← ClaudeAtlas

account-recovery-reviewlisted

Design or audit a secure, humane account-access recovery protocol for lost credentials, passkeys, MFA devices, recovery codes, email or phone access, social login, enterprise SSO, compromised accounts, locked users, ownership disputes, and support-assisted recovery. Use when the primary artifact is recovery eligibility, proof, risk, channel, state, authority, containment, communication, appeal, and post-recovery protection. Use enterprise-access-governance-review for tenant/admin role lifecycle and product-abuse-risk-review for cross-product abuse controls.
SylphxAI/skills · ★ 1 · Code & Development · score 74
Install: claude install-skill SylphxAI/skills
# Account Recovery Review Produce one **Account Recovery Protocol** that restores the rightful user while resisting account takeover, protecting other tenant members, and preserving a clear appeal and correction path. Recovery is an alternative authentication ceremony, not a weaker support exception. ## Atomic boundary Own entry, account-safe discovery, claimant/subject/tenant context, recovery eligibility, proportional proof, risk and cooling, channel orchestration, support or enterprise authority, session/credential containment, restoration, notifications, appeals, post-recovery hardening, audit, and operational evidence. Consume authentication/identity architecture, enterprise ownership, abuse controls, support operations, privacy rules, and incident response from their canonical owners. ## When not to use - Use `product-abuse-risk-review` or `enterprise-access-governance-review` when the primary artifact is cross-product abuse control or enterprise tenant/admin authority rather than recovery of one account's access. - Use `customer-support-operations`, `data-rights-operations-review`, or the owning identity/security engineering procedure for support-organization design, a data-rights case, general authentication architecture, or incident implementation. ## Resource routing - Read `references/recovery-state-and-proof.md` for every task. - Read `references/compromise-enterprise-and-operations.md` for suspected takeover, enterprise/SSO accounts, high-value roles, supp