CtrlK
BlogDocsLog inGet started
Tessl Logo

ot-ics

Use for authorized OT/ICS security assessment covering Purdue model zoning, PLC/SCADA exposure, industrial protocol discovery, and safe passive-first evaluation.

75

Quality

92%

Does it follow best practices?

Run evals on this skill

Adds up to 20 points to the overall score

View guide

SecuritybySnyk

Passed

No findings from the security scan

SKILL.md
Quality
Evals
Security

Quality

Content

85%Weight 40%Scale 1-3

Reviews the quality of instructions and guidance provided to agents. Good implementation is clear, handles edge cases, and produces reliable results.

A well-structured, concise OT/ICS assessment skill with strong workflow gating and appropriate progressive disclosure. Its one weak spot is actionability: guidance is specific and tool-named but stops short of executable commands or parameters.

Suggestions

Add at least one copy-paste-ready command for the core passive step (e.g., a rate-limited Nmap NSE line or a tshark/Wireshark display filter for Modbus) so the guidance is executable rather than checklist-only.

Specify concrete parameters for restricted active scanning — e.g. --max-rate value, Nmap timing template, and maintenance-window hours — instead of the generic '低速识别,维护窗口'.

Augment the 工具链 table with one-line invocation cues per tool, or link each tool to a short command example in references/ot-safe-assessment.md.

DimensionReasoningScore

Conciseness

Lean checklists, tables, and short gated code blocks with no padding or explanation of concepts Claude already knows; every section earns its tokens, matching the lean-and-efficient anchor.

3 / 3

Actionability

Names concrete tools (Wireshark dissectors, Nmap NSE, Claroty/Nozomi, binwalk/Ghidra) and specific actions, but stays at checklist level with no copy-paste-ready commands or parameters, fitting the some-concrete-guidance-but-incomplete anchor rather than level 3.

2 / 3

Workflow Clarity

Four clearly sequenced phases plus NOW/NEXT/ACT ordering, with explicit safety gates (passive-first, ready_for_act before PLC writes, '异常立即停止并通报') and a completion self-check, matching the clear-sequence-with-validation anchor.

3 / 3

Progressive Disclosure

Well-organized overview sections with a single one-level-deep, correctly-signaled reference (references/ot-safe-assessment.md, verified present) and routing pointers to sibling skills, matching the clear-overview-with-one-level-deep-references anchor.

3 / 3

Total

11

/

12

Passed

Description

100%Weight 40%Scale 1-3

Based on the skill's description, can an agent find and select it at the right time? Clear, specific descriptions lead to better discovery.

A strong, concise description that explicitly states both what it does and when to use it with concrete, distinct OT/ICS triggers. It uses appropriate third-person/trigger voice with no over-claims or fluff.

DimensionReasoningScore

Specificity

Lists multiple concrete capabilities — 'Purdue model zoning', 'PLC/SCADA exposure', 'industrial protocol discovery', 'safe passive-first evaluation' — matching the multiple-specific-actions anchor rather than the single-action level 2.

3 / 3

Completeness

An explicit 'Use for ...' trigger clause answers 'when', while the enumerated coverage answers 'what', satisfying both halves rather than the when-implied level 2.

3 / 3

Trigger Term Quality

Includes natural domain terms a user would actually say ('OT/ICS security assessment', 'PLC/SCADA', 'industrial protocol'), giving good coverage rather than the partial-variation level 2.

3 / 3

Distinctiveness Conflict Risk

The OT/ICS + Purdue + PLC/SCADA niche is highly specific and unlikely to fire for general skills, matching the clear-distinct-niche anchor.

3 / 3

Total

12

/

12

Passed

Validation

100%

Checks the skill against the spec for correct structure and formatting. All validation checks must pass before discovery and implementation can be scored.

Validation16 / 16 Passed

Validation for skill structure

No warnings or errors.

Repository
zhaoxuya520/reverse-skill
Reviewed

Table of Contents

Is this your skill?

If you maintain this skill, you can claim it as your own. Once claimed, you can manage eval scenarios, bundle related skills, attach documentation or rules, and ensure cross-agent compatibility.