From asp
Queries ASP cyber security artifacts by IOC, value, type, role, owner, or reputation for investigations, pivoting, and enrichment attachment.
How this skill is triggered — by the user, by Claude, or both
Slash command
/asp:asp-artifact-zhThe summary Claude sees in its skill listing — used to decide when to auto-load this skill
当用户要围绕 artifact 进行调查分析时,使用这个 skill。
当用户要围绕 artifact 进行调查分析时,使用这个 skill。 artifact 是 ASP 中的三级数据,每个 artifact 都挂载在一个 alert 下,是最小的需要调查的数据单元。
list_artifacts。create_enrichment 加 attach_enrichment_to_target。asp-enrichment-zh skill。list_artifacts。asp-enrichment-zh skill。list_artifacts。首选回复结构:
| Artifact ID | Value | Type | Role | Owner | Reputation | Summary |
|---|
然后在需要时补一句简短解释。
artifact_id。npx claudepluginhub funnywolf/agentic-soc-platform --plugin ASPManages ASP artifacts for cyber investigations: find by IOC/filters, create new ones, attach to alerts, save enrichments.
Provides a complete 360° security profile of any cloud asset including alerts, attack paths, compliance, permissions, exposure, sensitive data, and CDR activity in one view.
Unified SOC analyst workflow for CrowdStrike NGSIEM — triage alerts, investigate security events, hunt threats, and tune detections. Use when triaging alerts, investigating detections, running daily SOC review, or tuning for false positives.