Agent skill

Kesekit Fix Ko

by cdppcorp in cdppcorp/KESE-KIT

보안 취약점 자동 수정 및 하드닝 스크립트를 생성합니다. An agent skill from cdppcorp/KESE-KIT.

MITAuto-check passedSecurity

Install Kesekit Fix Ko

skills CLI
$ npx skills add cdppcorp/KESE-KIT --skill kesekit-fix-ko -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install cdppcorp/KESE-KIT kesekit-fix-ko --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/cdppcorp/KESE-KIT.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills-ko/kesekit-fix-ko .claude/skills/kesekit-fix-ko && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
kesekit-fix-ko
GitHub stars
361
Token cost
~1k tokens
SKILL.md length
509 words
Files
79 (incl. scripts, references)
Skills in repo
8
Repo updated
First seen
Licence
MIT

At a glance

보안 취약점 자동 수정 및 하드닝 스크립트를 생성합니다. An agent skill from cdppcorp/KESE-KIT.

  • Works in 5 steps: reports/kese/에서 이전 평가 결과 읽기 (있는 경우) → 이전 평가가 없으면 사용자에게 대상 플랫폼 확인 → 해당 템플릿 파일을 templates/cii/에서 로드 (점검/수정… → …
  • Security work in your project
  • SKILL.md covers 가이드라인 선택, CII 분기 시, AI 보안 분기 시 and 로봇 보안 분기 시, plus 3 more sections

What it does

Kesekit Fix Ko is an agent skill from cdppcorp/KESE-KIT. 보안 취약점 자동 수정 및 하드닝 스크립트를 생성합니다. CII(Unix/Windows/웹서버/DB), AI, 로봇, 우주 시스템(위성/GSaaS/지상국/공급망)의 취약점을 수정합니다. KISA/CMMC/NIS2 가이드라인에 따른 보안 설정을 적용합니다. "취약점 수정", "서버 하드닝", "우주 보안 수정", "위성 하드닝" 시 사용하세요.

Its SKILL.md is about 1k tokens, which your agent loads only when the skill is triggered. The skill folder holds 85 other files, including scripts and reference files (for example `references/ai-security/overview.md`, `references/ai-security/service-provider.md` and `references/ai-security/user-guide.md`).

It sits in Security. The repository describes itself as: KISA 주요정보통신기반시설 기술적 취약점 분석 평가방법 상세가이드 기반 Skills. The licence is MIT.

When your agent uses it

  • Security work in your project

Example prompts

  • “/kesekit-fix-ko”

Workflow steps

5 steps, taken from the first numbered list in SKILL.md.

  1. reports/kese/에서 이전 평가 결과 읽기 (있는 경우)
  2. 이전 평가가 없으면 사용자에게 대상 플랫폼 확인
  3. 해당 템플릿 파일을 templates/cii/에서 로드 (점검/수정 스크립트는 scripts/cii/에 있음)
  4. 플랫폼별 하드닝 스크립트 생성
  5. 스크립트를 scripts/kese-hardening/에 저장

What it can do on your machine

Read from SKILL.md and the folder at commit cd118f9. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    Ships 3 files in scripts/, which the agent can run.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    No URLs in SKILL.md.

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Kesekit Fix Ko loads about 1k tokens when it runs, and up to ~16k if it reads all its reference files. Until then it costs about 52 tokens; SKILL.md has 509 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~52
When it runs · the whole SKILL.md, loaded when a task matches
~1k
With references · SKILL.md plus every file in references/, read only if the agent opens them
~16k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); the scripts in this folder are not scanned.

SKILL.md

The full file from cdppcorp/KESE-KIT at commit cd118f9, republished under its MIT licence (© cdppcorp). 509 words, ~1,035 tokens.

Download SKILL.mdSave it as .claude/skills/kesekit-fix-ko/SKILL.md (or your agent's skills folder). This skill also uses 78 other files; get the full folder from GitHub.
name
kesekit-fix-ko
description
보안 취약점 자동 수정 및 하드닝 스크립트를 생성합니다. CII(Unix/Windows/웹서버/DB), AI, 로봇, 우주 시스템(위성/GSaaS/지상국/공급망)의 취약점을 수정합니다. KISA/CMMC/NIS2 가이드라인에 따른 보안 설정을 적용합니다. "취약점 수정", "서버 하드닝", "우주 보안 수정", "위성 하드닝" 시 사용하세요.

KESE 취약점 자동 수정

취약점 분석 결과를 기반으로 적절한 수정을 생성하고 적용합니다. 사용자의 환경에 맞는 가이드라인을 자동 선택합니다.

가이드라인 선택

#가이드라인설명
1CII 하드닝플랫폼별 하드닝 스크립트 생성
2AI 보안 조치AI 시스템 보안 강화 가이드
3로봇 보안 조치로봇 시스템 보안 강화 (IEC 62443, CRA, RED)
4우주 보안 조치우주 시스템 하드닝 (CMMC, K-RMF, NIS2, NIST IR 8401)
5시큐어코딩 수정취약 코드 패턴 자동 수정 (JS/Python, 46 CWE)
6제로트러스트 조치제로트러스트 갭 분석 기반 조치 가이드 (8개 핵심요소, ~396항목)

서버, 인프라, 웹 서비스, DB → CII / AI 모델, LLM, AI 서비스 → AI 보안 / 로봇, ROS/ROS2, 로봇 펌웨어, 무선 제어 인터페이스 → 로봇 보안 / 위성, 지상국, GSaaS, 우주 공급망 → 우주 보안 / JavaScript, Python, 웹 앱 코드 → 시큐어코딩 Zero Trust, ZTA, ZTNA, 제로트러스트, 마이크로세그멘테이션, microsegmentation, SDP, SASE, PEP/PDP, never trust always verify → 제로트러스트


CII 분기 시

실행 흐름
  1. reports/kese/에서 이전 평가 결과 읽기 (있는 경우)
  2. 이전 평가가 없으면 사용자에게 대상 플랫폼 확인
  3. 해당 템플릿 파일을 templates/cii/에서 로드 (점검/수정 스크립트는 scripts/cii/에 있음)
  4. 플랫폼별 하드닝 스크립트 생성
  5. 스크립트를 scripts/kese-hardening/에 저장
출력 구조
scripts/kese-hardening/
├── unix/           ← bash 스크립트
├── windows/        ← PowerShell 스크립트
├── web/            ← Apache/Nginx 설정
├── database/       ← SQL 스크립트
└── README.md
플랫폼별 reference 매핑
플랫폼reference스크립트 유형
Unix/Linuxtemplates/cii/unix.mdbash
Windowstemplates/cii/windows.mdPowerShell
웹 서비스templates/cii/web-service.mdconf 파일
DBMStemplates/cii/database.mdSQL
네트워크 장비templates/cii/network.mdCLI 명령어
보안 장비templates/cii/security-equip.md설정 가이드
PCtemplates/cii/pc.mdPowerShell/GPO
클라우드templates/cii/cloud.mdCLI 명령어
수정 적용 시 주의사항
  • 수정 전 항상 설정 백업
  • 비운영 환경에서 먼저 테스트
  • 일부 수정은 서비스 재시작 필요
  • 컴플라이언스 감사를 위해 모든 변경사항 문서화

AI 보안 분기 시

실행 흐름
  1. references/ai-security/overview.md를 읽어 AI 보안 위협 유형 파악
  2. 대상에 따라 적절한 reference 로드
  3. 보안 강화 가이드 및 코드 패치 생성
대상별 조치
대상reference조치 내용
AI 개발자templates/ai-security/developer.md모델 보안, 데이터 보호, API 보안 코드
서비스 제공자references/ai-security/service-provider.md서비스 보안 설정, 접근통제
AI 이용자references/ai-security/user-guide.md보안 수칙 적용 체크리스트
Show full SKILL.md (211 more words)Show less
AI 보안 주요 조치 항목
  • Prompt Injection 방어 (입출력 필터링, 가드레일)
  • 데이터 중독(Poisoning) 방어 (이상치 탐지, 데이터 검증)
  • 모델 추출 방어 (쿼리 제한, 워터마킹)
  • API 보안 (Rate Limiting, 인증, TLS)
  • LLM 보안 (OWASP Top 10 for LLM 기반)

로봇 보안 분기 시

templates/robot-security/를 로드하여 로봇 시스템 보안 강화 가이드를 생성합니다.

로봇 보안 주요 조치 영역
  • Secure SDLC / SSDF 적용
  • 서드파티 컴포넌트 및 SBOM 기반 공급망 통제
  • IEC 62443 기반 인증, 권한, 무결성, 데이터 보호 통제
  • CRA/NIS2 관점의 취약점 대응 및 사이버 복원력
  • Wi-Fi, Bluetooth, 5G 등 무선 인터페이스 보안 강화

시큐어코딩 분기 시

references/secure-coding/pseudocode.md에서 UNSAFE→SAFE 패턴 쌍을 로드합니다. templates/secure-coding/javascript.md 또는 templates/secure-coding/python.md로 프레임워크별 수정을 적용합니다. 각 항목은 정확한 코드 변환(UNSAFE → SAFE)을 제공합니다.


제로트러스트 분기 시

references/zero-trust/에서 성숙도 모델과 아키텍처를, templates/zero-trust/에서 핵심요소별 체크리스트를 로드합니다. 현재 성숙도와 목표 성숙도 간 갭 분석을 기반으로 조치 가이드를 생성합니다. OT/ICS 환경이 감지되면 templates/zero-trust/ot-environment.md와 references/zero-trust/ot-guide.md도 로드합니다.

주제reference 파일
개요templates/zero-trust/overview.md
식별자 및 디바이스templates/zero-trust/identity-device.md
네트워크 및 시스템templates/zero-trust/network-system.md
애플리케이션 및 데이터templates/zero-trust/app-data.md
가시성 및 자동화templates/zero-trust/visibility-automation.md
OT/ICS 환경templates/zero-trust/ot-environment.md
ZT 아키텍처 참조references/zero-trust/overview.md
성숙도 모델 상세references/zero-trust/maturity-model.md
OT 배포 가이드references/zero-trust/ot-guide.md

8개 핵심요소, ~396개 항목, 4단계 성숙도. 표준: KISA 제로트러스트 가이드라인 2.0, NIST SP 800-207, CISA ZT Maturity Model.


참고사항

  • 발견된 각 취약점에 대해 구체적인 수정 명령어/코드를 제시하세요
  • 긴급 심각도 항목을 우선적으로 수정하세요
  • 수정 후 재점검을 권고하세요

© cdppcorp, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 78 other files (scripts, references) in skills-ko/kesekit-fix-ko of cdppcorp/KESE-KIT.

  • SKILL.md
  • references/ai-security/overview.md
  • references/ai-security/service-provider.md
  • references/ai-security/user-guide.md
  • references/secure-coding/overview.md
  • references/secure-coding/pseudocode.md
  • references/space-security/overview.md
  • references/space-security/supply-chain.md
  • references/zero-trust/maturity-model.md
  • references/zero-trust/ot-guide.md
  • references/zero-trust/overview.md
  • scripts/ai-security/api-security-check.md
  • scripts/ai-security/data-pipeline-check.md
  • scripts/ai-security/model-security-check.md
  • … and 65 more

Open the folder on GitHubat commit cd118f9

Compare with similar skills

Kesekit Fix Ko next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Kesekit Fix Ko compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Kesekit Fix Ko this skillcdppcorp/KESE-KIT361—~1kAutomated safety check: PassMIT
Fla Ascend Performancefla-org/flash-linear-attention5.8k—~6.3kAutomated safety check: PassMIT
Deepsec Documentation Guidevercel-labs/deepsec8.1k—~956Automated safety check: PassApache-2.0
Skill Scannergetsentry/skills1k4 repos~2.5kAutomated safety check: WarnApache-2.0
Serenity Aleabitoreddityan-labs/serenity-aleabitoreddit4811 repos~3.3kAutomated safety check: PassNone
Security Alert Triageelastic/agent-skills5921 repos~3.5kAutomated safety check: NotesApache-2.0

Similar skills

  • Fla Ascend Performance

    fla-org/flash-linear-attention

    Guidelines for Ascend NPU kernel / Triton-Ascend backend performance work in the FLA repo.

    5.8k GitHub stars~6.3k tokensUpdated today
    SecurityAuto-check passed
  • Deepsec Documentation Guide

    vercel-labs/deepsec

    Official

    Points the agent at deepsec's own docs to answer questions about initializing, configuring, resuming, scanning with and extending the vulnerability scanner.

    8.1k GitHub stars~956 tokensUpdated 10 days ago
    SecurityAuto-check passed
  • Skill Scanner

    getsentry/skills

    Official

    Scan agent skills for security issues. An agent skill from getsentry/skills.

    1k GitHub starsUsed in 4 repos~2.5k tokens
    SecurityAuto-check: warnings
  • Serenity Aleabitoreddit

    yan-labs/serenity-aleabitoreddit

    Apply trader Serenity's (@aleabitoreddit) AI/semiconductor supply-chain analytical lens to US-stock ideas and market judgment.

    481 GitHub starsUsed in 1 repo~3.3k tokens
    SecurityAuto-check passed
  • Security Alert Triage

    elastic/agent-skills

    Official

    Triage Elastic Security alerts — gather context, classify threats, create cases, and acknowledge.

    592 GitHub starsUsed in 1 repo~3.5k tokens
    SecurityAuto-check: notes
  • Shiro Attack CLI

    SummerSec/ShiroAttack2

    当用户要求利用、检测或测试 Apache Shiro rememberMe 反序列化漏洞 (Shiro-550, CVE-2016-4437) 时使用。触发词包括 "Shiro"、"rememberMe"、"shiro attack"、"CVE-2016-4437"、"Shiro-550"、"爆破 Shiro key"、"利用 Shiro"、"Shiro…

    2.6k GitHub stars~945 tokensUpdated 4 mo ago
    SecurityAuto-check passed

More from cdppcorp/KESE-KIT

All 8 skills in this repo
  • Kesekit Check

    cdppcorp/KESE-KIT

    Run a pre-deployment security compliance checklist based on KISA guidelines.

    361 GitHub stars~1.3k tokensUpdated 6 mo ago
    Auto-check passed
  • Kesekit Check Ko

    cdppcorp/KESE-KIT

    KISA 가이드라인 기반 배포 전 보안 컴플라이언스 체크리스트를 실행합니다. An agent skill from cdppcorp/KESE-KIT.

    361 GitHub stars~956 tokensUpdated 6 mo ago
    Auto-check passed
  • Kesekit Fix

    cdppcorp/KESE-KIT

    Auto-fix security vulnerabilities found in CII, AI, robot, space, and supply chain systems.

    361 GitHub stars~1.1k tokensUpdated 6 mo ago
    Auto-check passed
  • Kesekit Guide

    cdppcorp/KESE-KIT

    Generate secure coding prompts and guides for AI tools (Claude, ChatGPT, Cursor, Copilot).

    361 GitHub stars~1.4k tokensUpdated 6 mo ago
    Auto-check passed
  • Kesekit Guide Ko

    cdppcorp/KESE-KIT

    AI 도구(Claude, ChatGPT, Cursor, Copilot)용 시큐어 코딩 프롬프트와 가이드를 생성합니다.

    361 GitHub stars~1.3k tokensUpdated 6 mo ago
    Auto-check passed
  • Kesekit Start

    cdppcorp/KESE-KIT

    Run a security vulnerability assessment based on KISA guidelines.

    361 GitHub stars~2.3k tokensUpdated 6 mo ago
    Auto-check passed

Categories

Questions about Kesekit Fix Ko

What does Kesekit Fix Ko do?

보안 취약점 자동 수정 및 하드닝 스크립트를 생성합니다. An agent skill from cdppcorp/KESE-KIT. Kesekit Fix Ko is an agent skill from cdppcorp/KESE-KIT. 보안 취약점 자동 수정 및 하드닝 스크립트를 생성합니다.

When should I use Kesekit Fix Ko?

Kesekit Fix Ko fits situations like: security work in your project.

How do I install Kesekit Fix Ko in Claude Code?

Run `npx skills add cdppcorp/KESE-KIT --skill kesekit-fix-ko -a claude-code`. Or copy the skill folder (skills-ko/kesekit-fix-ko in cdppcorp/KESE-KIT) into .claude/skills/kesekit-fix-ko in your project. Claude Code loads it when a task matches its description.

How do I install Kesekit Fix Ko in Codex?

Run `npx skills add cdppcorp/KESE-KIT --skill kesekit-fix-ko -a codex`. Or copy the skill folder (skills-ko/kesekit-fix-ko in cdppcorp/KESE-KIT) into .agents/skills/kesekit-fix-ko in your project. Codex loads it when a task matches its description.

Can I use Kesekit Fix Ko in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add cdppcorp/KESE-KIT --skill kesekit-fix-ko -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/kesekit-fix-ko, .gemini/skills/kesekit-fix-ko, .github/skills/kesekit-fix-ko and .opencode/skills/kesekit-fix-ko in your project.

What does Kesekit Fix Ko need to run?

SKILL.md names no scripts, command-line tools or credentials: Kesekit Fix Ko is instructions for the agent only.

Does Kesekit Fix Ko access the network?

SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.

Is Kesekit Fix Ko safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. The check reads SKILL.md only: the scripts in the folder are not scanned, so read them before running anything.

What licence does Kesekit Fix Ko use?

Kesekit Fix Ko is published under the MIT licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Kesekit Fix Ko use?

About 1k tokens (SKILL.md is roughly 4.1k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full. Its references folder adds about 15k tokens, read only when the agent opens those files.

What are the alternatives to Kesekit Fix Ko?

Skills that share tags, products or a category with Kesekit Fix Ko: Fla Ascend Performance (fla-org/flash-linear-attention, 5.8k stars), Deepsec Documentation Guide (vercel-labs/deepsec, 8.1k stars), Skill Scanner (getsentry/skills, 1k stars) and Serenity Aleabitoreddit (yan-labs/serenity-aleabitoreddit, 481 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Kesekit Fix Ko?

cdppcorp (a GitHub organization) maintains it in cdppcorp/KESE-KIT, which has 361 GitHub stars. The repository holds 8 skills in this directory. The repository was last updated on April 9, 2026.

Source: cdppcorp/KESE-KIT on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.