🌟 Vasilij’s Note
This week reinforced something I see with every client deploying skills: the technology works brilliantly. The governance doesn't. Anthropic made Skills open standard, Microsoft enabled Claude as default in Copilot today, and major consultancies deployed to 350,000 staff. But security researchers are documenting prompt injection, data exfiltration, and shadow AI sprawl across production deployments. The pattern is clear: we're automating before we calculate, shipping before we secure, and scaling before we govern. Skills aren't failing because the tech isn't ready—they're failing because firms skip the boring discipline that separates strategic automation from expensive chaos.
In Today's Edition:
This Week in Agents | What Changed
Agent Skills becomes open standard – Anthropic published specification under agentskills.io following MCP playbook → Cross-platform portability reduces vendor lock-in, but requires organisations to govern portfolio rather than single-vendor deployment. Anthropic
Enterprise deployments accelerate – Microsoft enables Claude as default Copilot subprocessor, Cognizant deploys to 350,000 associates, Accenture launches 30,000-person Claude Business Group → Validation that skills-based AI ready for regulated enterprise scale, and direct competitive pressure for mid-market consultancies still in pilot phase. Microsoft
Security reality check surfaces – Prompt injection, data exfiltration via HTTP requests, shadow AI discovery documented across production skills deployments → Anthropic threat intelligence (August 2025) reported large-scale extortion operation weaponising Claude Code. Governance can't be afterthought. Anthropic
Top Moves - Signal → Impact
Agent Skills specification released as open standard
Anthropic published Agent Skills spec under agentskills.io, following same playbook that made MCP industry standard. Enables skills to work across Claude, ChatGPT, Cursor, and other platforms adopting specification.
→ Reduces vendor lock-in risk for organisations building workflows into AI systems. Pre-built connectors from Atlassian (Jira triage, spec-to-backlog conversion), Canva, Cloudflare, Figma, Notion, Ramp, and Sentry now available in directory. But also requires organisations to govern portfolio across multiple platforms rather than single-vendor control. AiBusiness
Major consultancies make enterprise-scale commitments
Cognizant deploying Claude to 350,000 associates across delivery teams with Claude Code for DevOps workflows. Accenture training 30,000 professionals and launching dedicated Claude Centre of Excellence. Both forming business groups specifically around Claude deployment. Cognizant
→ Direct validation that skills-based AI ready for regulated enterprise deployment at scale. Also creates competitive pressure for mid-market consultancies (50-250 staff) still in pilot phase whilst larger firms operationalise at scale. TELUS deployed to 57,000 employees via internal Fuel iX platform. IG Group hit full ROI in three months.
Microsoft enables Claude as default in Copilot
Anthropic now operates as Microsoft subprocessor under Product Terms and Data Protection Addendum. EU/EFTA/UK tenants have Claude disabled by default due to data residency constraints where Anthropic processing excluded from EU Data Boundary.
→ Enterprises must verify data governance posture before deadline. Claude becomes embedded in Microsoft 365 ecosystem whether organisations planned for it or not. For EU/EFTA/UK organisations using Microsoft Copilot, verify data residency constraints immediately. Microsoft
Upskilling Spotlight | Learn This Week
Anthropic Agent Skills Engineering Blog
Technical deep-dive on progressive disclosure architecture: why Claude loads only metadata until triggered, when to use deterministic code vs token generation, how to compose multiple skills. Real architecture powering production deployments. Anthropic
Skills Security Threat Model (Skywork)
Field-tested practices for prompt injection defence, tool abuse prevention, data governance boundaries, continuous monitoring patterns. Written by practitioners running skills in production, not theoretical security. Skywork
Maker Note | What I built this week
This week I audited five client-created skills against security baselines.
Decision: three passed, two required prompt isolation and access controls before production use. Skills work brilliantly when scoped correctly, but governance can't be afterthought.
Your best consultants write brilliant proposals with a 3-week win rate—then they go on holiday, and quality drops. Claude Skills fix this by making your best workflows portable and reusable across your entire team.
Operator’s Picks | Tools To Try
Agent Skills Repository (anthropics/skills)
Pre-built document skills (docx, pptx, xlsx, pdf) plus examples spanning creative, technical, and enterprise workflows. Use to understand skill structure before building custom. Production-tested and cover 80% of consulting deliverables.
Standout: These are the actual skills powering Claude's document creation, not toy examples. GitHub
Claude Skills Cookbook
Structured examples and development patterns for building custom skills. Progressive disclosure architecture, when to use code vs prompts, composition patterns.
Caveat: Requires Code Execution tool beta and careful security review before production. Claude
Deep Dive | Thesis & Playbook
Skills launched October 2025, went open standard December. The capability works—IG Group hit ROI in 3 months using Claude Skills for analytics workflows.
But the same pattern keeps repeating: organisations deploy at scale without the governance infrastructure. Skills aren't failing because the tech isn't ready. They're failing because firms skip the discipline that separates strategic automation from expensive chaos.
On Paper
Skills are folders with instructions and code that Claude loads only when relevant to the task. Progressive disclosure means Claude sees just skill names until triggered, then loads full details. This enables unlimited specialist knowledge without consuming context upfront.
Open standard (agentskills.io) released December 2025. Build once, works across Claude, ChatGPT, Cursor, and other platforms adopting the spec. Pre-built skills from Anthropic handle documents (Excel, PowerPoint, Word, PDF). Partner skills from Atlassian, Canva, Figma, Notion now available.
Enterprise admins control which skills are provisioned organisation-wide via Team/Enterprise plans. API supports up to 8 skills per request with versioning.
In Practice
Scale achieved: Cognizant deployed Skills to 350,000 staff. Accenture training 30,000. TELUS deployed to 57,000 via internal platform. IG Group's analytics teams save 70 hours weekly using Skills-powered workflows, hitting full ROI within 3 months.
Market adoption accelerated: Claude captured 32% enterprise market share (up from 12% in 2023) and 42% of enterprise coding workloads—more than double OpenAI's 21%.
Governance didn't scale: Security researchers documented prompt injection attacks in production Skills deployments. Anthropic's August 2025 threat intelligence found large-scale extortion operation weaponising Claude Code. Teams creating and sharing skills without central visibility or approval workflows—classic shadow IT.
The gap: 74% of deployments achieve ROI within first year, but only 10% scale past proof-of-concept (McKinsey, Deloitte, Google Cloud Q4 research). That 64-point gap isn't technology—it's governance discipline.
Setup reality: 5-15 hours before value delivered, 2-4 hours monthly maintenance, 2-4 weeks adoption friction, edge cases need manual intervention 10-20% initially. 49% of practitioners cite data governance as top concern, yet many deploy anyway.
Issues / Backlash
Prompt injection: Malicious instructions hidden in files can trick Skills into running untrusted code or exfiltrating data. Anthropic's own documentation warns about this risk.
Data governance complexity: Skills inherit user permissions. Loose folder structures expose everything when someone uploads a bundle. Shadow AI proliferation—teams deploying skills outside approved governance, creating application sprawl.
Microsoft Copilot integration: Claude now operates as Microsoft subprocessor. EU/EFTA/UK organisations face data residency constraints where Anthropic processing excluded from EU Data Boundary.
Malicious skills risk: Untrusted skills can execute code that doesn't match stated purpose. Anthropic recommends using only trusted sources, but enforcement is on the user.
My Take (What to do)
Startup: Skills ready for production if you scope correctly. Start with one high-frequency workflow that partners currently do manually 10+ times weekly: proposal assembly, client reporting, status updates. Use Anthropic's pre-built document skills (docx, pptx, xlsx, pdf) before building custom. They're production-tested, maintained by vendor ecosystems, and cover 80% of consulting deliverables. Don't build custom until pre-built ones prove value.
Calculate ROI including setup time: (weekly time saved × 52 weeks × partner hourly rate) - (setup hours × hourly rate + annual subscription + 10% maintenance contingency). Only proceed if payback under 6 months. If calculation shows negative ROI or payback over 6 months, workflow isn't ready.
Governance at this stage is simple: partner approval for any skill touching client data, audit logs enabled in Claude settings, centralised skill registry (Notion page sufficient). Document which skills deployed, who approved, what data they access. Focus on workflows that happen 10+ times weekly and consume 30+ minutes each time. Calculate annual baseline cost. If exceeds £5,000 annually and process follows consistent steps, viable skills candidate.
SMB: You need basic governance infrastructure now, before skill sprawl becomes compliance nightmare. Informal processes breaking down, inconsistent delivery across teams, visibility gaps. Challenge isn't capacity—it's standardisation. Appoint one delivery lead as "skills owner" managing portfolio. Not additional role—make it explicit part of existing ops team member's responsibilities.
Establish approval workflow before deploying additional skills: new skills require business case with ROI calculation (use startup formula above), security review covering prompt injection risks and data access patterns, 4-week pilot with actual usage tracking before org-wide deployment. Use Microsoft's Claude integration (if in 365 ecosystem) or Claude API with skills versioned via /v1/skills endpoint. Both provide audit trails and access controls missing from ad-hoc skill sharing via files.
Focus skills on vertical use cases with measurable impact: proposal generation protecting partner time, client reporting ensuring delivery consistency, handoff workflows reducing rework. Not horizontal tools spreading value thinly. Track actual time savings monthly. If skill doesn't deliver promised ROI after 8 weeks, retire it. Goal is portfolio discipline, not skill accumulation.
Document three high-volume workflows accurately over 2 weeks real usage. Time them. Calculate ROI including maintenance. Pilot one automation, measure actual savings for 4 weeks before expanding.
Create basic governance: centralised approval for new skills, audit logs, rollback procedures. Assign ops team member as agent owner managing portfolio.
Enterprise: You're competing with consultancies deploying Claude to 30,000-350,000 staff. Cognizant, Accenture, TELUS proving enterprise-scale deployment works. This requires enterprise-grade governance without enterprise complexity. Run formal business case with finance team approval for skills programme. Include change management costs: training, documentation, support. Require 12-month payback minimum.
Establish governance framework before deploying:
Approval workflows: new skills require IT/security sign-off
Data classification policies: explicit rules on what data skills can access
Least-privilege permissions: skills get minimum necessary access, not blanket permissions
Audit trails: log every skill invocation with user, timestamp, data accessed
Rollback procedures: tested quarterly, documented recovery paths
Use organisation-wide skills management (available Team/Enterprise plans) to provision and enable skills centrally. Don't allow team-level skill deployment without central registry. Build "skills mesh" architecture where skills can be swapped without rebuilding entire workflows. Agent Skills open standard helps here—prevents vendor lock-in.
Conduct security reviews before production: prompt injection testing, tool confusion scenarios, data exfiltration attempts. Use security review framework treating skills like software components.
If you're in EU/EFTA/UK and using Microsoft Copilot: verify data residency constraints immediately regarding today's change (Jan 7). Claude now operates as Microsoft subprocessor but processing excluded from EU Data Boundary. Administrators must explicitly opt in if want Claude available.
For regulated industries (financial services, healthcare): require skills to pass compliance review before production deployment. Document which regulations apply, how skills maintain compliance, what audit trails exist.
Focus on vertical use cases protecting margin: proposal automation preserving partner capacity, delivery analytics surfacing utilisation risks early, client reporting maintaining quality whilst reducing cycle time. Not horizontal tools like Copilot that spread value thinly without visible margin impact.
Establish monitoring: track adoption rates, time savings (actual vs projected), security incidents, policy violations. Monthly governance review adjusting portfolio based on evidence.
How to Try (15-minute path)
Enable and test – If you're Max/Team/Enterprise user, enable "Upgraded file creation and analysis" in Claude experimental settings. Ask Claude to create sample Excel spreadsheet with formulas calculating project costs and PowerPoint presenting your firm's service areas. Observe how skills work automatically when relevant to task. Pay attention to what Claude loaded (visible in UI) and when. (5 min)
Examine structure – Visit Anthropic's skills GitHub repo (github.com/anthropics/skills). Open one pre-built skill folder (docx, pptx, xlsx, or pdf). Read the SKILL.md file structure: YAML frontmatter with name/description, followed by detailed instructions, optional code samples. Note progressive disclosure pattern: minimal metadata for discovery, full instructions when triggered. (5 min)
Calculate opportunity – Identify one repetitive workflow in your delivery process: proposal assembly, client reporting, status updates, team handoffs. Document in Google Doc: what triggers workflow, what steps involved, what outputs created, how long takes currently, how often happens weekly. Calculate: (current time × weekly frequency × 52 weeks × your hourly cost) = annual baseline cost. If exceeds £5,000 annually and process follows consistent steps, you have viable skills candidate. If below £5,000 or highly variable workflow, not ready. (5 min)
Success metric – Clear yes/no decision on whether skills justify investment for your priority workflow, based on actual cost data not theoretical efficiency gains. If yes: documented business case ready for approval. If no: documented reason why this workflow doesn't meet threshold, preventing wasted pilot effort.
Spotlight Tool | Claude Skills
Package domain expertise and organisational knowledge into composable, portable capabilities that Claude loads dynamically when relevant to task at hand. Transform general-purpose agents into specialists without consuming context upfront.
→ Open standard for cross-platform portability
→ Production skills from partners (Atlassian workflows, Canva, Cloudflare, Figma, Notion)
→ Enterprise management with org-wide provisioning and default controls
→ Code execution for deterministic reliability beyond LLM token generation
→ API versioning via /v1/skills endpoint (up to 8 skills per request)
What did you think of today's email?
Sponsored - Partner
n8n – An open‑source automation platform that lets you chain tools like DeepSeek, OpenAI, Gemini and your existing SaaS into real business workflows without paying per step. Ideal as the backbone for your first serious AI automations. Try: n8n
Did you find it useful? Or have questions? Please drop me a note. I respond to all emails. Simply reply to the newsletter or write to [email protected]

