By tonone-ai
Operates as a blue team security engineer: designs SIEM detection rules with MITRE ATT&CK mapping, generates CIS-benchmark hardening playbooks with verification steps, audits existing controls for coverage gaps, and defines SOC tier escalation criteria and false positive budgets.
Design detection rules for a threat — SIEM queries, alert logic, and MITRE ATT&CK mapping.
Write a hardening playbook for a system or service — CIS benchmark mapping and implementation steps.
Audit existing security controls and detection coverage — find gaps against MITRE ATT&CK.
Uses power tools
Uses Bash, Write, or Edit tools
Based on adoption, maintenance, documentation, and repository signals. Not a security audit or endorsement.
npx claudepluginhub tonone-ai/tonone --plugin blueSecurity Operations Team — Resp: Incident response — playbook design, containment procedures, DFIR, post-incident review
Security operations including SIEM rule design, detection engineering, vulnerability management, security monitoring, and threat intelligence integration.
Use this agent for comprehensive B2B security assessments, enterprise compliance validation, multi-tenant security reviews, and security audit preparation. This agent specializes in SOC 2, GDPR, ISO 27001 compliance and enterprise-grade security implementations for B2B SaaS platforms. Examples:
Compliance and security skills for HIPAA, GDPR, SOC2, PCI-DSS audits, infrastructure hardening, incident planning, and secrets management.
Design a fine-tuning pipeline
Diagnose runtime infrastructure issues — cold starts, timeouts, scaling problems, network failures. Use when asked about "infra is slow", "cold starts", "network issues", "why is this timing out", "scaling problem", "latency spikes", or "service is down".
Write UX copy for a feature, flow, or component
Audit existing model evaluation code
Identify open legal questions and research gaps
Harness-native ECC plugin for engineering teams - 67 agents, 279 skills, 94 legacy command shims, reusable hooks, rules, MCP conventions, and operator workflows for Claude Code plus adjacent agent harnesses
Complete collection of battle-tested Claude Code configs from an Anthropic hackathon winner - agents, skills, hooks, and rules evolved over 10+ months of intensive daily use
Own this plugin?
Verify ownership to unlock analytics, metadata editing, and a verified badge. GitHub access is read-only (username + org membership).
Sign in to claimOwn this plugin?
Verify ownership to unlock analytics, metadata editing, and a verified badge. GitHub access is read-only (username + org membership).
Sign in to claim