Aikido Issues

作者 AikidoSec02f018ad4da1无许可证14 个星标收录于 2026年10月7日更新于 2026年10月7日仓库12天前更新

List, count, summarize, or triage security issues from the Aikido security feed. Use when the user asks about Aikido findings, vulnerabilities, leaked secrets, SAST/IaC/SCA results, cloud or container security issues, or EOL/license/malware alerts surfaced by Aikido.

仅含说明Security
AI 生成的概览

通过 Aikido MCP 服务器列出、统计、汇总或分诊 Aikido 安全源中的安全问题。

功能
该技能指导智能体通过 aikido-mcp:aikido_issues_list 工具查询 Aikido 安全源。它支持列出、统计、汇总和分诊发现项,可按范围、问题类型和 SLA 状态进行可选筛选,并支持分页和按 ID 查询单个问题详情。结果按固定的逐条格式呈现,包含标题、ID、类型、严重性和修复建议,并在相关时附加文件、位置、链接或 SLA 截止日期等字段。若 Aikido MCP 服务器不可用,技能会指示智能体告知用户并指向设置步骤。
适用场景
当用户询问 Aikido 发现项、漏洞、泄露的密钥、SAST/IaC/SCA 结果,或 Aikido 呈现的云、容器、EOL、许可证或恶意软件警报时使用。也适用于按 ID 深入查看、解释、分诊或修复特定 Aikido 问题的请求。
运行要求
需要带有 aikido_issues_list 工具的 Aikido MCP 服务器;不附带脚本,技能仅为指令。

When listing Aikido feed issues:

  1. Use aikido-mcp:aikido_issues_list
  2. Call it when the user wants to list, show, count, or summarize Aikido feed issues.
  3. Pass scope fields only when the user (or workspace context) supplies them: cloud_name, repo_name, repo_branch_name, vm_name, domain_name, container_name, team_name, workspace_name.
  4. Optional issue_types (array): open_source, leaked_secret, cloud, sast, iac, surface_monitoring, malware, eol, mobile, docker_container, cloud_instance, scm_security, license, ai_pentest — e.g. include leaked_secret for secrets. Omit when no category filter is needed.
  5. SLA filters (booleans): set out_of_sla: true when the user wants issues that are past their SLA, or sla_due_soon: true for issues approaching their SLA deadline.
  6. Pagination: use numeric page only when the user needs more than the first page of results (zero-indexed). Only 25 findings are reported per page. Report to the user if there are more findings on following pages.
  7. Detail lookup: pass issue_id (string) to fetch one issue with more detail than the list returns. Use it when the user asks to dig into, explain, triage or fix a specific issue, or names an issue by its ID. issue_id overrides every other filter — the call returns that single issue, so do not combine it with scope, type, SLA or pagination fields.
  8. Present each issue exactly in this form (increment #):
    Issue #1: <issue_title> - ID: <issue_id> - Issue type: <issue_type> - Severity: <issue_severity> (<issue_severity_label>) - Remediation: <issue_remediation>
    Add extra bullets when the field is relevant, e.g. File: <issue_file> (line <issue_start_line>), Location: <location.type> <location.name> (<location.branch_name>), Issue link: <issue_link>, SLA due date: <issue_remediate_by_date>.
  9. For an issue_id lookup, keep the same format and then summarize the extra fields the detailed response carries.

If the Aikido MCP server is not available or fails, inform the user:

The Aikido MCP server is required for Aikido feed issues but is not available. Install it following the setup guide at reference.md, or run /aikido:setup, then retry.

来源与署名

来源:AikidoSec/aikido-claude-plugin位于skills/issues提交02f018a

许可证: 无许可证

内容归原作者所有。SourceWeft 从公开仓库中收录这些内容。

举报或申请下架