agentsclimarketplace

Ping universal services

Skill pingidentity/agent-plugins/plugins/ping-identity/skills/ping-universal-services

Agent Plugins (Agent Skills and MCP bundles) that allow agents to understand and interact with Ping Identity products and services

Install
npx -y skills add pingidentity/agent-plugins --skill ping-universal-services

Assembled from the repository path, not quoted from the project. Check it against their README if it does not work.

One thing to look at

  • 2 stars2 stars. Stars are a popularity signal and not a quality one, but at this level it is likely that nobody has read this closely except its author, and you would be relying on your own review.

What its author says it does

Copied from the file, not written here

Use when configuring or invoking a Ping shared service at the policy or service level — PingOne Protect (risk scoring), PingOne Verify (KYC/identity proofing), PingOne MFA (device management, enrollment API), PingOne Credentials (verifiable credentials), PingOne IGA, PingOne Authorize (fine-grained authorization), or PingOne Privilege (PAM). This skill owns service node configuration inside DaVinci flows and AIC journeys.

SKILL.md

6.3 KB, as published. Nobody here has run it

ping-universal-services

Shared strategic services used across PingOne, PingOne Advanced Identity Cloud (AIC), and Ping Software Suite — invoked from flows rather than administered as standalone products. Covers PingOne Protect (risk), PingOne Verify (identity proofing / KYC), PingOne Credentials (verifiable credentials), PingOne IGA (governance), PingOne Authorize (fine-grained authorization), and cross-platform SSO.

What this skill does for you: Generates service and policy configuration and drives it through MCP tools where they exist; where a tool does not exist, it guides you through the docs with the policy fields, thresholds, and node-wiring constraints for each service. Both modes are available — it uses whichever the platform supports for the task.

Invocation

Invoke explicitly with /ping-universal-services or by saying "use ping-universal-services to...".

When to use this skill

  • "Add PingOne Protect risk evaluation to my login flow"
  • "Use PingOne Verify for KYC / identity proofing during registration"
  • "Configure PingOne MFA — device management, MFA policies, or MFA-as-a-service enrollment API"
  • "Issue or present a verifiable credential"
  • "Add IGA governance to my PingOne environment"
  • "Use PingOne Authorize for fine-grained authorization"
  • "Score risk with PingOne Protect and adapt the journey based on the signal"
  • "Cross-platform service selection — which shared service do I need?"

When NOT to use this skill

  • If the task is platform setup or admin: use ping-foundation.
  • If the task is flow / journey design (without a specific service invocation): use ping-orchestration.
  • If the user is just orienting or choosing a platform: use ping-quickstart.
  • If the task is integrating a Protect / Verify / Credentials SDK or library into app code: use ping-app-integration — SDK wiring is app integration, not service configuration.
  • If the user mentions "add security" or "prevent suspicious logins" without naming a specific service, ask a clarifying question — the task may be Protect (risk scoring) or just MFA (orchestration).
  • If the task is MFA node/connector wiring within a journey or flow (not MFA policy or device management): use ping-orchestration — that is flow design, not service configuration.
  • If the task is generic app / SDK integration without referencing a named Universal Service: use ping-app-integration.

Multi-skill use cases

A complete identity verification or risk-based flow typically spans:

LayerSkill
Platform setupping-foundation
Flow / journey designping-orchestration
Service invocation (Protect, Verify, etc.)ping-universal-services (this skill)
App integrationping-app-integration

End-to-end example — risk-gated identity proofing with Protect + Verify:

  1. Use ping-foundation to provision the PingOne environment and license both Protect and Verify.
  2. Use ping-orchestration to design the DaVinci flow or AIC journey (login nodes, branching logic).
  3. Use ping-universal-services (this skill) to configure the Protect connector/node, set the risk policy thresholds, wire the Verify connector/node, and handle VERIFIED / REQUIRES_REVIEW outcomes.
  4. Use ping-app-integration to embed the Protect JavaScript SDK in the user-facing application.

When Protect and Verify are configured here, hand off to ping-app-integration for SDK wiring and to ping-orchestration for any remaining flow-level branching.

Routing — Step 1: What are you trying to do?

TaskBranch
Evaluate risk or adapt flows based on risk signalsProtect branch
Identity proofing / document + liveness checkVerify branch
PingOne MFA — device enrollment API, MFA policy config, MFA-as-a-serviceMFA branch — see references/curated/choosing-the-right-service.md for MFA vs flow-level MFA routing
Issue or present verifiable credentialsCredentials branch
Governance, access reviews, provisioningIGA branch
Fine-grained authorization policiesAuthorize branch
Cross-application session management / token issuanceSSO branch
"Which service do I need?"Cross-service selection (curated overview)

Step 2: Load the curated reference

TaskCurated reference
Cross-service selection / orientationreferences/curated/universal-services-overview.md
Service selection decision (which service do I need?)references/curated/choosing-the-right-service.md
Invocation patterns (DaVinci, AIC, PingFederate)references/curated/service-invocation-patterns.md
Cross-platform usage constraints and service chainingreferences/curated/cross-platform-service-usage.md
Protect predictors, risk policies, Signals SDK setupreferences/curated/protect-configuration.md
Verify policy fields, verification types, transaction lifecyclereferences/curated/verify-configuration.md
PingOne MFA — region and service model (Workforce: native vs hybrid, available methods)references/curated/mfa-region-and-service-model.md
PingOne MFA policy config, device management, pairing keys, enrollment API, AMR codesreferences/curated/mfa-configuration.md

MCP execution

See references/runtime/mcp-preflight.md for MCP config and Cursor preflight steps.

Retrieval escalation

  1. Curated anchors (references/curated/) — load 1–3 max. Stop if sufficient.

Output discipline

Curated anchors provide accuracy context — they are not a substitute for the required output. If the task asks for a configuration file, code, JSON, or Markdown document, always produce that artifact. Do not return a prose summary that points at the anchor and stops.

Keep looking

Skills are one crate of 328,083. Ordering is by how many stacks a row turns up in, so the top of any crate is what has actually been picked rather than what has the most stars.