Claude Skills

Magpie Security Model Verify

apache/magpie

Pre-flight check on a project's published security model, run per repository in scope. Verifies two things — (1) **discoverability**: an agent can mechanically reach the model by following `AGENTS.md` → `SECURITY.md` → model at a named commit, and (2) **completeness**: the model covers the minimum-bar sections an automated triager depends on. Produces one concrete remediation per failing check: a repo PR when the gap is mechanical (a missing link line, a missing pointer file), a private mail to `<governance-body>` when the gap is substantive and needs maintainer input. Read-only by default; ev...

★ 91 Apache-2.0 Synced 1 hour ago View SKILL.md

At a glance

Plugin install Python Actively maintained Apache-2.0
Install /plugin marketplace add apache/magpie /plugin install magpie-security-model-verify
Can use Not declared by the author

Setup, runtime and requirements describe apache/magpie, the repo this skill ships in.

Also in apache/magpie

View the repo
Magpie Audit Finding Fix Code Review & Testing

For a batch of findings from a non-security audit tool (`<audit-tool>` — ruff / flake8 / mypy / pylint / CodeQL / Apache Verum / Apache Caer...

Magpie CI Runner Audit DevOps & Infrastructure

Read-only audit of GitHub Actions workflow runner compatibility for one repository, an explicit repository set, one Apache project with mult...

Post-vote committer and PMC onboarding for Apache projects. Walks the nominator through every step from ICLA check to welcome announcement f...

Magpie Contributor Activity Sweep Code Review & Testing

Read-only GitHub activity card for a named contributor on <upstream>. Fetches PR authorship, code-review activity, issues, and PR/issue comm...

Read-only nomination brief for a named GitHub contributor on <upstream>. Aggregates GitHub activity across all contribution tracks plus main...

Magpie Contributor Sentiment DevOps & Infrastructure

Measures contributor-sentiment signals on <upstream> over a configurable window: thread tone (first-response classification), time-to-first-...

Magpie Contributor To Committer Code Review & Testing

Read-only readiness tracker that maps a contributor's GitHub activity against the adopter's PMC-declared committer or PMC thresholds and sur...

Magpie Dependency Audit Code Review & Testing

Read-only dependency vulnerability audit for one repository or a local checkout. Detects the project's dependency manager(s), runs the appro...

Magpie Dependency License Audit DevOps & Infrastructure

Read-only license audit of a project's direct and transitive dependency tree. Detects the dependency manager(s), resolves each dependency's...

Magpie Flaky Test Triage Code Review & Testing

Read-only flaky-test detection from GitHub Actions CI run history for one repository. Parses workflow run outcomes over a configurable windo...

Draft a single net-new *good first issue* on the configured `<upstream>` repo from one supplied candidate such as a known gap or a small mai...

Magpie Good First Issue Sweep DevOps & Infrastructure

Sweep the open `<issue-tracker>` backlog for existing issues that could be labelled as good first issues. Classifies each candidate as READY...