If you've ever needed to write a real security policy but didn't want to copy-paste a 50-page template full of enterprise boilerplate, this walks you through building a concise Blue Book with MUST/SHOULD/CAN language, explicit threat models, and actual go/no-go gates. It asks six targeted questions about data classes, trust boundaries, auth, storage, third parties, and retention, then fills a template with enforceable controls, incident runbooks, and audit policies. The output is designed to be minimal but defensible, with TODOs marked where assumptions are needed. It's aimed at sensitive apps where you need something grounded in scope and operational defaults, not generic checklists.
npx skills add https://github.com/sickn33/antigravity-awesome-skills --skill security-bluebook-builder