disabled-exfiltration-policy

Refuse unauthorized data-exfiltration requests and redirect to defensive alternatives.

Updated Jul 30, 2026
One-click install
npx skills add https://github.com/salmanabdurrahman/pi-pentest-agent --skill disabled-exfiltration-policy
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: disabled-exfiltration-policy
Source: https://github.com/salmanabdurrahman/pi-pentest-agent/tree/main/skills/disabled-exfiltration-policy
Command: npx skills add https://github.com/salmanabdurrahman/pi-pentest-agent --skill disabled-exfiltration-policy

SYSTEM DOCUMENTATION & REQUIREMENTS

What problem does it solve?

This skill provides a structured, policy-driven framework to manage and refuse unauthorized data-exfiltration requests, ensuring security compliance during pentest engagements.

Core Features & Use Cases

  • Policy Enforcement: Clearly defines the boundaries and refusal rationale for data-exfiltration, staging, and covert-transfer requests.
  • Safer Alternatives: Redirects users toward defensive assessments like DLP control reviews, egress policy audits, and log analysis.
  • Use Case: When a user requests to stage files for transfer, this skill provides the necessary refusal logic and guides the user toward evaluating egress filtering and data classification instead.

Quick Start

Use the disabled-exfiltration-policy skill to review the safety requirements and authorized alternatives for data-exfiltration testing.

Frequently Asked Questions about disabled-exfiltration-policy

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I handle data exfiltration requests during a pentest?

Handling data exfiltration requests during a pentest requires applying a strict policy boundary that refuses unauthorized staging and provides documented rationale. This enforces compliance by redirecting the workflow to safer defensive alternatives.

What is a policy boundary for data exfiltration in security assessments?

A policy boundary for data exfiltration is a structured framework that manages and refuses unauthorized covert-transfer requests. It enforces security compliance by defining refusal logic and guiding users toward defensive assessments.

Can I stage files for covert transfer in authorized pentest workflows?

Staging files for covert transfer in authorized pentest workflows is refused by this policy boundary. It satisfies security compliance by providing refusal rationale and guiding the assessment toward egress filtering and data classification reviews instead.

What are the best alternatives to data exfiltration for DLP compliance?

The best alternatives to data exfiltration for DLP compliance are defensive assessments like egress policy audits, DLP control reviews, and log analysis. These alternatives satisfy security requirements while avoiding unauthorized data staging.

Why does my security policy require refusal logic for data staging?

Security policy requires refusal logic for data staging to ensure strict adherence to data-loss prevention and egress control standards. This provides documented refusal rationale and approval prerequisites for unauthorized covert-transfer requests.

Do I need documented approval prerequisites before testing egress control?

Yes, testing egress control requires documented approval prerequisites to satisfy strict data-loss prevention standards. This policy boundary ensures compliance by enforcing approval requirements before authorizing any data-exfiltration assessments.