# cspm

> cspm — cognis-digital-cspm. Use this tool when you need to assess and manage cloud security posture by analyzing configuration exports to identify vulnerabilities such as public buckets, open security groups, and weak IAM settings. It solves problems related to cloud security and compliance by providing insights into potential security risks. Input includes cloud configuration exports, and output is a detailed report of security vulnerabilities, making it ideal for use cases involving cloud security auditing and compliance monitoring.

Canonical page: https://skillsregistry.net/skills/cognis-digital-cspm  
JSON: https://api.skillsregistry.net/v1/skills/cognis-digital-cspm

## Description

Cloud security posture from a config export (public buckets, open SGs, weak IAM)

## Trust

- **Trust score (0–1):** 0.50
- **Verification tier:** unverified

## Facts

- **Version:** 1.0.0
- **Skill type:** atomic
- **Execution layer:** container
- **Runtime environment:** vm
- **Updated:** 2026-09-21

## Source

- **Source listing:** [GitHub](https://github.com/cognis-digital/cspm)

## Use it

Resolve this record through the SkillsRegistry MCP server (no auth, read-only):

```
claude mcp add --transport http --scope user skillsregistry https://api.skillsregistry.net/mcp
```

```json
{
  "jsonrpc": "2.0",
  "id": 1,
  "method": "tools/call",
  "params": {
    "name": "get_skill",
    "arguments": {
      "slug": "cognis-digital-cspm"
    }
  }
}
```

REST: `GET https://api.skillsregistry.net/v1/skills/cognis-digital-cspm` · pull for local use: `GET https://api.skillsregistry.net/v1/skills/cognis-digital-cspm/pull`

---
SkillsRegistry indexes agent skills from public registries and GitHub. Skills we have analysed are scanned with Circle-IR and scored on six dimensions; each listing states its scan coverage. More: https://skillsregistry.net/llms.txt
