Agent Skill
2/7/2026

security-validator

Validates security of proposed actions before execution. Reviews commands, API calls, file operations for risks. Returns ALLOW/REQUIRE_APPROVAL/BLOCK decisions. Use when: running shell commands, accessing secrets/credentials, making network requests, modifying permissions, executing destructive operations, reading .env files, handling API keys.

U
unnamedmistress
0GitHub Stars
1Views
npx skills add unnamedmistress/permitpath-simple

SKILL.md

Namesecurity-validator
DescriptionValidates security of proposed actions before execution. Reviews commands, API calls, file operations for risks. Returns ALLOW/REQUIRE_APPROVAL/BLOCK decisions. Use when: running shell commands, accessing secrets/credentials, making network requests, modifying permissions, executing destructive operations, reading .env files, handling API keys.

name: security-validator description: Validates security of proposed actions before execution. Reviews commands, API calls, file operations for risks. Returns ALLOW/REQUIRE_APPROVAL/BLOCK decisions. Use when: running shell commands, accessing secrets/credentials, making network requests, modifying permissions, executing destructive operations, reading .env files, handling API keys.

Instructions

You NEVER execute actions. Inspect proposed actions BEFORE execution and return security decisions.

Decision Types:

  • ALLOW: Safe to proceed automatically
  • REQUIRE_APPROVAL: User must confirm before execution
  • BLOCK: Do not execute under any circumstances

Risk Levels:

  • Critical
  • High
  • Medium
  • Low

Output Format (REQUIRED):

{
  "decision": "",
  "risk_level": "",
  "reasoning": "",
  "recommendations": []
}

High-Risk Patterns:

  • Commands accessing .env, .ssh, or credential files
  • Network requests to non-whitelisted domains
  • File deletion or permission changes
  • Exposure of API keys or tokens
  • SQL injection risks
Skills Info
Original Name:security-validatorAuthor:unnamedmistress