github.com/greenpau/caddy-security
| Skill | Added | Review |
|---|---|---|
configuration-saml-providers .codex/skills/configuration-saml-providers/SKILL.md Configure external SAML login providers, ACS/IdP URLs, metadata, signing certificates, realms, and claims. Use for Azure or generic IdPs; portal SAML SSO app providers belong to configuration-sso-app. | 68 68 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: a48553d | |
configuration-secrets .codex/skills/configuration-secrets/SKILL.md Configure security.secrets plugins and secret lookup values for users, credentials, and crypto. Use for static/AWS manager wiring and lookup failures; runtime field support belongs to runtime resolution. | 64 64 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: a48553d | |
configuration-sso-app .codex/skills/configuration-sso-app/SKILL.md Configure portal-provided SAML SSO apps, AWS role names, metadata, certificates, and PKCS8 keys. Use for sso provider blocks and their runtime limits; external SAML login providers are separate. | 68 68 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: a48553d | |
configuration-state .codex/skills/configuration-state/SKILL.md Configure durable AuthCrunch runtime state, exclusive storage ownership, stop/start persistence, reload rejection, and recovery. Use for root state blocks and process-level restart guarantees. | 68 68 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: a48553d | |
configuration-users .codex/skills/configuration-users/SKILL.md Configure static local accounts, required identity fields, trusted password imports, bcrypt API keys, roles, and stored challenge rules. Use for Caddyfile-owned users; online administration belongs to scripts-and-automation. | 74 74 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: a48553d | |
release-and-versioning .codex/skills/release-and-versioning/SKILL.md Maintain VERSION, release targets, versioned artifacts, GoReleaser packaging, and publication. Use for release preparation, version checks, and explicitly requested releases; dependency refresh is separate. | — | |
scripts-and-automation .codex/skills/scripts-and-automation/SKILL.md Choose or maintain repository Make/script workflows, builds, dependency selection, generated artifacts, and security CLI tools. Routes release work and documents local administration and standalone login commands. | 62 62 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: a48553d | |
skill-authoring .codex/skills/skill-authoring/SKILL.md Create, port, revise, or audit repo-local skills and their metadata, engineering contracts, and task routes. Use for skill discovery, ownership, source grounding, and session-derived guidance; diagrams are optional. | 58 58 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: a48553d | |
skill-authoring-patterns .codex/skills/skill-authoring-patterns/SKILL.md Create, port, rewrite, review, or validate caddy-security repo-local skills, agents/openai.yaml metadata, AGENTS.md routing, and focused configuration, implementation, or workflow guidance. | 60 60 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: 7c9cb25 | |
source-code-management .codex/skills/source-code-management/SKILL.md Create or review caddy-security commit messages using repository indicators, required body sections, and timestamped message files. A message request does not create a commit. | 64 64 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: a48553d | |
testing-and-ci .codex/skills/testing-and-ci/SKILL.md Choose and run unit, E2E, Caddyfile fixture, automation, and CI checks for caddy-security. Use for coverage requirements, test evidence, failures, and report workflows; official OP conformance remains opt-in. | 68 68 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: a48553d |