feat: director-of-compliance-and-information-security-in-gambling skill package v0.1.0
This commit is contained in:
30
PROVENANCE.md
Normal file
30
PROVENANCE.md
Normal file
@@ -0,0 +1,30 @@
|
||||
# Data provenance — director-of-compliance-and-information-security-in-gambling
|
||||
|
||||
Where the content of this skill package comes from, counted by
|
||||
content items (tasks, competences, tools, evidence entries, curated
|
||||
knowledge). Rendered live by Gitea:
|
||||
|
||||
```mermaid
|
||||
%%{init: {'theme':'base','themeVariables':{'pie1':'#f9a825','pie2':'#1e88e5','pie3':'#d97757','pie4':'#8e24aa','pieOuterStrokeWidth':'0px','pieSectionTextColor':'#fff'}}}%%
|
||||
pie showData
|
||||
title Content sources — director-of-compliance-and-information-security-in-gambling
|
||||
"ESCO (occupation & competences)" : 20
|
||||
"O*NET (tasks & tools)" : 136
|
||||
"Anthropic official Claude skills" : 7
|
||||
"External AI skill packs (mapped)" : 157
|
||||
```
|
||||
|
||||
| Source | Items | Share | Files |
|
||||
|---|---|---|---|
|
||||
| ESCO (occupation & competences) | 20 | 6.2 % | references/profile.md, references/skills.md |
|
||||
| O*NET (tasks & tools) | 136 | 42.5 % | references/tasks.md, references/tools.md |
|
||||
| Job boards (market evidence) | 0 | 0.0 % | references/market.md (full report) + "Market evidence" headline sections |
|
||||
| Wikipedia & AI expert curation | 0 | 0.0 % | glossary, literature, usecases, intake, quality, evals/ |
|
||||
| Anthropic official Claude skills | 7 | 2.2 % | references/ai-skills.md, section "anthropics/skills" (official Claude Code skills) |
|
||||
| External AI skill packs (mapped) | 157 | 49.1 % | references/ai-skills.md (per-source attribution inside) |
|
||||
| Stack Exchange practitioner Q&A (CC-BY-SA) | 0 | 0.0 % | references/practitioner-qa.md (per-entry attribution inside) |
|
||||
|
||||
Licensing: O*NET (USDOL/ETA, CC BY 4.0) · ESCO (© European Union) ·
|
||||
job-ad evidence via official APIs (JSearch/Adzuna) · Wikipedia content
|
||||
paraphrased with source URLs — never copied · external AI skills are
|
||||
linked, not copied (Apache-2.0/MIT/source-available, see ai-skills.md).
|
||||
50
SKILL.md
Normal file
50
SKILL.md
Normal file
@@ -0,0 +1,50 @@
|
||||
---
|
||||
name: director-of-compliance-and-information-security-in-gambling
|
||||
description: "Occupational skill for the role 'director of compliance and information security in gambling' (also: manager of compliance and information security in gambling, gambing compliance and information security manager, gambling compliance and information security director). Use when the user asks for typical director of compliance and information security in gambling work such as: typical director of compliance and information security in gambling responsibilities"
|
||||
---
|
||||
|
||||
# Director Of Compliance And Information Security In Gambling
|
||||
|
||||
Directors of compliance and information security in gambling follow the regulatory compliance for gambling and oversee information security to ensure secure and safe use of all information technology associated with gambling.
|
||||
|
||||
## Core workflow
|
||||
|
||||
|
||||
## How to use this skill
|
||||
|
||||
- Read [references/profile.md](references/profile.md) for the occupation profile and scope.
|
||||
- Consult [references/tasks.md](references/tasks.md) for the full task and activity inventory.
|
||||
- Check [references/skills.md](references/skills.md) for essential vs. optional competences.
|
||||
- Check [references/tools.md](references/tools.md) for the software commonly used in this role.
|
||||
- See [references/ai-skills.md](references/ai-skills.md) — matched external AI agent skills (per-source attribution).
|
||||
|
||||
## Key competences (essential)
|
||||
|
||||
- apply conflict management
|
||||
- ensure compliance with policies
|
||||
- follow ethical code of conduct of gambling
|
||||
- gambling games
|
||||
- handle customer complaints
|
||||
- handle game complaints
|
||||
- implement ICT security policies
|
||||
- information security strategy
|
||||
- legal standards in gambling
|
||||
- manage gambling operation
|
||||
- online gambling
|
||||
- responsible gambling
|
||||
|
||||
## Hot technologies
|
||||
|
||||
- Adobe Acrobat
|
||||
- Apple Safari
|
||||
- Microsoft Access
|
||||
- Microsoft Excel
|
||||
- Microsoft Office software
|
||||
- Microsoft Outlook
|
||||
- Microsoft PowerPoint
|
||||
- Microsoft Project
|
||||
- Microsoft SharePoint
|
||||
- Microsoft Visio
|
||||
|
||||
---
|
||||
*Sources: ESCO v1.2.1 (http://data.europa.eu/esco/occupation/7a3996d8-b90d-4b81-bd5e-e37f005b2683), O*NET 30.3 (11-9199.02, manual nearest match). See manifest.json for licensing/attribution.*
|
||||
238
manifest.json
Normal file
238
manifest.json
Normal file
@@ -0,0 +1,238 @@
|
||||
{
|
||||
"name": "director-of-compliance-and-information-security-in-gambling",
|
||||
"title": "director of compliance and information security in gambling",
|
||||
"version": "0.1.0",
|
||||
"layer": "core",
|
||||
"language": "en",
|
||||
"generated": "2026-07-07",
|
||||
"ids": {
|
||||
"esco_uri": "http://data.europa.eu/esco/occupation/7a3996d8-b90d-4b81-bd5e-e37f005b2683",
|
||||
"esco_code": "1213.9.1",
|
||||
"isco_group": "1213",
|
||||
"onet_soc": "11-9199.02",
|
||||
"crosswalk_match": "manual nearest via ISCO 1213 (Compliance Managers)"
|
||||
},
|
||||
"sources": [
|
||||
{
|
||||
"name": "ESCO",
|
||||
"version": "1.2.1",
|
||||
"url": "https://esco.ec.europa.eu/"
|
||||
},
|
||||
{
|
||||
"name": "O*NET",
|
||||
"version": "30.3",
|
||||
"url": "https://www.onetcenter.org/",
|
||||
"license": "CC BY 4.0"
|
||||
}
|
||||
],
|
||||
"attribution": "This package includes information from the O*NET Database (v30.3) by the U.S. Department of Labor, Employment and Training Administration (USDOL/ETA), CC BY 4.0. skillfactor is not endorsed by USDOL/ETA. ESCO data (v1.2.1) (c) European Union, used per the ESCO download conditions: https://esco.ec.europa.eu/en/use-esco/download",
|
||||
"counts": {
|
||||
"tasks": 0,
|
||||
"dwas": 0,
|
||||
"skills_essential": 12,
|
||||
"skills_optional": 7,
|
||||
"software": 0
|
||||
},
|
||||
"enrichment_ai_skills": {
|
||||
"generated": "2026-07-14",
|
||||
"method": "deterministic mapping (ISCO prefix + title/competence keywords)",
|
||||
"sources": {
|
||||
"anthropics/skills": {
|
||||
"repo": "https://github.com/anthropics/skills",
|
||||
"commit": "f6656c1",
|
||||
"license": "Apache-2.0; the document skills (docx/pdf/pptx/xlsx) are source-available \u2014 see the LICENSE.txt in the upstream skill folder",
|
||||
"skills": 4
|
||||
},
|
||||
"wshobson/agents": {
|
||||
"repo": "https://github.com/wshobson/agents",
|
||||
"commit": "6fd3247",
|
||||
"license": "MIT (c) Seth Hobson",
|
||||
"skills": 12
|
||||
},
|
||||
"ConardLi/garden-skills": {
|
||||
"repo": "https://github.com/ConardLi/garden-skills",
|
||||
"commit": "fbd6453",
|
||||
"license": "MIT",
|
||||
"skills": 1
|
||||
},
|
||||
"a5c-ai/babysitter": {
|
||||
"repo": "https://github.com/a5c-ai/babysitter",
|
||||
"commit": "44a5d58b",
|
||||
"license": "MIT",
|
||||
"skills": 9
|
||||
},
|
||||
"jeremylongshore/claude-code-plugins-plus-skills": {
|
||||
"repo": "https://github.com/jeremylongshore/claude-code-plugins-plus-skills",
|
||||
"commit": "e112938a",
|
||||
"license": "MIT",
|
||||
"skills": 12
|
||||
},
|
||||
"mukul975/Anthropic-Cybersecurity-Skills": {
|
||||
"repo": "https://github.com/mukul975/Anthropic-Cybersecurity-Skills",
|
||||
"commit": "673da1f",
|
||||
"license": "Apache-2.0",
|
||||
"skills": 12
|
||||
},
|
||||
"alirezarezvani/claude-skills": {
|
||||
"repo": "https://github.com/alirezarezvani/claude-skills",
|
||||
"commit": "0241f43",
|
||||
"license": "MIT",
|
||||
"skills": 1
|
||||
},
|
||||
"vibeeval/vibecosystem": {
|
||||
"repo": "https://github.com/vibeeval/vibecosystem",
|
||||
"commit": "cea9462",
|
||||
"license": "MIT",
|
||||
"skills": 1
|
||||
},
|
||||
"Sushegaad/Claude-Skills-Governance-Risk-and-Compliance": {
|
||||
"repo": "https://github.com/Sushegaad/Claude-Skills-Governance-Risk-and-Compliance",
|
||||
"commit": "71d8920",
|
||||
"license": "MIT",
|
||||
"skills": 1
|
||||
},
|
||||
"samber/cc-skills-golang": {
|
||||
"repo": "https://github.com/samber/cc-skills-golang",
|
||||
"commit": "4881c01",
|
||||
"license": "MIT",
|
||||
"skills": 2
|
||||
},
|
||||
"mattpocock/skills": {
|
||||
"repo": "https://github.com/mattpocock/skills",
|
||||
"commit": "66898f6",
|
||||
"license": "MIT",
|
||||
"skills": 1
|
||||
},
|
||||
"nexscope-ai/eCommerce-Skills": {
|
||||
"repo": "https://github.com/nexscope-ai/eCommerce-Skills",
|
||||
"commit": "56f3288",
|
||||
"license": "MIT",
|
||||
"skills": 1
|
||||
},
|
||||
"jabrena/plinth": {
|
||||
"repo": "https://github.com/jabrena/plinth",
|
||||
"commit": "065eae8",
|
||||
"license": "Apache-2.0",
|
||||
"skills": 1
|
||||
},
|
||||
"rsmdt/the-startup": {
|
||||
"repo": "https://github.com/rsmdt/the-startup",
|
||||
"commit": "ff6a0be",
|
||||
"license": "MIT",
|
||||
"skills": 1
|
||||
},
|
||||
"davepoon/buildwithclaude": {
|
||||
"repo": "https://github.com/davepoon/buildwithclaude",
|
||||
"commit": "3c94e0c",
|
||||
"license": "MIT",
|
||||
"skills": 4
|
||||
},
|
||||
"davila7/claude-code-templates": {
|
||||
"repo": "https://github.com/davila7/claude-code-templates",
|
||||
"commit": "fa79251",
|
||||
"license": "MIT",
|
||||
"skills": 5
|
||||
},
|
||||
"robertguss/claude-skills": {
|
||||
"repo": "https://github.com/robertguss/claude-skills",
|
||||
"commit": "c31f3be",
|
||||
"license": "MIT",
|
||||
"skills": 1
|
||||
},
|
||||
"trailofbits/skills": {
|
||||
"repo": "https://github.com/trailofbits/skills",
|
||||
"commit": "cfe5d7b",
|
||||
"license": "custom (see upstream LICENSE)",
|
||||
"skills": 1
|
||||
},
|
||||
"microsoft/skills": {
|
||||
"repo": "https://github.com/microsoft/skills",
|
||||
"commit": "dc543aa",
|
||||
"license": "MIT",
|
||||
"skills": 1
|
||||
},
|
||||
"open-gitagent/opengap": {
|
||||
"repo": "https://github.com/open-gitagent/opengap",
|
||||
"commit": "d7a8e2e",
|
||||
"license": "MIT",
|
||||
"skills": 1
|
||||
},
|
||||
"claude-world/director-mode-lite": {
|
||||
"repo": "https://github.com/claude-world/director-mode-lite",
|
||||
"commit": "9d0c333",
|
||||
"license": "MIT",
|
||||
"skills": 1
|
||||
},
|
||||
"brycewang-stanford/Auto-Empirical-Research-Skills": {
|
||||
"repo": "https://github.com/brycewang-stanford/Auto-Empirical-Research-Skills",
|
||||
"commit": "85bf545",
|
||||
"license": "CC-BY-4.0",
|
||||
"skills": 1
|
||||
},
|
||||
"foryourhealth111-pixel/Vibe-Skills": {
|
||||
"repo": "https://github.com/foryourhealth111-pixel/Vibe-Skills",
|
||||
"commit": "34429a8",
|
||||
"license": "Apache-2.0",
|
||||
"skills": 1
|
||||
},
|
||||
"HeshamFS/materials-simulation-skills": {
|
||||
"repo": "https://github.com/HeshamFS/materials-simulation-skills",
|
||||
"commit": "fa1ce8d",
|
||||
"license": "Apache-2.0",
|
||||
"skills": 1
|
||||
},
|
||||
"affaan-m/everything-claude-code": {
|
||||
"repo": "https://github.com/affaan-m/everything-claude-code",
|
||||
"commit": "ed38744",
|
||||
"license": "MIT",
|
||||
"skills": 1
|
||||
},
|
||||
"mohitagw15856/pm-claude-skills": {
|
||||
"repo": "https://github.com/mohitagw15856/pm-claude-skills",
|
||||
"commit": "876fa30",
|
||||
"license": "MIT",
|
||||
"skills": 1
|
||||
},
|
||||
"basicmachines-co/basic-memory": {
|
||||
"repo": "https://github.com/basicmachines-co/basic-memory",
|
||||
"commit": "53da71c",
|
||||
"license": "custom (see upstream LICENSE)",
|
||||
"skills": 1
|
||||
},
|
||||
"alinaqi/claude-bootstrap": {
|
||||
"repo": "https://github.com/alinaqi/claude-bootstrap",
|
||||
"commit": "f61ec87",
|
||||
"license": "MIT",
|
||||
"skills": 1
|
||||
}
|
||||
},
|
||||
"total_skills": 80,
|
||||
"tiers": {
|
||||
"core": 29,
|
||||
"adjacent": 51
|
||||
}
|
||||
},
|
||||
"provenance": {
|
||||
"items": {
|
||||
"esco": 20,
|
||||
"onet": 136,
|
||||
"jobads": 0,
|
||||
"wiki_ai": 0,
|
||||
"anthropic": 7,
|
||||
"ai_skills": 157,
|
||||
"stackx": 0
|
||||
},
|
||||
"share_percent": {
|
||||
"esco": 6.2,
|
||||
"onet": 42.5,
|
||||
"jobads": 0.0,
|
||||
"wiki_ai": 0.0,
|
||||
"anthropic": 2.2,
|
||||
"ai_skills": 49.1,
|
||||
"stackx": 0.0
|
||||
},
|
||||
"method": "content items per source category"
|
||||
},
|
||||
"collar": "white",
|
||||
"computer_work": true
|
||||
}
|
||||
322
references/ai-skills.md
Normal file
322
references/ai-skills.md
Normal file
@@ -0,0 +1,322 @@
|
||||
# External AI agent skills — director-of-compliance-and-information-security-in-gambling
|
||||
|
||||
Proven, publicly available AI agent skills mapped to this occupation.
|
||||
Nothing is copied from the sources: every entry is a name, a one-line
|
||||
summary and a link to the upstream skill package. Each section names
|
||||
its source repository, commit, license and retrieval date.
|
||||
|
||||
**Tiers:** `core` = the skill directly exercises a top market hard
|
||||
skill, tool or method (from gated job-ad evidence) or an essential
|
||||
ESCO competence of this occupation; `adjacent` =
|
||||
plausibly useful, secondary. Entries are capped at 12 per source
|
||||
and 80 in total per occupation (core first,
|
||||
strongest matches survive); everything beyond the caps is excluded
|
||||
and logged in the pipeline audit trail, not in this package.
|
||||
|
||||
_Matched deterministically (ISCO group + title/competence keywords,
|
||||
tiered against market evidence + ESCO essentials) by
|
||||
`pipeline/p5_enrich_ai_skills.py` on 2026-07-14._
|
||||
|
||||
## Source: anthropics/skills
|
||||
|
||||
- Repository: [https://github.com/anthropics/skills](https://github.com/anthropics/skills) (commit `f6656c1`, retrieved 2026-07-14)
|
||||
- License: Apache-2.0; the document skills (docx/pdf/pptx/xlsx) are source-available — see the LICENSE.txt in the upstream skill folder
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `docx` | adjacent | Use this skill whenever the user wants to create, read, edit, or manipulate Word documents (.docx files) or Word templates (.dotx files). Triggers include: any mention of 'Word doc', 'word document', '.docx', '.dotx', or requests to … | [source](https://github.com/anthropics/skills/tree/main/skills/docx) |
|
||||
| `pdf` | adjacent | Use this skill whenever the user wants to do anything with PDF files. This includes reading or extracting text/tables from PDFs, combining or merging multiple PDFs into one, splitting PDFs apart, rotating pages, adding watermarks, creating … | [source](https://github.com/anthropics/skills/tree/main/skills/pdf) |
|
||||
| `pptx` | adjacent | Use this skill any time a .pptx or .potx file is involved in any way — as input, output, or both. This includes: creating slide decks, pitch decks, or presentations; reading, parsing, or extracting text from any .pptx or .potx file (even … | [source](https://github.com/anthropics/skills/tree/main/skills/pptx) |
|
||||
| `skill-creator` | adjacent | Create new skills, modify and improve existing skills, and measure skill performance. Use when users want to create a skill from scratch, edit, or optimize an existing skill, run evals to test a skill, benchmark skill performance with … | [source](https://github.com/anthropics/skills/tree/main/skills/skill-creator) |
|
||||
|
||||
## Source: wshobson/agents
|
||||
|
||||
- Repository: [https://github.com/wshobson/agents](https://github.com/wshobson/agents) (commit `6fd3247`, retrieved 2026-07-14)
|
||||
- License: MIT (c) Seth Hobson
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `frontend-mobile-security-frontend-developer (agent)` | core | Build React components, implement responsive layouts, and handle client-side state management. Masters React 19, Next.js 15, and modern frontend architecture. Optimizes performance and ensures accessibility. Use PROACTIVELY when creating … | [source](https://github.com/wshobson/agents/tree/main/plugins/frontend-mobile-security/agents/frontend-developer.md) |
|
||||
| `security-compliance-security-auditor (agent)` | adjacent | Expert security auditor specializing in DevSecOps, comprehensive cybersecurity, and compliance frameworks. Masters vulnerability assessment, threat modeling, secure authentication (OAuth2/OIDC), OWASP standards, cloud security, and … | [source](https://github.com/wshobson/agents/tree/main/plugins/security-compliance/agents/security-auditor.md) |
|
||||
| `backend-api-security-backend-security-coder (agent)` | adjacent | Expert in secure backend coding practices specializing in input validation, authentication, and API security. Use PROACTIVELY for backend security implementations or security code reviews. | [source](https://github.com/wshobson/agents/tree/main/plugins/backend-api-security/agents/backend-security-coder.md) |
|
||||
| `frontend-security-coder (agent)` | adjacent | Expert in secure frontend coding practices specializing in XSS prevention, output sanitization, and client-side security patterns. Use PROACTIVELY for frontend security implementations or client-side security code reviews. | [source](https://github.com/wshobson/agents/tree/main/plugins/frontend-mobile-security/agents/frontend-security-coder.md) |
|
||||
| `mobile-security-coder (agent)` | adjacent | Expert in secure mobile coding practices specializing in input validation, WebView security, and mobile-specific security patterns. Use PROACTIVELY for mobile security implementations or mobile security code reviews. | [source](https://github.com/wshobson/agents/tree/main/plugins/frontend-mobile-security/agents/mobile-security-coder.md) |
|
||||
| `sast-configuration` | adjacent | Configure Static Application Security Testing (SAST) tools for automated vulnerability detection in application code. Use when setting up security scanning, implementing DevSecOps practices, or automating code vulnerability detection. | [source](https://github.com/wshobson/agents/tree/main/plugins/security-scanning/skills/sast-configuration) |
|
||||
| `stride-analysis-patterns` | adjacent | Apply STRIDE methodology to systematically identify threats. Use when analyzing system security, conducting threat modeling sessions, or creating security documentation. | [source](https://github.com/wshobson/agents/tree/main/plugins/security-scanning/skills/stride-analysis-patterns) |
|
||||
| `attack-tree-construction` | adjacent | Build comprehensive attack trees to visualize threat paths. Use when mapping attack scenarios, identifying defense gaps, or communicating security risks to stakeholders. | [source](https://github.com/wshobson/agents/tree/main/plugins/security-scanning/skills/attack-tree-construction) |
|
||||
| `backend-api-security-backend-architect (agent)` | adjacent | Expert backend architect specializing in scalable API design, microservices architecture, and distributed systems. Masters REST/GraphQL/gRPC APIs, event-driven architectures, service mesh patterns, and modern backend frameworks. Handles … | [source](https://github.com/wshobson/agents/tree/main/plugins/backend-api-security/agents/backend-architect.md) |
|
||||
| `security-requirement-extraction` | adjacent | Derive security requirements from threat models and business context. Use when translating threats into actionable requirements, creating security user stories, or building security test cases. | [source](https://github.com/wshobson/agents/tree/main/plugins/security-scanning/skills/security-requirement-extraction) |
|
||||
| `threat-mitigation-mapping` | adjacent | Map identified threats to appropriate security controls and mitigations. Use when prioritizing security investments, creating remediation plans, or validating control effectiveness. | [source](https://github.com/wshobson/agents/tree/main/plugins/security-scanning/skills/threat-mitigation-mapping) |
|
||||
| `binary-analysis-patterns` | adjacent | Master binary analysis patterns including disassembly, decompilation, control flow analysis, and code pattern recognition. Use when analyzing executables, understanding compiled code, or performing static analysis on binaries. | [source](https://github.com/wshobson/agents/tree/main/plugins/reverse-engineering/skills/binary-analysis-patterns) |
|
||||
|
||||
## Source: ConardLi/garden-skills
|
||||
|
||||
- Repository: [https://github.com/ConardLi/garden-skills](https://github.com/ConardLi/garden-skills) (commit `fbd6453`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `kb-retriever` | adjacent | 面向本地知识库目录的检索和问答助手。核心流程:(1)分层索引导航 (2)遇到PDF/Excel时必须先读取references学习处理方法 (3)处理文件后再检索。按文件类型组合使用 grep、Read、pdfplumber、pandas 进行渐进式检索,避免整文件加载。用户问题涉及"从知识库目录回答问题/检索信息/查资料"时使用。 | [source](https://github.com/ConardLi/garden-skills/tree/fbd6453/skills/kb-retriever) |
|
||||
|
||||
## Source: a5c-ai/babysitter
|
||||
|
||||
- Repository: [https://github.com/a5c-ai/babysitter](https://github.com/a5c-ai/babysitter) (commit `44a5d58b`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `constitution-creation` | core | Establish project governing principles including dev guidelines, code quality standards, testing policies, UX requirements, performance benchmarks, and security constraints. | [source](https://github.com/a5c-ai/babysitter/tree/44a5d58b/library/methodologies/spec-kit/skills/constitution-creation) |
|
||||
| `cloud-security-testing` | core | Multi-cloud security assessment and penetration testing capabilities. Execute Prowler/ScoutSuite assessments, analyze IAM policies, identify cloud misconfigurations, test permissions, and enumerate cloud resources across AWS/GCP/Azure. | [source](https://github.com/a5c-ai/babysitter/tree/44a5d58b/library/specializations/security-research/skills/cloud-security-testing) |
|
||||
| `license-compliance-checker` | core | Automated license compliance verification for dependencies to ensure legal compliance during migration | [source](https://github.com/a5c-ai/babysitter/tree/44a5d58b/library/specializations/code-migration-modernization/skills/license-compliance-checker) |
|
||||
| `bug-bounty` | adjacent | Bug bounty program management and security disclosure expertise for smart contracts. Covers program setup on Immunefi, vulnerability triage, responsible disclosure coordination, bounty payments, and post-disclosure analysis. | [source](https://github.com/a5c-ai/babysitter/tree/44a5d58b/library/specializations/cryptography-blockchain/skills/bug-bounty) |
|
||||
| `security-sandbox` | adjacent | Isolated analysis environment management for malware and exploit testing. Create and manage isolated VMs, configure Cuckoo Sandbox, set up REMnux/FlareVM environments, manage Docker-based analysis containers, and capture filesystem and … | [source](https://github.com/a5c-ai/babysitter/tree/44a5d58b/library/specializations/security-research/skills/security-sandbox) |
|
||||
| `code-review-patterns` | adjacent | Multi-dimensional code assessment across security, quality, performance, and maintainability with confidence-gated reporting (>=80%) and Router Contract generation. | [source](https://github.com/a5c-ai/babysitter/tree/44a5d58b/library/methodologies/cc10x/skills/code-review-patterns) |
|
||||
| `echidna-fuzzer` | adjacent | Property-based testing and fuzzing using Echidna for smart contracts. Includes invariant definition, corpus management, coverage analysis, and CI/CD integration for comprehensive security testing. | [source](https://github.com/a5c-ai/babysitter/tree/44a5d58b/library/specializations/cryptography-blockchain/skills/echidna-fuzzer) |
|
||||
| `entity-management` | adjacent | Track and manage subsidiary and entity information | [source](https://github.com/a5c-ai/babysitter/tree/44a5d58b/library/specializations/domains/business/legal/skills/entity-management) |
|
||||
| `nvenc-nvdec` | adjacent | NVIDIA hardware video encoding/decoding integration. Configure NVENC encoding parameters, set up NVDEC decoding pipelines, handle codec configurations, integrate with CUDA for pre/post processing, and manage video memory surfaces. | [source](https://github.com/a5c-ai/babysitter/tree/44a5d58b/library/specializations/gpu-programming/skills/nvenc-nvdec) |
|
||||
|
||||
## Source: affaan-m/everything-claude-code
|
||||
|
||||
- Repository: [https://github.com/affaan-m/everything-claude-code](https://github.com/affaan-m/everything-claude-code) (commit `ed38744`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `enterprise-agent-ops` | adjacent | Operate long-lived agent workloads with observability, security boundaries, and lifecycle management. | [source](https://github.com/affaan-m/everything-claude-code/tree/ed38744/skills/enterprise-agent-ops) |
|
||||
|
||||
## Source: alinaqi/claude-bootstrap
|
||||
|
||||
- Repository: [https://github.com/alinaqi/claude-bootstrap](https://github.com/alinaqi/claude-bootstrap) (commit `f61ec87`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `mnemos` | adjacent | Task-scoped memory lifecycle — typed MnemoGraph prevents lossy context compaction by treating facts/decisions/code-refs/handoffs as distinct node types with per-type eviction policies | [source](https://github.com/alinaqi/claude-bootstrap/tree/f61ec87/skills/mnemos) |
|
||||
|
||||
## Source: alirezarezvani/claude-skills
|
||||
|
||||
- Repository: [https://github.com/alirezarezvani/claude-skills](https://github.com/alirezarezvani/claude-skills) (commit `0241f43`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `ciso-advisor` | core | Security leadership for growth-stage companies. Risk quantification in dollars, compliance roadmap (SOC 2/ISO 27001/HIPAA/GDPR), security architecture strategy, incident response leadership, and board-level security reporting. Use when … | [source](https://github.com/alirezarezvani/claude-skills/tree/0241f43/c-level-advisor/skills/ciso-advisor) |
|
||||
|
||||
## Source: basicmachines-co/basic-memory
|
||||
|
||||
- Repository: [https://github.com/basicmachines-co/basic-memory](https://github.com/basicmachines-co/basic-memory) (commit `53da71c`, retrieved 2026-07-14)
|
||||
- License: custom (see upstream LICENSE)
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `memory-lifecycle` | adjacent | Manage entity status transitions in Basic Memory: archive completed work, move notes between status folders, update frontmatter, and handle edge cases. Use when marking items complete, archiving old entities, or managing any folder-based … | [source](https://github.com/basicmachines-co/basic-memory/tree/53da71c/skills/memory-lifecycle) |
|
||||
|
||||
## Source: brycewang-stanford/Auto-Empirical-Research-Skills
|
||||
|
||||
- Repository: [https://github.com/brycewang-stanford/Auto-Empirical-Research-Skills](https://github.com/brycewang-stanford/Auto-Empirical-Research-Skills) (commit `85bf545`, retrieved 2026-07-14)
|
||||
- License: CC-BY-4.0
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `cs-skills` | adjacent | 10 computer science skills. Trigger: algorithms, systems research, software engineering, security papers. Design: theory, complexity analysis, code-centric research, and security methods. | [source](https://github.com/brycewang-stanford/Auto-Empirical-Research-Skills/tree/85bf545/skills/43-wentorai-research-plugins/skills/domains/cs) |
|
||||
|
||||
## Source: claude-world/director-mode-lite
|
||||
|
||||
- Repository: [https://github.com/claude-world/director-mode-lite](https://github.com/claude-world/director-mode-lite) (commit `9d0c333`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `code-reviewer` | adjacent | Code review knowledge base: quality, security (OWASP Top 10), error-handling, performance, and test-coverage checklists with severity-ranked output format. Use when reviewing code changes, PRs, or before commits. Loaded automatically by … | [source](https://github.com/claude-world/director-mode-lite/tree/9d0c333/skills/code-reviewer) |
|
||||
|
||||
## Source: davepoon/buildwithclaude
|
||||
|
||||
- Repository: [https://github.com/davepoon/buildwithclaude](https://github.com/davepoon/buildwithclaude) (commit `3c94e0c`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `github-automation` | adjacent | Automate GitHub repositories, issues, pull requests, branches, CI/CD, and permissions via Rube MCP (Composio). Manage code workflows, review PRs, search code, and handle deployments programmatically. | [source](https://github.com/davepoon/buildwithclaude/tree/3c94e0c/plugins/all-skills/skills/github-automation) |
|
||||
| `cal-com-automation` | adjacent | Automate Cal.com tasks via Rube MCP (Composio): manage bookings, check availability, configure webhooks, and handle teams. Always search tools first for current schemas. | [source](https://github.com/davepoon/buildwithclaude/tree/3c94e0c/plugins/all-skills/skills/cal-com-automation) |
|
||||
| `close-automation` | adjacent | Automate Close CRM tasks via Rube MCP (Composio): create leads, manage calls/SMS, handle tasks, and track notes. Always search tools first for current schemas. | [source](https://github.com/davepoon/buildwithclaude/tree/3c94e0c/plugins/all-skills/skills/close-automation) |
|
||||
| `microsoft-teams-automation` | adjacent | Automate Microsoft Teams tasks via Rube MCP (Composio): send messages, manage channels, create meetings, handle chats, and search messages. Always search tools first for current schemas. | [source](https://github.com/davepoon/buildwithclaude/tree/3c94e0c/plugins/all-skills/skills/microsoft-teams-automation) |
|
||||
|
||||
## Source: davila7/claude-code-templates
|
||||
|
||||
- Repository: [https://github.com/davila7/claude-code-templates](https://github.com/davila7/claude-code-templates) (commit `fa79251`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `github-automation` | adjacent | Automate GitHub repositories, issues, pull requests, branches, CI/CD, and permissions via Rube MCP (Composio). Manage code workflows, review PRs, search code, and handle deployments programmatically. | [source](https://github.com/davila7/claude-code-templates/tree/fa79251/cli-tool/components/skills/workflow-automation/github-automation) |
|
||||
| `loki-mode` | adjacent | Multi-agent autonomous startup system for Claude Code. Triggers on "Loki Mode". Orchestrates 100+ specialized agents across engineering, QA, DevOps, security, data/ML, business operations, marketing, HR, and customer success. Takes PRD to … | [source](https://github.com/davila7/claude-code-templates/tree/fa79251/cli-tool/components/skills/ai-research/loki-mode) |
|
||||
| `Red Team Tools and Methodology` | adjacent | This skill should be used when the user asks to "follow red team methodology", "perform bug bounty hunting", "automate reconnaissance", "hunt for XSS vulnerabilities", "enumerate subdomains", or needs security researcher techniques and … | [source](https://github.com/davila7/claude-code-templates/tree/fa79251/cli-tool/components/skills/security/red-team-tools) |
|
||||
| `laravel-expert` | adjacent | Senior Laravel Engineer role for production-grade, maintainable, and idiomatic Laravel solutions. Focuses on clean architecture, security, performance, and modern standards (Laravel 10/11+). | [source](https://github.com/davila7/claude-code-templates/tree/fa79251/cli-tool/components/skills/development/laravel-expert) |
|
||||
| `lint-and-validate` | adjacent | Automatic quality control, linting, and static analysis procedures. Use after every code modification to ensure syntax correctness and project standards. Triggers onKeywords: lint, format, check, validate, types, static analysis. | [source](https://github.com/davila7/claude-code-templates/tree/fa79251/cli-tool/components/skills/development/lint-and-validate) |
|
||||
|
||||
## Source: foryourhealth111-pixel/Vibe-Skills
|
||||
|
||||
- Repository: [https://github.com/foryourhealth111-pixel/Vibe-Skills](https://github.com/foryourhealth111-pixel/Vibe-Skills) (commit `34429a8`, retrieved 2026-07-14)
|
||||
- License: Apache-2.0
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `deslop` | adjacent | Remove AI-generated code slop from a branch: unnecessary comments, redundant defensive checks, boilerplate, style drift, and type casts. Use for cleanup of AI-written code, not for broad code review, security audit, TDD, or final … | [source](https://github.com/foryourhealth111-pixel/Vibe-Skills/tree/34429a8/bundled/skills/deslop) |
|
||||
|
||||
## Source: HeshamFS/materials-simulation-skills
|
||||
|
||||
- Repository: [https://github.com/HeshamFS/materials-simulation-skills](https://github.com/HeshamFS/materials-simulation-skills) (commit `fa1ce8d`, retrieved 2026-07-14)
|
||||
- License: Apache-2.0
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `differentiation-schemes` | adjacent | Select and apply numerical differentiation schemes for PDE and ODE discretization — generate finite-difference stencils at arbitrary order and accuracy, choose between central, upwind, compact (Pade), and spectral methods, handle boundary … | [source](https://github.com/HeshamFS/materials-simulation-skills/tree/fa1ce8d/skills/core-numerical/differentiation-schemes) |
|
||||
|
||||
## Source: jabrena/plinth
|
||||
|
||||
- Repository: [https://github.com/jabrena/plinth](https://github.com/jabrena/plinth) (commit `065eae8`, retrieved 2026-07-14)
|
||||
- License: Apache-2.0
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `125-java-concurrency` | core | Use when you need to apply Java concurrency best practices — including thread safety fundamentals, ExecutorService thread pool management, concurrent design patterns like Producer-Consumer, asynchronous programming with CompletableFuture, … | [source](https://github.com/jabrena/plinth/tree/065eae8/skills/125-java-concurrency) |
|
||||
|
||||
## Source: jeremylongshore/claude-code-plugins-plus-skills
|
||||
|
||||
- Repository: [https://github.com/jeremylongshore/claude-code-plugins-plus-skills](https://github.com/jeremylongshore/claude-code-plugins-plus-skills) (commit `e112938a`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `granola-data-handling` | core | Manage Granola data export, retention policies, GDPR/CCPA compliance, and archival workflows. Handle Subject Access Requests and Right to Erasure. Trigger: "granola export", "granola data", "granola GDPR", "granola retention", "granola … | [source](https://github.com/jeremylongshore/claude-code-plugins-plus-skills/tree/e112938a/plugins/saas-packs/granola-pack/skills/granola-data-handling) |
|
||||
| `shopify-data-handling` | core | Handle Shopify customer PII, implement GDPR/CCPA compliance, and manage data retention with Shopify''s mandatory privacy webhooks. Use when building apps that store customer data, preparing for App Store review, or implementing deletion … | [source](https://github.com/jeremylongshore/claude-code-plugins-plus-skills/tree/e112938a/plugins/saas-packs/shopify-pack/skills/shopify-data-handling) |
|
||||
| `twinmind-data-handling` | core | Handle TwinMind meeting data with GDPR compliance: transcript storage, memory vault management, data export, and deletion policies. Use when implementing data handling, or managing TwinMind meeting AI operations. Trigger with phrases like … | [source](https://github.com/jeremylongshore/claude-code-plugins-plus-skills/tree/e112938a/plugins/saas-packs/twinmind-pack/skills/twinmind-data-handling) |
|
||||
| `figma-policy-guardrails` | core | Enforce security policies and coding standards for Figma API integrations. Use when setting up linting rules for Figma tokens, preventing accidental credential leaks, or enforcing API usage best practices. Trigger with phrases like "figma … | [source](https://github.com/jeremylongshore/claude-code-plugins-plus-skills/tree/e112938a/plugins/saas-packs/figma-pack/skills/figma-policy-guardrails) |
|
||||
| `fireflies-data-handling` | core | Handle Fireflies.ai transcript data: export formats, PII redaction, retention policies, and compliance. Use when exporting transcripts, implementing data redaction, configuring retention, or ensuring GDPR/CCPA compliance. Trigger with … | [source](https://github.com/jeremylongshore/claude-code-plugins-plus-skills/tree/e112938a/plugins/saas-packs/fireflies-pack/skills/fireflies-data-handling) |
|
||||
| `gamma-data-handling` | core | Handle data privacy, retention, and compliance for Gamma integrations. Use when implementing GDPR compliance, data retention policies, or managing user data within Gamma workflows. Trigger with phrases like "gamma data", "gamma privacy", … | [source](https://github.com/jeremylongshore/claude-code-plugins-plus-skills/tree/e112938a/plugins/saas-packs/gamma-pack/skills/gamma-data-handling) |
|
||||
| `supabase-data-handling` | core | Implement GDPR/CCPA compliance with Supabase: RLS for data isolation, user deletion via auth.admin.deleteUser(), data export via SQL, PII column management, backup/restore workflows, and retention policies. Use when handling sensitive … | [source](https://github.com/jeremylongshore/claude-code-plugins-plus-skills/tree/e112938a/plugins/saas-packs/supabase-pack/skills/supabase-data-handling) |
|
||||
| `canva-data-handling` | core | Implement Canva Connect API data handling, PII protection, and GDPR/CCPA compliance. Use when handling user design data, implementing data retention policies, or ensuring privacy compliance for Canva integrations. Trigger with phrases like … | [source](https://github.com/jeremylongshore/claude-code-plugins-plus-skills/tree/e112938a/plugins/saas-packs/canva-pack/skills/canva-data-handling) |
|
||||
| `clay-data-handling` | core | Implement GDPR/CCPA-compliant data handling for Clay enrichment pipelines. Use when handling PII from enrichments, implementing data retention policies, or ensuring regulatory compliance for Clay-enriched lead data. Trigger with phrases … | [source](https://github.com/jeremylongshore/claude-code-plugins-plus-skills/tree/e112938a/plugins/saas-packs/clay-pack/skills/clay-data-handling) |
|
||||
| `coderabbit-data-handling` | core | Implement CodeRabbit PII handling, data retention, and GDPR/CCPA compliance patterns. Use when handling sensitive data, implementing data redaction, configuring retention policies, or ensuring compliance with privacy regulations for … | [source](https://github.com/jeremylongshore/claude-code-plugins-plus-skills/tree/e112938a/plugins/saas-packs/coderabbit-pack/skills/coderabbit-data-handling) |
|
||||
| `miro-data-handling` | core | Implement Miro REST API v2 data handling with PII detection in board content, data export via API, retention policies, and GDPR/CCPA compliance patterns. Trigger with phrases like "miro data", "miro PII", "miro GDPR", "miro data export", … | [source](https://github.com/jeremylongshore/claude-code-plugins-plus-skills/tree/e112938a/plugins/saas-packs/miro-pack/skills/miro-data-handling) |
|
||||
| `mistral-data-handling` | core | Implement Mistral AI PII handling, data retention, and GDPR/CCPA compliance patterns. Use when handling sensitive data, implementing data redaction, configuring retention policies, or ensuring compliance with privacy regulations for … | [source](https://github.com/jeremylongshore/claude-code-plugins-plus-skills/tree/e112938a/plugins/saas-packs/mistral-pack/skills/mistral-data-handling) |
|
||||
|
||||
## Source: mattpocock/skills
|
||||
|
||||
- Repository: [https://github.com/mattpocock/skills](https://github.com/mattpocock/skills) (commit `66898f6`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `code-review` | core | Review the changes since a fixed point (commit, branch, tag, or merge-base) along two axes — Standards (does the code follow this repo's documented coding standards?) and Spec (does the code match what the originating issue/PRD asked … | [source](https://github.com/mattpocock/skills/tree/66898f6/skills/engineering/code-review) |
|
||||
|
||||
## Source: microsoft/skills
|
||||
|
||||
- Repository: [https://github.com/microsoft/skills](https://github.com/microsoft/skills) (commit `dc543aa`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `azure-security-keyvault-secrets-java` | adjacent | Azure Key Vault Secrets Java SDK for secret management. Use when storing, retrieving, or managing passwords, API keys, connection strings, or other sensitive configuration data. | [source](https://github.com/microsoft/skills/tree/dc543aa/.github/plugins/azure-sdk-java/skills/azure-security-keyvault-secrets-java) |
|
||||
|
||||
## Source: mohitagw15856/pm-claude-skills
|
||||
|
||||
- Repository: [https://github.com/mohitagw15856/pm-claude-skills](https://github.com/mohitagw15856/pm-claude-skills) (commit `876fa30`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `gdpr-compliance` | adjacent | Assess GDPR compliance and build the core records (ROPA, lawful basis, DSAR, DPIA triggers). Use when asked to get GDPR-compliant, build a Record of Processing Activities, decide a lawful basis, handle data-subject requests, or check … | [source](https://github.com/mohitagw15856/pm-claude-skills/tree/876fa30/plugins/pm-compliance/skills/gdpr-compliance) |
|
||||
|
||||
## Source: mukul975/Anthropic-Cybersecurity-Skills
|
||||
|
||||
- Repository: [https://github.com/mukul975/Anthropic-Cybersecurity-Skills](https://github.com/mukul975/Anthropic-Cybersecurity-Skills) (commit `673da1f`, retrieved 2026-07-14)
|
||||
- License: Apache-2.0
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `implementing-kubernetes-pod-security-standards` | core | Pod Security Standards (PSS) define three levels of security policies -- Privileged, Baseline, and Restricted -- enforced by the Pod Security Admission (PSA) controller built into Kubernetes 1.25+. PS | [source](https://github.com/mukul975/Anthropic-Cybersecurity-Skills/tree/673da1f/skills/implementing-kubernetes-pod-security-standards) |
|
||||
| `securing-kubernetes-on-cloud` | core | This skill covers hardening managed Kubernetes clusters on EKS, AKS, and GKE by implementing Pod Security Standards, network policies, workload identity, RBAC scoping, image admission controls, and runtime security monitoring. It addresses … | [source](https://github.com/mukul975/Anthropic-Cybersecurity-Skills/tree/673da1f/skills/securing-kubernetes-on-cloud) |
|
||||
| `achieving-cmmc-level-2-compliance` | core | Prepare a defense-contractor environment for CMMC Level 2 certification: scope CUI and FCI, implement the 110 NIST SP 800-171 Rev 2 security requirements across 14 families, compute the SPRS score with the DoD Assessment Methodology, … | [source](https://github.com/mukul975/Anthropic-Cybersecurity-Skills/tree/673da1f/skills/achieving-cmmc-level-2-compliance) |
|
||||
| `implementing-iso-27001-information-security-management` | core | ISO/IEC 27001:2022 is the international standard for establishing, implementing, maintaining, and continually improving an Information Security Management System (ISMS). This skill covers the complete | [source](https://github.com/mukul975/Anthropic-Cybersecurity-Skills/tree/673da1f/skills/implementing-iso-27001-information-security-management) |
|
||||
| `performing-insider-threat-investigation` | core | Investigates insider threat incidents involving employees, contractors, or trusted partners who misuse authorized access to steal data, sabotage systems, or violate security policies. Combines digital forensics, user behavior analytics, … | [source](https://github.com/mukul975/Anthropic-Cybersecurity-Skills/tree/673da1f/skills/performing-insider-threat-investigation) |
|
||||
| `implementing-api-schema-validation-security` | core | Implement API schema validation using OpenAPI specifications and JSON Schema to enforce input/output contracts and prevent injection, data exposure, and mass assignment attacks. | [source](https://github.com/mukul975/Anthropic-Cybersecurity-Skills/tree/673da1f/skills/implementing-api-schema-validation-security) |
|
||||
| `implementing-aws-security-hub` | adjacent | This skill covers deploying AWS Security Hub as a centralized cloud security posture management platform that aggregates findings from GuardDuty, Inspector, Macie, and third-party tools. It details enabling security standards like CIS AWS … | [source](https://github.com/mukul975/Anthropic-Cybersecurity-Skills/tree/673da1f/skills/implementing-aws-security-hub) |
|
||||
| `implementing-aws-security-hub-compliance` | adjacent | Implementing AWS Security Hub to aggregate security findings across AWS accounts, enable compliance standards like CIS AWS Foundations and PCI DSS, configure automated remediation with EventBridge and Lambda, and create custom security … | [source](https://github.com/mukul975/Anthropic-Cybersecurity-Skills/tree/673da1f/skills/implementing-aws-security-hub-compliance) |
|
||||
| `auditing-cloud-with-cis-benchmarks` | adjacent | This skill details how to conduct cloud security audits using Center for Internet Security benchmarks for AWS, Azure, and GCP. It covers interpreting CIS Foundations Benchmark controls, running automated assessments with tools like Prowler … | [source](https://github.com/mukul975/Anthropic-Cybersecurity-Skills/tree/673da1f/skills/auditing-cloud-with-cis-benchmarks) |
|
||||
| `hardening-linux-endpoint-with-cis-benchmark` | adjacent | Hardens Linux endpoints using CIS Benchmark recommendations for Ubuntu, RHEL, and CentOS to reduce attack surface, enforce security baselines, and meet compliance requirements. Use when deploying new Linux servers, remediating audit … | [source](https://github.com/mukul975/Anthropic-Cybersecurity-Skills/tree/673da1f/skills/hardening-linux-endpoint-with-cis-benchmark) |
|
||||
| `hardening-windows-endpoint-with-cis-benchmark` | adjacent | Hardens Windows endpoints using CIS (Center for Internet Security) Benchmark recommendations to reduce attack surface, enforce security baselines, and meet compliance requirements. Use when deploying new Windows workstations or servers, … | [source](https://github.com/mukul975/Anthropic-Cybersecurity-Skills/tree/673da1f/skills/hardening-windows-endpoint-with-cis-benchmark) |
|
||||
| `implementing-azure-defender-for-cloud` | adjacent | Implementing Microsoft Defender for Cloud to enable cloud security posture management, workload protection across VMs, containers, databases, and storage, configure security recommendations, and set up adaptive security controls with … | [source](https://github.com/mukul975/Anthropic-Cybersecurity-Skills/tree/673da1f/skills/implementing-azure-defender-for-cloud) |
|
||||
|
||||
## Source: nexscope-ai/eCommerce-Skills
|
||||
|
||||
- Repository: [https://github.com/nexscope-ai/eCommerce-Skills](https://github.com/nexscope-ai/eCommerce-Skills) (commit `56f3288`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `tiktok-shop-compliance` | core | TikTok Shop policies and compliance — restricted products, intellectual property, content guidelines | [source](https://github.com/nexscope-ai/eCommerce-Skills/tree/56f3288/tiktok-shop-compliance) |
|
||||
|
||||
## Source: open-gitagent/opengap
|
||||
|
||||
- Repository: [https://github.com/open-gitagent/opengap](https://github.com/open-gitagent/opengap) (commit `d7a8e2e`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `code-review` | adjacent | Reviews code diffs and files for security vulnerabilities (OWASP Top 10), error handling, complexity, naming conventions, and performance issues. Use when the user asks to review a PR, pull request, diff, merge request, or code changes. | [source](https://github.com/open-gitagent/opengap/tree/d7a8e2e/examples/standard/skills/code-review) |
|
||||
|
||||
## Source: robertguss/claude-skills
|
||||
|
||||
- Repository: [https://github.com/robertguss/claude-skills](https://github.com/robertguss/claude-skills) (commit `c31f3be`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `app-review-analyzer` | adjacent | Systematically analyze app reviews for competitor research or own-app reputation management. Categorize reviews by sentiment and themes (bugs, missing features, UX complaints, pricing objections, praise, support issues), identify … | [source](https://github.com/robertguss/claude-skills/tree/c31f3be/skills/mobile-app-dev/app-review-analyzer) |
|
||||
|
||||
## Source: rsmdt/the-startup
|
||||
|
||||
- Repository: [https://github.com/rsmdt/the-startup](https://github.com/rsmdt/the-startup) (commit `ff6a0be`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `code-quality-review` | adjacent | Unified code review skill for correctness, design, readability, security, performance, testability, accessibility, and error-handling conventions. Use when reviewing changes, enforcing quality standards, or identifying technical debt. | [source](https://github.com/rsmdt/the-startup/tree/ff6a0be/plugins/team/skills/quality/code-quality-review) |
|
||||
|
||||
## Source: samber/cc-skills-golang
|
||||
|
||||
- Repository: [https://github.com/samber/cc-skills-golang](https://github.com/samber/cc-skills-golang) (commit `4881c01`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `golang-security` | core | Security best practices and vulnerability prevention for Golang. Covers injection (SQL, command, XSS), cryptography, filesystem safety, network security, cookies, secrets management, memory safety, and logging. Apply when writing, … | [source](https://github.com/samber/cc-skills-golang/tree/4881c01/skills/golang-security) |
|
||||
| `golang-continuous-integration` | adjacent | CI/CD pipeline configuration using GitHub Actions for Golang projects — testing, linting, SAST, security scanning, code coverage, Dependabot, Renovate, GoReleaser, code review automation, and release pipelines. Use when setting up or … | [source](https://github.com/samber/cc-skills-golang/tree/4881c01/skills/golang-continuous-integration) |
|
||||
|
||||
## Source: Sushegaad/Claude-Skills-Governance-Risk-and-Compliance
|
||||
|
||||
- Repository: [https://github.com/Sushegaad/Claude-Skills-Governance-Risk-and-Compliance](https://github.com/Sushegaad/Claude-Skills-Governance-Risk-and-Compliance) (commit `71d8920`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `gdpr-compliance` | core | Expert GDPR compliance assistant covering all four core workflows: (1) auditing code and systems for GDPR violations, (2) drafting GDPR-compliant documents such as privacy policies, Data Processing Agreements (DPAs), and consent notices, … | [source](https://github.com/Sushegaad/Claude-Skills-Governance-Risk-and-Compliance/tree/71d8920/plugins/gdpr-compliance/skills/gdpr-compliance) |
|
||||
|
||||
## Source: trailofbits/skills
|
||||
|
||||
- Repository: [https://github.com/trailofbits/skills](https://github.com/trailofbits/skills) (commit `cfe5d7b`, retrieved 2026-07-14)
|
||||
- License: custom (see upstream LICENSE)
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `audit-prep-assistant` | adjacent | Prepares codebases for security review using Trail of Bits' checklist. Helps set review goals, runs static analysis tools, increases test coverage, removes dead code, ensures accessibility, and generates documentation (flowcharts, user … | [source](https://github.com/trailofbits/skills/tree/cfe5d7b/plugins/building-secure-contracts/skills/audit-prep-assistant) |
|
||||
|
||||
## Source: vibeeval/vibecosystem
|
||||
|
||||
- Repository: [https://github.com/vibeeval/vibecosystem](https://github.com/vibeeval/vibecosystem) (commit `cea9462`, retrieved 2026-07-14)
|
||||
- License: MIT
|
||||
|
||||
| Skill | Tier | What it adds | Upstream |
|
||||
|---|---|---|---|
|
||||
| `compliance-patterns` | core | GDPR data handling, audit logging, data classification, retention policies, and consent management for regulatory compliance. | [source](https://github.com/vibeeval/vibecosystem/tree/cea9462/skills/compliance-patterns) |
|
||||
19
references/profile.md
Normal file
19
references/profile.md
Normal file
@@ -0,0 +1,19 @@
|
||||
# Occupation profile — director of compliance and information security in gambling
|
||||
|
||||
- **ESCO URI:** http://data.europa.eu/esco/occupation/7a3996d8-b90d-4b81-bd5e-e37f005b2683
|
||||
- **ESCO code:** 1213.9.1
|
||||
- **ISCO-08 group:** 1213 — Policy and planning managers
|
||||
|
||||
## Description (ESCO)
|
||||
|
||||
Directors of compliance and information security in gambling follow the regulatory compliance for gambling and oversee information security to ensure secure and safe use of all information technology associated with gambling.
|
||||
|
||||
## Definition
|
||||
|
||||
nan
|
||||
|
||||
## Alternative labels
|
||||
|
||||
- manager of compliance and information security in gambling
|
||||
- gambing compliance and information security manager
|
||||
- gambling compliance and information security director
|
||||
28
references/skills.md
Normal file
28
references/skills.md
Normal file
@@ -0,0 +1,28 @@
|
||||
# Competences — director of compliance and information security in gambling
|
||||
|
||||
Source: ESCO v1.2.1 occupation-skill relations (http://data.europa.eu/esco/occupation/7a3996d8-b90d-4b81-bd5e-e37f005b2683).
|
||||
|
||||
## Essential
|
||||
|
||||
- **apply conflict management** (skill/competence)
|
||||
- **ensure compliance with policies** (skill/competence)
|
||||
- **follow ethical code of conduct of gambling** (skill/competence)
|
||||
- **gambling games** (knowledge)
|
||||
- **handle customer complaints** (skill/competence)
|
||||
- **handle game complaints** (skill/competence)
|
||||
- **implement ICT security policies** (skill/competence)
|
||||
- **information security strategy** (knowledge)
|
||||
- **legal standards in gambling** (knowledge)
|
||||
- **manage gambling operation** (skill/competence)
|
||||
- **online gambling** (knowledge)
|
||||
- **responsible gambling** (knowledge)
|
||||
|
||||
## Optional
|
||||
|
||||
- analyse information processes (skill/competence)
|
||||
- conduct content quality assurance (skill/competence)
|
||||
- ensure gambling operational standards (skill/competence)
|
||||
- manage gambling finances (skill/competence)
|
||||
- manage staff (skill/competence)
|
||||
- quality standards (knowledge)
|
||||
- speak different languages (skill/competence)
|
||||
69
references/tasks.md
Normal file
69
references/tasks.md
Normal file
@@ -0,0 +1,69 @@
|
||||
# Tasks & work activities — director of compliance and information security in gambling
|
||||
|
||||
Source: O*NET 30.3, occupation 11-9199.02 (Compliance Managers) — manual nearest-occupation mapping via ISCO group 1213; the official ESCO crosswalk has no entry for this ESCO occupation.
|
||||
|
||||
## Task statements
|
||||
|
||||
- **[Supplemental]** Verify that software technology is in place to adequately provide oversight and monitoring in all required areas.
|
||||
- **[Core]** Serve as a confidential point of contact for employees to communicate with management, seek clarification on issues or dilemmas, or report irregularities.
|
||||
- **[Core]** Maintain documentation of compliance activities, such as complaints received or investigation outcomes.
|
||||
- **[Core]** Consult with corporate attorneys as necessary to address difficult legal compliance issues.
|
||||
- **[Core]** Collaborate with human resources departments to ensure the implementation of consistent disciplinary action strategies in cases of compliance standard violations.
|
||||
- **[Core]** Advise internal management or business partners on the implementation or operation of compliance programs.
|
||||
- **[Supplemental]** Review communications such as securities sales advertising to ensure there are no violations of standards or regulations.
|
||||
- **[Core]** Provide employee training on compliance related topics, policies, or procedures.
|
||||
- **[Core]** Report violations of compliance or regulatory standards to duly authorized enforcement agencies as appropriate or required.
|
||||
- **[Core]** Provide assistance to internal or external auditors in compliance reviews.
|
||||
- **[Core]** Prepare management reports regarding compliance operations and progress.
|
||||
- **[Core]** Monitor compliance systems to ensure their effectiveness.
|
||||
- **[Core]** Identify compliance issues that require follow-up or investigation.
|
||||
- **[Core]** Disseminate written policies and procedures related to compliance activities.
|
||||
- **[Core]** File appropriate compliance reports with regulatory agencies.
|
||||
- **[Core]** Design or implement improvements in communication, monitoring, or enforcement of compliance standards.
|
||||
- **[Core]** Conduct periodic internal reviews or audits to ensure that compliance procedures are followed.
|
||||
- **[Core]** Conduct or direct the internal investigation of compliance issues.
|
||||
- **[Supplemental]** Advise technical professionals on the development or use of environmental compliance or reporting tools.
|
||||
- **[Supplemental]** Conduct environmental audits to ensure adherence to environmental standards.
|
||||
- **[Supplemental]** Direct environmental programs, such as air or water compliance, aboveground or underground storage tanks, spill prevention or control, hazardous waste or materials management, solid waste recycling, medical waste management, indoor air quality, integrated pest management, employee training, or disaster preparedness.
|
||||
- **[Supplemental]** Evaluate testing procedures to meet the specifications of environmental monitoring programs.
|
||||
- **[Supplemental]** Review or modify policies or operating guidelines to comply with changes to environmental standards or regulations.
|
||||
- **[Core]** Discuss emerging compliance issues to ensure that management and employees are informed about compliance reporting systems, policies, and practices.
|
||||
- **[Core]** Verify that all regulatory policies and procedures have been documented, implemented, and communicated.
|
||||
- **[Core]** Keep informed regarding pending industry changes, trends, or best practices.
|
||||
- **[Core]** Direct the development or implementation of policies and procedures related to compliance throughout an organization.
|
||||
- **[Supplemental]** Develop risk management strategies based on assessment of product, compliance, or operational risks.
|
||||
- **[Supplemental]** Oversee internal reporting systems, such as corporate compliance hotlines.
|
||||
|
||||
## Detailed work activities
|
||||
|
||||
- Advise others on business or operational matters.
|
||||
- Advise others on legal or regulatory compliance matters.
|
||||
- Analyze risks to minimize losses or damages.
|
||||
- Collaborate on research activities with scientists or technical specialists.
|
||||
- Communicate organizational policies and procedures.
|
||||
- Communicate with government agencies.
|
||||
- Conduct employee training programs.
|
||||
- Conduct environmental audits.
|
||||
- Conduct financial or regulatory audits.
|
||||
- Confer with organizational members to accomplish work activities.
|
||||
- Coordinate reporting or editing activities.
|
||||
- Determine operational compliance with regulations or standards.
|
||||
- Develop computer or information systems.
|
||||
- Develop emergency response plans or procedures.
|
||||
- Develop operating strategies, plans, or procedures.
|
||||
- Develop organizational policies or programs.
|
||||
- Evaluate green operations or programs for compliance with standards or regulations.
|
||||
- Examine marketing materials to ensure compliance with policies or regulations.
|
||||
- Identify actions needed to bring properties or facilities into compliance with regulations.
|
||||
- Implement organizational process or policy changes.
|
||||
- Liaise between departments or other groups to improve function or communication.
|
||||
- Maintain knowledge of current developments in area of expertise.
|
||||
- Maintain regulatory or compliance documentation.
|
||||
- Manage control system activities in organizations.
|
||||
- Manage environmental sustainability projects.
|
||||
- Monitor organizational compliance with regulations.
|
||||
- Monitor organizational procedures to ensure proper functioning.
|
||||
- Prepare reports related to compliance matters.
|
||||
- Stay informed about current developments in field of specialization.
|
||||
- Update knowledge about emerging industry or technology trends.
|
||||
- Verify accuracy of records.
|
||||
81
references/tools.md
Normal file
81
references/tools.md
Normal file
@@ -0,0 +1,81 @@
|
||||
# Tools & technology — director of compliance and information security in gambling
|
||||
|
||||
Source: O*NET 30.3, occupation 11-9199.02 (Compliance Managers) — manual nearest-occupation mapping via ISCO group 1213; the official ESCO crosswalk has no entry for this ESCO occupation.
|
||||
|
||||
| Software | Category | Hot technology |
|
||||
|---|---|---|
|
||||
| Adobe Acrobat | Document management software | yes |
|
||||
| Apple Safari | Internet browser software | yes |
|
||||
| Microsoft Access | Data base user interface and query software | yes |
|
||||
| Microsoft Excel | Spreadsheet software | yes |
|
||||
| Microsoft Office software | Office suite software | yes |
|
||||
| Microsoft Outlook | Electronic mail software | yes |
|
||||
| Microsoft PowerPoint | Presentation software | yes |
|
||||
| Microsoft Project | Project management software | yes |
|
||||
| Microsoft SharePoint | Document management software | yes |
|
||||
| Microsoft Visio | Process mapping and design software | yes |
|
||||
| Microsoft Windows | Operating system software | yes |
|
||||
| Microsoft Word | Word processing software | yes |
|
||||
| Mozilla Firefox | Internet browser software | yes |
|
||||
| 80-20 Software Leaders4 | Compliance software | |
|
||||
| Actimize Brokerage Compliance Solutions | Compliance software | |
|
||||
| Agiliance Compliance Manager | Compliance software | |
|
||||
| Aline GRC | Compliance software | |
|
||||
| ARC Logics Sword | Compliance software | |
|
||||
| Archer Compliance Management | Compliance software | |
|
||||
| AssurX CATSWeb | Compliance software | |
|
||||
| AssurX Financial Services Compliance Management System | Compliance software | |
|
||||
| Audit2 AdaptiveGRC | Compliance software | |
|
||||
| Axentis Compliance Management | Compliance software | |
|
||||
| BPS Compliance | Compliance software | |
|
||||
| BWise Compliance Management | Compliance software | |
|
||||
| CMO Compliance Regulatory Compliance Solution | Compliance software | |
|
||||
| Compliance 360 | Compliance software | |
|
||||
| Compliance11 Supervisory Suite | Compliance software | |
|
||||
| ComplianceBridge Total Compliance | Compliance software | |
|
||||
| ControlCase Compliance Manager | Compliance software | |
|
||||
| Cura Software Solutions Cura for Compliance Management | Compliance software | |
|
||||
| Data analysis software | Analytical or scientific software | |
|
||||
| Database management software | Data base management system software | |
|
||||
| DoubleCheck GRC&T Platform | Compliance software | |
|
||||
| Email software | Electronic mail software | |
|
||||
| EtQ Environmental Health and Safety Software | Compliance software | |
|
||||
| EtQ FDA cGxP Compliance Software for Life Sciences | Compliance software | |
|
||||
| Fidessa Compliance Manager | Compliance software | |
|
||||
| FRSGlobal RegPro | Compliance software | |
|
||||
| Governance, risk, and compliance GRC software | Compliance software | |
|
||||
| Guideline Risk Technologies RUBI | Compliance software | |
|
||||
| Healthcare common procedure coding system HCPCS | Medical software | |
|
||||
| Horwath Software Magique | Analytical or scientific software | |
|
||||
| Human resource information system (HRIS) | Human resources software | |
|
||||
| IBM Notes | Electronic mail software | |
|
||||
| Keane SCORE | Compliance software | |
|
||||
| LexisNexis | Information retrieval or search software | |
|
||||
| LRN Ethics and Compliance Alliance | Compliance software | |
|
||||
| MasterControl MD | Risk management data and analysis software | |
|
||||
| MasterControl TotalPharma | Risk management data and analysis software | |
|
||||
| MediRegs ComplyTrack | Compliance software | |
|
||||
| Methodware ERA | Compliance software | |
|
||||
| MetricStream Compliance Management | Compliance software | |
|
||||
| MetricStream Enterprise Compliance Platform | Compliance software | |
|
||||
| MetricStream Regulatory Reporting | Compliance software | |
|
||||
| Microsoft Internet Explorer | Internet browser software | |
|
||||
| Modulo Risk Manager | Compliance software | |
|
||||
| MyComplianceOffice Compliance Operations Management System | Compliance software | |
|
||||
| Neohapsis Certus GRC | Compliance software | |
|
||||
| Oracle Enterprise Governance, Risk, and Compliance Manager | Compliance software | |
|
||||
| Oracle Insurance Compliance Tracker | Compliance software | |
|
||||
| policyIQ | Compliance software | |
|
||||
| Protiviti Governance Portal | Compliance software | |
|
||||
| QUMAS quality management solution software | Compliance software | |
|
||||
| Resolve Legislative Compliance Management | Compliance software | |
|
||||
| RVR Systems Compliance | Compliance software | |
|
||||
| SAP BEx Report Designer | Data base reporting software | |
|
||||
| Scheduling software | Calendar and scheduling software | |
|
||||
| StataCorp Stata | Analytical or scientific software | |
|
||||
| Sword Achiever Compliance Portal Dashboard | Compliance software | |
|
||||
| Tax accounting software | Tax preparation software | |
|
||||
| Tax software | Accounting software | |
|
||||
| The Garland Group RiskKey | Compliance software | |
|
||||
| Thomson Reuters Paisley Enterprise GRC | Compliance software | |
|
||||
| Web browser software | Internet browser software | |
|
||||
Reference in New Issue
Block a user