skillZs
★ LIVE SKILL TAGS ★
>>> LIVE SKILLS INDEX <<<
* OPEN SOURCE *
NO LOGIN, NO TRACKING
※ REAL INSTALL DATA ※
← back to all skills
microsoft/hve-core153 installs

owasp-docker

OWASP Docker Top 6 knowledge base for identifying, assessing, and remediating Docker container security risks.

How do I install this agent skill?

npx skills add https://github.com/microsoft/hve-core --skill owasp-docker
view source ↗

Is this agent skill safe to install?

  • Gen Agent Trust Hubpass

    This skill provides a structured knowledge base for the OWASP Docker Security Top 6. It includes detailed reference material for identifying, detecting, and remediating common Docker container security risks. No security risks or malicious patterns were identified during the analysis.

  • Socketpass

    No alerts

  • Snykpass

    Risk: LOW · No issues

What does this agent skill do?

OWASP® Docker Top 6 — Skill Entry

This SKILL.md is the entrypoint for the OWASP Docker Top 6 skill.

The skill encodes the OWASP Docker Security Top 6 as structured, machine-readable references that an agent can query to identify, assess, and remediate Docker container security risks.

Normative references (Docker Top 6)

  1. 00 Vulnerability Index
  2. 01 Secure User Mapping
  3. 02 Patch Management Strategy
  4. 03 Network Segmentation and Firewalling
  5. 04 Secure Defaults and Hardening
  6. 05 Maintain Security Contexts
  7. 06 Resource Protection

Skill layout

  • SKILL.md — this file (skill entrypoint).
  • references/ — the Docker Top 6 normative documents.
    • 00-vulnerability-index.md — index of all vulnerability identifiers, categories, and cross-references.
    • 01 through 06 — one document per vulnerability aligned with OWASP Docker Security numbering.

Third-Party Attribution

Copyright © OWASP Foundation. OWASP® Docker Top 10 content is derived from works by the OWASP Foundation, licensed under CC BY-NC-SA 4.0 (https://creativecommons.org/licenses/by-nc-sa/4.0/). Source: https://owasp.org/www-project-docker-top-10/ Modifications: Vulnerability descriptions restructured into agent-consumable reference documents with added detection and remediation guidance. OWASP® is a registered trademark of the OWASP Foundation. Use does not imply endorsement.

Add the canonical catalog link to the repository README so users can inspect current installs and available audits. The publishing guide covers the complete discovery path.

<a href="https://skillzs.dev/skills/microsoft/hve-core/owasp-docker">View owasp-docker on skillZs</a>