aibot88
- 8.3k skills
- 0 followers
- 3 repo stars
- 2 weeks ago last updated
- ▌ Privacy Policy Malik Taiar · aibot88 bundleGuide for drafting privacy policies compliant with GDPR. Includes CNIL 2020 recommendations, a reference template, and best practices. Use when drafting or revising a privacy policy for a website or application.
- ▌ Postgres Replication And Ha Readiness · aibot88 bundleUse when designing, reviewing, or hardening PostgreSQL replication and high-availability posture against stated reliability targets. Produces streaming and logical replication topology, synchronous vs asynchronous trade-off decisions, replica lag monitoring and thresholds, automated failover behavior (Patroni, repmgr, or managed Multi-AZ), read-replica routing strategy, split-brain prevention, and multi-region posture. Do not use for schema design, query optimization, backup and restore procedures, or access-control hardening; use postgres-schema-and-migration, postgres-indexing-and-query-optimization, postgres-backup-and-operational-readiness, or postgres-security-and-data-access-hardening instead.
- ▌ React Design System And Accessibility · aibot88 bundleUse when integrating, reviewing, or hardening the design system and accessibility posture of a React app after the app scaffold exists and frontend architecture has defined the design-system seam and a11y target. Produces design-token wiring (CSS variables / Tailwind theme / vanilla-extract), primitive composition over an accessible headless library (Radix / React Aria / Headless UI), theming and dark-mode strategy, WCAG 2.2 AA conformance posture, keyboard-navigation and focus-management discipline, ARIA usage rules, screen-reader testing, and the internationalization seam. This is the React archetype meta-frameworks (e.g. nextjs) inherit rather than re-author. Do not use for app scaffolding, routing, state or data-fetching, or performance budgeting; use the other react archetype skills instead.
- ▌ Stripe Webhook Signature Verification · aibot88 bundleUse when validating incoming Stripe webhook requests in a Node.js or Next.js backend before processing any payment event. Verifies the `stripe-signature` header against `STRIPE_WEBHOOK_SECRET` using Stripe's HMAC-SHA256 scheme, and rejects replays older than 300 seconds. Do NOT use for general HTTP signature validation (use a generic crypto-signature skill), for processing the webhook payload after signature is confirmed (use payment-provider-router), or for Stripe API calls that are not webhook-driven.
- ▌ Terraform State And Secret Management · aibot88 bundleUse when designing, reviewing, or hardening Terraform remote state and secret handling after the repo/module scaffold exists and security and infrastructure-platform have decided the state-isolation and secret posture. Produces remote state backend selection (S3+DynamoDB / GCS / Azure Storage / Terraform Cloud), state encryption at rest, state locking, workspace-vs-directory state isolation strategy, sensitive-output discipline, secret references to a secret manager instead of plaintext, and a no-committed-secrets posture. Do not use for repo/module layout, plan/policy gates, apply and promotion mechanics, or module registry/supply chain; use the other terraform archetype skills instead.
- ▌ Top 100 Web Vulnerabilities Reference · aibot88 bundleThis skill should be used when the user asks to "identify web application vulnerabilities", "explain common security flaws", "understand vulnerability categories", "learn about injection attacks", "review access control weaknesses", "analyze API security issues", "assess security misconfigurations", "understand client-side vulnerabilities", "examine mobile and IoT security flaws", or "reference the OWASP-aligned vulnerability taxonomy". Use this skill to provide comprehensive vulnerability definitions, root causes, impacts, and mitigation strategies across all major web security categories.
- ▌ When A Negotiation Opens With A Punch · aibot88 bundleUse when the user is facing, or about to face, a negotiation where the counterparty's first move is shock-and-awe — a maximalist demand, a public ultimatum, a surprise threat, or a legal/media ambush — rather than the trust-building opening most negotiation training assumes. Triggers on phrases like "they opened with an outrageous demand", "I'm being ambushed in a negotiation", "the other side is using lawsuits as pressure", "they just declared a deal that doesn't exist", "they keep threatening and backing down", "how do I not concede in the first 60 seconds", "I'm going into a meeting with a bully counterparty". Do not use for: good-faith negotiations where aggressive opening positions are normal bargaining theater, litigation strategy (use a lawyer), or interpersonal conflicts without a real transaction at stake.
- ▌ Frontend Vanilla Admin · aibot88 bundleVanilla HTML/CSS/JS admin interface development for Fleet Management. Use for creating dashboard, CRUD tables, forms, modals, and E2E tests without frameworks.
- ▌ Nangnoy Persona · aibot88 bundleNangnoy - Goal-based AI Agent persona and behavioral guidelines. Defines identity, speech patterns, and role as AI Digital Forensics Analyst daughter-assistant.
- ▌ Sast Fix · aibot88 bundleAnalyze and fix a SAST finding — root cause, exploitability, and secure code alternative.
- ▌ Alibabacloud Bailian RAG Knowledgebase · aibot88 bundleAlibaba Cloud Bailian Knowledge Base Retrieval Tool. Use Alibaba Cloud Bailian SDK to query and retrieve knowledge base content. Use when: User needs to query knowledge base, retrieve document content, or answer questions based on knowledge base. Prerequisites: (1) Install npm packages (2) Configure Alibaba Cloud credentials (via Alibaba Cloud CLI or environment variables). (3) Need to activate Bailian service.
- ▌ API Design · aibot88 bundleREST and GraphQL API design patterns. Covers endpoint structure, versioning, authentication, error handling, rate limiting, and OpenAPI documentation.
- ▌ Create Or Update Onboarding File · aibot88 bundleCreate and maintain onboarding artifacts including file-level onboarding MDs and repo-level entity catalogs. Covers template, folder organization, section conventions, and metadata. Enforces strict 1-to-1 mapping for source files and one entity catalog per repo. Use this whenever creating new onboarding files, repo entity catalogs, or auditing existing onboarding artifacts for format compliance.
- ▌ Code Quality · aibot88 bundleCode quality improvement: review, refactoring, debugging. Phases: review feedback, systematic refactoring, root cause debugging, verification. Capabilities: SOLID/DRY compliance, code smell detection, complexity reduction, bug investigation, verification gates. Actions: review, refactor, debug, verify, validate code. Keywords: code review, refactor, debug, SOLID, DRY, code smell, bug fix, root cause, verification, technical debt, extract method, test failure, completion claim. Use when: reviewing code changes, improving code quality, fixing bugs, reducing technical debt, validating before merge/commit.
- ▌ Database Migrations · aibot88 bundleSQLite database migration patterns for SpecFlux. Use when creating new tables, modifying schema, adding indexes, or running migrations. Ensures reversible migrations with UP and DOWN sections.
- ▌ Designing Privacy Preserving Analytics · aibot88 bundleDesign privacy-preserving analytics systems using differential privacy, k-anonymity, l-diversity, and t-closeness. Covers privacy budget allocation with epsilon tracking, references Google DP library, OpenDP, and Apple PPML. Includes Python differential privacy implementation for GDPR-compliant statistical analysis.
- ▌ Dotnet Testing Advanced Tunit Advanced · aibot88 bundleTUnit 進階應用完整指南 - 資料驅動測試、依賴注入與整合測試實戰。涵蓋 MethodDataSource、ClassDataSource、Matrix Tests、Properties 過濾。包含 Retry/Timeout 控制、WebApplicationFactory 整合、Testcontainers 多服務編排。 Keywords: TUnit advanced, TUnit 進階, MethodDataSource, ClassDataSource, Matrix Tests, MatrixDataSource, MicrosoftDependencyInjectionDataSource, Property, Retry, Timeout, 資料驅動測試, 測試過濾, WebApplicationFactory TUnit, 多容器編排
- ▌ Field Level Security In Async Contexts · aibot88 bundleUse when async Apex (Queueable, Batch, Schedulable, @future) needs to honor the originating user's field-level security but the framework runs the job in a different security context than the user who initiated it. Triggers: 'fls bypassed in batch apex', 'queueable runs as wrong user', 'stripInaccessible in async returns full record', 'WITH USER_MODE evaluating against system user', 'scheduled apex sees fields the original user could not'. NOT for synchronous FLS enforcement (use apex-stripinaccessible-and-fls-enforcement) or for the with/without sharing decision (use apex-with-without-sharing-decision).
- ▌ Handling Strategic Insults And Mockery · aibot88 bundleUse when you, your group, or someone you advise is being attacked with calculated personal insult, mockery, nickname-branding, or ridicule — not as a loss of temper by the attacker, but as a calibrated political or media tactic. Helps the user recognize the insult playbook and respond in a way that doesn't legitimize it, mirror it, or walk into its trap. Triggers on phrases like "they've given me a nickname that keeps sticking", "I'm being mocked publicly and I don't know how to respond", "the attacks are cruel but also effective", "my allies keep saying 'just ignore it' but it's working on the audience", "they made a joke at my expense and now it's a meme", "how do I fight mockery without looking humorless". Do not use for: legitimate policy critique expressed sharply, comedy at the user's expense without a strategic frame, or ordinary workplace rudeness without public stakes.
- ▌ Nvidia Triton Inference Serving Review · aibot88 bundleUse this skill when reviewing Triton Inference Server deployments statically — `model_repository/` layout and `config.pbtxt` files, dynamic batching configuration, ensemble and BLS pipelines, custom backend (Python, C++, ONNX, OpenVINO, vLLM) trust posture, gRPC and HTTP endpoint authentication, response cache configuration, rate-limit and metrics exposure. Trigger when the user asks whether a Triton model repository or `tritonserver` invocation follows NVIDIA's published guidance and security expectations.
- ▌ Attack Tree Construction · aibot88 bundleBuild comprehensive attack trees to visualize threat paths. Use when mapping attack scenarios, identifying defense gaps, or communicating security risks to stakeholders.
- ▌ 403 Frameworks Quarkus Validation · aibot88 bundleUse when you need to design, review, or improve validation in Quarkus applications — including Bean Validation on JAX-RS resources, @Valid on parameters and CDI beans, constraint groups, @ConfigMapping validation, custom constraints, nested DTO validation, and ExceptionMapper-based error mapping. This should trigger for requests such as Add validation support in Quarkus; Review Quarkus validation rules; Improve request validation in Quarkus REST APIs; Add custom validation constraints in Quarkus; Validate Quarkus @ConfigMapping properties. Part of cursor-rules-java project
- ▌ 504 Frameworks Micronaut Security · aibot88 bundleUse when you need to design, review, or improve security in Micronaut applications — including micronaut-security authentication, @Secured and intercept-url-map rules, JWT/session strategies, SecurityService checks, CORS, CSRF awareness for browser apps, rejection handlers, and sensitive-data-safe logging. This should trigger for requests such as Add Micronaut security support; Review Micronaut security configuration; Improve API authorization in Micronaut; Add JWT security in Micronaut; Harden Micronaut route authorization rules. Part of cursor-rules-java project
- ▌ Accessibility Compliance Auditing · aibot88 bundleEvaluate learning materials and technology for WCAG, Section 508, and accessibility compliance with remediation recommendations
- ▌ Ag Referencia Design Presentation · aibot88 bundleTaxonomia de 86 layouts de apresentação/marketing (hero, pricing, auth, nav, CTA, testimonials, footer, FAQ, onboarding, blog, contact, stats, bento, states) adaptada do VibeUI. Consultar ANTES de construir landing pages, onboarding flows, auth screens, ou qualquer UI de camada de apresentação. Complementa o design-library/solutions (que cobre módulos verticais de produto).
- ▌ Agentfield Multi Reasoner Builder · aibot88 bundleArchitect and ship a complete multi-agent backend system on AgentField from a one-line user request. Use when the user asks to build, scaffold, design, or ship an agent system, multi-agent pipeline, reasoner network, AgentField project, financial reviewer, research agent, compliance agent, or any LLM composition that should outperform LangChain/CrewAI/AutoGen — especially when they want a runnable Docker-compose stack and a working curl smoke test.
- ▌ Agentprivacy Boundary Enforcement · aibot88 bundleReal-time access control decision engine for 0xagentprivacy swordsman agents. Activates when evaluating incoming data requests against consent preferences, designing allow/block/transform rule sets, implementing the swordsman's moment-to-moment operational logic, or building the enforcement layer that turns consent declarations into cryptographic actions. Triggers: "boundary", "access decision", "allow block", "consent enforcement", "data request evaluation", "rules engine", "policy enforcement", "request filtering", "permission check".
- ▌ Agentprivacy Constellation Method · aibot88 bundleConstellation identity method for 0xagentprivacy. Activates when discussing identity-as-constellation (different facets visible to different relationships), VRC constellation graphs, multi-guild identity resolution, or how privacy enables richer identity expression than surveillance-based profiles.
- ▌ Agentprivacy Dihedral Sovereignty · aibot88 bundleDihedral group foundation for dual-agent separation. Activates when discussing the D₂ₙ group structure, Swordsman as negation generator, Mage as complement generator, Φ_agent as determinant, the critical identity neg∘bnot=succ, or the algebraic foundation of the swordsman-mage separation.
- ▌ Agentprivacy Hexagram Convergence · aibot88 bundleI Ching mapping for blade configurations in the spellweb forge. Activates when discussing hexagram encoding, binary threshold mapping, 64 hexagrams as sovereignty classification, Pascal's row tier strata, or ancient/modern convergence.
- ▌ Agentprivacy Revocation Mechanics · aibot88 bundleConsent withdrawal, key revocation, credential invalidation, and data deletion enforcement for 0xagentprivacy swordsman operations. Activates when designing how to undo a previous delegation, implementing right-to- be-forgotten enforcement, building credential revocation infrastructure, or managing the lifecycle end of any trust relationship or authorisation. Triggers: "revoke", "revocation", "withdraw consent", "delete data", "right to be forgotten", "nullifier", "credential invalidation", "undo delegation", "consent expiry", "relationship termination".
- ▌ Agentprivacy Selective Disclosure · aibot88 bundleSelective disclosure and Privacy Pool mechanics for 0xagentprivacy. Activates when discussing R(d) minimum disclosure, stratum-weighted anonymity, pool entry/exit, disclosure set calculation, or how to prove properties without revealing underlying data.
- ▌ Agentprivacy Understanding As Key · aibot88 bundleUnderstanding-as-authentication for 0xagentprivacy RPP. Activates when discussing proverb-based access control, demonstrated comprehension as credential, the Oracle verification pipeline, viewing key / signing key separation in knowledge verification, or how understanding replaces passwords.
- ▌ Agentuity CLI Cloud Apikey Create · aibot88 bundleCreate a new API key. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Apikey Delete · aibot88 bundleDelete an API key (soft delete). Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Eval Run List · aibot88 bundleList eval runs. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Sandbox Files · aibot88 bundleList files in a sandbox directory. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Sandbox Mkdir · aibot88 bundleCreate a directory in a sandbox. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Sandbox Rmdir · aibot88 bundleRemove a directory from a sandbox. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Secret Delete · aibot88 bundleDelete a secret. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Secret Import · aibot88 bundleImport secrets from a file to cloud and local .env. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Stream Delete · aibot88 bundleDelete a stream by ID (soft delete). Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Vector Delete · aibot88 bundleDelete one or more vectors by key. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Vector Search · aibot88 bundleSearch for vectors using semantic similarity. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Vector Upsert · aibot88 bundleAdd or update vectors in the vector storage. Requires authentication. Use for Agentuity cloud platform operations
- ▌ AI Governance And Responsible Use · aibot88 bundleGuides marketers on how to adopt AI tools responsibly, govern their use, and build organizational capability — trigger when a user asks about AI rollout strategy, team enablement, data privacy, ethical use, or building an AI-ready culture.
- ▌ Alibaba Actiontrail Audit Analyst · aibot88 bundleQuery Alibaba Cloud ActionTrail management API call history, build governance audit reports, create SLS-based compliance evidence trails, and detect anomalous admin activity patterns.
- ▌ Alibaba Security Center Hardening · aibot88 bundleHarden Alibaba Cloud security posture via Security Center (threat detection, vulnerability scanning, baseline checks), WAF, Anti-DDoS Pro, Cloud Firewall, and Network Traffic Analysis (NTA).
- ▌ Alibabacloud Polardb AI Assistant · aibot88 bundleAlibaba Cloud PolarDB Database AI Assistant. For PolarDB MySQL/PostgreSQL cluster management, performance diagnostics, parameter tuning, slow SQL analysis, backup recovery, connection session analysis, primary-standby switchover diagnostics, security configuration audit, and other O&M operations. Use when user questions involve PolarDB, cluster IDs starting with pc-, kernel parameters, primary-standby switchover, IMCI columnar storage, etc.
- ▌ Apex Callout Retry And Resilience · aibot88 bundleStrategy layer for resilient Apex HTTP callouts: bounded retry with backoff, queueable async retry chains, circuit-breaker via Platform Cache, idempotency keys, dead-letter pattern. NOT for callout authentication — see apex-named-credentials-patterns. NOT for transaction-boundary rules — see callout-and-dml-transaction-boundaries. NOT a re-write of the HttpClient template — this is the policy and orchestration layer that calls it.
- ▌ API Gateway Yarp Gateway Designer · aibot88 bundleConception d'API Gateway avec YARP (Yet Another Reverse Proxy) en .NET — routing, load balancing, rate limiting, transformations et authentification. À utiliser quand l'utilisateur implémente un reverse proxy ou une gateway API avec YARP en .NET. Se déclenche aussi avec "YARP", "reverse proxy .NET", "API gateway .NET", "YARP routing", "proxy .NET", "load balancer .NET".
- ▌ Auditing Intelligence Context Fit · aibot88 bundleAudits the fit between a model's reasoning capability and the complexity of the context it receives. Use when an AI system is underperforming despite good retrieval, when teams are unsure whether to upgrade their model or improve their context pipeline, or when diagnosing the "long context and weak reasoning equals harmful output" pattern in production agent systems.
- ▌ AWS Dr And Multi Region Readiness · aibot88 bundleUse when designing and rehearsing AWS disaster-recovery and multi-region posture for a workload after the runtime and observability exist and reliability and operations have decided RPO/RTO targets and failover ownership. Produces multi-AZ baseline, tier-driven multi-region topology (active-passive / active-active), cross-region data replication (RDS replicas, S3 CRR, DynamoDB Global Tables), Route 53 health-check failover, AWS Backup posture, and a documented, rehearsed failover drill with measured RPO/RTO. Do not use for org/account topology, network/identity foundation, single-region workload runtime, observability/cost wiring, or Terraform module/state mechanics; use the other aws (or Family H) skills.
- ▌ AWS Ecs Fargate Platform Operator · aibot88 bundleReview Amazon ECS and Fargate platform operations across services, task definitions, task roles, execution roles, capacity providers, load balancers, deployment circuit breakers, blue/green, autoscaling, health checks, logs, secrets, networking, and rollback. Use only for ECS/Fargate; prefer EKS operator for Kubernetes.
- ▌ AWS Kms Secrets Lifecycle Steward · aibot88 bundleReview AWS KMS and Secrets Manager lifecycle posture across key policies, grants, rotation, multi-Region keys, imported key material, aliases, secret rotation, replication, caching, endpoint conditions, recovery, and break-glass access. Prefer this for cryptography/secret lifecycle; prefer IAM skill for general permissions review.
- ▌ Bosskuai Agent Security Hardening · aibot88 bundleUse this for securing AI-agent workspaces themselves, including instruction files, MCP setups, memory, external content, prompt-injection surfaces, and least-privilege configuration.
- ▌ Bosskuai Prompt Injection Defense · aibot88 bundleUse this for prompt injection, tool abuse, memory poisoning, untrusted document handling, agent permissions, and AI workspace security.
- ▌ Building MCP Server On Cloudflare · aibot88 bundleBuilds remote MCP (Model Context Protocol) servers on Cloudflare Workers with tools, OAuth authentication, and production deployment. Generates server code, configures auth providers, and deploys to Workers. Use when: user wants to "build MCP server", "create MCP tools", "remote MCP", "deploy MCP", add "OAuth to MCP", or mentions Model Context Protocol on Cloudflare. Also triggers on "MCP authentication" or "MCP deployment".
- ▌ Callout Limits And Async Patterns · aibot88 bundleUse when designing or troubleshooting Apex callouts that approach governor limits: choosing between synchronous callouts, @future, Queueable, Continuation, or async chaining strategies. NOT for HTTP request construction or Named Credential setup (use named-credentials-setup).
- ▌ Cloudflare Full Stack Integration · aibot88 bundleProduction-tested integration patterns for connecting React frontends to Cloudflare Worker backends with Hono, Clerk authentication, and D1 databases. Prevents common frontend-backend connection issues, CORS errors, auth token failures, and race conditions. Use when: connecting frontend to backend, implementing auth flow, setting up API calls, troubleshooting CORS, fixing race conditions, auth tokens not passing, frontend-backend connection errors, 401 errors, integrating Clerk with Workers, setting up full-stack Cloudflare app, vite cloudflare plugin setup. Prevents: CORS errors, 401 Unauthorized, auth token mismatches, race conditions with auth loading, environment variable confusion, frontend calling wrong endpoints, JWT verification errors, D1 connection issues. Keywords: frontend backend integration, Cloudflare Workers, Hono, Clerk auth, JWT verification, CORS, React API client, race conditions, auth loading, connection issues, full-stack integration, vite plugin, @cloudflare/vite-plugin, D1 database, en
- ▌ Cometchat Angular Troubleshooting · aibot88 bundleDiagnose CometChat Angular UI Kit v4 integration failures — init/login, CUSTOM_ELEMENTS_SCHEMA, assets config, module imports, height/layout issues, Angular Universal SSR, v3-to-v4 upgrade, and production auth errors.
- ▌ Connecting Streamlit To Snowflake · aibot88 bundleConnecting Streamlit apps to Snowflake. Use when setting up database connections, managing secrets, or querying Snowflake from a Streamlit app.
- ▌ Crm Analytics Security Predicates · aibot88 bundleRow-level security in CRM Analytics datasets via security predicates — SAQL filter expressions stored on the dataset that apply at query time per running user. Covers the syntax (`'DatasetColumn' operator value`), the `$User.*` context variables, multi-level predicates (role hierarchy + team + region), the performance cost of complex predicates, and the testing discipline (admins bypass predicates by default). NOT for Salesforce Core sharing rules (different runtime), NOT for App / Dashboard / Lens-level access (that's CRM Analytics App sharing, not predicates), NOT for field-level masking inside a dataset (use Encryption + dataset transformations).
- ▌ Description Frontmatter Authoring · aibot88 bundleCreate or revise Markdown `description` frontmatter so `docgarden match` routes agents to the right repository documents. Use when adding a new routed Markdown document, updating existing frontmatter, fixing noisy or missing match results, tuning skills or docs discovery, or making descriptions more query-aligned without loading document bodies.
- ▌ Docs Creating Accessible Diagrams · aibot88 bundleWCAG-compliant Mermaid diagrams using verified accessible color palette. Use when creating diagrams, flowcharts, or any color-dependent visualizations requiring accessibility compliance for color blindness.
- ▌ Dokumentationspflichten Protokoll · aibot88 bundleBeweissichere Protokollierung von KI-Inputs und KI-Outputs in Kanzleien: Pruefprotokoll, Versionsstand, Pruefer und Freigabe sowie Aufbewahrungsfristen für die Compliance-Dokumentation.
- ▌ Executing AI Development Workflow · aibot88 bundleExecute a comprehensive AI-driven development workflow with planning, implementation, multi-layer review (Sub-agents + /review + CodeRabbit CLI), automated fixes, and PR creation. Use when implementing new features, performing large refactorings, developing security-critical features, or when the user mentions "AI開発ワークフロー", "AI development workflow", or "計画的に実装".
- ▌ Falco Runtime Threat Rules Review · aibot88 bundleUse this skill when reviewing Falco rules files, falco.yaml configuration, or runtime security posture for a Kubernetes workload. Trigger when a user provides Falco rules YAML, asks whether their Falco setup covers a specific threat, questions rule exception scope, or wants to validate that Falco alert output reaches their SIEM or incident response pipeline.
- ▌ Fastapi Microservices Development · aibot88 bundleComprehensive guide for building production-ready microservices with FastAPI including REST API patterns, async operations, dependency injection, and deployment strategies
- ▌ Fiber Routing And Csrf Protection · aibot88 bundleFocuses on routing, CSRF protection, context handling, and template usage within the internal handlers directory.
- ▌ Freelance Client Contract Builder · aibot88 bundleAide à rédiger des contrats de prestation freelance avec les clauses essentielles, CGV et protection de la propriété intellectuelle. Se déclenche avec "contrat freelance", "CGV freelance", "clause", "propriété intellectuelle", "contrat prestation".
- ▌ GCP Live Cost Budget Action Guard · aibot88 bundleGate Cloud Billing budget threshold changes, committed-use discount (CUD) purchases, and quota increase requests with explicit financial-authority approval. CUD contracts are 1-3 year financial commitments that cannot be cancelled — this guard ensures every billing action is backed by spend-impact assessment, budget inventory review, and confirmed financial authority before execution.
- ▌ Git Hooks · aibot88 bundleSet up and configure Git pre-commit hooks for code quality, secrets scanning, and commit message validation. Use when installing git hooks, configuring pre-commit checks, or enforcing code standards.
- ▌ Github Actions Security Hardening · aibot88 bundleEnforce secure GitHub Actions posture with least-privilege tokens, pinned dependencies, runner risk controls, and workflow supply-chain checks.
- ▌ Hook Context Attachment Injection · aibot88 bundleSurface hook-provided startup context by packaging it as metadata attachments before the agent's first request.
- ▌ Huawei Registry Artifact Governor · aibot88 bundleGovern Huawei Cloud SWR (Software Repository for Container) — image retention policy, vulnerability scanning via VSS (Vulnerability Scan Service) integration, namespace permission least privilege, cross-region image replication, and supply chain security posture.
- ▌ Infrastructure Compliance Auditor · aibot88 bundleCross-cutting infrastructure security audit skill that checks cloud infrastructure, DNS, TLS, endpoints, access control, network security, containers, CI/CD pipelines, secrets management, logging, and physical security against ALL major compliance frameworks. Use for infrastructure audit, cloud security audit, infrastructure compliance, DNS security audit, TLS audit, endpoint security, access control audit, network security assessment, infrastructure security, cloud compliance, Vanta alternative, compliance automation, security posture assessment, hardware security keys, YubiKey compliance.
- ▌ Instruction Design And Validation · aibot88 bundleDesign Solana/Anchor instructions with clear inputs, constraints, authority checks, and invariants. Use when defining or reviewing instruction APIs.
- ▌ Integration Security Architecture · aibot88 bundleArchitecture-layer guidance for securing Salesforce integrations: mTLS mutual authentication, OAuth 2.0 flow selection, API gateway placement, IP allowlisting strategy on Hyperforce, and certificate lifecycle management. Trigger keywords: mTLS, mutual TLS, Hyperforce IP allowlisting, Salesforce Private Connect, certificate limit, integration authentication architecture. NOT for basic Connected App setup, Named Credential field configuration, or Apex callout code patterns — see integration/named-credentials-setup and integration/apex-callouts-and-limits.
- ▌ Jfrog Package Safety And Download · aibot88 bundleCheck JFrog Public Catalog and stored packages for a version, interpret catalog security signals, and download through Artifactory (JFrog Platform locations, remote cache, curation-aware package managers, or repo proxy). Use when the user asks whether a package is safe, allowed, curated, or wants to download npm, Maven, PyPI, Go, or similar packages via JFrog. Do NOT use for pure CVE or vulnerability lookups (e.g. "details on CVE-2021-23337") — those are handled by the jfrog skill's Public security domain queries without this workflow.
- ▌ Landpacht Und Hoferbfolge Pruefen · aibot88 bundlePruefraster fuer Landpachtvertrag §§ 585 ff. BGB und Hoefeerbfolge nach HoefeO oder regionalem Hoefeerecht. Pachtformen Geld-Pacht Natural-Pacht Teilpacht Pachtvertragsanzeige § 2 LPachtVG Pachtpreisanpassung § 593 BGB Vertragsdauer Beendigung Verlaengerung Bewirtschaftungspflicht. Hoefeerecht Anerbenrecht Hofeszession nach Ehe-/Erbverhaeltnis Abfindungs-Anspruch der weichenden Erben § 12 HoefeO Hoefe-Wert berechnen einheitlicher Hofeswert. Verweist auf ELER und GAP-Foerderrecht Direktzahlungen Cross Compliance Agrarumweltmassnahmen.
- ▌ Ln 014 Agent Instructions Manager · aibot88 bundleCreates AGENTS.md canonical and CLAUDE.md @AGENTS.md stub; audits token budget, cache safety, import-pattern compliance. Use when instruction files need alignment.
- ▌ Mission Control API Provider Mode · aibot88 bundleUse or explain API-provider mode through Mission Control. Use when the user explicitly wants API-backed execution, needs billing implications explained, or wants confirmation that configured secret storage rather than chat-provided keys will be used.
- ▌ Mission Control Github Ready Docs · aibot88 bundlePrepare Mission Control docs for public GitHub. Use when documentation should be cleaned for publication, internal AI notes removed, secrets and private paths scrubbed, and install or run guidance made public-ready.
- ▌ Nil Contract Analysis Samir Patel · aibot88 bundleNIL (Name, Image, and Likeness) contract analysis for NCAA student-athletes from the athlete's perspective. Use when user says 'review this NIL contract', 'analyze this NIL deal', 'check this athlete agreement', 'review my NIL agreement', or uploads a PDF NIL contract for review. Identifies red flags, missing protections, and compliance issues. Produces a structured review memorandum with negotiation positions. Do NOT use for general contract review, employment agreements, non-NIL endorsements, or brand-side deal analysis.
- ▌ Nodejs Performance And Resilience · aibot88 bundleUse when hardening a scaffolded Node.js service for load and failure — enforcing event-loop discipline, clustering or worker threads for CPU work, backpressure and bounded concurrency, circuit breakers and bulkheads on downstream calls, timeout and retry budgets, and a load-test gate measured against the reliability SLO — after the service scaffold exists and performance budgets and SLO targets are approved or intentionally deferred. Do not use for the service shell or config, auth or security review, observability vendor wiring, or queue and event integration; use the other Node.js archetype skills instead.
- ▌ Org Hardening And Baseline Config · aibot88 bundleUse when defining or reviewing baseline org hardening settings, especially Security Health Check gaps, clickjack and browser protections, CSP and CORS governance, password/session policies, network restrictions, and release-update hygiene. Triggers: 'org hardening', 'baseline security config', 'Health Check', 'CSP trusted sites', 'clickjack protection'. NOT for feature-level app permissions or record-sharing design.
- ▌ Spring Boot Openapi Documentation · aibot88 bundleProvides patterns to generate comprehensive REST API documentation using SpringDoc OpenAPI 3.0 and Swagger UI in Spring Boot 3.x applications. Use when setting up API documentation, configuring Swagger UI, adding OpenAPI annotations, implementing security documentation, or enhancing REST endpoints with examples and schemas.
- ▌ Strategy And Competitive Analysis · aibot88 bundleUse when developing business strategy (market entry, product launch, geographic expansion, M&A, turnaround), conducting competitive analysis (profiling competitors, assessing competitive threats, Porter's 5 Forces, identifying differentiation), applying strategic frameworks (Good Strategy kernel with diagnosis/guiding policy/coherent actions, SWOT, Blue Ocean Strategy, Playing to Win where-to-play/how-to-win, Value Chain Analysis, BCG Matrix), making strategic decisions under constraints (build vs buy, pricing strategy, market positioning, business model choices), planning strategic initiatives (annual planning, OKRs, roadmaps), evaluating competitive positioning (moats, sustainable advantages, differentiation vs cost leadership), or when user mentions "strategy", "competitive analysis", "Porter's 5 Forces", "SWOT", "market positioning", "strategic planning", "competitive landscape", or "strategic frameworks".
- ▌ Supabase Schema From Requirements · aibot88 bundleDesign Supabase Postgres schema from business requirements with migrations, RLS, and types. Use when translating specifications into database tables, creating migration files, adding Row Level Security policies, or generating TypeScript types from schema. Trigger with phrases like "supabase schema", "design database supabase", "schema from requirements", "supabase migration", "supabase tables from spec".
- ▌ UI UX Settings Preferences Design · aibot88 bundleDesign settings and preferences screens including account management, privacy controls, and platform-specific patterns
- ▌ Validating AI Ethics And Fairness · aibot88 bundleValidate AI/ML models and datasets for bias, fairness, and ethical concerns. Use when auditing AI systems for ethical compliance, fairness assessment, or bias detection. Trigger with phrases like "evaluate model fairness", "check for bias", or "validate AI ethics".
- ▌ Team Init · aibot88 bundleThis skill permanently installs a Claude Code agent team — orchestrator, reviewers, implementers — into ~/.claude/agents/ from a 3-question interview. Use when: user says '/team-init', '코딩팀 설치해줘', '에이전트팀 설치', 'install coding team', 'set up agent team', 'agent team setup', 'orchestrator 설치', '팀 에이전트 설치'. NOT for scaffolding (use project-init), NOT for harness rules (use harness-init), NOT for runtime task execution (use kkirikkiri). This is permanent file installation, not session-level team management. Third step: project-init -> harness-init -> team-init.
- ▌ Github · aibot88 bundleHandle management of any GitHub related tasks, including creating or modifying issues, publishing a branch as a pull requests (or PRs), or creating or modifying sub-issues or child issues.
- ▌ Kesekit Check · aibot88 bundleRun a pre-deployment security compliance checklist based on KISA guidelines. Supports CII compliance (70 items), AI security checklists, Robot Security (103 items), Space Security (12 domains, 53 items), SW Supply Chain (SBOM, 29 items). Use when "pre-deploy check", "compliance checklist", "security checklist", "AI security check", "robot security check", "space security check", "satellite compliance", "GSaaS check", "supply chain check", "SBOM check", "공급망 점검".
- ▌ Kesekit Guide · aibot88 bundleGenerate secure coding prompts and guides for AI tools (Claude, ChatGPT, Cursor, Copilot). Creates copy-paste ready prompts for KISA CII, AI security, robot security, space security, and SW supply chain security (SBOM, C-SCRM). Use when "security guide", "secure coding guide", "AI secure coding", "robot secure coding", "space secure coding", "satellite security guide", "supply chain guide", "SBOM guide", "공급망 가이드".
- ▌ Kesekit Start · aibot88 bundleRun a security vulnerability assessment based on KISA guidelines. Supports CII (560+ items), AI Security Guide, Robot Security (103 items), Space Security (satellite/GSaaS/supply chain, 12 domains, 53 items), Secure Coding (46 CWE), Zero Trust (~396 items), and SW Supply Chain Security (SBOM, 29 items). Use when "security assessment", "vulnerability scan", "CII audit", "KISA assessment", "AI security", "robot security", "space security", "satellite security", "GSaaS security", "zero trust", "ZTA", "ZTNA", "supply chain", "SBOM", "공급망", "C-SCRM".
- ▌ Vulnerability Scanner · aibot88 bundleAdvanced vulnerability analysis principles. OWASP 2025, Supply Chain Security, attack surface mapping, risk prioritization.
- ▌ Premerge · aibot88 bundleRun all review skills (self, SOLID, test coverage, security, docs), merge findings, apply auto-fixes, generate unified summary. Triggers: 'premerge', 'pre-merge', 'full review', 'review everything', 'pre-push', 'check all'.
- ▌ Cve Lookup · aibot88 bundleLook up CVE IDs in the official CVEListV5 repository. Fetches JSON records, extracts description, CWE, vendor/product, CVSS, and classifies business logic relevance. Use when verifying CVE entries or enriching CVE datasets.