risk AI Agent Skills
Browse 16 skills related to risk
qe-risk-based-testing
Focus testing effort on highest-risk areas using risk assessment and prioritization. Use when planning test strategy, allocating testing resources, or making coverage decisions.
risk-based-testing
Focus testing effort on highest-risk areas using risk assessment and prioritization. Use when planning test strategy, allocating testing resources, or making coverage decisions.
plan-viz
Visualize planned changes before implementation. Use when reviewing plans, comparing before/after architecture, assessing risk, or analyzing execution order and impact.
Regression Test Selection
Intelligent regression test selection using code change analysis, dependency graphs, and risk assessment to minimize test execution time.
threat-modeling
Threat modeling workflow for software systems: scope, data flow diagrams, STRIDE analysis, risk scoring, and turning mitigations into backlog and tests
risk_assessment
Provides a systematic framework for risk identification, assessment, and response, including a probability-impact matrix, risk prioritization, and mitigation strategies.
None
Authenticated (credentialed) vulnerability scanning uses valid system credentials to log into target hosts and perform deep inspection of installed software, patches, configurations, and security sett
None
Vulnerability remediation SLAs define mandatory timeframes for patching or mitigating identified vulnerabilities based on severity, asset criticality, and exploit availability. Effective SLA programs
None
The Metasploit Framework is the world's most widely used penetration testing platform, maintained by Rapid7. It contains over 2,300 exploits, 1,200 auxiliary modules, and 400 post-exploitation modules
None
Nikto is an open-source web server and web application scanner that tests against over 7,000 potentially dangerous files/programs, checks for outdated versions of over 1,250 servers, and identifies ve
None
Patch management is the systematic process of identifying, testing, deploying, and verifying software updates to remediate vulnerabilities across an organization's IT infrastructure. An effective patc
None
The Common Vulnerability Scoring System (CVSS) is the industry standard framework maintained by FIRST (Forum of Incident Response and Security Teams) for assessing vulnerability severity. CVSS v4.0 (r
None
Tenable Nessus is the industry-leading vulnerability scanner used to identify security weaknesses across network infrastructure including servers, workstations, network devices, and operating systems.
broken-money
Apply Lyn Alden's Broken Money framework for understanding monetary systems, fiat currency dysfunction, and the case for hard money. Use when analyzing macroeconomic trends, evaluating currency/inflation risks, understanding Bitcoin's value proposition, making long-term financial decisions, or explaining monetary history to others. Also use when building products affected by monetary policy or currency depreciation.
antifragile
Apply Nassim Taleb's Antifragile principles for building systems that gain from disorder. Use when designing products, organizations, portfolios, or strategies that need to thrive under uncertainty, volatility, and stress. Also use when evaluating fragility of existing systems or deciding between options with different risk profiles.
black-swan
Apply Nassim Taleb's Black Swan principles for navigating extreme uncertainty. Use when assessing risks, making predictions, designing for rare events, evaluating expert forecasts, or building systems that must survive unpredictable shocks. Also use when you notice over-reliance on historical data or models.