cso

Automate security posture assessments across infrastructure, code, and dependencies.

Updated Feb 27, 2026
One-click install
npx skills add https://github.com/curielmc/beat-SPY --skill cso-curielmc
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: cso
Source: https://github.com/curielmc/beat-SPY/tree/main/.claude/skills/gstack/cso
Command: npx skills add https://github.com/curielmc/beat-SPY --skill cso-curielmc

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

Chief Security Officer mode provides infrastructure-first security audits, focusing on secrets archaeology, dependencies, CI/CD, LLM/AI security, and skill supply chain scanning to quickly identify and remediate risk across an organization.

Core Features & Use Cases

  • Comprehensive posture assessments across infrastructure, code, and third-party dependencies.
  • Threat modeling and OWASP alignment with active verification and STRIDE-based coverage.
  • Roll-up governance and reporting suitable for daily reviews or monthly deep scans.

Quick Start

Invoke the cso skill in daily mode to run an automated security audit and review findings.

Frequently Asked Questions about cso

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I automate a comprehensive security audit across infrastructure, code, and dependencies?

A comprehensive security audit can be automated by scanning infrastructure, code, and dependency supply chains. This process uses an 8/10 confidence gate for routine daily checks and a 2/10 gate for monthly deep reviews to identify and remediate risks.

What is threat modeling and OWASP alignment for active security verification?

Threat modeling with OWASP alignment uses STRIDE-based coverage to actively verify security postures. It assesses infrastructure, code, and third-party dependencies to identify vulnerabilities and ensure comprehensive risk remediation across an organization.

How do I run a quick daily security scan versus a monthly deep audit?

Quick daily security scans use an 8/10 confidence gate for routine checks, while monthly deep audits use a 2/10 gate. Both modes assess infrastructure, code, dependency supply chains, and LLM/AI security to generate actionable governance reports.

Can I use this security audit approach for LLM and AI infrastructure?

Yes, this security audit approach explicitly covers LLM and AI security. It assesses infrastructure, code, and dependency supply chains, including skill supply chain scanning, to quickly identify and remediate risks specific to AI environments.

Does the gstack runtime support automated security posture assessments?

The gstack runtime supports automated security posture assessments by integrating Bash, Read, Grep, Glob, Write, Agent, WebSearch, and AskUserQuestion. These tools gather data, reason about findings, and prompt user decisions during the audit.

What is secrets archaeology in the context of infrastructure-first security audits?

Secrets archaeology in infrastructure-first security audits involves actively scanning code and CI/CD pipelines to uncover hidden credentials. It focuses on quickly identifying and remediating these risks across an organization's infrastructure and dependencies.