Attack Coverage — Development skill for Claude Code
Summarize fleet MITRE ATT&CK coverage by observed, modeled, and derived evidence.
How to install Attack Coverage
Installs to ~/.claude/commands/openshift-traust-attack-coverage.md
mkdir -p ~/.claude/commands && curl -fsSL https://raw.githubusercontent.com/openshift/traust/HEAD/.claude/commands/attack-coverage.md -o ~/.claude/commands/openshift-traust-attack-coverage.md Restart Claude Code, or start a new session, for it to be picked up.
What Attack Coverage does
description: "Summarize fleet MITRE ATT&CK coverage by observed, modeled, and derived evidence."
Build the fleet MITRE ATT&CK coverage roll-up using the attack-coverage skill. Load the skill at .claude/skills/attack-coverage/SKILL.md and follow its procedure — running .claude/skills/attack-coverage/build_attack_coverage.py against the analysis-results root implied by $ARGUMENTS (default ../analysis-results), then reporting the technique counts per evidence class (observed / modeled / de
Alternatives in Development
- Summarize Meeting — Summarize meeting transcripts into structured notes and actions 7.8k ★
- JWT Scan — JWT attack toolkit (offline) — alg:none forgery, RS256→HS256 algorithm confusion, weak-secret crack, static cl 4.5k ★
- Summarize Blogs — Blog Post Summary Prompt 3.2k ★
Full documentation available on GitHub
View Source RepositoryRelated Skills
Drug Drug Skill
Evidence-based Drug-Drug Interaction (DDI) assessment skill modeled after Micromedex Drug-Reax. Install: npx s
Cpp Stop Ledger
Reconcile every STOP #1 plan against the evidence. Regenerates the derived disposition ledger — which audits a
Validate Benchmark
Benchmark validation coverage, speed, and evidence quality against baseline metrics
PRD Score
Score a PRD for readiness, evidence coverage, diagram integrity, and export profile
Auto Trigger
After any recon/probe step, route observed signals to the right tools and fire the auto-plan (Balanced policy)
Privilege Escalation Triage
Decide whether an observed privilege change (setuid/ptrace/capability) is a real escalation attempt or benign.
Related Agents
Engagement Planner
Delegates to this agent when the user needs to plan a penetration test, define attack methodology, scope an en
Engineering Threat Detection Engineer
Expert detection engineer specializing in SIEM rule development, MITRE ATT&CK coverage mapping, threat hunting
Sec Researcher
Read-only security research for ClaudeSec — threats, CVEs, attack vectors, and compliance frameworks (NIST, IS