[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"skill-google-cloud-persona-security":3,"mdc-2ccobj-key":34,"related-repo-google-cloud-persona-security":179,"related-org-google-cloud-persona-security":271},{"slug":4,"name":4,"fn":5,"description":6,"org":7,"tags":12,"stars":23,"repoUrl":24,"updatedAt":25,"license":26,"forks":27,"topics":28,"repo":29,"sourceUrl":32,"mdContent":33},"persona-security","audit system security and harden infrastructure","Adopts the Security Expert (SEC) persona. Focuses on system hardening, vulnerability auditing, and the protection of sensitive credentials and data.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},"google-cloud","Google Cloud","https:\u002F\u002Fpexgzepcugksgbtrxkhf.supabase.co\u002Fstorage\u002Fv1\u002Fobject\u002Fpublic\u002Forg-logos\u002Fgoogle-cloud.png","GoogleCloudPlatform",[13,17,20],{"name":14,"slug":15,"type":16},"Security","security","tag",{"name":18,"slug":19,"type":16},"Audit","audit",{"name":21,"slug":22,"type":16},"Infrastructure","infrastructure",14,"https:\u002F\u002Fgithub.com\u002FGoogleCloudPlatform\u002Fcicd-foundation","2026-07-12T07:40:27.549074","Apache-2.0",9,[],{"repoUrl":24,"stars":23,"forks":27,"topics":30,"description":31},[],null,"https:\u002F\u002Fgithub.com\u002FGoogleCloudPlatform\u002Fcicd-foundation\u002Ftree\u002FHEAD\u002Fskills\u002Fpersona-security","---\nname: persona-security\ndescription: Adopts the Security Expert (SEC) persona. Focuses on system hardening, vulnerability auditing, and the protection of sensitive credentials and data.\nlicense: Apache-2.0\nallowed-tools: skills\u002Fpersona-security\u002Fscripts\u002Fupdate_gpg_keys.sh\nmetadata:\n  author: sce-taid \u003Csce@taid.me>\n  resources:\n    - AGENTS.md\n---\n\n# Persona: Security Expert (SEC)\n\n## Mission\n\nTo protect the Cloud Workstation environment and user data against unauthorized access and vulnerabilities. The SEC persona prioritizes system hardening and rigorous data protection.\n\n## Core Responsibilities\n\n- **Vulnerability Auditing**: Proactively scan for and resolve security vulnerabilities in the base image and added layers.\n- **Credential Protection**: Ensure no secrets, API keys, or sensitive credentials are ever logged, printed, or committed to the repository. Utilize `gitleaks` (integrated via pre-commit) to proactively detect and prevent secret exposure.\n- **System Hardening**: Implement least-privilege principles for all services and user accounts.\n- **Data Privacy**: Ensure that all data handling complies with project-specific and global privacy standards.\n\n## Tooling\n\n- **`scripts\u002Fupdate_gpg_keys.sh`**: Refreshes the GPG keys for all third-party APT repositories to ensure secure package validation.\n\n## Collaboration Context\n\n- **SWE**: Review code for common security pitfalls (e.g., shell injection, insecure permissions).\n- **SRE**: Ensure that logging and monitoring do not inadvertently capture sensitive data.\n",{"data":35,"body":41},{"name":4,"description":6,"license":26,"allowed-tools":36,"metadata":37},"skills\u002Fpersona-security\u002Fscripts\u002Fupdate_gpg_keys.sh",{"author":38,"resources":39},"sce-taid \u003Csce@taid.me>",[40],"AGENTS.md",{"type":42,"children":43},"root",[44,53,60,66,72,127,133,150,156],{"type":45,"tag":46,"props":47,"children":49},"element","h1",{"id":48},"persona-security-expert-sec",[50],{"type":51,"value":52},"text","Persona: Security Expert (SEC)",{"type":45,"tag":54,"props":55,"children":57},"h2",{"id":56},"mission",[58],{"type":51,"value":59},"Mission",{"type":45,"tag":61,"props":62,"children":63},"p",{},[64],{"type":51,"value":65},"To protect the Cloud Workstation environment and user data against unauthorized access and vulnerabilities. The SEC persona prioritizes system hardening and rigorous data protection.",{"type":45,"tag":54,"props":67,"children":69},{"id":68},"core-responsibilities",[70],{"type":51,"value":71},"Core Responsibilities",{"type":45,"tag":73,"props":74,"children":75},"ul",{},[76,88,107,117],{"type":45,"tag":77,"props":78,"children":79},"li",{},[80,86],{"type":45,"tag":81,"props":82,"children":83},"strong",{},[84],{"type":51,"value":85},"Vulnerability Auditing",{"type":51,"value":87},": Proactively scan for and resolve security vulnerabilities in the base image and added layers.",{"type":45,"tag":77,"props":89,"children":90},{},[91,96,98,105],{"type":45,"tag":81,"props":92,"children":93},{},[94],{"type":51,"value":95},"Credential Protection",{"type":51,"value":97},": Ensure no secrets, API keys, or sensitive credentials are ever logged, printed, or committed to the repository. Utilize ",{"type":45,"tag":99,"props":100,"children":102},"code",{"className":101},[],[103],{"type":51,"value":104},"gitleaks",{"type":51,"value":106}," (integrated via pre-commit) to proactively detect and prevent secret exposure.",{"type":45,"tag":77,"props":108,"children":109},{},[110,115],{"type":45,"tag":81,"props":111,"children":112},{},[113],{"type":51,"value":114},"System Hardening",{"type":51,"value":116},": Implement least-privilege principles for all services and user accounts.",{"type":45,"tag":77,"props":118,"children":119},{},[120,125],{"type":45,"tag":81,"props":121,"children":122},{},[123],{"type":51,"value":124},"Data Privacy",{"type":51,"value":126},": Ensure that all data handling complies with project-specific and global privacy standards.",{"type":45,"tag":54,"props":128,"children":130},{"id":129},"tooling",[131],{"type":51,"value":132},"Tooling",{"type":45,"tag":73,"props":134,"children":135},{},[136],{"type":45,"tag":77,"props":137,"children":138},{},[139,148],{"type":45,"tag":81,"props":140,"children":141},{},[142],{"type":45,"tag":99,"props":143,"children":145},{"className":144},[],[146],{"type":51,"value":147},"scripts\u002Fupdate_gpg_keys.sh",{"type":51,"value":149},": Refreshes the GPG keys for all third-party APT repositories to ensure secure package validation.",{"type":45,"tag":54,"props":151,"children":153},{"id":152},"collaboration-context",[154],{"type":51,"value":155},"Collaboration Context",{"type":45,"tag":73,"props":157,"children":158},{},[159,169],{"type":45,"tag":77,"props":160,"children":161},{},[162,167],{"type":45,"tag":81,"props":163,"children":164},{},[165],{"type":51,"value":166},"SWE",{"type":51,"value":168},": Review code for common security pitfalls (e.g., shell injection, insecure permissions).",{"type":45,"tag":77,"props":170,"children":171},{},[172,177],{"type":45,"tag":81,"props":173,"children":174},{},[175],{"type":51,"value":176},"SRE",{"type":51,"value":178},": Ensure that logging and monitoring do not inadvertently capture sensitive data.",{"items":180,"total":27},[181,198,214,225,238,244,256],{"slug":182,"name":182,"fn":183,"description":184,"org":185,"tags":186,"stars":23,"repoUrl":24,"updatedAt":197},"persona-agent-manager","manage AI agent lifecycles and health","Adopts the Agent Manager persona. Manages the lifecycle, orchestration, and technical health of AI Agents and their specialized skills.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[187,190,193,194],{"name":188,"slug":189,"type":16},"Agents","agents",{"name":191,"slug":192,"type":16},"Engineering","engineering",{"name":9,"slug":8,"type":16},{"name":195,"slug":196,"type":16},"Operations","operations","2026-07-12T07:40:26.067674",{"slug":199,"name":199,"fn":200,"description":201,"org":202,"tags":203,"stars":23,"repoUrl":24,"updatedAt":213},"persona-legal","adopt legal expert persona","Adopts the Legal Expert persona. Verifies copyrights, ensures license compliance, and manages SBOM (Software Bill of Materials) accuracy.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[204,207,210],{"name":205,"slug":206,"type":16},"Compliance","compliance",{"name":208,"slug":209,"type":16},"Governance","governance",{"name":211,"slug":212,"type":16},"Legal","legal","2026-07-12T07:40:19.836631",{"slug":215,"name":215,"fn":216,"description":217,"org":218,"tags":219,"stars":23,"repoUrl":24,"updatedAt":224},"persona-oss","adopt open-source expert persona","Adopts the Open-Source Expert persona. Ensures upstream-first development, public codebase readiness, and adherence to community standards.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[220,223],{"name":221,"slug":222,"type":16},"Code Analysis","code-analysis",{"name":208,"slug":209,"type":16},"2026-07-12T07:40:16.95208",{"slug":226,"name":226,"fn":227,"description":228,"org":229,"tags":230,"stars":23,"repoUrl":24,"updatedAt":237},"persona-privacy","audit data handling for privacy compliance","Adopts the Privacy Expert persona. Audits data handling practices, ensures compliance with privacy regulations, and protects user PII (Personally Identifiable Information).",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[231,232,233,236],{"name":18,"slug":19,"type":16},{"name":205,"slug":206,"type":16},{"name":234,"slug":235,"type":16},"Privacy","privacy",{"name":14,"slug":15,"type":16},"2026-07-28T05:34:26.124914",{"slug":4,"name":4,"fn":5,"description":6,"org":239,"tags":240,"stars":23,"repoUrl":24,"updatedAt":25},{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[241,242,243],{"name":18,"slug":19,"type":16},{"name":21,"slug":22,"type":16},{"name":14,"slug":15,"type":16},{"slug":245,"name":245,"fn":246,"description":247,"org":248,"tags":249,"stars":23,"repoUrl":24,"updatedAt":255},"persona-sre","adopt Site Reliability Engineering persona","Adopts the Site-Reliability Engineer (SRE) persona. Focuses on system resilience, service health, and automated orchestration via systemd and health checks.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[250,251,252,253],{"name":191,"slug":192,"type":16},{"name":9,"slug":8,"type":16},{"name":195,"slug":196,"type":16},{"name":176,"slug":254,"type":16},"sre","2026-07-28T05:34:27.197523",{"slug":257,"name":257,"fn":258,"description":259,"org":260,"tags":261,"stars":23,"repoUrl":24,"updatedAt":270},"persona-swe","adopt software engineer persona for development","Adopts the Software Engineer persona. Focuses on functional correctness, structural integrity, and architectural hygiene, including Source Code Versioning History Refactoring.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[262,265,266,267],{"name":263,"slug":264,"type":16},"Architecture","architecture",{"name":221,"slug":222,"type":16},{"name":191,"slug":192,"type":16},{"name":268,"slug":269,"type":16},"Git","git","2026-07-28T06:06:03.525762",{"items":272,"total":455},[273,291,307,327,341,350,364,381,398,411,427,437],{"slug":274,"name":274,"fn":275,"description":276,"org":277,"tags":278,"stars":288,"repoUrl":289,"updatedAt":290},"kb-search","search and extract local knowledge base documents","Allows listing, searching and extracting information from local knowledge base documents for information about tables\n",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[279,282,285],{"name":280,"slug":281,"type":16},"Documentation","documentation",{"name":283,"slug":284,"type":16},"Knowledge Base","knowledge-base",{"name":286,"slug":287,"type":16},"Search","search",6749,"https:\u002F\u002Fgithub.com\u002FGoogleCloudPlatform\u002Fknowledge-catalog","2026-07-12T07:38:52.157375",{"slug":292,"name":293,"fn":294,"description":295,"org":296,"tags":297,"stars":288,"repoUrl":289,"updatedAt":306},"knowledgecatalogdiscoveryagent","knowledge_catalog_discovery_agent","search and rank Knowledge Catalog data entries","Analyzes user queries, extracts relevant predicates, and utilizes Knowledge Catalog Search to find and rank the most relevant data entries. Engages with the user throughout the process.\n",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[298,301,302,305],{"name":299,"slug":300,"type":16},"Data Analysis","data-analysis",{"name":9,"slug":8,"type":16},{"name":303,"slug":304,"type":16},"Knowledge Management","knowledge-management",{"name":286,"slug":287,"type":16},"2026-07-12T07:38:22.196851",{"slug":308,"name":308,"fn":309,"description":310,"org":311,"tags":312,"stars":324,"repoUrl":325,"updatedAt":326},"contributing","contribute to Cloud Foundation Fabric","End-to-end workflow for contributing to Cloud Foundation Fabric: triaging GitHub issues, proactive feature development, validating with tests and Policy Troubleshooter, and submitting sanitized Pull Requests. Use when addressing a Fabric GitHub issue, developing a module or FAST stage change, or preparing a branch for a pull request.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[313,316,317,320,321],{"name":314,"slug":315,"type":16},"Automation","automation",{"name":191,"slug":192,"type":16},{"name":318,"slug":319,"type":16},"GitHub","github",{"name":9,"slug":8,"type":16},{"name":322,"slug":323,"type":16},"Pull Requests","pull-requests",2062,"https:\u002F\u002Fgithub.com\u002FGoogleCloudPlatform\u002Fcloud-foundation-fabric","2026-07-31T06:23:36.935005",{"slug":328,"name":328,"fn":329,"description":330,"org":331,"tags":332,"stars":324,"repoUrl":325,"updatedAt":340},"fabric-builder","generate Terraform code for Google Cloud","Generates idiomatic Cloud Foundation Fabric (CFF) Terraform code using CFF modules. Use when users ask to create GCP resources, use Fabric modules, or generate Terraform code for Google Cloud.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[333,334,337],{"name":9,"slug":8,"type":16},{"name":335,"slug":336,"type":16},"Infrastructure as Code","infrastructure-as-code",{"name":338,"slug":339,"type":16},"Terraform","terraform","2026-07-12T07:38:23.514555",{"slug":342,"name":342,"fn":343,"description":344,"org":345,"tags":346,"stars":324,"repoUrl":325,"updatedAt":349},"fast-0-org-setup-prereqs","prepare prerequisites for FAST 0-org-setup","Guides the user step-by-step through the prerequisites for the FAST 0-org-setup stage, supporting both Standard GCP and Google Cloud Dedicated (GCD) environments. Use when a user asks to prepare or run prerequisites for 0-org-setup or bootstrap the FAST landing zone.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[347,348],{"name":9,"slug":8,"type":16},{"name":195,"slug":196,"type":16},"2026-07-12T07:38:28.127148",{"slug":351,"name":351,"fn":352,"description":353,"org":354,"tags":355,"stars":361,"repoUrl":362,"updatedAt":363},"agent-aware-cli","design agent-aware command-line interfaces","Guide for designing and implementing command-line interfaces (CLIs) that are equally usable by human developers and automated coding agents. Use when the user wants to build a CLI, apply CLI best practices, or use Go with Cobra and Viper.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[356,359,360],{"name":357,"slug":358,"type":16},"CLI","cli",{"name":191,"slug":192,"type":16},{"name":9,"slug":8,"type":16},1150,"https:\u002F\u002Fgithub.com\u002FGoogleCloudPlatform\u002Fvertex-ai-creative-studio","2026-07-12T07:39:08.41406",{"slug":365,"name":365,"fn":366,"description":367,"org":368,"tags":369,"stars":361,"repoUrl":362,"updatedAt":380},"build-mcp-genmedia","build and configure GenAI MCP servers","Builds the mcp-genmedia Go MCP servers (nanobanana, veo, lyria, gemini-multimodal, chirp3-hd, avtool) from source and wires them into settings.json. Use this skill whenever the MCP tools are missing or broken — typically at the start of a new session, after a container restart, or when \u002Ftmp has been wiped. The prebuilt binaries in \u002Fworkspace\u002F.local\u002Fbin\u002F have no exec bit and live on a noexec mount; this skill compiles fresh executables into \u002Ftmp\u002Fbin\u002F where execution is allowed.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[370,373,374,377],{"name":371,"slug":372,"type":16},"API Development","api-development",{"name":9,"slug":8,"type":16},{"name":375,"slug":376,"type":16},"LLM","llm",{"name":378,"slug":379,"type":16},"MCP","mcp","2026-07-12T07:39:10.911302",{"slug":382,"name":382,"fn":383,"description":384,"org":385,"tags":386,"stars":361,"repoUrl":362,"updatedAt":397},"genmedia-audio-engineer","synthesize and mix audio content","Expert in audio synthesis, music generation, and mixing. Use when creating podcasts, background scores, or multi-track audio layering using mcp-chirp3-go, mcp-lyria-go, mcp-gemini-go, mcp-nanobanana-go, and mcp-avtool-go.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[387,390,393,394],{"name":388,"slug":389,"type":16},"Audio","audio",{"name":391,"slug":392,"type":16},"Creative","creative",{"name":9,"slug":8,"type":16},{"name":395,"slug":396,"type":16},"Vertex AI","vertex-ai","2026-07-12T07:39:16.623879",{"slug":399,"name":399,"fn":400,"description":401,"org":402,"tags":403,"stars":361,"repoUrl":362,"updatedAt":410},"genmedia-image-artist","generate and edit AI images","Expert in AI image generation and editing. Use when the user needs high-quality textures, character-consistent visuals, or image-to-image editing using mcp-nanobanana-go.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[404,405,406,409],{"name":391,"slug":392,"type":16},{"name":9,"slug":8,"type":16},{"name":407,"slug":408,"type":16},"Image Generation","image-generation",{"name":395,"slug":396,"type":16},"2026-07-12T07:39:15.372822",{"slug":412,"name":412,"fn":413,"description":414,"org":415,"tags":416,"stars":361,"repoUrl":362,"updatedAt":426},"genmedia-producer","produce multi-step media content","Expert media production assistant. Use when requested to help with storyboarding, podcast creation, audio assembly, or complex multi-step media workflows using the GenMedia MCP servers (Veo, Lyria, Gemini TTS, NanoBanana).",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[417,418,419,420,423],{"name":388,"slug":389,"type":16},{"name":391,"slug":392,"type":16},{"name":9,"slug":8,"type":16},{"name":421,"slug":422,"type":16},"Media","media",{"name":424,"slug":425,"type":16},"Video","video","2026-07-12T07:39:09.672849",{"slug":428,"name":428,"fn":429,"description":430,"org":431,"tags":432,"stars":361,"repoUrl":362,"updatedAt":436},"genmedia-video-editor","edit and compose video content","Expert in video composition, editing, and format conversion. Use when the user wants to generate high-quality video, overlay images on video, concatenate clips, create GIFs, or sync audio to video using mcp-avtool-go and mcp-veo-go.",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[433,434,435],{"name":391,"slug":392,"type":16},{"name":9,"slug":8,"type":16},{"name":424,"slug":425,"type":16},"2026-07-12T07:39:13.749081",{"slug":438,"name":438,"fn":439,"description":440,"org":441,"tags":442,"stars":361,"repoUrl":362,"updatedAt":454},"genmedia-voice-director","generate expressive text-to-speech with Gemini","Expert in casting, directing, and generating expressive text-to-speech using Gemini TTS. Use this when the user needs virtual voice actor personas, expressive speech generation, or multiple variations of a voiceover (like \"take 3 on the bounce\").",{"slug":8,"name":9,"logoUrl":10,"githubOrg":11},[443,444,445,448,451],{"name":388,"slug":389,"type":16},{"name":391,"slug":392,"type":16},{"name":446,"slug":447,"type":16},"Gemini","gemini",{"name":449,"slug":450,"type":16},"Speech","speech",{"name":452,"slug":453,"type":16},"Text-to-Speech","text-to-speech","2026-07-12T07:39:17.86673",80]