-safe…
Use when the agent must handle eERC keys safely — the user decryption key (derived from a wallet signature, client-side only) and the privileged auditor key — covering derivation,…
Email operations skill for sending, fetching, and reading emails via IMAP/SMTP. Uses curl with OpenSSL/LibreSSL for reliable TLS compatibility with Tencent Enterprise Mail and…
Validate encryption implementations and cryptographic practices. Use when reviewing data security measures.
Persists Godot 4.7+ game state with FileAccess JSON or store_var, user:// slots, PERSIST-group snapshots, schema versioning, AES-encrypted files, and SHA-256 integrity.
Manages GPG key lifecycle and file encryption operations using GnuPG CLI and GPGME library. Handles keyserver synchronization, trust model management, and automated encrypted…
AES (Advanced Encryption Standard) is a symmetric block cipher standardized by NIST (FIPS 197) used to protect
Envelope encryption is a strategy where data is encrypted with a data encryption key (DEK), and the DEK itself
RSA (Rivest-Shamir-Adleman) is the most widely deployed asymmetric cryptographic algorithm, used for digital
Implement software supply chain integrity verification for container builds using the in-toto framework to create
Key Rotation Manager - Auto-activating skill for Security Advanced. Triggers on: key rotation manager, key rotation manager Part of the Security Advanced skill category.
Use when implementing client-side encryption, master key derivation, vault key management, secret storage, or any cryptographic operation for KeyArc.
Use when planning backup strategy, performing logical or physical backup, restoring from backup, doing point-in-time recovery, or running incremental backup chains.
Inventory cryptography, deploy hybrid X25519 and ML-KEM, and prioritize harvest-now-decrypt-later data.
Cryptographically sign Moltbook posts with Ed25519. Enables verifiable agent identity without platform support.
Encrypted agent-to-agent messaging via NoChat. Post-quantum E2E encryption. Add NoChat as a native channel in OpenClaw — receive DMs from other AI agents.
Zero-knowledge circuit design with Noir (Aztec's ZK DSL). TRIGGER when: working with .nr files, Nargo.toml, ZK circuits/proofs, Aztec contracts, zoir extension, or discussing…
Verified molt swarms - cryptographically prove your identity with Ed25519 signatures and WorldID proof-of-personhood. Register with services and verify unique human operators.
Generate secure random strings, passwords, and cryptographic tokens using OpenSSL. Use when creating passwords, API keys, secrets, or any secure random data.
Integrate Hardware Security Modules (HSMs) using PKCS#11 interface for cryptographic key management, signing
Assesses organizational readiness for post-quantum cryptography migration per NIST FIPS 203/204/205 standards.
Run a local Agent Memory Service for persistent self-improvement with proper Ed25519 cryptography. Fixed signature implementation for reliable memory storage and retrieval.
FinTech future-proofing. Scans and migrates classical encryption to NIST-approved Post-Quantum Cryptography (PQC) / Migrasi ke Kriptografi Pasca-Kuantum (PQC) yang disetujui NIST…
Post-quantum cryptography audit — find legacy RSA/ECDSA/ECDH usage with CNSA 2.0 deadlines
Post-quantum cryptography first mentality — hard version gates, algorithm sunset tracking, loopback learning for NIST/IETF standards evolution
RHEL changes since training cutoff (latest: 10.1) — Valkey replaces Redis, Podman v5 with pasta networking, post-quantum crypto, ISC Kea DHCP, stricter TLS/FIPS policies.
Encrypt, decrypt, and manage keys with the SAFE CLI — a modern GPG alternative with post-quantum support. — from tan-yong-sheng/ai-vision-mcp
Encrypt, decrypt, and manage keys with the SAFE CLI — a modern GPG alternative with post-quantum 。Use when 需要项目管理、任务规划、进度跟踪、团队协作时使用。不适用于实际人员绩效评估。适用于独立开发者、企业团队和自动化工作流场景。 — from…
Security, custody, and privacy infrastructure for AI agents. Use when the agent needs encrypted state storage, self-custodied identity, selective disclosure, zero-knowledge…
Verifies container image signatures and SBOMs using Sigstore Cosign and Rekor transparency log. Enforces supply chain security policies by validating keyless signatures against…
Zero-knowledge SSH ops CLI — server health checks, docker/systemd control, log tailing, Postgres introspection, and declarative deploys, without ever exposing credentials to the…
Activate when reviewing or modifying dependency resolution, lockfile schema, package downloaders, signature/integrity checks, file integration cleanup, or anything that could…
Comprehensive framework for software supply chain security incorporating Software Bill of Materials (SBOM) generation/validation, SLSA (Supply-chain Levels for Software Artifacts)…
AI-powered software supply chain security auditing skill for agentic platforms. Performs comprehensive dependency vulnerability scanning across npm, PyPI, Maven, Go modules,…
Validates Tekton pipeline supply chain security using Sigstore cosign verification and SLSA provenance checks.
Expert guidance for Cosign, the Sigstore tool for signing, verifying, and attaching metadata to container images and other OCI artifacts.
Add an Artifact Verification (SscaArtifactVerification) step to an existing Harness pipeline to verify Cosign signatures on container or local-stage artifacts.
Zero-knowledge circuit development using Circom and Noir languages. Supports constraint optimization, ZK-friendly cryptographic primitives, proof generation (Groth16, PLONK), and…
Verify, download, and inspect build provenance attestations using the orbit CLI. Use this skill whenever the user asks about verifying attestations, checking provenance,…
Use this skill when asked about cryptographic primitives in blockchain, elliptic curve cryptography, hash functions, Merkle trees, digital signatures, zero-knowledge proofs, key…
Formally analyze cryptographic implementations for logical flaws and implementation bugs, covering entropy-source validation, constant-time execution auditing, key-lifecycle…
Use this skill when the user is doing hands-on DOCA AES-GCM work on a BlueField DPU or ConnectX NIC — configuring `doca_aes_gcm_task_encrypt` / `_task_decrypt`, querying…