Vuln Disclosure
runxhq/runxPrepare an evidence-bound vulnerability publication and publish the exact approved advisory through any compatible provider binding with independent readback.
At a glance
git clone --depth 1 https://github.com/runxhq/runx
cp -r runx/skills/vuln-disclosure ~/.claude/skills/vuln-disclosure
Setup, runtime and requirements describe runxhq/runx, the repo this skill ships in.
Also in runxhq/runx
View the repoAdopt a pinned third-party SKILL.md as an exact native Runx binding bundle with deterministic source digests, a bounded execution profile, i...
Run a standing team with a mandate, advanced one governed case-turn at a time: a fixed roster, a persistent objective, a multi-turn case, me...
Answer one question strictly from a small, caller-supplied documentation corpus, with exact supporting quotations or an explicit account of...
Audit a sealed runx receipt for governance, comparing exercised authority and any declared approval requirement with signed evidence, and fl...
Build a scoped brand voice packet from source material so downstream agents can write, review, and adapt content without inventing brand cla...
Route one business signal through a replayable governed ops graph: classify, docs, release, work, outreach, spend, and proof, with consequen...
Verify and settle one provider-side paid call through Runx Hosted with approval and provider readback.
Convert bounded mailbox and calendar evidence into a reviewable executive action packet.
Turn governed source evidence into a citation-bound reader-facing draft, channel package, and provider-neutral publication handoff.
Draft a contract from a versioned template with explicit parties and terms, reconciling every clause against the rendered baseline determini...
Reconcile a call transcript against current CRM records and propose allowlisted field updates, each traced to a verbatim transcript quote, w...
Audit exact npm dependency versions against OSV through Runx native HTTP and emit replay-verified evidence with no unverified findings.