'Security audit: supported static findings; qualified profiles add reproduction
Pro scans all 2 files and shows the line behind each finding
Scanned 9/20/2026
npx -y skills add nota-america/forgecat-agent-profiles --skill garrytan_gstack_cso --agent claude-codeInstalls into .claude/skills of the current project.
Are you the author of Garrytan Gstack Cso?
Add the live security badge to your README — it updates automatically with every re-scan.
[](https://www.skillsdirectory.com/skills/nota-america-garrytan-gstack-cso)More formats (shields.io, HTML) on the badges page. Keep it an A: scan every change in CI with Pro.
---
name: cso
version: 3.0.0
description: 'Security audit: supported static findings; qualified profiles add reproduction
and repair candidates. (gstack)'
allowed-tools:
- Bash(~/.claude/skills/gstack/bin/gstack-cso-launcher *)
- Bash(~/.claude/skills/gstack/bin/gstack-cso-launcher.exe *)
triggers:
- security audit
- check for vulnerabilities
- owasp review
---
# cso
Resolve `scripts/entry.py` relative to this SKILL.md, then invoke it by absolute path:
Set `SKILL_DIR` to the absolute directory containing this file, as supplied by skill discovery.
```sh
python3 "$SKILL_DIR/scripts/entry.py" instructions --host claude-code --skill cso
```
Use `claude-code`, `cursor`, `codex`, `openclaw`, or `hermes` for the current platform.
Follow the returned runtime contract and read the complete referenced workflow before acting.
Repeat the returned environment prefix on each shell call; variables do not persist between tool calls.
If setup is missing, explain the exact preparation command and obtain consent before downloads or builds.
Never silently use another gstack installation. Preserve the source workflow's questions and permission boundaries.
Is this your skill, or is something wrong with this listing? Request removal or report an issue. Author removals are honored within 72 hours.
No comments yet. Be the first to comment!