amkisko
- 7 skills
- 0 followers
- 10 hours ago last updated
- ▌ Rfc Process · amkisko bundleWrite, number, and advance RFCs in the house shape used across amkisko libraries. Use when adding an RFC, claiming an id, copying the template, mapping status, flattening an RFC tree, or aligning a repo to this process.
- ▌ Claims Audit · amkisko bundleInventory and verify checkable claims, quotations, dates, statistics, research summaries, causal statements, and citations in docs or prose. Use for factual review, source audits, citation checks, or verification when text relies on external events, scholarship, technical behavior, law, policy, or other verifiable assertions.
- ▌ Changelog Update · amkisko bundleUpdate CHANGELOG.md and usr/docs/changelogs in amkisko house style. Use when editing changelogs, preparing releases, or syncing engineering notes into product-facing release text.
- ▌ Dependency Audit · amkisko bundleSelect, alter, and audit third-party dependencies with advisory scans, target-scoped vulnerability assessments, and deep recon/OSINT. Use when adding, replacing, or removing packages; when asked to audit, review, or harden dependency graphs, lockfiles, or manifests; or when ordinary work surfaces suspicious package behavior, an advisory, a scanner match, or a plausible vulnerability or exploitation signal involving a package. Includes freshness lag (libyears or equivalent).
- ▌ Engineering Audit · amkisko bundleAudit code with an evidence-first, pipeline-aware review format. Use for engineering audits, systems reviews, hot-path and Big-O analysis, pipeline inspection, resource and budget, trace and identification, product-surface, privacy, performance, observability, security, contract, and learned-systems reviews. Modes skip when they do not apply. Language- and framework-agnostic. When the system has external services, devices, operators, or physical actuators, also run boundary and control mode. For every executable tree, also run resource and budget mode and trace and identification mode. Skip those two when the tree never becomes executed bytes.
- ▌ Public Surface Recon · amkisko bundleBlackbox public web recon — HTTP, archives, public repos only. Never local filesystem evidence.
- ▌ Operational Signal Intake · amkisko bundleTriage live service evidence from alerts, error groups, monitors, traces, profiles, metrics, logs, probes, deployment changes, and user reports. Use to establish observed impact, test reliability and security hypotheses such as resource exhaustion or abuse, correlate the minimum useful evidence, record confidence and gaps, and route confirmed work. Do not use to install telemetry, redesign monitoring, conduct a full engineering or vulnerability audit, or mutate production.