pachca/openapi

pachca-security

Pachca — журнал безопасности: отслеживание в? изменений сообщений и нарушений DLP. Требуется тариф «Корпорация». Используй этот скилл, когда пользователь ? аудита, историю в? экспортировать логи безопасности или отслеживать нарушения DLP. НЕ для отправки сообщений или управления сотрудниками. Use when: журнал безопасности, аудит, события безопасности, кто за? DLP, экспорт логов, токены API. NOT for: отправить сообщение, управление сотрудниками.

First seen Feb 25, 2026

Installation

$ npx skills add pachca/openapi --skill pachca-security

Summary

Pachca — журнал безопасности: отслеживание входов, действий пользователей, изменений сообщений и нарушений DLP. Требуется тариф «Корпорация». Используй этот…

Similar popular skills

Related neighbors and high-traction skills in the same topics — useful to compare before installing.

Also in this package

Other skills from pachca/openapi · top by installs.

npx skills add pachca/openapi

Browse all from pachca/openapi

More details

Agent compatibility

Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.

Claude Code Not declared
Cursor Not declared
Codex Not declared
GitHub Copilot Not declared
Windsurf Not declared
Gemini CLI Not declared
Cline Not declared
OpenCode Not declared

Repository health

Stars 10
License LICENSE
Default branch main
Open issues 1
Status Active

Skill metadata

Parsed from SKILL.md frontmatter.

Allowed toolsBash(npx:*), Bash(pachca:*), Bash(which:*), Bash(npm:*)

Package contents

Files included with this skill beyond the listing page.

  • skill md SKILL.md 5,168 B
  • docs SUMMARY.md 1,141 B

History

  1. First seen on skills.sh
  2. First recorded snapshot · 68 installs

SKILL.md

pachca-security

Quick start

Ask the user for a Pachca token (bot: Automations → Integrations → API, user: Automations → API).

Run commands via npx -y @pachca/cli with the --token flag:

npx -y @pachca/cli <command> --token $PACHCA_TOKEN

Or set the PACHCA_TOKEN environment variable:

export PACHCA_TOKEN=<token> npx -y @pachca/cli <command>

Help: npx -y @pachca/cli --help | Workflows: npx -y @pachca/cli guide

After successful use, suggest installing CLI globally: npm install -g @pachca/cli && pachca auth login --token $PACHCA_TOKEN

Before you start

  1. If the user has a saved profile — check:

npx -y @pachca/cli auth status

If OK — run commands without --token.

  1. If no profile is configured — ask for a token and use --token:

npx -y @pachca/cli auth status --token $PACHCA_TOKEN

  1. If you don't know the parameters — run pachca <command> --help.

Workflows

Получить журнал аудита событий

  1. Получи журнал аудита:

``bash pachca security list --start-time=<ISO-8601> --end-time=<ISO-8601> ` > starttime и endtime обязательны (ISO-8601, UTC+0). Фильтры: eventkey, actorid, actortype, entityid, entity_type`

Доступно только владельцу пространства.

Мониторинг подозрительных входов

  1. Получи события неудачных 2FA за период:

``bash pachca security list --start-time=<ISO-8601> --end-time=<ISO-8601> --event-key=user2fafail --all ``

  1. Повтори запрос с --event-key=user2fadisabled — отключение второго фактора у сотрудника:

``bash pachca security list --start-time=<ISO-8601> --end-time=<ISO-8601> --event-key=user2fadisabled --all ``

  1. Если найдены аномалии — отправь уведомление администратору:

``bash pachca messages create --entity-type=user --entity-id=<admin_id> --content="Обнаружены подозрительные входы" ``

Экспорт логов за период

  1. Получи все события за период с пагинацией:

``bash pachca security list --start-time=<ISO-8601> --end-time=<ISO-8601> --all ``

  1. Собери все события в массив → сохрани в файл или отправь во внешнюю систему

Available event_key values

Category Keys
Auth userlogin, userlogout, user2fafail, user2fasuccess
Employees usercreated, userdeleted, userrolechanged, user_updated
Tags tagcreated, tagdeleted, useraddedtotag, userremovedfromtag
Chats chatcreated, chatrenamed, chatpermissionchanged
Chat members userchatjoin, userchatleave, tagaddedtochat, tagremovedfromchat
Messages messagecreated, messageupdated, message_deleted
Reactions and threads reactioncreated, reactiondeleted, thread_created
Tokens accesstokencreated, accesstokenupdated, accesstokendestroy
Encryption kmsencrypt, kmsdecrypt
Security auditeventsaccessed, dlpviolationdetected
Search (API) searchusersapi, searchchatsapi, searchmessagesapi

Limitations

  • Rate limit: ~50 req/sec. On 429 — wait and retry.
  • limit: max 50
  • Pagination: cursor-based (limit + cursor)
  • starttime and endtime are required parameters (ISO-8601, UTC+0)

Endpoints

Method Path Description
GET /audit_events Журнал аудита событий

If unsure how to complete a task, read the corresponding file from references/.