Works with the AI tools you already use
Cyber Hygiene Assessment
Transform raw security evidence into professional Cyber Healthcheck reports, RAG scorecards, and remediation roadmaps.
$20
cyber-hygiene-assessment
Example session with this skill installed
I have completed a cyber hygiene workshop with a financial services client. Here are my notes from the session: [paste notes]. Please run a full assessment and produce an Executive Scorecard and Treatment Plan.
- Read your context and instructions
- Compiled the cyber-hygiene-assessment
A structured 12-domain RAG assessment with colour-coded scorecard showing each domain rated Red (0-39%), Amber (40-69%), or Green (70-100%). Accompanied by an Executive Scorecard for board presentation, a prioritised Treatment Plan with 30/60/90-day remediation actions, evidence notes for every rating, and a Residual Risk Summary. All findings are traceable to provided evidence — no claims are made beyond what the source material supports.
Connects securely to your tools. The creator never sees your data.
What you get
About this skill
High-Level Cyber Risk Analysis
Modern businesses often struggle to translate messy assessment data into actionable security roadmaps. The Cyber Hygiene Assessment Skill is a professional-grade toolkit designed for developers and security consultants to automate the conversion of workshop notes, surveys, and technical evidence into boardroom-ready deliverables.
What it does
This skill processes raw cyber hygiene evidence—such as workshop transcripts or configuration logs—through a rigorous 12-domain control model. It generates structured outputs including Executive Scorecards, Treatment Plans, and Remediation Roadmaps using a standardised Red-Amber-Green (RAG) rating system.
- Standardised Framework: Covers 12 critical domains including MFA, Patching, and Path Management.
- Executive-Ready Reports: Automatically formats briefings that prioritise business impact over jargon.
- Evidence-Based Logic: Strictly follows built-in rules to ensure gaps are marked as 'Not Determined' rather than hallucinated.
- Specialised Models: Includes templates for Supplier Security and Finance Target Operating Models (TOM).
Why use this skill?
Prompting an AI manually often results in generic advice or "hallucinated" security configurations. This skill enforces a structured 19-step workflow and strict evidence-handling rules, ensuring that every finding is linked to specific evidence. It provides the heavy lifting for documentation, allowing you to focus on the actual security strategy.
Supported Deliverables
Output formats include professional Cyber Healthcheck Reports, Executive Risk Briefings, Supplier Security Registers, and Residual Risk Summaries.
How to install
Works the same in every agent - Claude, Cursor, Codex, Copilot and 20+ more.
- 1
Download the ZIP
Free skills download straight away. Paid skills unlock right after purchase.
- 2
Unzip into your skills folder
Every agent reads skills from one folder on your machine. Drop the unzipped folder in there.
- 3
Ask your agent to use it
Restart the agent if it was already running. It picks the skill up automatically - no config needed.
Skills folder by agent
Click the path to copy it. Create the folder if it does not exist yet.
Reviews
Trust & safety
Security scanned
Verified clean 4 months ago
- Passed all security checks, Safe to install