risk

Deep risk assessment workflow—identifying risks, likelihood and impact, mitigation plans, owners, residual risk acceptance, and tracking. Use when assessing launches, migrations, vendors, or operational changes.

Safety Notice

This listing is from the official public ClawHub registry. Review SKILL.md and referenced scripts before running.

Copy this and send it to your AI assistant to learn

Install skill "risk" with this command: npx skills add mike47512/risk

Risk Assessment

Risk assessment turns vague worry into prioritized actions: what can go wrong, how bad, what we do now, and who owns follow-up.

When to Offer This Workflow

Trigger conditions:

  • Major launch, migration, or new vendor
  • Steering or audit requests a risk matrix
  • Post–near-miss prevention work

Initial offer:

Use six stages: (1) scope & stakeholders, (2) identify risks, (3) analyze likelihood & impact, (4) plan mitigations, (5) owners & deadlines, (6) review & tracking). Confirm scoring approach (simple matrix vs quantitative).


Stage 1: Scope & Stakeholders

Goal: Define system/project boundary and who can accept residual risk (product, eng, legal).

Exit condition: RACI or explicit approvers for go/no-go.


Stage 2: Identify Risks

Goal: Brainstorm across categories: technical, security, operational, legal, reputational, financial.

Practices

  • Pre-mortem: “It failed because…” exercise for alignment

Stage 3: Analyze

Goal: Score likelihood and impact with a shared rubric; avoid false precision.


Stage 4: Plan Mitigations

Goal: Prevent, detect, and respond controls; rough cost/time per mitigation.


Stage 5: Owners & Deadlines

Goal: Each material risk has an owner and date; escalation path if unmitigated by launch.


Stage 6: Review & Tracking

Goal: Living RAID log; revisit after scope changes or incidents.


Final Review Checklist

  • Scope and decision authority clear
  • Risks span relevant categories
  • Scoring applied consistently
  • Mitigations have owners and dates
  • Residual risk explicitly accepted or deferred with plan

Tips for Effective Guidance

  • Distinguish future risk from current defects.
  • For security-heavy systems, align with threat (threat modeling) outputs.
  • Startups: fewer rows, more honesty on top existential risks.

Handling Deviations

  • Regulated industries: follow required RA templates when mandated.

Source Transparency

This detail page is rendered from real SKILL.md content. Trust labels are metadata-based hints, not a safety guarantee.

Related Skills

Related by shared tags or category signals.

Automation

evo-soul

Installs once on a primary agent to automatically propagate behavioral DNA across communicating OpenClaw agents without manual setup or side effects.

Registry SourceRecently Updated
Automation

Boheng Investment Workflow

投资研究多智能体决策系统 - 8位专业分析师并行研究,加权投票给出投资建议。支持A股股票/基金/ETF/可转债。支持真实财报数据(baostock)或基础行情数据。⚠️ 风险提示:分析结果仅供学习参考,不构成投资建议。

Registry SourceRecently Updated
Automation

Kaiqiao

Agent行为校准器,让AI学会"什么时候该问、该干、该拦、该说话"。 Triggers: 模糊需求, 反复确认, 方向有坑, 等结果, 授权信号, 偏好过时 Does NOT trigger: 简单指令, 明确方向, 授权明确, 小事/容错高 Output: 符合"四件事"标准的行为输出(问/干/拦/反馈)

Registry SourceRecently Updated
Automation

Moltbillboard

MoltBillboard is a 1,000×1,000 pixel billboard built for AI agents. Agents register once, top up credits via Stripe, and claim pixels (optionally animated) t...

Registry SourceRecently Updated
1.8K2tech8in