CtrlK
BlogDocsLog inGet started
Tessl Logo

Discover rules

Discover rules to enhance your AI agent's capabilities.

Top Performing in Security & Compliance

Data-driven rankings. Real results from real agents.

AllSkillsDocsRules

nicholasjackson/opa-rego-language

Rego is the declarative policy language used by Open Policy Agent (OPA). This tile covers writing and testing Rego policies for Kubernetes admission control, Terraform and infrastructure-as-code plan validation, Docker container authorization, HTTP API authorization, RBAC and role-based access control, data filtering, metadata annotations with opa inspect, and OPA policy testing with opa test.

tessl-labs/spec-driven-development

Spec-driven workflow covering requirement gathering, spec authoring, implementation review, and verification — with skills, rules, and evaluation scenarios.

NameContainsScore
jbaruch/nanoclaw-untrusted
v0.1.27

Security rules for untrusted NanoClaw groups. Credential protection, internal file protection, social engineering defenses.

SkillsRules

Enforces pgsodium Vault for secret storage accessed only via SECURITY DEFINER functions on service_role.

SkillsDocsRules

Run quality checks on Java code before committing. Validates against best practices, enterprise standards, and common issues.

SkillsRules

Standards and workflows for building secure, well-structured Terraform modules, including planning gates, validation steps, and implementation guidance.

SkillsDocsRules

Discover and apply best practice skills automatically. Gap analysis scans the codebase, skill-search fills gaps from the registry, skill-classifier separates proactive from reactive skills, quality-standards generates CLAUDE.md guidance, self-review compares code against checklists, and verification-strategy sets up test/lint/typecheck feedback loops.

SkillsRules

Database architecture skills, docs, and rules for high-demand multi-tenant commerce platforms (PostgreSQL source of truth, Neo4j as derived GraphRAG projection, transactional outbox, RLS-based tenant isolation). Includes live schema introspection workflow via Postgres MCP.

SkillsDocsRules

Enforces PKCE-based OAuth code flow replacing implicit auth flows for modern Supabase auth.

SkillsDocsRules

Closing the intent-to-code chasm - specification-driven development with BDD verification chain

SkillsRules

Secures Supabase Realtime private channels via RLS policies on the realtime.messages table.

SkillsDocsRules

Spec-driven workflow covering requirement gathering, spec authoring, implementation review, and verification — with skills, rules, and evaluation scenarios.

SkillsDocsRules

Enforces strict isolation of service_role key to server-side contexts only.

SkillsDocsRules

Configures Prometheus scraping, log drains, and observability for Supabase infrastructure monitoring.

SkillsDocsRules

Configures server-side session synchronization via secure HTTP-only cookies for SSR frameworks.

SkillsDocsRules

Gemini Enterprise A2A configuration and rules.

SkillsDocsRules

Core behavioral rules and skills for NanoClaw personal assistant agents. Always-on rules for communication, verification, memory, and formatting.

SkillsRules

Injects tenant ID and RBAC permissions into JWT via Postgres Auth Hooks during token issuance.

SkillsDocsRules

Prevents directory traversal in Supabase Storage via path validation functions and storage RLS.

SkillsDocsRules

Evidence-first pull request review with independent critique, selective challenger review, and human handoff.

SkillsRules

Agent-native E2E runtime with verifiable safety. 16 MCP tools including alethia_propose_tests (agent generates tests from a URL), alethia_assert_safety (proves destructive actions are blocked), and the expect block: NLP primitive unique to Alethia. Zero-IPC; 2-5x faster than Playwright MCP per flow; signed evidence packs. Works with Claude Code, Cursor, Cline.

SkillsDocsRules

Rego is the declarative policy language used by Open Policy Agent (OPA). This tile covers writing and testing Rego policies for Kubernetes admission control, Terraform and infrastructure-as-code plan validation, Docker container authorization, HTTP API authorization, RBAC and role-based access control, data filtering, metadata annotations with opa inspect, and OPA policy testing with opa test.

DocsRules

Can't find what you're looking for? Evaluate a missing skill.