Ops Machine
Official@opsmachine
Offers structured security auditing, test-driven development, and project scaffolding for enterprise software engineering teams.
Agent Skills by Ops Machine
Showing 18 vetted skills indexed across 1 GitHub repositories.
workflow-router
Reads artifacts, selects the next valid skill, and dispatches sub-agents with gate enforcement.
4-security-fix
Apply security fixes and re-run validation tests until they pass.
qa-handoff
Post a QA testing checklist to a GitHub issue with acceptance criteria.
implement-direct
Implement approved specs directly without test-driven development.
write-failing-test
Generate failing unit and integration tests from approved Test Plan criteria.
supabase-security
Apply Supabase security best practices for RLS policies, auth, and edge functions.
diagnose
Inspect codebases and draft bug specifications for GitHub issues.
interview
Guide structured interviews to extract requirements and draft specifications.
1-security-audit
Scan codebases for vulnerabilities and generate a SECURITY_PLAN.md.
full-security-audit
Orchestrate a four-phase security audit pipeline and generate a SECURITY_PLAN.md.
scaffold-project
Create or refresh .claude/primitives and project-context structure for Claude Code.
implement-to-pass
Implement minimal code changes to convert failing tests to passing tests.
2-security-critique
Review SECURITY_PLAN.md findings, remove false positives, and generate a ranked backlog.
webapp-testing
Automate Playwright-based web UI testing workflows for local web applications.
3-security-spec
Create a failing test reproducing the top backlog security vulnerability.
remember
Store facts, decisions, or instructions into project or global memory files.
spec-review
Analyze specification documents for completeness and readiness before approval.
plan-tests
Generate a structured Test Plan from an approved spec by mapping acceptance criteria to test types.
Frequently Asked Questions About Ops Machine
FAQPage SchemaWhat specific security tasks can be performed using these capabilities?▼
These capabilities enable comprehensive security audits, vulnerability scanning, and the generation of formal SECURITY_PLAN.md documents. You can perform automated security critiques, rank vulnerability backlogs, and implement targeted fixes to ensure codebases meet rigorous security standards and compliance requirements.
Which engineering personas benefit most from these technical skills?▼
Security engineers, backend developers, and quality assurance leads benefit most from these skills. The manifest is designed for teams managing Supabase-backed applications who require structured requirements gathering, rigorous test-driven development, and systematic vulnerability remediation within their existing development environments.
What are the primary prerequisites for implementing these security and testing functions?▼
Implementation requires an existing codebase, a configured environment for Playwright web testing, and access to Supabase project settings. Users must provide approved technical specifications or acceptance criteria to initiate the test planning and implementation phases effectively.