Vulnerability Disclosure

Skill packages tagged with “Vulnerability Disclosure”

Safe Harbor Drafter (CISA CPG 5.1 VDP)

Draft and validate a Vulnerability Disclosure Policy (VDP) with CISA-aligned Safe Harbor language and RFC 9116–compliant reporting. Ensures researcher protection and clear reporting mechanism.

    Learn More
    SBOM Lifecycle Drafter

    Draft and maintain the SBOM Management Procedure aligned with NIST CSF 2.0 ID.AM. Covers ingestion, validation, and monitoring of SBOMs; Vulnerability Disclosure when NVD flags a component; and developer Attestation of Security. Validates procedure and SBOM files against CycloneDX/SPDX.

      Learn More

      Ready to let your expertise drive the workflow?

      Stop wrestling with rigid templates and complex tooling. Write your process in markdown, let the agent handle the rest.

      Get Started