mh-cto-sdlc-risk-register

Construct and maintain a risk register for Phase 1 of the SDLC.

2|Updated Apr 5, 2026
One-click install
npx skills add https://github.com/Imad-Oute/MicroHard --skill mh-cto-sdlc-risk-register
Or copy as Structured Prompt for Agent
Please help me install this Agent Skill.
Skill: mh-cto-sdlc-risk-register
Source: https://github.com/Imad-Oute/MicroHard/tree/main/src/departments/cto/sdlc/phase-1-analysis/mh-cto-sdlc-risk-register
Command: npx skills add https://github.com/Imad-Oute/MicroHard --skill mh-cto-sdlc-risk-register

SYSTEM DOCUMENTATION & REQUIREMENTS

💡 This Skill includes scripts (resource) and references (resource) components.

What problem does it solve?

This Skill addresses the challenge of identifying, assessing, and mitigating project risks during the initial analysis phase, providing a structured way to build and maintain a risk register.

Core Features & Use Cases

  • Risk Identification: Classify risks by category (market, technical, execution, assumption) and identify potential risk factors.
  • Severity × Likelihood Scoring: Score risks based on likelihood and severity, helping to prioritize critical risks.
  • Mitigation Strategies: Develop mitigation strategies for identified risks, including triggers, actions, and contingency plans.
  • Output Artifact: Generates a detailed risk register document that summarizes risks, criticality levels, and mitigation plans.

Quick Start

Generate a risk register for your project by running the command 'risk register'.

Frequently Asked Questions about mh-cto-sdlc-risk-register

High-intent search queries and answers about installing and using this skill.

FAQPage Schema
How do I create a risk register during the SDLC analysis phase?

To create a risk register during the SDLC analysis phase, the Skill automatically identifies, assesses, and prioritizes project risks by likelihood and severity, then generates a detailed document with mitigation strategies.

What is the best way to prioritize project risks by likelihood and severity?

The best way to prioritize project risks by likelihood and severity is using a scoring matrix that multiplies both factors to calculate criticality levels, enabling strategic mitigation planning for high-priority threats.

How do I generate mitigation strategies for identified project risks?

You can generate mitigation strategies for identified project risks by categorizing them into market, technical, execution, or assumption groups, then defining specific triggers, actions, and contingency plans for each.

Can I use this risk register tool for project planning without external dependencies?

Yes, you can use this risk register tool for project planning without external dependencies. It operates independently using scripts and references, but requires access to project context and Phase 1 analysis artifacts.

When do I need to update a project risk register?

You need to update a project risk register whenever new project context or Phase 1 analysis artifacts become available. Maintaining the register ensures risk scores and mitigation strategies remain aligned with current project realities.

Does the risk register handle technical and execution risks differently?

No, the risk register handles technical and execution risks using the same mechanism. Both are classified by category, scored on severity and likelihood, and assigned matching triggers, actions, and contingency plans for mitigation.