From vanguard-frontier-agentic
Reviews access governance across marketing technology stacks — OAuth grants, API keys, CRM/MAP role assignments, and integration scopes. Flags over-permissioned, stale, or unowned credentials to apply least privilege.
How this skill is triggered — by the user, by Claude, or both
Slash command
/vanguard-frontier-agentic:martech-access-governance-reviewThis skill is limited to the following tools:
The summary Claude sees in its skill listing — used to decide when to auto-load this skill
This skill reviews identity and access governance across a marketing technology stack — the CRM, marketing automation platform, CDP, analytics, and the long tail of connected SaaS apps. Marketing operations accumulate OAuth grants, API keys, and seat permissions faster than any other business function, and rarely deprovision them. The result is a stack where third-party connectors hold full-CRM...
This skill reviews identity and access governance across a marketing technology stack — the CRM, marketing automation platform, CDP, analytics, and the long tail of connected SaaS apps. Marketing operations accumulate OAuth grants, API keys, and seat permissions faster than any other business function, and rarely deprovision them. The result is a stack where third-party connectors hold full-CRM scopes, a single shared admin key authenticates a dozen tools, and a contractor's connected app still has a live refresh token a year after the engagement ended. This is one of the most exploited SaaS breach paths: the marketing stack holds the entire customer database and is governed loosely. The review catches over-broad OAuth scopes, shared and non-rotating credentials, stale grants, missing token expiry, and absent ownership before they become an incident.
Load these only when needed:
Return, at minimum:
npx claudepluginhub raishin/vanguard-frontier-agentic --plugin vanguard-frontier-agenticPerforms OAuth 2.0 scope minimization reviews to identify over-permissioned third-party apps, excessive API scopes, unused token grants, and risky consents in Entra ID, Okta, and SaaS platforms. For audits and compliance.
Audits OAuth 2.0 scope grants across identity providers to identify over-permissioned apps, excessive API scopes, unused tokens, and risky consent patterns. Activates for OAuth scope audit, API permission review, or third-party app risk assessment requests.
Audits OAuth 2.0 scope grants to identify over-permissioned apps, excessive scopes, and risky consent patterns. Use for security reviews of third-party integrations.