Aikido Issues

作者 AikidoSec02f018ad4da1無授權條款14 個星標收錄於 2026年10月7日更新於 2026年10月7日儲存庫12 天前更新

List, count, summarize, or triage security issues from the Aikido security feed. Use when the user asks about Aikido findings, vulnerabilities, leaked secrets, SAST/IaC/SCA results, cloud or container security issues, or EOL/license/malware alerts surfaced by Aikido.

僅含說明Security
AI 產生的概覽

透過 Aikido MCP 伺服器列出、計數、彙總或分診 Aikido 安全摘要中的安全性問題。

功能
此技能引導代理透過 aikido-mcp:aikido_issues_list 工具查詢 Aikido 安全摘要。它支援列出、計數、彙總與分診發現項目,可依範圍、問題類型與 SLA 狀態選擇性篩選,並支援分頁與依 ID 查詢單一問題詳細資料。結果以固定的逐項格式呈現,包含標題、ID、類型、嚴重性與修復建議,並在相關時附加檔案、位置、連結或 SLA 到期日等欄位。若 Aikido MCP 伺服器無法使用,技能會指示代理告知使用者並指向設定步驟。
適用情境
當使用者詢問 Aikido 發現項目、弱點、外洩的密鑰、SAST/IaC/SCA 結果,或 Aikido 呈現的雲端、容器、EOL、授權或惡意軟體警示時使用。也適用於依 ID 深入查看、說明、分診或修復特定 Aikido 問題的要求。
執行需求
需要具備 aikido_issues_list 工具的 Aikido MCP 伺服器;不隨附指令碼,技能僅為指示。

When listing Aikido feed issues:

  1. Use aikido-mcp:aikido_issues_list
  2. Call it when the user wants to list, show, count, or summarize Aikido feed issues.
  3. Pass scope fields only when the user (or workspace context) supplies them: cloud_name, repo_name, repo_branch_name, vm_name, domain_name, container_name, team_name, workspace_name.
  4. Optional issue_types (array): open_source, leaked_secret, cloud, sast, iac, surface_monitoring, malware, eol, mobile, docker_container, cloud_instance, scm_security, license, ai_pentest — e.g. include leaked_secret for secrets. Omit when no category filter is needed.
  5. SLA filters (booleans): set out_of_sla: true when the user wants issues that are past their SLA, or sla_due_soon: true for issues approaching their SLA deadline.
  6. Pagination: use numeric page only when the user needs more than the first page of results (zero-indexed). Only 25 findings are reported per page. Report to the user if there are more findings on following pages.
  7. Detail lookup: pass issue_id (string) to fetch one issue with more detail than the list returns. Use it when the user asks to dig into, explain, triage or fix a specific issue, or names an issue by its ID. issue_id overrides every other filter — the call returns that single issue, so do not combine it with scope, type, SLA or pagination fields.
  8. Present each issue exactly in this form (increment #):
    Issue #1: <issue_title> - ID: <issue_id> - Issue type: <issue_type> - Severity: <issue_severity> (<issue_severity_label>) - Remediation: <issue_remediation>
    Add extra bullets when the field is relevant, e.g. File: <issue_file> (line <issue_start_line>), Location: <location.type> <location.name> (<location.branch_name>), Issue link: <issue_link>, SLA due date: <issue_remediate_by_date>.
  9. For an issue_id lookup, keep the same format and then summarize the extra fields the detailed response carries.

If the Aikido MCP server is not available or fails, inform the user:

The Aikido MCP server is required for Aikido feed issues but is not available. Install it following the setup guide at reference.md, or run /aikido:setup, then retry.

來源與署名

來源:AikidoSec/aikido-claude-plugin位於skills/issues提交02f018a

授權條款: 無授權條款

內容歸原作者所有。SourceWeft 從公開儲存庫中收錄這些內容。

檢舉或申請下架