Skip to main content

Skills

This page lists the generated reference documentation for HVE Core skills.

Skills
AssetDescription
accessibilityConsolidated accessibility skill entrypoint for WCAG 2.2, ARIA Authoring Practices, cognitive accessibility, Section 508, EN 301 549, design intent verification, and the Accessibility Planner workflow.
code-reviewReview code changes from multiple perspectives with context bootstrap, depth-tier rigor, and structured findings output.
hve-artifact-authoringCreate and validate HVE Core agents, prompts, instructions, and skills with current frontmatter, package membership, delegation, tracking, documentation, and validation conventions. Use when authoring a GitHub Copilot customization artifact in this repository.
python-foundationalFoundational Python best practices, idioms, and code quality fundamentals
analysis-authoringAuthoring conventions for exploratory data analysis notebooks and analytical dashboards, covering section sequence, visualization selection, scale thresholds, caching and state, and dashboard validation budgets. Use when composing or reviewing an EDA notebook, an analytical dashboard, or a dashboard test pass.
data-catalogCreate and enrich durable data catalogs using the native DS_CATALOG_V1 Markdown contract, declared entity relationships, privacy citation fields, and stable relationship IDs. Use when inventorying engagement data, recording semantic relationships, or preparing a catalog for ERD rendering.
data-science-engineering-foundationState, resume, reconstruction, job-lifecycle, transition, and flow-state mechanics for the Data Science and Engineering Coach. Loaded by the coach; not a user entry point.
dataopsDataOps and DS/MLOps testing reference for data tiering, Bronze-to-Silver validation placement, pipeline invariants, pytest categories, and validation-versus-drift. Use when designing, reviewing, or generating data pipelines, transformation code, data validation, or data-science test suites.
evaluation-designDesign evaluation datasets and supporting documentation for AI systems and agents, covering the scoping interview, difficulty distribution, dataset contract, sample review, and metric and tooling selection. Use when building or reviewing an evaluation set for a conversational agent, assistant, or retrieval-grounded AI system.
feasibilityAuthor and validate durable data and ML feasibility studies using the Feasibility Study Interchange Profile, constrained YAML authority, UUID URN identity, lifecycle lineage, and evidence traceability. Use when assessing whether available data and technical evidence support a proposed outcome.
ml-experimentationMachine learning experimentation reference for model-experimentation conventions, experiment tracking and reproducibility, dataset and model abstractions, ML engagement fundamentals, and model-production readiness. Use when standing up ML experimentation infrastructure or assessing whether a trained model is ready for production.
dt-coaching-foundationDesign Thinking coaching foundation knowledge: coach identity and philosophy, quality and fidelity constraints, method sequencing, coaching state schema, and the canonical deck workflow
dt-curriculumDesign Thinking learning curriculum covering nine progressive modules across the full Problem, Solution, and Implementation Space methods plus a shared manufacturing reference scenario for teaching and practice
dt-methodsDesign Thinking method coaching knowledge across all nine methods including per-method techniques, deep expertise, and industry context (energy, financial services, healthcare, manufacturing, nonprofit and social impact, pharmaceuticals and life sciences, professional services, public sector, retail and CPG)
dt-rpi-integrationDesign Thinking handoff knowledge for research-ready rpi-research inputs and DT-aware rpi-plan, rpi-implement, and rpi-review context
ux-artifactsProduce evidence-labelled UX needs, journey, structure, inclusion, and engineering-handoff assets. Use when a practitioner needs a durable UX artifact rather than coaching.
ux-coachingCoach a UX practitioner through problem framing, running a design critique, or making an evidence-backed case to a skeptical stakeholder. Use when the practitioner has a live UX task and wants to think it through rather than receive an answer.
engagement-reportingCreates source-grounded internal or external weekly engagement status reports with optional Outlook draft creation.
cavemanUltra-compressed response style that reduces output token count while preserving technical accuracy, with intensity levels and auto-clarity safety rules
copilot-otel-metricsSet up GitHub Copilot OpenTelemetry capture: configure the VS Code export settings, generate a local Grafana stack and dashboard, or generate the Azure collector, infrastructure, and dashboard for an organization.
customer-card-renderGenerate customer-card PowerPoint content YAML from Design Thinking canonical artifacts and build using the shared PowerPoint skill pipeline
demo-videoAssemble ordered frames or clips with narration into a narrated MP4 via FFmpeg
muralMural workspace, room, mural, and widget workflows via the Mural REST API exposed through a Python CLI. Use when you need to read or write Mural content or automate widget creation.
powerpointPowerPoint slide deck generation and management using python-pptx with YAML-driven content and styling
tts-voiceoverText-to-speech voice-over generation from YAML speaker notes using Azure Speech SDK with SSML pronunciation control
video-to-gifVideo-to-GIF conversion with FFmpeg two-pass optimization
vscode-playwrightVS Code screenshot capture using Playwright MCP with serve-web for slide decks and documentation
architecture-diagramsArchitecture diagram authoring for cloud infrastructure and declared data catalogs. Use when rendering Azure IaC or DS_CATALOG_V1 relationships as caller-selected ASCII or Mermaid diagrams.
c4-architectureModel and document existing or planned software architectures with the C4 model across System Context, Container, and Component levels plus deployment diagrams, then emit diagrams through a selected renderer. Use when an architect needs audience-appropriate software architecture documentation; use the 'architecture-diagrams' skill for infrastructure topology.
documentationCanonical documentation capability for audit, drift, validate, and author modes in hve-core.
hve-builder-testerRun one complete black-box behavior test of a prompt, instruction, agent, subagent, or skill with explicit fidelity and independent grading. Use as the final behavior gate after hve-builder freezes a candidate, or directly to test an existing artifact without changing it.
hve-builderCreate, improve, refactor, replace, review, or validate prompts, instructions, agents, subagents, and skills, and build or extend HVE workflows. Use when authoring or cleaning up Copilot customizations, deciding which instructions to keep or retire, or connecting an HVE workflow to project-specific knowledge, tools, or conventions.
prompt-analyzeCompatibility alias for read-only prompt artifact review. Routes static and behavior analysis to hve-builder review mode.
prompt-builderCompatibility alias for legacy prompt-building requests. Routes creation and improvement to the hve-builder skill.
prompt-refactorCompatibility alias for behavior-preserving prompt artifact cleanup. Routes refactoring to hve-builder refactor mode.
pull-requestDrafts or opens a GitHub pull request, runs changed-area preflight checks, and commits validated preflight repairs. Use when a user asks to prepare, create, or update a pull request.
vally-testsAuthors Vally conformance tests for prompts, instructions, agents, and skills, including refusals for jailbreak, prompt-injection, harmful-elicitation, TOS, CoC, and PII-extraction stimuli
hve-core-installerDecision-driven HVE-Core installer with multiple clone-based and extension install methods, environment detection, and selective component installation
adr-authorAuthoring skill for Architecture Decision Records (ADRs) supporting capture, from-planner-handoff, and adopt-template entry modes with selectable Y-Statement or MADR v4.0.0 output templates, supersession lineage, and ASR trigger evaluation.
backlog-executeMutating backlog execution for Azure DevOps, GitHub, and Jira. Use to create one item or apply a reviewed handoff to a confirmed tracker.
backlog-managementShared backlog conventions for Azure DevOps, GitHub, and Jira. Use for platform resolution, autonomy tiers, sanitization guards, and story quality.
backlog-planRead-only backlog planning for Azure DevOps, GitHub, and Jira. Use to discover, triage, sprint-plan, or resume without mutating a tracker.
experiment-designExperiment design reference for problem-class framing, Minimum Viable Experiment coaching, hypothesis formation, vetting and red flags, and experiment readiness. Use when translating a stated business outcome into candidate data-science problem classes, or when framing, vetting, scoping, or evaluating an experiment of any kind, including data feasibility, architecture, LLM, performance, use-case, UX, prototyping, and hardware experiments.
functional-plannerRead-only PRD-to-work-item hierarchy planning. Use to turn a PRD into a validated Azure DevOps, GitHub, or Jira handoff.
gitlabManage GitLab merge requests and pipelines with a Python CLI
jiraJira issue workflows for search, issue updates, transitions, comments, field discovery, and interactive credential setup via the Jira REST API. Use when you need to configure Jira access, search with JQL, inspect an issue, create or update work items, move an issue between statuses, post comments, or discover required fields for issue creation.
outcome-hypothesisCreate or assess an evidence-grounded, falsifiable outcome hypothesis: a testable prediction of what measurable business result will change, for whom, by when, and how leading and lagging indicators will prove or disprove it. Use when framing measurable outcomes, turning an MVP, POC, feature, or technical initiative into a beneficiary result, defining targets and indicators, or judging whether evidence is strong enough to invest. Also applies to business outcome hypotheses, value hypotheses, and outcome statements.
performance-slo-plannerPerformance, load, and reliability (SLO/SRE) planning for production readiness. Use when defining service level objectives, load characterization, capacity, latency budgets, stress/soak/spike test plans, false-positive baselines, and reliability targets. USE FOR: SLO/SLA definition, load testing plan, performance budget, capacity planning, reliability/SRE backlog, latency targets, error-budget policy. DO NOT USE FOR: executing load tests (use Azure Load Testing tooling), security threat modeling, RAI assessment, privacy/compliance planning, or authoring/restating PRD requirements (cite the PRD's existing NFR/FR ids instead).
privacy-standardsPrivacy planning reference for data-flow reasoning, standards mapping, and DPIA thresholds
proposal-responseBuild traceable internal-review proposal, RFI, RFP, tender, bid, and questionnaire responses from supplied questions and approved sources. Use to analyze questions, contribute business or product evidence, or draft qualified responses.
rai-plannerOn-demand RAI planner reference pack covering Phase 1 capture, Phase 2 risk classification, Phase 5 impact assessment, and Phase 6 review and backlog handoff.
requirements-authorRequirements authoring guide for BRD and PRD across Discover, Define, and Govern with canonical templates and handoff contracts
security-planningSecurity planning and plan-drift analysis for STRIDE, standards, controls, backlog handoff, current findings, and TM7 generation.
rai-standardsConsolidated Responsible AI standards reference: NIST AI RMF 1.0, AI STRIDE threat-modeling overlay, EU AI Act risk tiers, and an open-standards catalog with phase mapping
rpi-challengerChallenge a confirmed task, decision, plan, or artifact through adaptive skeptical questions. Use when you need to expose assumptions before acting.
rpi-implementExecute an approved RPI plan, maintain current planning state, and record implementation evidence. Use when implementation is ready to begin or resume.
rpi-plan-critiqueIndependently critique an RPI implementation plan once against supplied evidence without editing the plan. Use when planning credibility needs a read-only assessment.
rpi-planCreate one evidence-based RPI implementation plan from supplied context, research, drafts, and decisions. Use when implementation planning is needed.
rpi-quickSequence Research, Plan, Implement, Review, and Follow-up for an RPI task. Use when one workflow should coordinate the full delivery lifecycle.
rpi-researchResearch-only RPI playbook that gathers task evidence, writes dated research artifacts under .copilot-tracking/research/, and hands off planning-ready findings. Use when the user needs evidence, alternatives, or task framing first.
rpi-reviewCompare RPI planning and implementation evidence, record review findings, and route follow-up work. Use when an implementation needs acceptance review.
rpi-walkthroughGuided, conversational walkthrough that explains code, UI, UX, features, or .copilot-tracking artifacts with navigable evidence links, deep subagent review, and a reconciled decisions-and-changes ledger. Use when the user wants to understand how something works or why it was changed.
gh-code-scanningRetrieves and groups GitHub code scanning alerts by rule and severity using the gh CLI
mcsbMicrosoft Cloud Security Benchmark (MCSB v2) control-domain taxonomy and NIST 800-53 / CIS Controls crosswalk for planning and reviewing Azure cloud resources.
owasp-agenticOWASP Agentic Security Top 10 knowledge base for identifying, assessing, and remediating AI agent system security risks.
owasp-cicdOWASP CI/CD Top 10 knowledge base for identifying, assessing, and remediating CI/CD pipeline security risks.
owasp-dockerOWASP Docker Top 6 knowledge base for identifying, assessing, and remediating Docker container security risks.
owasp-infrastructureOWASP Infrastructure Top 10 knowledge base for identifying, assessing, and remediating internal IT infrastructure security risks.
owasp-llmOWASP Top 10 for LLM Applications (2025) knowledge base for identifying, assessing, and remediating large language model security risks.
owasp-mcpOWASP MCP Top 10 knowledge base for identifying, assessing, and remediating Model Context Protocol security risks.
owasp-top-10OWASP Top 10 for Web Applications (2025) knowledge base for identifying, assessing, and remediating web application security risks.
secure-by-designSecure by Design principles knowledge base for assessing security-first design, development, and deployment across the software lifecycle.
security-reviewer-formatsFormat specifications and data contracts for the security reviewer orchestrator and its subagents.
supply-chain-securitySoftware supply chain security reference for OpenSSF Scorecard, SLSA, Sigstore, SBOM, and posture/backlog taxonomies.
vexOpenVEX v0.2.0 specification reference plus VEX management playbooks - Brought to you by microsoft/hve-core.
backlog-templatesShared work-item templates and conventions for ADO and GitHub backlog handoff across the RAI, Security, SSSC, Accessibility, and Privacy planners
pr-referenceGenerates PR reference XML with commit history and unified diffs between branches, with extension and path filtering. Use when creating pull request descriptions, preparing code reviews, analyzing branch changes, discovering work items from diffs, or generating structured diff summaries.
telemetry-foundationsDeclarative OpenTelemetry-aligned telemetry vocabulary and instrumentation conventions for traces, metrics, logs, and PII handling