SkillWorks

Skills

Subagents

Plugins

Marketplaces

SkillWorks

Skills

Subagents

Plugins

Marketplaces

Submit a repo

SkillWorks

Skills

Subagents

Plugins

Marketplaces

Submit a repo

Skills/Writing & docs/bfoxhound/Anthropic-Cybersecurity-Skills

collecting-volatile-evidence-from-compromised-host

bfoxhound/Anthropic-Cybersecurity-Skills
SkillLoads cleanly

Collect volatile forensic evidence from a compromised host by following the order of volatility, preserving memory, network connections, running processes,…

Scores
80
out of 100 · grade B+

2026-08-23

Works

40% of the score

100/100

  • Loads cleanly: valid frontmatter, required fields present, no dangling references.

Maintained

25% of the score

100/100

  • no commits in the last 12 weeks
  • repo is less than two weeks old

Adopted

20% of the score

0/100

  • No install or star signal yet.

Documented

15% of the score

100/100

  • 1,069 words with worked examples.
  • Ships 7 bundled files.
Loads cleanly. Every structural check Claude Code needs to register this passed. Last commit today.

Install

npx skills add bfoxhound/Anthropic-Cybersecurity-Skills/collecting-volatile-evidence-from-compromised-host

What it says it does

Collect volatile forensic evidence from a compromised host by following the order of volatility, preserving memory, network connections, running processes, and system state with documented chain of custody before they are lost. Use before isolating, shutting down, or remediating a compromised host, especially when fileless or memory-resident malware is suspected, root cause analysis is needed, or the evidence must hold up in legal proceedings.

Every number above came out of reading the file and its repository. Nothing is a judgement call, nothing is a model’s opinion, and nothing can be paid for. The full method is published. Source last committed 2026-08-22.

The record

Type
Skill
Category
Writing & docs
Repository
bfoxhound/Anthropic-Cybersecurity-Skills
Last commit
today · 2026-08-22
Repository stars
0
Installs
not in the skills.sh registry
Licence
Apache-2.0
Instruction length
1,069 words
Bundled files
7 · includes scripts
View the source on GitHub

Also in bfoxhound/Anthropic-Cybersecurity-Skills

Other artifacts published from the same repository.
ArtifactScoreWhat the check foundTypeReachLast commit
abusing-dpapi-for-credential-accessbfoxhound/Anthropic-Cybersecurity-Skills
80
cleanSkillno signaltoday
abusing-shadow-credentials-for-privescbfoxhound/Anthropic-Cybersecurity-Skills
80
cleanSkillno signaltoday
acquiring-disk-image-with-dd-and-dcflddbfoxhound/Anthropic-Cybersecurity-Skills
80
cleanSkillno signaltoday
analyzing-apt-group-with-mitre-navigatorbfoxhound/Anthropic-Cybersecurity-Skills
80
cleanSkillno signaltoday
analyzing-browser-forensics-with-hindsightbfoxhound/Anthropic-Cybersecurity-Skills
80
cleanSkillno signaltoday
analyzing-disk-image-with-autopsybfoxhound/Anthropic-Cybersecurity-Skills
80
cleanSkillno signaltoday

Other writing & docs skills

Browse all
Same category, same type, ranked by score.
ArtifactScoreWhat the check foundCategoryReachLast commit
docxanthropics/skills
97
No licenseWriting & docs175,680 installsyesterday
vercel-optimizevercel-labs/agent-skills
97
No licenseWriting & docs55,426 installsyesterday
writing-skillsobra/superpowers
96
cleanWriting & docs171,849 installs3 days ago
algorithmic-artanthropics/skills
96
No licenseWriting & docs75,450 installsyesterday
update-docsvercel/next.js
96
cleanWriting & docs142k starstoday
writing-plansobra/superpowers
95
cleanWriting & docs227,053 installs3 days ago

Put this measurement in your README

A badge carrying how many listings this index holds from the repository and how many pass every static structural check. It reads from this index every time somebody loads your page, so it changes when the measurement changes and there is nothing to keep up to date. Free, no account, and the value is not something you or we can set by hand.

SkillWorks badge

[![SkillWorks](https://toolproof.kynth.studio/badge/skillworks/bfoxhound/Anthropic-Cybersecurity-Skills.svg)](https://skillworks.kynth.studio/?q=bfoxhound%2FAnthropic-Cybersecurity-Skills)

Would rather not hotlink us? Every badge is also served in shields.io’s endpoint schema, so shields renders the image and your readers never talk to our domain:

Published by Toolproof, the masthead over this index and eight others. The method behind the number is at toolproof.kynth.studio/methodology, and the whole thing is readable as JSON with no key at /api.

Also from Kynth Studios

Built for the same person as SkillWorks

Toolproof

Independent measurement of AI agent tooling

toolproof.kynth.studio

BlockDex

Search public shadcn registries, item by item

blockdex.kynth.studio

KitGrade

SaaS starter kits, scored on what can be checked

kitgrade.kynth.studio
SkillWorks

Every Claude Code skill, subagent and plugin, scored on whether it actually loads.

The studio list

One product, taken apart, once a month

Kynth Studios pulls one shipped product open every month — what it does, what it cost to build, what the pipeline behind it looks like, and what the numbers did. One email a month, nothing in between.

Double opt-in — we send one confirmation link and nothing else until you click it.

Browse

Skills
Subagents
Plugins
Marketplaces
CLAUDE.md examples

Rankings

Best subagents
Best plugins
Most installed
Will not load

The index

Search
Categories
How we score

Reference

Submit a repository
Sponsor a section
Listings JSON
Changelog

Follow

X
Threads
Instagram
LinkedIn
Bluesky
Dev.to
Hashnode
YouTube

@kyisaiah47

X
LinkedIn

© 2026 SkillWorks. A Kynth Studios product.

The studio behind Toolproof, BlockDex and KitGrade

Part of Toolproof, the measurement layer for AI agent tooling

Privacy
Built byKynth Studios

SkillWorks