Luke Hinds
Community@lukehinds · UK
ex-Distinguished Engineer @RedHatOfficial · Creator of @sigstore · Co-Founder & CEO https://nolabs.ai
Agent Skills by Luke Hinds
Showing 20 vetted skills indexed across 1 GitHub repositories.
fork
Fork scanned upstreams into a disclosure org and file draft advisories.
posture
Assess GitHub repository readiness for vulnerability reports via security policy checks.
cna-match
Match GitHub repositories to CVE Numbering Authorities and output report.json.
verify
Re-run finding reproductions against repository HEAD and output a verification report.
sbom
Generates a CycloneDX Software Bill of Materials for a repository as JSON.
semgrep
Run Semgrep static analysis and map findings into scrutineer's format.
advisories
Fetch published security advisories for repository packages via the ecosystem advisories API.
dependents
Identify top runtime dependents for published packages and generate report.json.
dependencies
Catalog dependencies from manifests into a structured JSON report.
triage
Classify new repositories and enqueue quality scans via the scrutineer API.
maintainers
Identify repository maintainers and contact channels from commit history, issues, and registry ownership.
patch
Generate a minimal in-repo patch for a security finding and output a unified diff.
repo-overview
Inspect a repository root or subpath and output a JSON overview report.
packages
Query registry APIs for repository packages and write metrics to report.json.
reachability
Trace dependency sinks from app entry points to determine reachability.
security-deep-dive
Identify and quantify security vulnerabilities in repository code using a six-step per-sink process.
zizmor
Scan GitHub Actions workflows for security issues and output scrutineer findings JSON.
subprojects
Enumerate repository sub-folders and output scannable sub-paths to report.json.
metadata
Fetch repository metadata and write it to report.json.
disclose
Draft GHSA-style advisory disclosures from scrutineer finding data.