Install any skill in seconds. Free to start, no credit card required.
Get Started Free →Comprehensive SecOps skill for application security, vulnerability management, compliance, and secure development practices. Includes security scanning, vulnerability assessment, compliance checking, and security automation. Use when implementing security controls, conducting security audits, responding to vulnerabilities, or ensuring compliance requirements.
.claude/skills/davila7-senior-secops/SKILL.md| Test case | Without → With | Effect | Δ tokens | Δ turns |
|---|---|---|---|---|
| case-10 | ✗→✓ | ▲ Improved | 128% | 0% |
| case-04 | ✗→✓ | ▲ Improved | -15% | 0% |
| case-05 | ✗→✓ | ▲ Improved | 1% | 0% |
| case-06 | ✗→✓ | ▲ Improved | -13% | 0% |
| case-07 | ✗→✓ | ▲ Improved | -44% | 0% |
Complete toolkit for senior secops with modern tools and best practices.
This skill provides three core capabilities through automated scripts:
bash# Script 1: Security Scanner python scripts/security_scanner.py [options] # Script 2: Vulnerability Assessor python scripts/vulnerability_assessor.py [options] # Script 3: Compliance Checker python scripts/compliance_checker.py [options]
Automated tool for security scanner tasks.
Features:
Usage:
bashpython scripts/security_scanner.py <project-path> [options]
Comprehensive analysis and optimization tool.
Features:
Usage:
bashpython scripts/vulnerability_assessor.py <target-path> [--verbose]
Advanced tooling for specialized tasks.
Features:
Usage:
bashpython scripts/compliance_checker.py [arguments] [options]
Comprehensive guide available in references/security_standards.md:
Complete workflow documentation in references/vulnerability_management_guide.md:
Technical reference guide in references/compliance_requirements.md:
Languages: TypeScript, JavaScript, Python, Go, Swift, Kotlin Frontend: React, Next.js, React Native, Flutter Backend: Node.js, Express, GraphQL, REST APIs Database: PostgreSQL, Prisma, NeonDB, Supabase DevOps: Docker, Kubernetes, Terraform, GitHub Actions, CircleCI Cloud: AWS, GCP, Azure
bash# Install dependencies npm install # or pip install -r requirements.txt # Configure environment cp .env.example .env
bash# Use the analyzer script python scripts/vulnerability_assessor.py . # Review recommendations # Apply fixes
Follow the patterns and practices documented in:
references/security_standards.mdreferences/vulnerability_management_guide.mdreferences/compliance_requirements.mdbash# Development npm run dev npm run build npm run test npm run lint # Analysis python scripts/vulnerability_assessor.py . python scripts/compliance_checker.py --analyze # Deployment docker build -t app:latest . docker-compose up -d kubectl apply -f k8s/
Check the comprehensive troubleshooting section in references/compliance_requirements.md.
references/security_standards.mdreferences/vulnerability_management_guide.mdreferences/compliance_requirements.mdscripts/ directory| Case | Status | Duration (ms) | Turns | Tokens | Tool calls | ||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| Without | With | Δ | Without | With | Δ | Without | With | Δ | Without | With | Δ | ||
case-10 | fail→pass | 3,370 | 1,294 | -62% | 1 | 1 | 0% | 486 | 1,110 | +128% | 0 | 0 | — |
case-19 | pass→pass | 11,625 | 2,575 | -78% | 1 | 1 | 0% | 1,906 | 1,273 | -33% | 0 | 0 | — |
case-01 | fail→fail | 6,702 | 7,129 | +6% | 1 | 1 | 0% | 675 | 1,777 | +163% | 0 | 0 | — |
case-02 | fail→fail | 9,153 | 9,201 | +1% | 1 | 1 | 0% | 960 | 2,064 | +115% | 0 | 0 | — |
case-03 | fail→fail | 12,715 | 26,740 | +110% | 1 | 1 | 0% | 2,084 | 4,686 | +125% | 0 | 0 | — |
case-04 | fail→pass | 10,271 | 2,882 | -72% | 1 | 1 | 0% | 1,703 | 1,448 | -15% | 0 | 0 | — |
case-05 | fail→pass | 9,059 | 3,319 | -63% | 1 | 1 | 0% | 1,465 | 1,475 | +1% | 0 | 0 | — |
case-06 | fail→pass | 9,483 | 2,878 | -70% | 1 | 1 | 0% | 1,626 | 1,421 | -13% | 0 | 0 | — |
case-07 | fail→pass | 13,919 | 3,224 | -77% | 1 | 1 | 0% | 2,242 | 1,262 | -44% | 0 | 0 | — |
case-08 | pass→pass | 4,807 | 1,864 | -61% | 1 | 1 | 0% | 686 | 1,249 | +82% | 0 | 0 | — |
case-09 | fail→pass | 8,053 | 2,960 | -63% | 1 | 1 | 0% | 1,321 | 1,158 | -12% | 0 | 0 | — |
case-11 | pass→pass | 12,632 | 8,203 | -35% | 1 | 1 | 0% | 2,310 | 2,443 | +6% | 0 | 0 | — |
case-12 | fail→pass | 2,559 | 2,921 | +14% | 1 | 1 | 0% | 329 | 1,450 | +341% | 0 | 0 | — |
case-13 | pass→pass | 3,508 | 2,199 | -37% | 1 | 1 | 0% | 492 | 1,169 | +138% | 0 | 0 | — |
case-14 | fail→pass | 4,299 | 2,778 | -35% | 1 | 1 | 0% | 660 | 1,325 | +101% | 0 | 0 | — |
case-15 | fail→pass | 2,207 | 3,743 | +70% | 1 | 1 | 0% | 179 | 1,489 | +732% | 0 | 0 | — |
case-16 | pass→pass | 4,288 | 2,269 | -47% | 1 | 1 | 0% | 574 | 1,212 | +111% | 0 | 0 | — |
case-17 | fail→pass | 11,261 | 2,880 | -74% | 1 | 1 | 0% | 1,883 | 1,424 | -24% | 0 | 0 | — |
case-18 | pass→pass | 6,657 | 1,940 | -71% | 1 | 1 | 0% | 1,003 | 1,181 | +18% | 0 | 0 | — |
case-20 | pass→pass | 17,068 | 5,848 | -66% | 1 | 1 | 0% | 1,587 | 2,109 | +33% | 0 | 0 | — |
case-21 | pass→pass | 7,050 | 7,271 | +3% | 1 | 1 | 0% | 1,354 | 2,352 | +74% | 0 | 0 | — |
case-22 | pass→pass | 13,710 | 15,367 | +12% | 1 | 1 | 0% | 2,290 | 3,380 | +48% | 0 | 0 | — |
DecimalAI ran this skill against gemini-3.6-flash twice over the same eval suite — once with the skill loaded and once without — and compared the two runs case by case. 22 cases were attempted. The headline lift of +45 percentage points is the difference between those two pass rates over the 22 comparable cases.
Without the skill loaded, the model failed this case. With it loaded, the same prompt on the same model passed. This is one improved case from the latest verified run; every case, including any that regressed, is in the table above.
Other measured skills in the registry, with their headline benchmark lift.