byxwtro0tk1t-cloud· 20 skills
审计 Terraform / IaC 代码安全(AWS 基础设施)。检测硬编码凭据、过宽 Security Group(0.0.0.0/0)、IAM 权限过大(Action/Resource *)、S3 公开访问、RDS 未加密/公开、State 文件泄露、ECS/EKS 容器特权、CloudTrail/VPC FlowLog 缺失、不安全 Provider/Module 引用等。当审计 Terraform 代码、IaC 安全评审、AWS 云基础设施配置检查、GitOps 安全审计时使用。支持 HCL(.tf)、Terraform JSON、tfvars、Terragrunt(HCL) 代码。
$npx -y skills add xwtro0tk1t-cloud/harness --skill security-review-skill-for-terraformInstalls into the current project.
Run `npx skills use "https://github.com/xwtro0tk1t-cloud/harness" --skill "xwtro0tk1t-cloud/harness/security-review-skill-for-terraform"` and follow the generated skill instructions now. Read its complete output, redirecting it to a temporary file first if necessary. Resolve relative paths from the supporting-files directory it provides.
Use the skills in "https://github.com/xwtro0tk1t-cloud/harness" that are relevant to the current task. Run `npx skills add "https://github.com/xwtro0tk1t-cloud/harness"` and select the relevant skills, then follow their instructions.