Token导航 LogoToken导航TokenDH.com
运维和基础设施只读github未标认证来源可访问clear审计提醒

risk-management-specialist风险管理专家

Agent Skill

risk-management-specialist 用于处理 GitHub 仓库、Issue、Pull Request 和代码协作信息,适合在 Codex、Claude、Cursor、Gemini CLI 中需要围绕仓库状态、代码变更或协作事项进行整理时使用。可结合来源仓库、安装命令和原始 README 继续核验具体用法。安装前建议确认权限范围、维护状态,以及是否会触发联网、命令执行或文件读写。

总安装

4,353

周安装

187

GitHub Stars

13,217

下载量

1,526
CodexClaudeCursorGemini CLI

安装说明

本站只整理中文说明和来源信息,不托管安装包,也不代用户安装。

GitHub

来源数

3

许可证

MIT

最后核验

2026-05-01

来源状态

来源可访问

安装方式

通过对话安装

复制提示词发给支持本地命令或 Skills 的 AI 助手,先确认命令和权限,再让它执行。

请帮我安装这个 Agent Skill:risk-management-specialist(风险管理专家)
来源仓库:https://github.com/alirezarezvani/claude-skills
仓库路径:skills/risk-management-specialist
安装命令:
npx skills add https://github.com/alirezarezvani/claude-skills --skill risk-management-specialist
安装前请先检查当前环境是否支持对应 CLI,并向我确认将要执行的命令、安装目录、联网范围和文件读写权限;确认后再执行。

命令行安装

复制命令到本机终端执行。不同来源提供的安装方式可能略有差异;本站展示可直接复制的安装命令,安装前请核对来源页面。

skills.shnpx skills
npx skills add https://github.com/alirezarezvani/claude-skills --skill risk-management-specialist

简介

用于处理 GitHub 仓库、Issue、Pull Request 和代码协作信息,适合在 Codex、Claude、Cursor、Gemini CLI 中需要围绕仓库状态、代码变更或协作事项进行整理时使用。

  • 适用于 GitHub 仓库管理、代码审查和团队协作场景。
  • 通过 GitHub 仓库安装,使用 npx skills add 命令添加指定技能。
  • 需确认权限范围和维护状态,注意是否会触发联网、命令执行或文件读写操作。
  • risk-management-specialist 属于运维和基础设施类 Skill,可作为该场景下的辅助能力补充。

SKILL.md

Risk Management Specialist

ISO 14971:2019 risk management implementation throughout the medical device lifecycle.


Table of Contents


Risk Management Planning Workflow

Establish risk management process per ISO 14971.

Workflow: Create Risk Management Plan

  1. Define scope of risk management activities:

- Medical device identification - Lifecycle stages covered - Applicable standards and regulations

  1. Establish risk acceptability criteria:

- Define probability categories (P1-P5) - Define severity categories (S1-S5) - Create risk matrix with acceptance thresholds

  1. Assign responsibilities:

- Risk management lead - Subject matter experts - Approval authorities

  1. Define verification activities:

- Methods for control verification - Acceptance criteria

  1. Plan production and post-production activities:

- Information sources - Review triggers - Update procedures

  1. Obtain plan approval
  2. Establish risk management file
  3. Validation: Plan approved; acceptability criteria defined; responsibilities assigned; file established

Risk Management Plan Content

SectionContentEvidence
ScopeDevice and lifecycle coverageScope statement
CriteriaRisk acceptability matrixRisk matrix document
ResponsibilitiesRoles and authoritiesRACI chart
VerificationMethods and acceptanceVerification plan
Production/Post-ProductionMonitoring activitiesSurveillance plan

Risk Acceptability Matrix (5x5)

Probability \ SeverityNegligibleMinorSeriousCriticalCatastrophic
Frequent (P5)MediumHighHighUnacceptableUnacceptable
Probable (P4)MediumMediumHighHighUnacceptable
Occasional (P3)LowMediumMediumHighHigh
Remote (P2)LowLowMediumMediumHigh
Improbable (P1)LowLowLowMediumMedium

Risk Level Actions

LevelAcceptableAction Required
LowYesDocument and accept
MediumALARPReduce if practicable; document rationale
HighALARPReduction required; demonstrate ALARP
UnacceptableNoDesign change mandatory

Risk Analysis Workflow

Identify hazards and estimate risks systematically.

Workflow: Conduct Risk Analysis

  1. Define intended use and reasonably foreseeable misuse:

- Medical indication - Patient population - User population - Use environment

  1. Select analysis method(s):

- FMEA for component/function analysis - FTA for system-level analysis - HAZOP for process deviations - Use Error Analysis for user interaction

  1. Identify hazards by category:

- Energy hazards (electrical, mechanical, thermal) - Biological hazards (bioburden, biocompatibility) - Chemical hazards (residues, leachables) - Operational hazards (software, use errors)

  1. Determine hazardous situations:

- Sequence of events - Foreseeable misuse scenarios - Single fault conditions

  1. Estimate probability of harm (P1-P5)
  2. Estimate severity of harm (S1-S5)
  3. Document in hazard analysis worksheet
  4. Validation: All hazard categories addressed; all hazards documented; probability and severity assigned

Hazard Categories Checklist

CategoryExamplesAnalyzed
ElectricalShock, burns, interference
MechanicalCrushing, cutting, entrapment
ThermalBurns, tissue damage
RadiationIonizing, non-ionizing
BiologicalInfection, biocompatibility
ChemicalToxicity, irritation
SoftwareIncorrect output, timing
Use ErrorMisuse, perception, cognition
EnvironmentEMC, mechanical stress

Analysis Method Selection

SituationRecommended Method
Component failuresFMEA
System-level failureFTA
Process deviationsHAZOP
User interactionUse Error Analysis
Software behaviorSoftware FMEA
Early design phasePHA

Probability Criteria

LevelNameDescriptionFrequency
P5FrequentExpected to occur>10⁻³
P4ProbableLikely to occur10⁻³ to 10⁻⁴
P3OccasionalMay occur10⁻⁴ to 10⁻⁵
P2RemoteUnlikely10⁻⁵ to 10⁻⁶
P1ImprobableVery unlikely<10⁻⁶

Severity Criteria

LevelNameDescriptionHarm
S5CatastrophicDeathDeath
S4CriticalPermanent impairmentIrreversible injury
S3SeriousInjury requiring interventionReversible injury
S2MinorTemporary discomfortNo treatment needed
S1NegligibleInconvenienceNo injury

See: references/risk-analysis-methods.md


Risk Evaluation Workflow

Evaluate risks against acceptability criteria.

Workflow: Evaluate Identified Risks

  1. Calculate initial risk level from probability × severity
  2. Compare to risk acceptability criteria
  3. For each risk, determine:

- Acceptable: Document and accept - ALARP: Proceed to risk control - Unacceptable: Mandatory risk control

  1. Document evaluation rationale
  2. Identify risks requiring benefit-risk analysis
  3. Complete benefit-risk analysis if applicable
  4. Compile risk evaluation summary
  5. Validation: All risks evaluated; acceptability determined; rationale documented

Risk Evaluation Decision Tree

Risk Estimated
      │
      ▼
Apply Acceptability Criteria
      │
      ├── Low Risk ──────────► Accept and document
      │
      ├── Medium Risk ───────► Consider risk reduction
      │   │                    Document ALARP if not reduced
      │   ▼
      │   Practicable to reduce?
      │   │
      │   Yes──► Implement control
      │   No───► Document ALARP rationale
      │
      ├── High Risk ─────────► Risk reduction required
      │   │                    Must demonstrate ALARP
      │   ▼
      │   Implement control
      │   Verify residual risk
      │
      └── Unacceptable ──────► Design change mandatory
                               Cannot proceed without control

ALARP Demonstration Requirements

CriterionEvidence Required
Technical feasibilityAnalysis of alternative controls
ProportionalityCost-benefit of further reduction
State of the artComparison to similar devices
Stakeholder inputClinical/user perspectives

Benefit-Risk Analysis Triggers

SituationBenefit-Risk Required
Residual risk remains highYes
No feasible risk reductionYes
Novel deviceYes
Unacceptable risk with clinical benefitYes
All risks lowNo

Risk Control Workflow

Implement and verify risk control measures.

Workflow: Implement Risk Controls

  1. Identify risk control options:

- Inherent safety by design (Priority 1) - Protective measures in device (Priority 2) - Information for safety (Priority 3)

  1. Select optimal control following hierarchy
  2. Analyze control for new hazards introduced
  3. Document control in design requirements
  4. Implement control in design
  5. Develop verification protocol
  6. Execute verification and document results
  7. Evaluate residual risk with control in place
  8. Validation: Control implemented; verification passed; residual risk acceptable; no unaddressed new hazards

Risk Control Hierarchy

PriorityControl TypeExamplesEffectiveness
1Inherent SafetyEliminate hazard, fail-safe designHighest
2Protective MeasuresGuards, alarms, automatic shutdownHigh
3InformationWarnings, training, IFULower

Risk Control Option Analysis Template

RISK CONTROL OPTION ANALYSIS

Hazard ID: H-[XXX]
Hazard: [Description]
Initial Risk: P[X] × S[X] = [Level]

OPTIONS CONSIDERED:
| Option | Control Type | New Hazards | Feasibility | Selected |
|--------|--------------|-------------|-------------|----------|
| 1 | [Type] | [Yes/No] | [H/M/L] | [Yes/No] |
| 2 | [Type] | [Yes/No] | [H/M/L] | [Yes/No] |

SELECTED CONTROL: Option [X]
Rationale: [Justification for selection]

IMPLEMENTATION:
- Requirement: [REQ-XXX]
- Design Document: [Reference]

VERIFICATION:
- Method: [Test/Analysis/Review]
- Protocol: [Reference]
- Acceptance Criteria: [Criteria]

Risk Control Verification Methods

MethodWhen to UseEvidence
TestQuantifiable performanceTest report
InspectionPhysical presenceInspection record
AnalysisDesign calculationAnalysis report
ReviewDocumentation checkReview record

Residual Risk Evaluation

After ControlAction
AcceptableDocument, proceed
ALARP achievedDocument rationale, proceed
Still unacceptableAdditional control or design change
New hazard introducedAnalyze and control new hazard

Post-Production Risk Management

Monitor and update risk management throughout product lifecycle.

Workflow: Post-Production Risk Monitoring

  1. Identify information sources:

- Customer complaints - Service reports - Vigilance/adverse events - Literature monitoring - Clinical studies

  1. Establish collection procedures
  2. Define review triggers:

- New hazard identified - Increased frequency of known hazard - Serious incident - Regulatory feedback

  1. Analyze incoming information for risk relevance
  2. Update risk management file as needed
  3. Communicate significant findings
  4. Conduct periodic risk management review
  5. Validation: Information sources monitored; file current; reviews completed per schedule

Information Sources

SourceInformation TypeReview Frequency
ComplaintsUse issues, failuresContinuous
ServiceField failures, repairsMonthly
VigilanceSerious incidentsImmediate
LiteratureSimilar device issuesQuarterly
RegulatoryAuthority feedbackAs received
ClinicalPMCF dataPer plan

Risk Management File Update Triggers

TriggerResponse TimeAction
Serious incidentImmediateFull risk review
New hazard identified30 daysRisk analysis update
Trend increase60 daysTrend analysis
Design changeBefore implementationImpact assessment
Standards updatePer transition periodGap analysis

Periodic Review Requirements

Review ElementFrequency
Risk management file completenessAnnual
Risk control effectivenessAnnual
Post-market information analysisQuarterly
Risk-benefit conclusionsAnnual or on new data

Risk Assessment Templates

→ See references/risk-assessment-templates.md for details

Decision Frameworks

Risk Control Selection

What is the risk level?
        │
        ├── Unacceptable ──► Can hazard be eliminated?
        │                    │
        │                Yes─┴─No
        │                 │     │
        │                 ▼     ▼
        │            Eliminate  Can protective
        │            hazard     measure reduce?
        │                           │
        │                       Yes─┴─No
        │                        │     │
        │                        ▼     ▼
        │                   Add       Add warning
        │                   protection + training
        │
        └── High/Medium ──► Apply hierarchy
                            starting at Level 1

New Hazard Analysis

QuestionIf YesIf No
Does control introduce new hazard?Analyze new hazardProceed
Is new risk higher than original?Reject control optionAcceptable trade-off
Can new hazard be controlled?Add controlReject control option

Risk Acceptability Decision

ConditionDecision
All risks LowAcceptable
Medium risks with ALARPAcceptable
High risks with ALARP documentedAcceptable if benefits outweigh
Any Unacceptable residualNot acceptable - redesign

Tools and References

Scripts

ToolPurposeUsage
risk_matrix_calculator.pyCalculate risk levels and FMEA RPNpython risk_matrix_calculator.py --help

Risk Matrix Calculator Features:

  • ISO 14971 5x5 risk matrix calculation
  • FMEA RPN (Risk Priority Number) calculation
  • Interactive mode for guided assessment
  • Display risk criteria definitions
  • JSON output for integration

References

DocumentContent
iso14971-implementation-guide.mdComplete ISO 14971:2019 implementation with templates
risk-analysis-methods.mdFMEA, FTA, HAZOP, Use Error Analysis methods

Quick Reference: ISO 14971 Process

StageKey ActivitiesOutput
PlanningDefine scope, criteria, responsibilitiesRisk Management Plan
AnalysisIdentify hazards, estimate riskHazard Analysis
EvaluationCompare to criteria, ALARP assessmentRisk Evaluation
ControlImplement hierarchy, verifyRisk Control Records
ResidualOverall assessment, benefit-riskRisk Management Report
ProductionMonitor, review, updateUpdated RM File

Related Skills

SkillIntegration Point
quality-manager-qms-iso13485QMS integration
capa-officerRisk-based CAPA
regulatory-affairs-headRegulatory submissions
quality-documentation-managerRisk file management

适合场景

01

用户想查找某类 Agent Skill 时

02

需要根据任务场景推荐可安装能力包时

03

需要对比不同来源的安装命令和来源信息时

04

需要参考平台分布和安装热度时

能力概览

能力 1

按任务关键词查找相关 Skills

能力 2

展示可复制的安装命令

能力 3

保留来源站点、仓库和原始说明,方便继续核验

能力 4

补充不同宿主或平台的使用分布数据

能力 5

展示第三方安全扫描或审计结果

安装后应在对应宿主中按原始 README 的触发条件使用;具体调用方式请以来源页面和 README 为准。

平台分布

Claude Code

30.13%
按下载量换算460

OpenCode

20.05%
按下载量换算306

Gemini CLI

17.73%
按下载量换算271

Codex

12.27%
按下载量换算187

Cursor

7.02%
按下载量换算107

Antigravity

3.05%
按下载量换算47

安全审计

Gen Agent Trust Hub

通过

Socket

可疑

Snyk

通过

权限和风险

只读

该 Skill 主要提供规则、说明或参考内容,本身偏只读;真正读写文件、联网或执行命令仍取决于宿主 Agent 的任务。

安装前确认

本站仅展示第三方公开信息,不托管安装包,不提供自动安装或运行环境。安装前应自行审查源码、依赖和命令行为。来源安全扫描存在 warning/failed 结果,不能写成本站确认安全。

来源信息

继续浏览同类 Skills