Skills DirectorySkills Directory
SkillsLearnSecurityCategoriesDocsBlogPro
Sign InSubmit Skill
Skills Directory

Security-tested agent skills for Claude, coding agents, and AI workflows.

Directory

  • Browse Skills
  • All Skills A–Z
  • Claude Skills
  • Claude Code Skills
  • Agent Skills
  • Categories
  • Authors
  • Submit a Skill

Learn

  • Learn Hub
  • Install Claude Skills
  • Write SKILL.md
  • Skills vs MCP
  • Directories Compared

Security

  • Security
  • Methodology
  • Secure Claude Skills
  • Security Badges
  • Chrome Extension
  • Skill Manager

Company

  • About
  • Community
  • Blog
  • API Docs
  • Advertise

2026 Skills Directory. All rights reserved.

ProTermsPrivacyRefunds
Back to skills

Overview

BSecurity

Cross-platform operating systems expertise for service management, packaging/patching, security frameworks, filesystems, and OS selection across Windows Server, Windows Client, RHEL, Rocky Linux/AlmaLinux, Ubuntu, Debian, SLES, and macOS. Use when the question is OS-agnostic: \"operating system\", \"which Linux distribution\", \"systemd fundamentals\", \"SELinux vs AppArmor\", \"Group Policy vs MDM\", \"kernel tuning\", \"sysctl\", \"patching cadence\", \"package management strategy\", \"OS h...

4 stars
0 votes
0 copies
0 views
Added 9/24/2026
businessrailstestingsecurity

Works with

cli

Security Analysis

B85/100
highPerforms destructive filesystem operations

Pro shows the line behind each finding and how to fix it

Scanned 9/24/2026

$npx -y skills add chrishuffman5/domain-expert --skill overview --agent claude-code

Installs into .claude/skills of the current project.

Are you the author of Overview?

Add the live security badge to your README — it updates automatically with every re-scan.

Security grade badge for Overview
[![Security: B — Skills Directory](https://www.skillsdirectory.com/api/skills/chrishuffman5-overview-a3333633/badge)](https://www.skillsdirectory.com/skills/chrishuffman5-overview-a3333633)

More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.

Download with Pro
Files
SKILL.md
---
name: overview
description: "Cross-platform operating systems expertise for service management, packaging/patching, security frameworks, filesystems, and OS selection across Windows Server, Windows Client, RHEL, Rocky Linux/AlmaLinux, Ubuntu, Debian, SLES, and macOS. Use when the question is OS-agnostic: \"operating system\", \"which Linux distribution\", \"systemd fundamentals\", \"SELinux vs AppArmor\", \"Group Policy vs MDM\", \"kernel tuning\", \"sysctl\", \"patching cadence\", \"package management strategy\", \"OS hardening approach\", \"filesystem comparison\", \"OS lifecycle\", \"EOL planning\". Do NOT use for OS-specific commands, versions, or troubleshooting — use that OS's own skill (`windows-server`, `rhel`, `ubuntu`, `macos`, etc.)."
license: MIT
---

# Operating Systems Overview

This skill covers cross-platform operating systems fundamentals: service management, packaging and patching, security frameworks, filesystems, and OS selection guidance. For version-exact administration and diagnostics on a specific OS, use that OS's own skill instead.

## When to Use This Skill vs. an OS Skill

**Use this skill when the question is OS-agnostic:**
- "Which Linux distribution for X?"
- "How do systemd units and dependencies work conceptually?"
- "SELinux vs AppArmor — what's the difference?"
- "How should we structure our patching cadence?"
- "Compare filesystems for this workload"

**Use an OS skill when the question is OS-specific:**

| OS | Skill | Versions (see version-specific guidance) | Related skills |
|---|---|---|---|
| Windows Server | `windows-server` | 2016, 2019, 2022, 2025 | `failover-clustering`, `hyper-v` |
| Windows Client | `windows-client` | 10, 11 | `wsl` |
| RHEL | `rhel` | 8, 9, 10 | `selinux`, `rhel-podman` |
| Rocky Linux / AlmaLinux | `rocky-alma` | 8, 9, 10 | (RHEL rebuilds — shared skill) |
| Ubuntu | `ubuntu` | 20.04, 22.04, 24.04, 26.04 | `apparmor` |
| Debian | `debian` | 11, 12, 13 | — |
| SLES | `sles` | 15-sp5, 15-sp6 | `btrfs-snapper`, `sles-ha-extension` |
| macOS | `macos` | 14, 15, 26 | `macos-developer-toolchain`, `macos-mdm-deployment`, `macos-platform-sso` |

**Layout conventions within each OS skill:**
- `SKILL.md` — cross-version administration knowledge
- `references/versions/<v>.md` — version-specific features, changes, and support notes
- `scripts/` — **tested diagnostic and administration scripts; always check here before writing a script from scratch** — delivering a shipped script verbatim is the deterministic path; `scripts/versions/<v>/` holds version-specific scripts
- Related skills — deep dives (security frameworks, clustering, virtualization roles, MDM)

## How to Approach Tasks

1. **Classify** the request: administration / diagnostics / hardening / security framework / lifecycle & patching / OS selection.
2. **Pin the OS and version** (`cat /etc/os-release`, `winver`, `sw_vers`) — capabilities and defaults are version-bound. Check the OS skill's version-specific guidance for lifecycle/EOL status rather than asserting dates from memory.
3. **Scripts first for operational tasks** — list the OS skill's `scripts/` directory and prefer shipped scripts, explaining what each checks and what healthy vs. unhealthy output looks like.
4. **Recommend** with the blast radius stated: reboots required, services restarted, users affected.

## Cross-Platform Fundamentals

### Service Management

| Platform | System | Key operations |
|---|---|---|
| Linux (all documented distros) | systemd | `systemctl status/enable/edit`, unit dependencies, targets, journald |
| Windows | Service Control Manager | `Get-Service`, `sc.exe`, service recovery options, scheduled tasks |
| macOS | launchd | `launchctl`, LaunchDaemons vs. LaunchAgents |

### Packaging & Patching

| Platform | Package system | Patch mechanism |
|---|---|---|
| RHEL / Rocky / Alma | rpm + dnf (modules, streams) | dnf update, errata (RHSA), Satellite |
| Ubuntu / Debian | deb + apt | unattended-upgrades, Landscape; Ubuntu Pro/ESM for extended coverage |
| SLES | rpm + zypper | patches vs. updates distinction, SUSE Manager |
| Windows | MSI/MSIX + winget | Windows Update, WSUS, Autopatch/Intune |
| macOS | pkg + Homebrew (unmanaged) | softwareupdate, MDM-driven enforcement |

### Security Frameworks

| Platform | Mandatory access control | Policy & configuration control |
|---|---|---|
| RHEL family / SLES | SELinux (contexts, booleans, permissive-first testing) | firewalld, OpenSCAP |
| Ubuntu / Debian | AppArmor (profiles, complain-first testing) | ufw, CIS tooling |
| Windows | — (integrity levels, AppLocker/WDAC) | Group Policy, Intune, Defender stack |
| macOS | SIP, TCC, Gatekeeper | MDM configuration profiles |

Test-first is universal: permissive/complain/audit/report-only mode before enforcement, on every platform.

### Filesystems

xfs (RHEL default, no shrink), ext4 (Debian/Ubuntu default), btrfs + snapper (SLES default — snapshot/rollback, see the `btrfs-snapper` skill), NTFS/ReFS (Windows), APFS (macOS — snapshots, volumes share space). Choose by workload and the operational features (snapshots, quotas, growth/shrink) you actually need.

### Distro/OS Selection

Decision drivers: support model (paid vendor backing vs. community), lifecycle length, ecosystem certification (SAP → SLES/RHEL, AD-centric estate → Windows), team skills, and licensing cost. Rocky/Alma are the no-subscription RHEL-compatible path; each OS skill's version-specific guidance carries compatibility notes.

## Guardrails

- Never present destructive commands (`rm -rf`, `mkfs`, `diskpart clean`, registry deletions) without explicit impact warnings.
- Flag anything requiring a reboot or service restart.
- Hardening changes ship with a test-first mode and a rollback path.
- Never assert EOL dates or version facts from memory when the relevant version-specific guidance can be read.

Attribution

chrishuffman5chrishuffman5
View sourceSee grades on GitHubMore from chrishuffman5 →
SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.

Comments (0)

No comments yet. Be the first to comment!

SSkills DirectorySkills Directory

Ship a skill? Prove it's safe.

Free 120-pattern security scan, letter grade, and an embeddable README badge.

Submit a skill

Related Skills

Email Composer

Draft professional emails for various contexts including business, technical, and customer communication. Use when the user needs help writing emails or composing professional messages.

304952 votes

Solution Architect

Designs system architecture, component specifications, and technical integration strategy. Use when: designing solutions, system architecture, technology stack, or integration approaches.

192 votes

Akorchak:Venture Assessment

Generate a comprehensive VC investment assessment report for a company

72 votes

Telegram Compose

Compose rich, readable Telegram messages using HTML formatting via direct Telegram API. Use when: (1) Sending any Telegram message beyond a simple one-line reply, (2) Creating structured messages with sections, lists, or status updates, (3) Need formatting unavailable via Clawdbot's Markdown conversion (underline, spoilers, expandable blockquotes, user mentions by ID), (4) Sending alerts, reports, summaries, or notifications to Telegram, (5) Want professional, scannable message formatting wit...

6511 votes

Just Fucking Cancel

Find and cancel unwanted subscriptions by analyzing bank transactions. Detects recurring charges, calculates annual waste, and helps you cancel with direct URLs and browser automation. Use when: 'cancel subscriptions', 'audit subscriptions', 'find recurring charges', 'what am I paying for', 'save money', 'subscription cleanup', 'stop wasting money'. Supports CSV import (Apple Card, Chase, Amex, Citi, Bank of America, Capital One, Mint, Copilot) OR Plaid API for automatic transaction pull. Out...

6511 votes
View all in business →