CtrlK
BlogDocsLog inGet started
Tessl Logo

scan-cyber-threats

Retrieve active cyber-threat intelligence — malware IOCs, C2 infrastructure, and CISA known-exploited vulnerabilities — filterable by type, source, and severity. Use when the user asks about current cyber threats, IOCs, or actively exploited CVEs.

76

Quality

96%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide
SecuritybySnyk

Low

Low-risk findings worth noting

SKILL.md
Quality
Evals
Security

Quality

Content

100%Weight 40%Scale 1-5

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

An exemplary API skill body: dense, fully executable, and well-structured, with a noteworthy content-safety section treating feed data as adversary-adjacent. No bundle files exist, and the body's organization suits its size without them.

DimensionReasoningScore

Conciseness

Lean and efficient throughout — no explanation of concepts Claude already knows; auth, endpoint, parameters, response shape, a worked example, errors, and exclusions are each compressed to essentials. The content-safety paragraph is justified by prompt-injection risk rather than padding, matching 'every token earns its place'.

5 / 5

Actionability

Fully executable guidance: the exact endpoint URL, a concrete auth header with key format, a parameter table with real values, a response JSON example, and a copy-paste-ready curl | jq pipeline covering the common filtered query.

5 / 5

Workflow Clarity

A single-purpose skill whose one action (call the API with the right header and filters) is unambiguous, with explicit error checkpoints (401 → key, 429 → retry with backoff) and an exclusion section to prevent misapplication; the destructive/batch validation cap does not apply.

5 / 5

Progressive Disclosure

Well-organized sections with no bundle files (references/, scripts/, assets/ are all empty) and external references cleanly grouped in a single References section, one level deep — meets the well-organized-sections criterion for a lean skill.

5 / 5

Total

20

/

20

Passed

Description

92%Weight 40%Scale 1-5

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong description: concrete capabilities, explicit filter dimensions, and a well-formed 'Use when' trigger clause in third-person voice. Only minor headroom in keyword breadth (e.g., 'threat intelligence' as a synonym).

DimensionReasoningScore

Specificity

Names multiple concrete retrieval targets ("malware IOCs, C2 infrastructure, and CISA known-exploited vulnerabilities") plus three explicit filter dimensions ("filterable by type, source, and severity"), matching the comprehensive-coverage anchor rather than the score-4 anchor with minor gaps.

5 / 5

Completeness

Both what and when are explicit: "Retrieve active cyber-threat intelligence ... filterable by type, source, and severity. Use when the user asks about current cyber threats, IOCs, or actively exploited CVEs." Clear trigger phrases make this the score-5 anchor match.

5 / 5

Trigger Term Quality

Good natural coverage ("cyber threats", "IOCs", "actively exploited CVEs", "CISA known-exploited vulnerabilities") with some synonym variation, but a few natural user phrasings like "threat intelligence" are absent — fits "good keyword coverage; a few natural terms missing" rather than the exhaustive score-5 anchor.

4 / 5

Distinctiveness Conflict Risk

Clear niche (live threat-intel retrieval) with distinct triggers (IOC, CISA KEV, C2); minimal overlap risk with generic security or vulnerability-scanning skills.

5 / 5

Total

19

/

20

Passed

Validation

93%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation — 15 / 16 Passed

Validation for skill structure

CriteriaDescriptionResult

frontmatter_unknown_keys

Unknown frontmatter key(s) found; consider removing or moving to metadata

Warning

Total

15

/

16

Passed

Repository
koala73/worldmonitor
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.