What problem does it solve?
Agents face significant security risks when interacting with external sites, processing emails, or handling sensitive data, including phishing attacks, credential theft, and social engineering that can lead to data breaches and account compromise. This Skill provides structured, actionable guardrails to identify and block these threats before they cause harm.
Core Features & Use Cases
- Threat Recognition Checklist: A step-by-step workflow to verify domains, detect social engineering signals, protect credentials, and reject common attack rationalizations before taking any risky action.
- Specialized Reference Guides: In-depth documentation for domain verification, credential handling rules, social engineering pattern detection, and common attack rationalizations to support accurate threat assessment.
- Use Case: When an agent receives a request to click a suspicious link in an email or share a configuration file, it runs the full threat checklist to flag risks, verify domains, and scan for embedded credentials before proceeding.
Quick Start
Use the security-awareness skill to evaluate the attached suspicious email for phishing and social engineering risks before taking any action.