首页龙虾技能列表 › CyberSec Cert Advisor — 技能工具

CyberSec Cert Advisor — 技能工具

v1.0.0

Generate personalized cybersecurity certification and career advancement plans based on individual assessment data and professional goals.

0· 97·0 当前·0 累计
by @krishnakumarmahadevan-cmd (ToolWeb)·MIT-0
下载技能包
License
MIT-0
最后更新
2026/3/25
安全扫描
VirusTotal
无害
查看报告
OpenClaw
安全
high confidence
The skill's declared purpose (career/certification advice) matches its instructions and footprint — it is an instruction-only API description with no installs, no requested credentials, and no unexpected filesystem or network directives — but the package lacks provenance and an explicit service endpoint, so verify where data would be sent before using.
评估建议
This skill appears internally consistent and low-risk as an instruction-only advisor, but there are two practical concerns to address before using it with real personal data: (1) provenance — the package has no homepage or author information you can verify, so consider whether you trust the owner ID; (2) destination — the OpenAPI spec lacks a server/base URL, so find out (and verify) the exact endpoint the agent will call and confirm it uses HTTPS and a privacy policy you accept. Avoid sending P...
详细分析 ▾
用途与能力
The name and description (certification/career advisor) align with the SKILL.md and openapi schema: both describe taking assessmentData and returning a certification plan. There are no unrelated env vars, binaries, or install actions requested. Note: the package provenance is unknown (no homepage, source unknown, owner ID only), which reduces trust but does not contradict the stated purpose.
指令范围
The SKILL.md contains only API documentation, sample requests/responses, and endpoint schemas. It does not instruct the agent to read local files, access unrelated environment variables, or exfiltrate system data. One practical gap: the OpenAPI description does not include a server/base URL, so the instructions are incomplete about where network requests would be sent.
安装机制
No install spec and no code files beyond documentation/OpenAPI. This is the lowest-risk model (instruction-only). Nothing is written to disk or installed by the skill itself.
凭证需求
The skill requests no environment variables, credentials, or config paths. That is proportionate to a guidance/analysis skill. Caution: the skill is designed to accept personal assessmentData — if the agent were configured to call a remote API, that could transmit sensitive personal data to an external service, so confirm endpoint and privacy practices.
持久化与权限
always is false and there are no statements about modifying agent/system configuration. The skill does not request persistent privileges or special system presence.
安全有层次,运行前请审查代码。

License

MIT-0

可自由使用、修改和再分发,无需署名。

运行时依赖

无特殊依赖

版本

latestv1.0.02026/3/25

Cybersecurity Certification Advisor v1.0.0 – Initial Release - Launches a professional guidance platform for personalized cybersecurity certification and career advancement planning. - Provides data-driven, tailored certification roadmaps based on users’ experience, interests, and career goals. - Features API endpoint for generating certification plans, identified skill gaps, and phased career pathways with salary projections. - Designed for security professionals, hiring managers, educational advisors, and organizations seeking workforce upskilling. - Includes clear usage examples, detailed endpoint documentation, and transparent pricing plans.

● 无害

安装命令 点击复制

官方npx clawhub@latest install cybersec-cert-advisor
镜像加速npx clawhub@latest install cybersec-cert-advisor --registry https://cn.clawhub-mirror.com

技能文档

The Cybersecurity Certification Advisor is a professional guidance platform designed to help security professionals chart their career trajectory and identify the most relevant certifications for their goals. Built by CISSP and CISM certified experts, this API analyzes your experience, skills, interests, and career aspirations to deliver a customized certification roadmap.

Whether you're transitioning into cybersecurity, advancing from junior to senior roles, or specializing in a particular domain (cloud security, application security, governance, risk, and compliance), the advisor provides data-driven recommendations aligned with industry standards and market demand. The platform considers your current experience level, career stage, and professional objectives to suggest certifications that maximize career value and earning potential.

Ideal users include security professionals seeking career guidance, hiring managers building talent development programs, educational institutions advising students, and organizations planning workforce upskilling initiatives.

Usage

Sample Request:

{
  "sessionId": "sess-20240115-abc123",
  "userId": 5042,
  "timestamp": "2024-01-15T09:30:00Z",
  "assessmentData": {
    "sessionId": "sess-20240115-abc123",
    "timestamp": "2024-01-15T09:30:00Z",
    "career": {
      "currentRole": "Security Analyst",
      "yearsInCybersecurity": 3,
      "currentOrganizationSize": "Enterprise",
      "industryFocus": "Financial Services"
    },
    "experience": {
      "certifications": ["CompTIA Security+", "CompTIA Network+"],
      "toolsAndTechnologies": ["Splunk", "Fortinet FortiGate", "CrowdStrike Falcon"],
      "areasOfExpertise": ["Threat Detection", "Incident Response", "Log Analysis"]
    },
    "interests": ["Cloud Security", "Threat Intelligence", "Security Architecture"],
    "goals": {
      "targetRole": "Senior Security Architect",
      "timeframe": "3 years",
      "careerPriority": "Technical Leadership"
    }
  }
}

Sample Response:

{
  "status": "success",
  "sessionId": "sess-20240115-abc123",
  "timestamp": "2024-01-15T09:30:15Z",
  "certificationPlan": {
    "recommendedCertifications": [
      {
        "certification": "CISSP",
        "priority": "High",
        "timeline": "12-18 months",
        "rationale": "Essential for security architect roles; validates holistic security knowledge across 8 domains",
        "prerequisite": "5+ years security experience (3 years current + 2 years additional recommended)"
      },
      {
        "certification": "AWS Certified Security – Specialty",
        "priority": "High",
        "timeline": "6-9 months",
        "rationale": "Aligns with cloud security interest; highly valued in enterprise environments",
        "prerequisites": "AWS Solutions Architect Associate recommended first"
      },
      {
        "certification": "GIAC Security Essentials (GSEC)",
        "priority": "Medium",
        "timeline": "4-6 months",
        "rationale": "Bridges gap between current certifications and CISSP; demonstrates incident response expertise"
      }
    ],
    "careerPathway": {
      "phase1": {
        "duration": "Months 1-6",
        "focus": "Cloud Security Foundations",
        "actions": ["Complete AWS Security Specialty", "Lead cloud security initiatives at current organization"]
      },
      "phase2": {
        "duration": "Months 7-18",
        "focus": "Enterprise Architecture & Leadership",
        "actions": ["Pursue CISSP eligibility", "Mentor junior analysts", "Design security frameworks"]
      },
      "phase3": {
        "duration": "Months 19-36",
        "focus": "Senior Architect Transition",
        "actions": ["Obtain CISSP", "Move to architect or leadership role", "Develop specialization in threat intelligence"]
      }
    },
    "skillGaps": [
      "Enterprise architecture frameworks (TOGAF knowledge helpful)",
      "Strategic risk management and compliance (CISM valuable)",
      "Advanced cloud security design patterns"
    ],
    "estimatedSalaryProgression": {
      "current": "$110,000 - $130,000",
      "withRecommendedCerts": "$150,000 - $200,000",
      "targetRole": "$180,000 - $250,000+"
    }
  }
}

Endpoints

GET /

Description: Root endpoint Parameters: None Response: JSON object confirming API availability


GET /health

Description: Health check endpoint to verify service availability Parameters: None Response: JSON object with service health status


POST /api/cybersecurity/advisor

Description: Generate a personalized certification and career advancement plan based on assessment data

Parameters:

NameTypeRequiredDescription
sessionIdstringYesUnique session identifier for tracking and audit purposes
userIdinteger or nullNoOptional user identifier for analytics and historical comparison
timestampstringYesISO 8601 timestamp of when the assessment was submitted
assessmentDataobjectYesComprehensive assessment data object (see below)
assessmentData Object:

NameTypeRequiredDescription
sessionIdstringYesSession identifier (must match parent sessionId)
timestampstringYesISO 8601 timestamp of assessment completion
careerobjectNoCurrent career information (role, years in field, organization type, industry focus)
experienceobjectNoProfessional background (existing certifications, tools, technical expertise areas)
interestsarrayNoList of career interests and specialization areas (e.g., "Cloud Security", "Threat Intelligence")
goalsobjectNoCareer objectives (target role, timeframe, priority)
Response:

Status: 200 OK
Content-Type: application/json
Schema: Certification plan object containing:
  - recommendedCertifications: array of personalized certification recommendations with priority, timeline, and rationale
  - careerPathway: phased approach to career advancement with specific milestones
  - skillGaps: identified technical and soft skill gaps
  - estimatedSalaryProgression: current, post-certification, and target role salary ranges
  - timestamp: response generation timestamp

Error Responses:

StatusDescription
422Validation Error – Required fields missing or malformed (sessionId, timestamp, or assessmentData invalid)

Pricing

PlanCalls/DayCalls/MonthPrice
Free550Free
Developer20500$39/mo
Professional2005,000$99/mo
Enterprise100,0001,000,000$299/mo

About

ToolWeb.in - 200+ security APIs, CISSP & CISM, platforms: Pay-per-run, API Gateway, MCP Server, OpenClaw, RapidAPI, YouTube.

References

  • Kong Route: https://api.mkkpro.com/career/cert-advisor
  • API Docs: https://api.mkkpro.com:8074/docs
数据来源:ClawHub ↗ · 中文优化:龙虾技能库
OpenClaw 技能定制 / 插件定制 / 私有工作流定制

免费技能或插件可能存在安全风险,如需更匹配、更安全的方案,建议联系付费定制

了解定制服务