CtrlK
BlogDocsLog inGet started
Tessl Logo

waf-rule-creator

Waf Rule Creator - Auto-activating skill for Security Advanced. Triggers on: waf rule creator, waf rule creator Part of the Security Advanced skill category.

35

1.04x
Quality

3%

Does it follow best practices?

Impact

94%

1.04x

Average score across 3 eval scenarios

SecuritybySnyk

Passed

No known issues

Optimize this skill with Tessl

npx tessl skill review --optimize ./planned-skills/generated/04-security-advanced/waf-rule-creator/SKILL.md
SKILL.md
Quality
Evals
Security

Evaluation results

91%

-1%

WAF Rule Configuration for E-Commerce Platform

Production-ready WAF configuration

Criteria
Without context
With context

Step-by-step process documented

90%

100%

OWASP Top 10 coverage

100%

100%

Rule syntax correctness

83%

75%

Production-ready indicators

100%

100%

Input validation rules

100%

100%

Rate limiting or DDoS protection

100%

100%

Standards validation evidence

100%

90%

Rule organization

100%

100%

Logging and alerting directives

100%

100%

Custom error handling

37%

37%

98%

6%

WAF Rules for Regulatory Compliance Program

Compliance-driven WAF rules

Criteria
Without context
With context

Compliance framework referenced

100%

100%

Data protection rules present

100%

100%

Access control enforcement

100%

100%

Audit logging directives

100%

100%

Step-by-step methodology

100%

100%

Rule syntax correctness

80%

100%

Standards validation evidence

100%

100%

Injection attack coverage

100%

100%

Production configuration quality

100%

100%

HTTPS enforcement

40%

80%

94%

7%

WAF Rules from Threat Model

Threat model-driven WAF rules

Criteria
Without context
With context

Threat-to-rule mapping

100%

100%

Step-by-step methodology

41%

58%

Rule syntax correctness

83%

91%

Production enforcement mode

100%

100%

SQLi rule present

100%

100%

XSS rule present

100%

100%

Authentication attack coverage

100%

100%

Standards validation evidence

66%

100%

Rule grouping by threat

100%

100%

Residual risk documentation

100%

100%

Repository
jeremylongshore/claude-code-plugins-plus-skills
Evaluated
Agent
Claude Code
Model
Claude Sonnet 4.6

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.