Django Access Review
getsentry/skills
Django access control and IDOR security review. An agent skill from getsentry/skills.
A skill your agent uses when the user asks "who has access", "audit permissions", "check user roles", "list API keys", "review access controls", "rotate API keys", "create API key", "delete expired…
$ npx skills add coralogix/cx-cli --skill cx-platform-admin -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install coralogix/cx-cli cx-platform-admin --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/coralogix/cx-cli.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/cx-platform-admin .claude/skills/cx-platform-admin && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "cx-platform-admin" agent skill from https://github.com/coralogix/cx-cli/tree/master/skills/cx-platform-admin into .claude/skills/cx-platform-admin/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "cx-platform-admin", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/coralogix/cx-cli/tree/master/skills/cx-platform-adminType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add coralogix/cx-cli --skill cx-platform-admin -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install coralogix/cx-cli cx-platform-admin --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/coralogix/cx-cli.git skills-src && mkdir -p .agents/skills && cp -r skills-src/skills/cx-platform-admin .agents/skills/cx-platform-admin && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "cx-platform-admin" agent skill from https://github.com/coralogix/cx-cli/tree/master/skills/cx-platform-admin into .agents/skills/cx-platform-admin/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "cx-platform-admin", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add coralogix/cx-cli --skill cx-platform-admin -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install coralogix/cx-cli cx-platform-admin --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/coralogix/cx-cli.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/skills/cx-platform-admin .cursor/skills/cx-platform-admin && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "cx-platform-admin" agent skill from https://github.com/coralogix/cx-cli/tree/master/skills/cx-platform-admin into .cursor/skills/cx-platform-admin/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "cx-platform-admin", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/coralogix/cx-cli.git --path skills/cx-platform-admin--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add coralogix/cx-cli --skill cx-platform-admin -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install coralogix/cx-cli cx-platform-admin --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/coralogix/cx-cli.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/skills/cx-platform-admin .gemini/skills/cx-platform-admin && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "cx-platform-admin" agent skill from https://github.com/coralogix/cx-cli/tree/master/skills/cx-platform-admin into .gemini/skills/cx-platform-admin/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "cx-platform-admin", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install coralogix/cx-cli cx-platform-adminInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add coralogix/cx-cli --skill cx-platform-admin -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/coralogix/cx-cli.git skills-src && mkdir -p .github/skills && cp -r skills-src/skills/cx-platform-admin .github/skills/cx-platform-admin && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "cx-platform-admin" agent skill from https://github.com/coralogix/cx-cli/tree/master/skills/cx-platform-admin into .github/skills/cx-platform-admin/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "cx-platform-admin", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add coralogix/cx-cli --skill cx-platform-admin -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install coralogix/cx-cli cx-platform-admin --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/coralogix/cx-cli.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/skills/cx-platform-admin .opencode/skills/cx-platform-admin && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "cx-platform-admin" agent skill from https://github.com/coralogix/cx-cli/tree/master/skills/cx-platform-admin into .opencode/skills/cx-platform-admin/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "cx-platform-admin", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
cx-platform-adminA skill your agent uses when the user asks "who has access", "audit permissions", "check user roles", "list API keys", "review access controls", "rotate API keys", "create API key", "delete expired…
Cx Platform Admin is an agent skill from coralogix/cx-cli. Use this skill when the user asks "who has access", "audit permissions", "check user roles", "list API keys", "review access controls", "rotate API keys", "create API key", "delete expired keys", "send data keys", "IP allowlist", "IP access restrictions", "check IP whitelist", "add user", "deactivate user", "manage team groups", "user permissions", "role-based access", "manage scopes", "system roles", "API key admin", "team member keys", "group membership", or wants to audit, manage, or configure access controls…
Its SKILL.md is about 1.8k tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Backend & APIs, covering Authorization and RBAC and Access reviews and audit trails. The repository describes itself as: This is the Coralogix CLI. The licence is Apache-2.0.
6 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit c071372. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
Shell commands in SKILL.md call:
jqFrom the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Cx Platform Admin loads about 1.8k tokens when it runs. Until then it costs about 140 tokens; SKILL.md has 854 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from coralogix/cx-cli at commit c071372, republished under its Apache-2.0 licence (© coralogix). 854 words, ~1,829 tokens.
.claude/skills/cx-platform-admin/SKILL.md (or your agent's skills folder).Use this skill for managing access, authentication, and authorization in Coralogix. It covers API key management, role and scope definitions, user administration, team groups, and IP access restrictions.
All write operations (create, update, delete, set-idp, set-active, set-status) require interactive confirmation. The CLI will prompt before executing. To skip the prompt in scripts, pass --yes.
IMPORTANT: NEVER pass --yes without explicit user approval. Before executing any write operation:
--yesRead-only operations (list, get, search, system, sp-params, send-data-keys) do not require confirmation and can be run freely.
Use --read-only (or CX_READ_ONLY=1) to block all write operations at the CLI level. This is useful for safe exploration - you can query any IAM resource without risk of accidental modifications.
When running inside an AI agent (Claude Code, Cursor, Codex, etc.), cx automatically detects the agent environment and fails fast on write operations instead of hanging on a stdin prompt. The error message instructs you to get user confirmation first, then re-run with --yes.
| Command | Purpose |
|---|---|
cx iam api-keys list | List all API keys |
cx iam api-keys get <id> | Get a single API key |
cx iam api-keys create --from-file | Create an API key |
cx iam api-keys update --from-file <id> | Update an API key |
cx iam api-keys delete <id> | Delete an API key |
cx iam api-keys send-data-keys | List send-data API keys |
cx iam api-keys admin list | List all team members' keys |
cx iam api-keys admin delete --ids <id1> <id2> | Bulk delete keys |
cx iam api-keys admin set-status --ids <id1> --active true/false | Activate/deactivate keys |
| Command | Purpose |
|---|---|
cx iam roles list | List custom roles |
cx iam roles get <id> | Get a role definition |
cx iam roles create --from-file | Create a custom role |
cx iam roles update --from-file <id> | Update a custom role |
cx iam roles delete <id> | Delete a custom role |
cx iam roles system | List system (built-in) roles |
cx iam scopes list | List all scopes |
cx iam scopes get <id> | Get a scope definition |
cx iam scopes create --from-file | Create a scope |
cx iam scopes update --from-file | Update a scope |
cx iam scopes delete <id> | Delete a scope |
| Command | Purpose |
|---|---|
cx iam users search | Search users (optional --query, --status) |
cx iam users get <user-id> | Get a single user |
cx iam users create --from-file | Create user(s) |
cx iam users update --from-file | Update user(s) |
cx iam users set-status --user-ids <id> --status ACTIVE/INACTIVE | Activate/deactivate users |
cx iam groups list | List all team groups |
cx iam groups get <id> | Get a group by ID |
cx iam groups get-by-name <name> | Get a group by name |
cx iam groups users <group-id> | List users in a group |
cx iam groups create --from-file | Create a group |
cx iam groups update --from-file <id> | Update a group |
cx iam groups delete <id> | Delete a group |
| Command | Purpose |
|---|---|
cx iam ip-access get | Get IP access settings |
cx iam ip-access create --from-file | Create IP access rules |
cx iam ip-access update --from-file | Update IP access rules |
cx iam ip-access delete | Delete IP access settings |
All commands support -o json for structured output and -p <profile> for profile selection.
Use this workflow to produce a comprehensive access report:
cx iam users search -o json
cx iam users search -o json | jq '[.[] | {id, name: .user_name, status, role_ids}]'cx iam roles list -o json
cx iam roles system -o jsonCross-reference user role IDs with role definitions to understand permissions.
cx iam groups list -o json
cx iam groups list -o json | jq '[.[] | {id, name, member_count: (.members | length)}]'For each group, check members:
cx iam groups users <group-id> -o jsoncx iam api-keys list -o json
cx iam api-keys admin list -o json
cx iam api-keys send-data-keys -o jsonIdentify old or unused keys:
cx iam api-keys list -o json | jq '[.[] | {id, name, created_at, active}] | sort_by(.created_at)'cx iam ip-access get -o jsonProduce a summary: which users have admin roles, which API keys are old, which groups have broad access.
Safe key rotation workflow:
cx iam api-keys list -o jsoncx iam api-keys create --from-file new-key.json --yes (after user approval)cx iam api-keys delete <old-key-id> --yes (after user approval)WARNING: Never delete an API key before its replacement is deployed and verified. Deleting an active key immediately breaks all integrations using it.
Deleting API keys breaks any integration using that key immediately. Always create a replacement first.
Deactivating users (
cx iam users set-status --status INACTIVE) takes effect immediately. The user loses access with no grace period.
Deleting IP access rules (
cx iam ip-access delete) removes all IP restrictions immediately, potentially exposing the account.
-o json for structured reports - enables jq filtering for precise access analysis-p <profile> or --all-profiles to audit staging + productioncx iam roles get <id> -o json > role.json before creating new rolescx-cost-optimization - review what API keys are used for and whether they're still needed© coralogix, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in skills/cx-platform-admin of coralogix/cx-cli.
Open the folder on GitHubat commit c071372
Cx Platform Admin next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Cx Platform Admin this skillcoralogix/cx-cli | 121 | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | |
| Django Access Reviewgetsentry/skills | 1k | 3 repos | ~2.6k | Automated safety check: Notes | Apache-2.0 | |
| Access And Identitycbrock84/headcount | 2k | — | ~1.1k | Automated safety check: Pass | MIT | |
| Access Matrixsickn33/agentic-awesome-skills | 47k | 1 repos | ~3.6k | Automated safety check: Pass | MIT | |
| Adobe Enterprise Rbacjeremylongshore/tons-of-skills-marketplace | 2.8k | — | ~1.1k | Automated safety check: Pass | MIT | |
| Fireflies Enterprise Rbacjeremylongshore/tons-of-skills-marketplace | 2.8k | — | ~1.1k | Automated safety check: Pass | MIT |
getsentry/skills
Django access control and IDOR security review. An agent skill from getsentry/skills.
cbrock84/headcount
Designs and audits who can reach what — authentication, authorization models, privileged access, service credentials, and joiner-mover-leaver process.
sickn33/agentic-awesome-skills
Access matrix of role-by-module permissions, with per-role scope, confidentiality level and SME tier, as CSV, SQL, JSON Schema or Notion on request.
jeremylongshore/tons-of-skills-marketplace
Govern Adobe Developer Console roles, product profiles, technical accounts, User Management API automation, and periodic access review.
jeremylongshore/tons-of-skills-marketplace
Govern Fireflies team roles, channels, privacy, sharing, and privileged mutations with current permission and rate-limit checks.
jeremylongshore/tons-of-skills-marketplace
Govern Instantly workspace members, API-key scopes, audit logs, and workspace-group delegation.
coralogix/cx-cli
A skill your agent uses for any question or action about the user's AI/GenAI applications or agents — their behavior, prompts/responses, quality, hallucinations, guardrails, security, cost/tokens…
coralogix/cx-cli
This skill should be used when the user asks to "manage alerts", "create alert", "list alerts", "delete alert", "check alert status", "enable alert", "disable alert", "investigate firing alerts"…
coralogix/cx-cli
A skill your agent uses when the user asks about AI Center Coding Agents data, wants to reproduce or extend the Coding Agents dashboards, or asks questions about usage, cost, tokens, sessions…
coralogix/cx-cli
A skill your agent uses when the user asks to "check data usage", "list TCO policies", "reduce Coralogix costs", "optimize observability spend", "lower our logging bill", "data budget exceeded"…
coralogix/cx-cli
A skill your agent uses when the user asks to "set up parsing", "create parsing rule", "extract fields from logs", "regex extraction", "log parsing", "enrich logs", "add context to logs", "custom…
coralogix/cx-cli
A skill your agent uses for any question involving telemetry data: "investigate an issue", "debug a problem", "find out why something is slow", "check error rates", "analyze user behavior"…
Categories
A skill your agent uses when the user asks "who has access", "audit permissions", "check user roles", "list API keys", "review access controls", "rotate API keys", "create API key", "delete expired…. Cx Platform Admin is an agent skill from coralogix/cx-cli.
Cx Platform Admin fits situations like: the user asks who has access; audit permissions; check user roles; review access controls.
Run `npx skills add coralogix/cx-cli --skill cx-platform-admin -a claude-code`. Or copy the skill folder (skills/cx-platform-admin in coralogix/cx-cli) into .claude/skills/cx-platform-admin in your project. Claude Code loads it when a task matches its description.
Run `npx skills add coralogix/cx-cli --skill cx-platform-admin -a codex`. Or copy the skill folder (skills/cx-platform-admin in coralogix/cx-cli) into .agents/skills/cx-platform-admin in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add coralogix/cx-cli --skill cx-platform-admin -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/cx-platform-admin, .gemini/skills/cx-platform-admin, .github/skills/cx-platform-admin and .opencode/skills/cx-platform-admin in your project.
Going by SKILL.md and its folder, Cx Platform Admin needs the command-line tools its instructions call (jq).
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Cx Platform Admin is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.
About 1.8k tokens (SKILL.md is roughly 7.3k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Cx Platform Admin: Django Access Review (getsentry/skills, 1k stars), Access And Identity (cbrock84/headcount, 2k stars), Access Matrix (sickn33/agentic-awesome-skills, 47k stars) and Adobe Enterprise Rbac (jeremylongshore/tons-of-skills-marketplace, 2.8k stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
coralogix (a GitHub organization) maintains it in coralogix/cx-cli, which has 121 GitHub stars. The repository holds 21 skills in this directory. The repository was last updated on October 7, 2026.
Source: coralogix/cx-cli on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.