aibot88
- 8.3k skills
- 0 followers
- 3 repo stars
- 2 weeks ago last updated
- ▌ Game Social Systems Development · aibot88 bundleDesign, implement, debug, and review player social interaction systems for games. Use when Codex is asked about chat, voice, friends, parties, lobbies, guilds, clans, presence, invites, matchmaking social flow, emotes, pings, reputation, blocking, muting, reporting, moderation, privacy, parental controls, user-generated content, community safety, trust and safety, or social UX.
- ▌ GCP Gcs Data Perimeter Governor · aibot88 bundleGovern Google Cloud Storage data perimeters — uniform bucket-level access enforcement, public access prevention, VPC Service Controls perimeter coverage, IAM Conditions for time-bounded access, Object Lifecycle policies, and data residency compliance.
- ▌ Generic Fullstack Code Reviewer · aibot88 bundleReview full-stack code for bugs, security vulnerabilities, performance issues, accessibility gaps, and CLAUDE.md compliance. Enforces TypeScript strict mode, input validation, GPU-accelerated animations, and design system consistency. Use when completing features, before commits, or reviewing pull requests.
- ▌ Github Actions Pipeline Builder · aibot88 bundleBuild production CI/CD pipelines with GitHub Actions. Implements matrix builds, caching, deployments, testing, security scanning. Use for automated testing, deployments, release workflows. Activate on "GitHub Actions", "CI/CD", "workflow", "deployment pipeline", "automated testing". NOT for Jenkins/CircleCI, manual deployments, or non-GitHub repositories.
- ▌ Hetzner Infrastructure Reviewer · aibot88 bundleReview Hetzner Cloud infrastructure posture including Firewall inbound and outbound rules and server attachment, Load Balancer health check configuration and target pool design, private Network topology, Floating IP and Primary IP exposure, and region distribution across fsn1, nbg1, and hel1. Use when the user asks to audit or improve Hetzner Cloud network security or architecture.
- ▌ HTML Ppt Zhangzara Scatterbrain · aibot88 bundleScatterbrain — Post-it inspired: pastel sticky notes, Caveat handwriting, Shrikhand and Zilla Slab type stack. Anything that should feel like a designer's whiteboard: brainstorms, workshops, creative-agency credentials, design-thinking sessions, ideation pitches, art-direction reviews.
- ▌ Huawei Iac Change Safety Review · aibot88 bundleReview Terraform and RFS (Resource Formation Service) changes targeting Huawei Cloud — blast radius analysis, resource deletion detection, Organizations SCP cascade scope, cross-stack dependency impact, state file security, and rollback plan completeness.
- ▌ Ivangrynenko Cursorrules Drupal · aibot88 bundleDrupal development and security patterns from Ivan Grynenko's cursor rules. Covers OWASP Top 10, authentication, access control, injection prevention, cryptography, configuration, database standards, file permissions, and more.
- ▌ Julien Infra Hostinger Security · aibot88 bundleSecurity management for Hostinger VPS srv759970 - Fail2ban, WordPress security audits (25+ checks, 0-100% scoring), infrastructure audit. Use for security hardening, IP bans, or security assessments.
- ▌ K8S Network And Identity Policy · aibot88 bundleUse when authoring or hardening the Kubernetes network and workload-identity policy for a service after security and infrastructure-platform have decided the trust zones, identity model, and east-west posture. Produces default-deny NetworkPolicy (namespace-scoped, label-selected), least-privilege ServiceAccount + Role/ClusterRole bindings, Ingress / Gateway API exposure posture, mTLS or service-mesh wiring where adopted, image-pull secret and registry-auth handling, and Pod Security Standards namespace enforcement. Do not use for workload manifest authoring, autoscaling and resilience topology, observability wiring, image hardening / signing / admission-controller policy, or cluster provisioning; use the other Family G archetype skills (cluster provisioning is out of family).
- ▌ Limits And Scalability Planning · aibot88 bundleUse when planning a new org build for scale, auditing an existing org for governor limit exposure, or investigating a limit-related incident. Trigger phrases: 'org is hitting governor limits', 'how many custom objects can we have', 'will our data volume cause performance issues', 'batch job keeps failing with limit errors', 'planning for 10 million records', 'platform event throughput limits', 'SOQL limit exceeded in production'. NOT for code-level optimization (use apex-cpu-and-heap-optimization), NOT for individual SOQL query tuning (use apex/soql-optimization), NOT for Batch Apex authoring mechanics (use apex/batch-apex).
- ▌ Mission Control Security Review · aibot88 bundleAsk Mission Control for a security review. Use when the user wants secrets risk, auth risk, dependency risk, command safety, file permission risk, deployment exposure, risky code patterns, or remediation planning summarized through Mission Control.
- ▌ Next JS Better Auth Integration · aibot88 bundleA conceptual skill for integrating Better Auth with Next.js App Router
- ▌ Nextjs Server Action Validation · aibot88 bundleUse when writing a Next.js Server Action that accepts user-submitted form data, mutation parameters, or any client-originated input. Every Server Action is a public HTTP endpoint regardless of how it is called — validate with Zod and check authentication as the first two operations before touching the database. Do NOT use for GET route handlers or Server Components that fetch data (those have no user-supplied input); do NOT use for Stripe webhook handlers (use stripe-webhook-signature-verification instead).
- ▌ Nodejs Auth And Security Review · aibot88 bundleUse when adding authentication and authorization to a Node.js service, hardening its HTTP surface, or running an OWASP-style security review after the service scaffold exists and the auth provider decision is approved or intentionally deferred. Implements the authentication flow (Passport / JWT / OAuth2 / OIDC per architecture/security), the authorization model, secure HTTP headers (helmet), boundary input validation, CSRF and rate-limiting for auth endpoints, secret handling via the config seam, and a security test suite (authz matrix and negative cases). Do not use for the service shell, config, logging, or error tiers, observability vendor wiring, queue or event integration, or performance and resilience gating; use the other Node.js archetype skills instead.
- ▌ Pasta Threat Modeling Framework · aibot88 bundleSystematically identify and classify technical and business risks using the risk-centric PASTA framework across seven stages: 1. Define the Objectives, 2. Define the Technical Scope, 3. Decompose the Application, 4. Analyze the Threats, 5. Analyze the Vulnerabilities and Weaknesses, 6. Analyze the Attacks, and 7. Analyze the Residual Risk and Impact.
- ▌ Performing Security Code Review · aibot88 bundleExecute this skill enables AI assistant to conduct a security-focused code review using the security-agent plugin. it analyzes code for potential vulnerabilities like sql injection, xss, authentication flaws, and insecure dependencies. AI assistant uses this skill wh... Use when assessing security or running audits. Trigger with phrases like 'security scan', 'audit', or 'vulnerability'.
- ▌ Program Outcome Tracking Design · aibot88 bundleDesign guidance for program outcome measurement in Salesforce nonprofit orgs: logic model structure, indicator taxonomy, impact reporting design, and grant compliance reporting using NPSP Program Management Module (PMM) or Nonprofit Cloud (NPC) Outcome Management. NOT for CRM Analytics dashboards, NPSP PMM implementation/setup, or fundraising data analysis.
- ▌ Red Team Verifier Patrick Munro · aibot88 bundleAdversarial verification for AI-generated legal content with systematic fact-checking, source validation, and quality control. Use when User requests verification of legal documents, fact-checking of regulatory content, red team review, or quality assurance before distribution to clients/stakeholders. Provides structured verification reports with severity-categorized errors, verified sources, and distribution readiness assessment.
- ▌ Returns Authorization Processor · aibot88 bundleAutomated return authorization and routing skill optimizing return paths and customer experience
- ▌ Security Incident Response Plan · aibot88 bundlePlan de réponse aux incidents de sécurité — préparation, détection, containment, éradication, recovery et lessons learned. Se déclenche avec "incident response", "plan de réponse", "breach", "compromission", "réponse à incident", "CSIRT".
- ▌ Session High Assurance Policies · aibot88 bundleEnforce step-up authentication for sensitive pages/objects using High Assurance session level and login flow policies. NOT for initial MFA enrollment UX.
- ▌ Specialist Seguranca Informacao · aibot88 bundleEspecialista em segurança OWASP, LGPD e threat modeling para sistemas modernos.
- ▌ System Field Behavior And Audit · aibot88 bundleUse when practitioners need to understand system-managed fields (CreatedDate, LastModifiedDate, SystemModstamp, CreatedById, LastModifiedById, IsDeleted) — their update behavior, indexing, and queryability. Triggers: 'difference between SystemModstamp and LastModifiedDate', 'how to query deleted records', 'set CreatedDate during data migration', 'why does LastModifiedDate not match SystemModstamp', 'Create Audit Fields permission'. NOT for field-level change tracking (use field-history-tracking skill), Shield Field Audit Trail for compliance retention (use field-audit-trail skill), or custom audit logging with Apex triggers.
- ▌ Testing Chaos Engineering Guide · aibot88 bundlePrincipes et outils de chaos engineering pour tester la résilience des systèmes distribués, incluant fault injection et game days. Se déclenche avec "chaos engineering", "Chaos Monkey", "fault injection", "résilience", "Litmus", "game day"
- ▌ Umweltrecht Compliance Schulung · aibot88 bundleErstellt Schulungs-, Audit- und Fortbildungspläne für Anlagenbetreiber, Immissionsschutzbeauftragte und Abfallverantwortliche.
- ▌ Use Case External Password Auth · aibot88 bundle外部パスワード認証委譲ユースケースの設定ガイド。外部認証サービスURL、マッピングルール、ブルートフォース防止、セッション・トークン有効期限のヒアリングと環境変数マッピングを提供。
- ▌ Check · aibot88 bundleRun Houndarr's full quality gate (ruff lint, ruff format check, mypy, bandit, pytest) and report results in a single table. Use when the user asks to run quality gates, check the code, run all checks, or invokes /check. Trigger phrases include quality gate, check, lint, run all checks.
- ▌ Presentation Design Styles · aibot88 bundleUse this skill whenever creating PPTX slides, presentations, or decks with any of these 30 modern design styles: Glassmorphism, Neo-Brutalism, Bento Grid, Dark Academia, Gradient Mesh, Claymorphism, Swiss International, Aurora Neon Glow, Retro Y2K, Nordic Minimalism, Typographic Bold, Duotone Color Split, Monochrome Minimal, Cyberpunk Outline, Editorial Magazine, Pastel Soft UI, Dark Neon Miami, Hand-crafted Organic, Isometric 3D Flat, Vaporwave, Art Deco Luxe, Brutalist Newspaper, Stained Glass Mosaic, Liquid Blob Morphing, Memphis Pop Pattern, Dark Forest Nature, Architectural Blueprint, Maximalist Collage, SciFi Holographic Data, Risograph Print, Soft Pink Card UI (학교사업안내-학부모). Also activate for requests using words like "sleek", "modern", "trendy", "designed", "stylish", or "visually striking" presentations, or Korean school/education presentations like "학부모", "학교 안내", "교육 발표자료".
- ▌ Foundry Poc Mainnet Fork · aibot88 bundleUse this skill when the user wants to write a Foundry Proof of Concept (PoC) test that reproduces a smart contract vulnerability against a real deployed protocol on a mainnet fork. Triggers include phrases like "write a PoC", "reproduce this bug with Foundry", "fork mainnet and exploit", "validate this finding on-chain", or when the user provides a vulnerability report alongside deployed contract addresses. This skill is strictly for mainnet-forked, real-contract, end-to-end reproductions on EVM chains. Do NOT use for Hardhat tests, local-state PoCs, fuzz or invariant harnesses against mocks, or non-EVM chains (Solana, Cosmos, Move).
- ▌ Lint · aibot88 bundleRuns linter+typechecker with auto-detected toolchain (ruff/mypy, eslint/tsc, phpstan, golangci-lint, clippy). Triggers: lint, typecheck, static analysis.
- ▌ 1k Auditing Pre Release Security · aibot88 bundleAudits security and supply-chain risk between two git refs with Codex cross-validation. 预发布安全审计(含 Codex 交叉验证)。Use when performing pre-release security audits, supply-chain reviews, or comparing two git refs for security regressions. Triggers on “预发布审计”, “security audit”, “release audit”, “安全预审”.
- ▌ Agentic Skill Authoring Standard · aibot88 bundleYeni agentic-* veya proje skill eklerken frontmatter, bölüm sırası ve katalog uyumunu denetlerken kullan.
- ▌ Agentprivacy Compression Defence · aibot88 bundleCompression-as-defence principle for 0xagentprivacy V5. Activates when discussing BRAID 74× compression, R(d,compression) modifier, token reduction as attack surface reduction, the compression spectrum (7 layers), or why efficient inference is also private inference.
- ▌ Agentprivacy Grimoire Navigation · aibot88 bundleSpellbook interconnection and traversal methodology for 0xagentprivacy. Activates when designing constellation paths, choosing which grimoire to enter for a given question, constructing spellwebs across acts/chapters/tales, or understanding how the 5 spellbooks form a coherent navigation system. Triggers: "which spellbook", "constellation path", "spellweb", "grimoire", "act sequence", "tale selection", "cross-grimoire".
- ▌ Agentprivacy Holonic Persistence · aibot88 bundleMulti-provider data persistence for privacy-preserving agents. Activates when discussing HyperDrive auto-failover, multi-provider replication, provider-agnostic storage, privacy-aware routing, write-all-or-fail for separation-critical state, TEE rotation with state persistence, or any task requiring durable agent state across backends, chains, and environments.
- ▌ Agentprivacy Metadata Resistance · aibot88 bundleTraffic analysis resistance, timing obfuscation, and metadata stripping for 0xagentprivacy swordsman operations. Activates when designing defences against metadata correlation, implementing mixnet routing, padding strategies, timing decorrelation, or any protection that targets the signals AROUND encrypted content rather than the content itself. Triggers: "metadata", "traffic analysis", "timing attack", "correlation", "mixnet", "padding", "network fingerprint", "side channel", "metadata leakage".
- ▌ Agentprivacy Perimeter Hardening · aibot88 bundleDevice security, OS hardening, network configuration, and physical security for 0xagentprivacy swordsman infrastructure. Activates when securing the execution environment beneath the cryptographic layer, designing supply chain integrity checks, hardening operating systems for agent execution, or building the physical and logical security foundation that cryptography assumes but does not provide. Triggers: "device security", "OS hardening", "supply chain", "firmware", "boot integrity", "network hardening", "physical security", "attack surface reduction", "secure boot", "endpoint hardening".
- ▌ Agentprivacy Pretext Measurement · aibot88 bundleDOM-free text measurement technique for privacy-preserving browser interactions. Activates when discussing pretext discovery, shadow measurement, orb mechanics, text property extraction without DOM access, or browser-layer privacy.
- ▌ Agentuity CLI Auth Machine Setup · aibot88 bundleSet up machine authentication by uploading a public key for self-hosted infrastructure. Requires authentication. Use for managing authentication credentials
- ▌ Agentuity CLI Cloud Eval Run Get · aibot88 bundleGet details about a specific eval run. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Keyvalue Get · aibot88 bundleGet a value from the keyvalue storage. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Keyvalue Set · aibot88 bundleSet a key and value in the keyvalue storage. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Queue Create · aibot88 bundleCreate a new queue. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Queue Resume · aibot88 bundleResume message delivery for a paused queue. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Sandbox Exec · aibot88 bundleExecute a command in a running sandbox. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Sandbox List · aibot88 bundleList sandboxes with optional filtering. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Scp Download · aibot88 bundleDownload a file using security copy. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Session List · aibot88 bundleList recent sessions. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Session Logs · aibot88 bundleGet logs for a specific session. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Agentuity CLI Cloud Storage List · aibot88 bundleList storage resources or files in a bucket. Requires authentication. Use for Agentuity cloud platform operations
- ▌ Alibabacloud Cfw Status Overview · aibot88 bundleAlibaba Cloud Firewall Status Overview Skill. One-click query of overall cloud firewall status including asset management, border firewall switch status, and traffic overview. Triggers: "cloud firewall status", "firewall overview", "firewall status overview", "asset management", "protection coverage", "what is the overall cloud firewall status", "how many assets are not managed", "what is the protection coverage for each boundary", "CFW status", "cloud firewall overview"
- ▌ Alibabacloud Sas Incident Manage · aibot88 bundleAlibaba Cloud Security Center incident management skill. Query security incidents, threat trends, and incident details. Triggers: "云安全中心", "安全事件", "事件查询", "安全态势", "威胁事件", "cloud-siem", "Agentic-soc".
- ▌ Apex Dynamic Soql Binding Safety · aibot88 bundleSafe construction of dynamic SOQL — Database.query bind variables (:varName, API 60+ semantics), Database.queryWithBinds(query, Map<String,Object>, AccessLevel) (API 55+), field-name allowlisting, ORDER BY direction whitelist, LIMIT/OFFSET typing, and the interaction with WITH USER_MODE / WITH SECURITY_ENFORCED. NOT for static SOQL — see apex-soql-fundamentals. NOT for FLS enforcement on results — see soql-security or apex-stripinaccessible-and-fls-enforcement.
- ▌ Applying Privacy Design Patterns · aibot88 bundleSystematic application of the eight privacy design patterns per Hoepman: minimize, hide, separate, abstract, inform, control, enforce, and demonstrate. Covers pattern selection methodology per processing activity, mapping to GDPR principles, and practical implementation guidance for privacy-by-design system architecture.
- ▌ Authentication · aibot88 bundleAuthentication and authorization including JWT, OAuth2, OIDC, sessions, RBAC, and security analysis. Activate for login, auth flows, security audits, threat modeling, access control, and identity management.
- ▌ Automation N8n Workflow Designer · aibot88 bundleWorkflows d'automatisation avec n8n — nodes, triggers, credentials, déploiement self-hosted et intégrations. Se déclenche avec "n8n", "workflow n8n", "automatisation open-source", "n8n self-hosted".
- ▌ AWS Waf Cost Optimization Review · aibot88 bundleReview AWS workload cost posture against the Well-Architected Framework Cost Optimization Pillar. Covers cost visibility, tagging compliance, commitment coverage, rightsizing, Spot and managed service adoption, and idle resource identification. Use when auditing cloud spend, planning Savings Plans purchases, or preparing for a formal WAF Cost Optimization Pillar review.
- ▌ Azure Well Architected Framework · aibot88 bundleComprehensive Azure Well-Architected Framework knowledge covering the five pillars: Reliability, Security, Cost Optimization, Operational Excellence, and Performance Efficiency. Provides design principles, best practices, and implementation guidance for building robust Azure solutions.
- ▌ Backup Restore Runbook Generator · aibot88 bundleCreates comprehensive disaster recovery procedures with automated backup scripts, restore procedures, validation checks, and role assignments. Use for "database backup", "disaster recovery", "data restore", or "DR planning".
- ▌ Cert Manager Issuer Trust Review · aibot88 bundleUse this skill when reviewing cert-manager PKI configuration for Kubernetes clusters. Trigger when the user asks about Issuer or ClusterIssuer scope, CertificateRequestPolicy coverage, certificate SAN or duration risks, trust-manager bundle distribution, SPIFFE mesh CA integration, cert-manager webhook health, or cloud CA authentication method.
- ▌ Code Review Checklist Salesforce · aibot88 bundleStructured Salesforce code review for Apex, triggers, async, and tests before merge or deployment — governor limits, bulk-safe triggers, CRUD/FLS and sharing posture, meaningful tests, and naming consistency. NOT for AppExchange security-review-only deep dives (use the security secure-coding checklist), network penetration testing, or org-wide permission model design without code artifacts.
- ▌ Collaboration Commitment Tracker · aibot88 bundleTracks every commitment made across active research collaborations from email — data sharing promises, co-authorship agreements, analysis contributions, review commitments, and meeting obligations — surfacing those that are unmet or at risk. Use when a researcher wants to hold collaborators accountable and ensure their own commitments are on track. Triggers on "collaboration commitments", "what have collaborators promised", "co-author obligations", "research partnership commitments", "what am I on the hook for with collaborators", "collaboration tracker".
- ▌ Cometchat Native Troubleshooting · aibot88 bundleDiagnose CometChat React Native UI Kit integration failures — init/login, gesture handler, pod install, iOS privacy manifest, Android Maven, Metro cache, permissions, calls, extensions, v4-to-v5 upgrade. For push-specific symptoms see cometchat-native-push § 12.
- ▌ Configuration Workbook Authoring · aibot88 bundleAuthor the Salesforce Configuration Workbook — the structured, reviewable handoff document an admin uses to execute a feature across Objects/Fields, Page Layouts, Profiles/PSGs, Sharing, Validation, Automation, List Views, Reports, Integrations, and Data. Triggers: 'salesforce configuration workbook', 'admin handoff document', 'implementation workbook'. NOT for object design itself (use admin/custom-field-creation, admin/lookup-and-relationship-design, agents/object-designer/AGENT.md), NOT for permission set design (use admin/permission-set-architecture, agents/permission-set-architect/AGENT.md), NOT for Flow construction (use skills/flow/* and agents/flow-builder/AGENT.md), and NOT for the deployment manifest (use skills/devops/metadata-api-retrieve-deploy).
- ▌ Configuring Dependency Injection · aibot88 bundleConfigures Dependency Injection using Microsoft.Extensions.DependencyInjection and GenericHost. Use when setting up DI container, registering services, or implementing IoC patterns in .NET projects.
- ▌ Connecting Lambda To API Gateway · aibot88 bundleConnects an existing AWS Lambda function to Amazon API Gateway by creating a REST or HTTP API with resource/method setup, Lambda proxy integration, permissions, and deployment. Always use this skill when connecting Lambda to API Gateway — it handles CORS, throttling, access logging, and production security hardening that are easy to miss.
- ▌ Creating Production Vpc Multi Az · aibot88 bundleCreates a production-ready VPC with public and private subnets across multiple Availability Zones, including internet gateway, NAT gateways, route tables, and security groups following AWS Well-Architected principles. Use when deploying multi-AZ VPC infrastructure with automatic CIDR planning and DNS resolution.
- ▌ Cross Platform Command Generator · aibot88 bundleGenerates cross-platform commands and scripts for Linux, macOS, and Windows with security validation and compatibility guidance
- ▌ Data Retention Archiving Planner · aibot88 bundlePlans and implements data retention policies with archival strategies, compliance requirements, automated cleanup jobs, and cold storage migration. Use for "data retention", "data archival", "GDPR compliance", or "storage optimization".
- ▌ Dealing With A Centralizing Boss · aibot88 bundleUse when the user is working for, advising, evaluating, or deciding how to engage with an organization where authority radiates from a single person at the center — lieutenants report directly to them, jurisdictions overlap by design, real power does not live in any institution. Triggers on phrases like "my boss runs everything through himself", "this company is a one-man show", "the CEO won't delegate", "I'm stuck advising a strongman", "how do I survive under this kind of leader", "how do I influence a leader who trusts no one", "should I take this role under X". Do not use for: conventional hierarchical orgs where delegation is real, early-stage founder-led startups where centralization reflects genuine one-person bandwidth (the pattern looks similar, the prescription differs), or purely interpersonal bad-boss situations without the structural features below.
- ▌ Deployment Error Troubleshooting · aibot88 bundleUse when a Salesforce metadata deployment fails and you need to diagnose and fix the error. Trigger keywords: 'deployment failed', 'component failure', 'dependent class is invalid', 'code coverage failed', 'UNSUPPORTED_API_VERSION', 'deploy error', 'test failure blocking deploy', 'rollbackOnError', 'missing dependency deploy'. NOT for authoring destructive changes manifests (use destructive-changes-deployment). NOT for CI/CD pipeline setup (use github-actions-for-salesforce or gitlab-ci-for-salesforce). NOT for change set mechanics (use change-set-deployment).
- ▌ Derivatives Trading Coin Futures · aibot88 bundleBinance Derivatives-trading-coin-futures request using the Binance API. Authentication requires API key and secret key. Supports testnet and mainnet.
- ▌ Derivatives Trading Usds Futures · aibot88 bundleBinance Derivatives-trading-usds-futures request using the Binance API. Authentication requires API key and secret key. Supports testnet and mainnet.
- ▌ Designing Backend Error Messages · aibot88 bundleDesigns backend API error contracts with a REST-default approach using RFC 9457 Problem Details, stable machine-readable codes, retry semantics, validation error payloads, observability, and security-safe messaging. Reviews existing error handling against a binary rubric and proposes concrete fixes. Produces optional artifacts such as errors.yaml entries, Problem Details examples, OpenAPI fragments, and runbook templates. Use when creating or revising backend error responses, auditing API error quality, mapping status/code behavior, or documenting error handling for REST, gRPC, GraphQL, and async services.
- ▌ Detecting Information Disclosure · aibot88 bundleDetects information disclosure vulnerabilities including sensitive data in logs, error message exposure, and memory leaks. Use when analyzing logging practices, error handling, or investigating data leakage issues.
- ▌ Dialectical Mapping Steelmanning · aibot88 bundleApplies thesis-antithesis-synthesis reasoning to escape false binary choices by steelmanning opposing positions, mapping their underlying principles and tradeoffs, and synthesizing principled third-way resolutions. Use when debates are trapped in false dichotomies, polarized positions need charitable interpretation, tradeoffs are obscured by binary framing, synthesis beyond "pick one side" is needed, or when users mention steelman arguments, Hegelian dialectic, or resolving seemingly opposed principles.
- ▌ External Secrets Operator Review · aibot88 bundleUse this skill when reviewing External Secrets Operator (ESO) configuration, including SecretStore, ClusterSecretStore, ExternalSecret, and PushSecret resources. Trigger when a user provides ESO YAML manifests, asks about secret rotation interval compliance, questions whether ClusterSecretStore scope is too broad, or wants to audit the auth method used to reach an external secret store (AWS Secrets Manager, Azure Key Vault, GCP Secret Manager, HashiCorp Vault, 1Password).
- ▌ Fachanwalt It Recht Orientierung · aibot88 bundleOrientierung im Informationstechnologierecht — FAO Voraussetzungen Normen typische Mandate Standardliteratur. Vertragsrecht IT (Software-Lizenz SaaS Cloud) DSGVO BDSG TDDDG (vormals TTDSG) TKG NIS2-Umsetzungsgesetz BSIG n.F. DDG (vormals TMG) DSA Digital Services Act DMA Digital Markets Act EU-KI-VO Verordnung 2024/1689. Open-Source-Compliance. Schnittstelle Plugin datenschutzrecht ki-governance vertragsrecht.
- ▌ Fastapi Auth And Security Review · aibot88 bundleUse when adding auth/authz, HTTP-surface hardening, or an OWASP review to a scaffolded FastAPI service after the auth provider decision is approved or deferred. Adds the authentication, default-deny authz, hardening, and security-test layer the scaffold defers. Not for observability, tasks, or performance.
- ▌ Firebase Authentication Patterns · aibot88 bundleFirebase Authentication implementation patterns including sign-in/sign-up flows, OAuth providers, session management, protected routes, password reset, email verification, and error handling. Keywords: "auth", "authentication", "sign-in", "sign-up", "oauth", "session", "protected route"
- ▌ Firebase Development Add Feature · aibot88 bundleThis skill should be used when adding features to existing Firebase projects. Triggers on "add function", "create endpoint", "new tool", "add api", "new collection", "implement", "build feature". Guides TDD workflow with test-first development, security rules, and emulator verification.
- ▌ Firestore Security Rules Auditor · aibot88 bundleA skill to evaluate how secure Firestore security rules are. Use this when Firestore security rules are updated to ensure that the generated rules are extremely secure and robust.
- ▌ Flow Runtime Context And Sharing · aibot88 bundleDecide and audit the security boundary a Flow runs at — System Context With Sharing, System Context Without Sharing, or User Context — plus the per-element runInMode override and the implications for sharing rules, FLS, CRUD, and $User/$Profile/$Permission merge fields. NOT for Apex sharing keywords (see apex/with-without-sharing-and-context). NOT for record-access troubleshooting at the user level (see security/record-access-troubleshooting).
- ▌ Framework · aibot88 bundleExpert on SpecWeave framework structure, rules, and spec-driven development conventions. Use when learning SpecWeave best practices, understanding increment lifecycle, or configuring hooks. Covers source-of-truth discipline, tasks.md/spec.md formats, living docs sync, and file organization patterns.
- ▌ GCP Apigee API Platform Operator · aibot88 bundleDesign and operate Apigee X API proxies — rate limiting, OAuth/JWT security policies, quota plans, developer portal setup, and API product management.
- ▌ GCP Compliance Assured Workloads · aibot88 bundleConfigure Assured Workloads for regulated workloads (FedRAMP High/Moderate, HIPAA, PCI-DSS, ITAR, IL4/IL5), audit controls implementation, and gather compliance evidence using Security Command Center and Asset Inventory.
- ▌ GCP Live Iam Policy Change Guard · aibot88 bundleGate IAM binding mutations, org policy changes, and Service Account key creation against the GCP resource hierarchy. IAM bindings at org level propagate to all folders and projects — this guard enforces blast-radius assessment, audit-trail confirmation, and explicit authority approval before any policy mutation is executed.
- ▌ GCP Secret Kms Lifecycle Steward · aibot88 bundleAudit and govern Cloud KMS key lifecycles, Secret Manager secrets, CMEK configurations across GCP services (Cloud SQL, BigQuery, GCS, Compute), key rotation schedules, and envelope encryption patterns. Prefer gcp-iam-least-privilege-review for IAM binding review on KMS keys and gcp-security-posture-hardening for broad org-level encryption policy gaps.
- ▌ Guardrails Safety Filter Builder · aibot88 bundleImplements content safety filters with PII redaction, policy constraints, prompt injection detection, and safe refusal templates. Use when adding "content moderation", "safety filters", "PII protection", or "guardrails".
- ▌ Health Cloud Deployment Patterns · aibot88 bundleUse when planning or executing a Health Cloud deployment to production or a full sandbox, including managed package installation sequencing, Permission Set License assignment, care plan template setup, HIPAA compliance controls, and post-deploy manual steps not captured in metadata. Triggers: 'how do I deploy Health Cloud', 'HealthCloudGA package install order', 'care plan template not working after deployment', 'Health Cloud HIPAA Shield Encryption setup', 'CarePlanProcessorCallback registration post-deploy'. NOT for Health Cloud data model design (use health-cloud-data-model), NOT for Apex extensions in Health Cloud (use health-cloud-apex-extensions), NOT for API usage patterns (use health-cloud-apis).
- ▌ Hetzner Live Firewall Rule Guard · aibot88 bundleGuard Hetzner Cloud Firewall rule mutations and server attachment changes with mandatory pre-mutation snapshot of current rules, blast-radius review, explicit human approval, target confirmation, account, region, and rollback plan. Use only when live Firewall rule changes are required and all pre-flight checks are confirmed.
- ▌ HTML Ppt Zhangzara Creative Mode · aibot88 bundleCreative Mode — Cream paper canvas with confident multi-color (green, pink, orange, yellow) accents and Archivo Black display. Anything that should feel design-led and confident: creative agency pitches, design studio decks, ad shop credentials, brand creative reviews, art-direction reviews.
- ▌ Huawei Dew Kms Lifecycle Steward · aibot88 bundleManage Huawei DEW (Data Encryption Workshop) — KMS key lifecycle and rotation, CSMS secret rotation automation, CBH (Cloud Bastion Host) privileged access session management, and DBSS database encryption and SQL audit.
- ▌ Integration Admin Connected Apps · aibot88 bundleUse when managing Connected Apps for integration purposes — configuring OAuth policies, IP restrictions, refresh token expiry, and monitoring connected app usage. NOT for OAuth flows implementation (use oauth-flows-and-connected-apps).
- ▌ Ip Range And Login Flow Strategy · aibot88 bundleDesign and implement Salesforce Login Flows (Screen Flows assigned to profiles or Experience Cloud sites) that run post-authentication to enforce conditional MFA, IP-based branching, terms-of-service acceptance, or user data collection. Covers Login Flow creation in Flow Builder, profile/site assignment, IP-aware decision logic, and ConnectedAppPlugin extension points. NOT for static IP allowlisting or profile Login IP Ranges (see network-security-and-trusted-ips), org-wide session policies, or SSO/SAML IdP configuration.
- ▌ Iso Standards Compliance Checker · aibot88 bundleMedical device standards compliance verification skill for ISO 13485, ISO 14971, IEC 62304, IEC 60601, and related standards
- ▌ Israeli Hr Recruitment Automator · aibot88 bundleEmployer-side hiring automation for Israeli companies. Generates Hebrew job descriptions compliant with the Equal Employment Opportunities Law 1988, posts to Israeli job boards (AllJobs, Drushim, JobMaster, LinkedIn Israel), screens resumes with Israeli context (military service, academic institutions, tech bootcamps), schedules interviews around Israeli holidays and Shabbat, and generates offer letters with mandatory Israeli employment clauses. Use when user asks to "write a job description", "post a job in Israel", "screen Israeli resumes", "pirsum misra", "srikat meumadim", "michtav ha'a'sa'a", or automate hiring workflows for Israeli companies. Ensures compliance with Israeli anti-discrimination law and mandatory benefits. Do NOT use for job searching (use israeli-job-market), interview preparation (use israeli-tech-interview-prep), salary negotiation (use israeli-tech-salary-negotiator), employment contracts legal review (use israeli-employment-contracts), or freelancer hiring.
- ▌ Ln 621 Security Boundary Auditor · aibot88 bundleChecks application security boundaries: secrets, injection, XSS, input validation, and sensitive env defaults. Use when auditing exploitable code paths.
- ▌ Ln 632 Test E2e Priority Auditor · aibot88 bundleValidates E2E coverage for critical paths (money, security, data integrity). Risk-based prioritization. Use when auditing E2E test coverage.