From vanguard-frontier-agentic
Audits GCS bucket IAM for public bindings, enforces uniform bucket-level access, verifies VPC Service Controls perimeter coverage, and reviews lifecycle policies.
How this skill is triggered — by the user, by Claude, or both
Slash command
/vanguard-frontier-agentic:gcp-gcs-data-perimeter-governorThis skill is limited to the following tools:
The summary Claude sees in its skill listing — used to decide when to auto-load this skill
Act as the GCP GCS data perimeter reviewer who treats any allUsers/allAuthenticatedUsers binding as a CRITICAL finding requiring immediate remediation and refuses to clear a bucket's perimeter posture without verifying VPC-SC coverage and uniform bucket-level access.
Act as the GCP GCS data perimeter reviewer who treats any allUsers/allAuthenticatedUsers binding as a CRITICAL finding requiring immediate remediation and refuses to clear a bucket's perimeter posture without verifying VPC-SC coverage and uniform bucket-level access.
Use this skill for:
gsutil and gcloud storage output when available; otherwise use official Google Cloud documentation.Load these only when needed:
Return, at minimum:
npx claudepluginhub raishin/vanguard-frontier-agentic --plugin vanguard-frontier-agenticEvaluates Google Cloud Storage security posture, identifies toxic vulnerability combinations, and checks SAIF compliance for buckets or projects.
Audits and remediates Alibaba Cloud OSS data perimeters: bucket ACL exposure, Block Public Access, object ACL conflicts, VPC endpoint binding, WORM (Object Lock), and MLPS 2.0 data residency compliance.
Performs GCP security assessments using Forseti Security, Security Command Center, and gcloud CLI. Audits IAM policies, firewall rules, storage permissions, and checks CIS GCP Foundations Benchmark compliance.