Remediation Guide
Remediation Guide
This guide provides standard remediation actions after a skill-related incident.
Immediate Actions
- Remove or disable affected skills.
- Revoke and rotate credentials.
- Block known malicious IOCs.
Verification Steps
- Confirm skill removal on all endpoints.
- Confirm revoked credentials are no longer active.
- Validate no further suspicious behavior appears in logs.
Recovery Steps
- Restore trusted versions of affected skills.
- Re-enable services in phases.
- Monitor for recurrence.
Hardening Follow-ups
- Tighten permission manifests.
- Add or tune behavioral scanner rules.
- Improve CI policy gates for skill submissions.
Example
Put whatever you like here: news, screenshots, features, supporters, or remove this file and don’t use tabs at all.