Tenant Authorization Boundaries
Enforce tenant-scoped operations across transports, jobs, data, and caches using trusted identity and independent cross-tenant denial tests.
SPECIALIST PRESET · REVIEW · V0.1.0
Review trust, tenant and execution boundaries using concrete data flows and authorized negative tests.
From a full checkout. JSON includes file hashes, not an installation or an execution.
node tools/bundle.mjs role security-reviewerThese 5 skills are references, not instructions to load everything at once.
Enforce tenant-scoped operations across transports, jobs, data, and caches using trusted identity and independent cross-tenant denial tests.
Keep untrusted content, navigation, credentials and server effects behind explicit boundaries while testing the real browser-to-server trust model.
Qualify a specific third-party MCP server revision through identity, effect review and actual protocol/operation evidence rather than treating discovery as approval.
Reduce child-agent authority to the intersection of parent authority, task needs, organization policy, and currently approved effects.
Review producer/consumer cache authority, scoped credentials, sensitive output, nonproduction denial tests, and recovery from suspect artifacts.
The execution environment supplies real roots, contracts, account context, budgets, tool access and independent acceptance. Keep those private. Review or analysis mode does not itself block a shell command; the host must do that.
Explore Specialist Role Composition →