Skills DirectorySkills Directory
SkillsLearnSecurityCategoriesDocsCommunityBlog
Sign InSubmit Skill
Skills Directory

Security-tested agent skills for Claude, coding agents, and AI workflows.

Directory

  • Browse Skills
  • All Skills A–Z
  • Claude Skills
  • Claude Code Skills
  • Agent Skills
  • Categories
  • Authors
  • Submit a Skill

Learn

  • Learn Hub
  • Install Claude Skills
  • Write SKILL.md
  • Skills vs MCP
  • Directories Compared

Security

  • Security
  • Methodology
  • Secure Claude Skills
  • Security Badges

Company

  • About
  • Community
  • Blog
  • API Docs
  • Advertise

2026 Skills Directory. All rights reserved.

ProTermsPrivacyRefunds
Back to skills

E50 On Board Network Management Service

ASecurity

Audit the management service an on-board network offers over its own resources, under ECSS-E-ST-50C clause 5.7.2.4, where a resource counts as managed only when the service reaches it for every operation it is owed and can still reach it when that resource has failed. Compute per-resource operation coverage against the required set, then test each management path for the two faults that matter: a path that runs through the resource it manages, and a hop nobody in the inventory manages. Report...

2 stars
0 votes
0 copies
0 views
Added 9/27/2026
ai-agentspython

Works with

claude code

Security Analysis

A100/100

Scanned 9/27/2026

Install to Claude Code

$npx -y skills add ashfordeOU/aero-agent-skills --skill e50-on-board-network-management-service --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of E50 On Board Network Management Service?

Add the live security badge to your README — it updates automatically with every re-scan.

Security grade badge for E50 On Board Network Management Service
[![Security: A — Skills Directory](https://www.skillsdirectory.com/api/skills/ashfordeou-e50-on-board-network-management-service/badge)](https://www.skillsdirectory.com/skills/ashfordeou-e50-on-board-network-management-service)

More formats (shields.io, HTML) on the badges page.

Download with Pro
Files
SKILL.md
---
name: e50-on-board-network-management-service
description: "Audit the management service an on-board network offers over its own resources, under ECSS-E-ST-50C clause 5.7.2.4, where a resource counts as managed only when the service reaches it for every operation it is owed and can still reach it when that resource has failed. Compute per-resource operation coverage against the required set, then test each management path for the two faults that matter: a path that runs through the resource it manages, and a hop nobody in the inventory manages. Report a three-way verdict, a gap list and a coverage ratio. Use when reviewing on-board network management. Trigger: ecss, e-st-50-communications, on-board-network-management-service, network-resource-management-coverage, management-path-self-dependency, unmanaged-network-hop, network-management-operation-gap."
license: Apache-2.0
compliance: STANDARDS-REF
standards:
  - id: ecss
    reference-only: true
gated: false
domain: space-systems
pack: space-systems
compatibility: "agentskills.io SKILL.md; any SKILL.md host (Claude Code, Hermes, OpenClaw)"
clauses:
  - standard: ECSS-E-ST-50C Rev.2
    clause: 5.7.2.4
    items: [a]
    relation: verifies
metadata:
  domain: space-systems
  subdomain: ecss
  tags: [ecss, e-st-50-communications, e50-on-board-network-management-service, on-board-network-management-service, network-resource-management-coverage, management-path-self-dependency, unmanaged-network-hop, network-management-operation-gap]
  version: 0.1.0
  author: Aero Agent Skills
---

# ECSS Communications — On-Board Network Management Service (space-systems/ecss/e50-on-board-network-management-service)

Use when an on-board network's own resources are being reviewed for
manageability, per ECSS-E-ST-50C clause 5.7.2.4 — whether the management
service reaches every resource, and whether it still reaches it on a bad day.

## Domain quick reference

- The clause asks for a service over the network's own resources, and
  two independent properties decide whether that service exists for a
  given resource. A review that asks only the first passes designs that
  cannot be managed at the moment management is needed.
- Operation coverage is the first. A resource is owed a set of
  operations — typically setting its configuration, reading its state,
  and commanding it — and a resource that can be read but not commanded
  is monitored, not managed.
- Path independence is the second, and it is the one that is assumed.
  Management traffic for a resource must not have to pass through that
  resource. A router managed only through itself is manageable exactly
  while it is working, which is when nobody needs to.
- A hop that is not itself in the managed inventory is the same defect
  one step out. Nothing in the design says who configures it or reports
  its state, so the management path depends on something unmanaged.
- The two failures stack, and the report must not let one hide the
  other. A resource with an unreliable path can be missing operations
  as well, and a verdict that stops at the path fault loses the gap.
- A coverage ratio over the whole inventory is worth printing next to
  the verdict. It is what turns nine scattered gaps into a number a
  programme can track between reviews.

## Workflow

1. Declare every managed resource with a name, the management
   operations it supports, and the hops its management traffic takes.
2. State the required operation set explicitly, and check it covers the
   work the clause gives the service: holding the routing and
   configuration tables of the network correct as the network changes,
   which is what keeps it dependable and available rather than merely
   observable. Shortening the set is how a gap becomes a pass, so make
   the set an input and print it back.
3. For each resource, take the required operations it does not support.
   An extra operation beyond the set is not a gap.
4. Test the management path for a self-dependency: the resource's own
   name among its hops.
5. Test each remaining hop against the declared inventory. A hop that
   is not a managed resource is an unmanaged dependency.
6. Give a three-way verdict — managed, partial, unreachable — letting a
   path fault outrank an operation gap, and keep both in the reasons.
7. Report the coverage ratio over every resource and every required
   operation, and list the two clause failures separately.

## Obligations

| Item | Step |
|---|---|
| ECSS-E-ST-50C Rev.2 5.7.2.4a | 2 |

## Pitfalls

- Counting a resource as managed because it answers a status poll.
  Reading state is one operation of the set, and it is the one that
  works when the others were never wired.
- Silently shortening the required set to whatever the design happens
  to support. The gap is then reported as full coverage and nobody sees
  what was dropped.
- Assuming the management path is out of band. On a shared on-board
  network it usually is not, and the path that carries management
  traffic is often the thing being managed.
- Letting the path fault swallow the operation gap. Fixing the path
  then produces a resource that is reachable and still cannot be
  commanded, which is a second review nobody budgeted.
- Accepting a path hop that is not in the inventory. It is not managed
  by anybody, so no gate will ever ask whether it works.
- Reporting a verdict with no ratio. Nine gaps across thirty resources
  and nine gaps across three are different programmes.

## Behavior contract (gate 3)

Name and operation-list validation, per-resource gaps against a
declared required set, self-dependency and unmanaged-hop path faults,
the three-way resource verdict with a path fault outranking a coverage
gap without hiding it, and the inventory-wide coverage ratio with the
two clause failures reported separately are exercised by the gate 3
contract test:
scripts/test_e50_on_board_network_management_service.py against
scripts/e50_on_board_network_management_service_logic.py (stdlib
unittest, offline).
Run:
python3 scripts/test_e50_on_board_network_management_service.py

## Compliance

- ECSS standards are freely downloadable (ESA); cite the source and
  paraphrase per standards-map.yaml.
- compliance: STANDARDS-REF, gated: false.

Attribution

ashfordeOUashfordeOU
View sourceMore from ashfordeOU →
SSkills DirectorySkills Directory

Know which skills are safe — weekly.

Best new skills + every skill we flagged as malicious. From the team that scanned 103,619.

Join free

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments (0)

No comments yet. Be the first to comment!

SSkills DirectorySkills Directory

Know which skills are safe — weekly.

Best new skills + every skill we flagged as malicious. From the team that scanned 103,619.

Join free

Related Skills

Caveman

Ultra-compressed communication mode that cuts output tokens while keeping technical accuracy. Levels: lite, full, ultra and the wenyan variants. Use for /caveman, "caveman mode", "talk like caveman", "be brief" or "less tokens".

1074701 votes

Hyperplan

Adversarial multi-agent planning skill. Self-orchestrates 5 hostile category members (unspecified-low, unspecified-high, deep, ultrabrain, artistry) via team-mode for ruthless cross-critique debate, distills only the defensible insights, then MANDATORILY hands the distilled insight bundle to the `plan` agent for executable plan formalization. Use when planning needs maximum rigor and surfacing of weak assumptions, blind spots, and over-engineering. Triggers: 'hyperplan', 'hpp', '/hyperplan', ...

694821 votes

Mcp Code Execution

Routes multi-tool workflows through MCP servers for large datasets and pipelines. Use when Bash tool overhead is limiting throughput on data-heavy tasks.

3351 votes

catchup

Recovers the conversation and failed tool calls of a previous Codex, Claude Code, Antigravity, Cline, Copilot CLI, Cursor, DeepSeek Harness, Kimi, OpenCode, Pi Agent, or ZCode session. Use when the user says "catch up", "what did the last session do", "get me up to speed", "I switched agents", asks to recover/summarize a previous session before continuing, or asks to diagnose or report a catchup failure. Do NOT use for the current conversation, git history, or any non-agent log.

691 votes

math-skill

A comprehensive mathematical reasoning skill for AI assistants — handles arithmetic to research-level problems with rigorous step-by-step reasoning, systematic verification, and transparent uncertainty handling

381 votes
View all in ai-agents →