aibot88
- 8.3k skills
- 0 followers
- 3 repo stars
- 2 weeks ago last updated
- ▌ Injection Hunter · aibot88 bundleHunt for injection vulnerabilities including SQL injection, command injection, XSS, SSTI, path traversal, LDAP injection, and other input validation flaws. Use when auditing code that processes user input.
- ▌ Innovate Redteam · aibot88 bundleRun the Vibe Innovation Framework red team protocol on any artifact (problem statement, concept, business model, experiment design, prototype, decision). Use when stress-testing an artifact against adversarial framings outside the usual phase Step 7 moment, or as a standalone sanity check before locking an output.
- ▌ Inspired Product · aibot88 bundleBuild empowered product teams using discovery and delivery dual-track. Use when the user mentions "product discovery", "empowered teams", "feature factory", "product roadmap", "opportunity assessment", or "product vision". Covers product discovery techniques, team structure, and continuous value delivery. For customer interviews, see mom-test. For ongoing discovery systems, see continuous-discovery.
- ▌ Integrate Routes · aibot88 bundleMount routes in app.ts with dependency injection. Use after creating routes to wire them into the application. Triggers on "mount routes", "add to app", "wire routes", "integrate routes".
- ▌ Inter Agent Chat · aibot88 bundleUse when you need to send a message to another Claude Code agent, broadcast to all agents, or when you receive a message prefixed with [@agentName]. Covers terminal injection via TIOCSTI, pts discovery, message format, and kill switch.
- ▌ IOS Architecture · aibot88 bundleiOS app architecture expert skill covering MVVM with @Observable, Clean Architecture, The Composable Architecture (TCA), modular architecture with SPM, Repository pattern, Coordinator/Router pattern, Dependency Injection (Factory, Environment), error handling patterns, and protocol-oriented programming. Use this skill when the user architects an iOS app, designs feature modules, sets up project structure, implements MVVM/Clean/TCA patterns, creates repositories or use cases, or asks about iOS code organization. Triggers on: architecture, MVVM, clean architecture, TCA, composable architecture, repository pattern, coordinator, dependency injection, DI, view model, use case, interactor, modular, SPM package, feature module, project structure, folder structure, app architecture, design pattern, unidirectional data flow, reducer, store, or any iOS app structure discussion.
- ▌ Ips Anlagenpaket · aibot88 bundleStellt Anlagen für Insolvenzplan und StaRUG zusammen: Vermögensübersicht, Ergebnis und Finanzplan, Erklärungen, Beteiligtenlisten und Belege.
- ▌ Java Maintenance · aibot88 bundleJava code maintenance standards including prioritization, refactoring triggers, and compliance verification
- ▌ Jquery Ajax JSON · aibot88 bundleBest practices for jQuery AJAX with JSON data handling including sending/receiving JSON, error handling, security (CSRF protection, XSS prevention), promise patterns, caching, and modern alternatives. Use when working with jQuery AJAX requests, implementing JSON APIs, troubleshooting AJAX issues, or migrating from jQuery to Fetch API.
- ▌ Kesekit Guide Ko · aibot88 bundleAI 도구(Claude, ChatGPT, Cursor, Copilot)용 시큐어 코딩 프롬프트와 가이드를 생성합니다. KISA CII, CWE 매핑, AI 보안, 로봇 보안, 우주 보안(CCSDS/위성 프로토콜/GSaaS/공급망) 가이드를 지원합니다. "보안 가이드 생성", "시큐어코딩 가이드", "우주 시큐어코딩", "위성 보안 가이드" 시 사용하세요.
- ▌ Kids Book Writer · aibot88 bundleExpert children's book writer creating delightful, engaging books for ages 2-9. Specializes in rhyming books, stories, songs with proper values, educational content, and age-appropriate language. Crafts books that captivate young readers while teaching important life lessons.
- ▌ Kill The Standup · aibot88 bundleReads yesterday's Linear issues and GitHub commits for the authenticated user, formats a standup update (done / doing / blockers), and posts it to Slack. Use when asked to write a standup, generate a standup update, post to the standup channel, summarize yesterday's work, or automate the daily standup. Trigger when a user says "write my standup", "post standup", "generate standup update", "what did I do yesterday", or "kill the standup".
- ▌ Knack Pagination · aibot88 bundleManages full data retrieval while respecting Knack's 1,000-record-per-page limit. Essential for HTI's 3,500+ laptop inventory and compliance report...
- ▌ Kong API Gateway · aibot88 bundleConfiguration de Kong API Gateway — services, routes, plugins, rate limiting, authentification et monitoring. À utiliser quand l'utilisateur configure Kong, gère des APIs avec Kong ou implémente des plugins. Se déclenche aussi avec "Kong", "Kong Gateway", "Kong plugin", "Kong route", "API gateway Kong", "kong.yml", "Kong declarative".
- ▌ Kubernetes Guide · aibot88 bundleKubernetes manifest guidelines for GitOps deployments. Apply when editing `.yaml`/`.yml` files in `clusters/` or k8s directories. Use for Deployments, Services, security, multi-environment configs. Keywords: Kubernetes, Deployment, Service, ConfigMap, Secret, Kustomize, Flux, SOPS, labels, namespaces, GitOps.
- ▌ Laravel Policies · aibot88 bundleAuthorization policies for resource access control. Use when working with authorization, permissions, access control, or when user mentions policies, authorization, permissions, can, ability checks.
- ▌ Laravel Security · aibot88 bundleLaravel security best practices for authn/authz, validation, CSRF, mass assignment, file uploads, secrets, rate limiting, and secure deployment.
- ▌ Legal Compliance · aibot88 bundleLegal and compliance expertise for corporate governance, contract analysis, regulatory compliance (SOX, GDPR, HIPAA), risk assessment, intellectual property, and litigation management. Use when reviewing contracts, ensuring compliance, or managing legal risk.
- ▌ Legal Triage Nda · aibot88 bundleTriagem rápida de um NDA recebido e classificação como VERDE (aprovação padrão), AMARELO (revisão de assessoria) ou VERMELHO (revisão jurídica completa). Use quando um novo NDA chegar de vendas ou desenvolvimento de negócios, ao verificar cláusulas de não-solicitação, não-concorrência ou carveouts ausentes embutidos, ou ao decidir se um NDA pode ser assinado sob delegação padrão.
- ▌ Vue · aibot88 bundleBest practices for Vue.js development including security, performance, and developer experience
- ▌ Local Clickhouse · aibot88 bundleInstall, configure, and validate local ClickHouse for gapless-crypto-clickhouse development and backtesting. Use when setting up local development environment, enabling offline mode, improving query performance for backtesting, or running E2E validation. Includes mise/Homebrew/apt installation, mode detection, connection validation, and E2E workflow scripts.
- ▌ Locque Authoring · aibot88 bundleAuthor or update Locque .lq code and tests with the canonical M-expr syntax, CBPV rules, data/match forms, modules/imports/opens, and project conventions.
- ▌ Loom Code Review · aibot88 bundleRun multi-axis implementation review through Loom critique. Use before merge, after feature or bug-fix implementation, when receiving review feedback, when reviewing AI/human code, or when correctness, readability, architecture, security, performance, tests, or evidence need pressure-testing.
- ▌ Magi Web CI Spec · aibot88 bundleProduce a sprint CI.md covering pipeline stages, secrets handling, deployment strategy, and rollback for GitHub Actions / Cloud Build / GitLab CI / etc. Coordinator-only — produces drafts, never modifies live workflows. Pauses for user confirmation.
- ▌ Mcloud Variables · aibot88 bundleExecute mcloud variables commands to list and get environment variables for a Cloud environment. Use when inspecting, reading, or exporting environment variables. Never pass --reveal unless the user explicitly requests secret values.
- ▌ Mdma Integration · aibot88 bundleIntegrate MDMA into an application and build features with it — wire up parsing, the runtime store, React rendering, LLM streaming, custom components, prompts, and CI validation. Use this skill when the user asks to add MDMA to an app, build a chat that streams MDMA, author or maintain a custom prompt, validate MDMA documents, register a custom component, or expose MDMA to an agent via MCP. Generates focused, correct wiring that uses the right packages for the job instead of reinventing them.
- ▌ Meeting Briefing · aibot88 bundlePrepare structured briefings for meetings with legal relevance and track resulting action items. Use when preparing for contract negotiations, board meetings, compliance reviews, or any meeting where legal context, background research, or action tracking is needed.
- ▌ Memory Assistant · aibot88 bundleComprehensive memory management skill that guides memory capture and recall throughout sessions. Triggers when: user makes architectural decisions ("let's use", "we should", "decided to", "choosing"), discovers learnings ("TIL", "learned that", "discovered", "found out", "realized"), encounters blockers ("stuck on", "blocked by", "cannot", "impediment"), achieves progress ("completed", "finished", "milestone", "done with"), identifies patterns ("pattern", "we always", "recurring", "common approach"), asks about past work ("what did we decide", "why did we", "how did we solve", "remember when", "previously"), requests memory operations ("capture this", "remember this", "save this decision", "recall", "search memories"), or starts work on topics with likely stored context ("working on authentication", "implementing database", "debugging").
- ▌ Memory Exploring · aibot88 bundleUse when the user asks how code works, wants to understand architecture, trace execution flows, or explore unfamiliar parts of the codebase. Examples: "how does X work?", "what calls this function?", "show me the auth flow", "where is the DB logic?".
- ▌
- ▌
- ▌ Moai Domain Uiux · aibot88 bundleUI/UX design systems specialist covering accessibility, icons, theming, design tokens, and user experience patterns. Use when working on design systems, WCAG compliance, ARIA patterns, or dark mode theming.
- ▌
- ▌ Mortgage Lending · aibot88 bundleLoan products, rate structures, underwriting guidelines, compliance requirements, and closing procedures
- ▌ Mythril Symbolic · aibot88 bundleSymbolic execution analysis using Mythril for deep vulnerability detection in smart contracts. Supports configurable transaction depth, timeout settings, and proof-of-concept exploit generation.
- ▌ Openstack Networking Debug · aibot88 bundleOpenStack networking debug operations skill for SDN troubleshooting, packet tracing, and flow analysis. Covers OVS/OVN debugging (ovs-vsctl, ovs-ofctl, ovs-appctl, ovn-nbctl, ovn-sbctl, ovn-trace), security group analysis via OVS flow rules and conntrack, DHCP troubleshooting through namespace inspection and dnsmasq diagnostics, floating IP diagnosis with NAT rule and ARP verification, network namespace inspection (ip netns), MTU chain analysis for overlay networks, DNS resolution debugging, and east-west traffic diagnosis. Use when diagnosing network connectivity failures, tracing packets through the SDN stack, or analyzing flow tables in a running OpenStack cloud.
- ▌ Nginx Config Gen · aibot88 bundle트리거: "nginx 설정", "nginx config", "엔진엑스 설정", "리버스 프록시 설정", "ssl 설정" 수행: Nginx 리버스 프록시·SSL(Let's Encrypt) 설정 생성. 다중 서비스 서브도메인 라우팅 지원 출력: nginx.conf, 서비스별 server block 파일, docker-compose 통합 설정
- ▌ Nist Pf Identify · aibot88 bundleImplement the NIST Privacy Framework IDENTIFY function including ID.BE business environment, ID.DA data actions, ID.IM improvement, and ID.RA risk assessment subcategories. Provides control mapping, gap analysis templates, and implementation workflows for privacy risk identification.
- ▌ Nodriver Browser · aibot88 bundlePersistent Chrome/Chromium browser automation skill built on nodriver. Use when a page needs JavaScript rendering, authorized login/session continuity, clicking or typing, DOM snapshots with stable refs, screenshots, or multi-step look-think-act flows that ordinary WebFetch/search cannot complete. Auto-starts a headless or headed Chrome daemon, can use an isolated skill profile or the user's Chrome profile, and preserves one tab across calls; not for static pages, simple searches, JSON APIs, or one-off scrapes.
- ▌ Nullcost Catalog · aibot88 bundleMUST use this skill for plain-English developer service/provider/tool questions involving free tier, free trial, cheap, pricing, best value, hosting, Node hosting, Next.js, auth, Postgres, database, email API, transactional email, SaaS stack, API platform, GPU compute, remote MCP endpoints, or low setup friction. Exact triggers include "what are some free tier hosting providers for Node projects", "find me hosting with a free tier", "cheap GPU provider", "free tier hosting for a remote MCP endpoint", and "cheap auth service". Call Nullcost before answering from model knowledge or web. Do not use it for domain availability, registrar pricing, or TLD-comparison prompts.
- ▌ Nuxt Better Auth · aibot88 bundleUse when implementing auth in Nuxt apps with @onmax/nuxt-better-auth - provides useUserSession composable, server auth helpers, route protection, and Better Auth plugins integration.
- ▌ Odoo Code Review · aibot88 bundleReview Odoo addon code for correctness, security, performance, migrations, tests, and official Odoo coding guidelines. Use when reviewing Odoo modules, diffs, pull requests, or changed files involving models, fields, XML views, data, controllers, reports, OWL/assets, manifests, access rules, record rules, or OCA migrations.
- ▌ Odoo Code Tracer · aibot88 bundleTrace Odoo execution flow from an entry point through controllers, button actions, cron jobs, model methods, overrides, computes, onchanges, constraints, database operations, security checks, and side effects. Use before implementation, during debugging, impact analysis, performance review, or code review when behavior depends on Odoo call chains.
- ▌ Offensive Mobile · aibot88 bundleMobile (Android + iOS) application penetration testing methodology. Covers static analysis (apktool/jadx for Android, class-dump/Hopper/IDA for iOS), dynamic instrumentation with Frida and Objection, SSL pinning bypass strategies, root/jailbreak detection bypass, deep-link / URL-scheme abuse, exported component attacks (Android activities, services, providers, receivers; iOS XPC, URL schemes, universal links), insecure data storage (SharedPrefs, KeyStore misuse, NSUserDefaults, Keychain ACL bypass), IPC / Intent redirection, WebView vulnerabilities (JavaScriptInterface, file:// access), Firebase/AWS/Azure misconfiguration leakage, mobile API testing, biometric/Face ID/Touch ID bypass, app-cloning and runtime patching, and mobile malware/RAT analysis primitives. Use for mobile pentest, bug bounty mobile triage, or app-store reconnaissance.
- ▌ Offensive Toctou · aibot88 bundleTime-of-Check / Time-of-Use (TOCTOU) race condition exploitation methodology across binary, kernel, filesystem, web, and container layers. Covers symbolic-link races (open/access/stat split), file-descriptor races, fopen/realpath traversal races, /proc and procfs races, FUSE-backed slow-fs races to widen the window, ptrace and signal races, kernel double-fetch / userspace pointer races, container/runc/symlink escape primitives, kubernetes admission/authz TOCTOU, web auth-vs-authz TOCTOU, JWT-claim TOCTOU at gateway vs service, payment/idempotency races, and modern race-amplification techniques (single-packet attack, slow loris, FUSE pause, cgroup freeze, scheduler shaping). Use when you've identified a 'check then act' pattern in code, when fuzzing for race conditions, or when exploiting concurrency bugs in privileged binaries / kernel / orchestrators.
- ▌ Offensive Z Wave · aibot88 bundleZ-Wave attack methodology — sniffing with Z-Force / EZ-Wave / RTL-SDR + ZniffMobile, S0 (legacy) network-key derivation flaw and key reuse, S2 (modern) ECDH commissioning analysis, replay/injection on unauthenticated nodes, default-key brute-force on test deployments, and home-automation hub pivots. Use when targeting Z-Wave smart home devices (door locks, sensors, garage controllers) — common in mid-2010s smart home deployments still in production.
- ▌ Op Shell Plugins · aibot88 bundleUse this skill when the user wants to authenticate third-party CLIs (gh, aws, stripe, doctl, hcloud, etc.) using 1Password instead of plaintext config files or environment variables — anything involving `op plugin init`, `op plugin run`, `op plugin list`, `op plugin inspect`, `op plugin clear`, `~/.op/plugins.sh`, biometric auth for CLIs, or replacing tokens in `~/.aws/credentials` / `~/.config/gh` / etc.
- ▌ Open Cve Scanner · aibot88 bundle오픈소스 취약점 분석 스킬. 사용자가 오픈소스 패키지 이름과 사용 중인 버전을 입력하면, NVD(NIST), OSV.dev(Google), GitHub Advisory 3개 데이터 소스에서 CVE 취약점을 조회하여 최신 버전 정보와 함께 보안 리포트를 생성한다. 마크다운, Excel/CSV, JSON 형식으로 출력 가능하다. package.json, requirements.txt 등 의존성 파일 업로드를 통한 일괄 분석도 지원한다. "CVE", "취약점", "vulnerability", "보안 검사", "security audit", "오픈소스 보안", "패키지 취약점", "의존성 검사", "dependency check" 등의 키워드가 포함된 요청에서 트리거한다. cve-scanner라는 이름으로 직접 호출할 수도 있다.
- ▌ Ops Scale Engine · aibot88 bundleStartup operations and scaling engine covering process design (SOPs), metrics/KPI dashboards, financial operations, vendor management, supply chain, customer success operations, data governance, business continuity planning, quality management, build vs buy vs partner decisions, tech stack selection, infrastructure scaling, and operational maturity modeling. Includes India operations stack covering GST compliance, TDS, transfer pricing, import/export (DGFT), labour compliance, factory licensing, FSSAI/CDSCO/BIS certifications, and India-specific vendor/logistics ecosystem. Use when user mentions operations, ops, process, SOP, metrics, KPI, dashboard, vendor management, supply chain, logistics, customer success, data governance, quality, scaling, infrastructure, tech stack, build vs buy, operational efficiency, automation, workflow, India GST, TDS, import export, DGFT, factory license, FSSAI, or any operational scaling need.
- ▌ Orchestra Intake · aibot88 bundleClassify and file every newly installed skill, plugin, MCP, connector, or agent into the right orchestra — never archive. Use whenever you install/add a new repo, skill, plugin, MCP server, or agent ("I installed X", "added Y", "npx skills add Z", "new repo", "set up this MCP"). Runs a security scan, classifies the tool, places it in an orchestra with usage notes, logs it, and reports back. This is the self-organizing layer of the orchestra system.
- ▌ Otel Go Reviewer · aibot88 bundleReview pull requests, diffs, patches, or design proposals for the open-telemetry/opentelemetry-go repository with a senior maintainer mindset. Use when changes in opentelemetry-go may affect OpenTelemetry specification compliance, repository contribution rules, changelog requirements, module versioning boundaries, API or telemetry compatibility, performance-sensitive paths, concurrency or lifecycle behavior, or test coverage.
- ▌ Patent Assistant · aibot88 bundleAssists R&D teams with patent technical disclosure drafting and patent/novelty search analysis; use when users ask to write a patent disclosure, structure an invention description, search related patents, or assess novelty.
- ▌ Patent Landscape · aibot88 bundleUse when analyzing biotech patent landscapes, identifying white spaces in pharmaceutical IP, tracking competitor patents, or assessing freedom to operate for drug development. Provides comprehensive patent analysis and strategic insights for life sciences innovation.
- ▌ Pentest Bizlogic · aibot88 bundleBusiness logic flaw hunting — price manipulation, race condition, workflow bypass, authorization edge case advisory. Triggers on business logic, bizlogic, race condition, price manipulation, workflow bypass, payment flaw, coupon abuse, refund abuse, time-of-check race.
- ▌ Pentest Wireless · aibot88 bundleWireless network pentest — WPA/WPA2/WPA3, evil twin, 802.1X enterprise, Bluetooth advisory. Triggers on wireless pentest, WiFi, WPA2, WPA3, PMKID, evil twin, deauth, Aircrack, hcxdumptool, 802.1X, Bluetooth, BLE security.
- ▌ Peon Ping Rename · aibot88 bundleRename the current Claude session for peon-ping notifications and terminal tab title. Use when user wants to give this session a custom name like "/peon-ping-rename Auth Refactor". Call with no argument to reset to auto-detect.
- ▌ Perf Benchmarker · aibot88 bundleUse when running performance benchmarks, establishing baselines, or validating regressions with sequential runs. Enforces 60s minimum runs (30s only for binary search) and no parallel benchmarks.
- ▌ Persona Composer · aibot88 bundleCompose Dutch-context personas on-demand from external trait pools and pre-authored coupled archetype bundles. Returns 1-30 composed personas given optional constraints (domain + role catalog, count, diversity requirements, output format). All output in Dutch. Callable by other skills (ontdek-kansen, business-case-management, user-research) via the Skill tool when they need disposable, domain-relevant persona sets.
- ▌ Persona It Admin · aibot88 bundleThis skill should be used when the user says "IT admin mode", "check for security issues", "review audit logs", "configure Drive permissions", "monitor login activity", "run IT standup", or "manage Workspace settings", or wants to administer IT operations, enforce security policies, and review pending requests in Google Workspace.
- ▌ Phonics Decoding · aibot88 bundleLetter-sound relationships, decoding strategies, and word-attack skills for reading unfamiliar text. Covers alphabetic principle, phoneme-grapheme correspondences (single letters, digraphs, diphthongs, r-controlled vowels), syllable types (closed, open, VCe, vowel team, r-controlled, consonant-le), morphemic analysis (prefixes, suffixes, roots), multisyllabic word strategies, and fluency development through automaticity. Use when teaching decoding, diagnosing reading errors, analyzing miscue patterns, or building word-attack routines.
- ▌ Plugin Validator · aibot88 bundleAutomatically validates Claude Code plugin structure, schemas, and compliance when user mentions validate plugin, check plugin, or plugin errors. Runs comprehensive validation specific to claude-code-plugins repository standards.
- ▌ Pm Design Critic · aibot88 bundleCritically review the user-facing surface of a PRD, design spec, or feature proposal against behavioral and UX principles. Use when a PM has a solution in hand and wants the design layer pressure-tested — defaults, friction placement, choice architecture, information density, AI surface decisions, peak-and-end moments. Distinct from pm-red-team (strategy adversary) and pm-evaluator (rubric scoring); this skill stays at the design layer and asks whether the design works with human cognition or against it. Returns the three load-bearing design holes with specific re-writes.
- ▌ Pr Review Expert · aibot88 bundleUse when the user asks to review pull requests, analyze code changes, check for security issues in PRs, or assess code quality of diffs.
- ▌ Pre Commit Guard · aibot88 bundleUse before any git commit or PR. Runs format/lint/typecheck/tests, checks for secrets/large files/debug statements, validates commit message. Triggers готов к commit, проверь перед commit, можно ли пушить, ready to merge.
- ▌ Preflight Checks · aibot88 bundleReference document describing six pre-flight checks (clean git state, not detached HEAD, gh auth, issue exists and OPEN, remote reachable, duplicate-branch warning) as pure bash exit codes with no LLM calls. Reference only (policy document; consumed by `/flow:start` Phase 0).
- ▌ Privacy Manifest · aibot88 bundlePrivacyInfo.xcprivacy generator en validator. Run bij elke dependency change en pre-submit.
- ▌ Property Testing · aibot88 bundleProperty-based and generative testing across the polyglot stack. TRIGGER when: user asks about property-based testing, generative testing, QuickCheck, Hypothesis, proptest, StreamData, fast-check, fuzzing test inputs, or finding edge cases that example tests miss. DO NOT TRIGGER when: user asks about TDD workflow (use tdd), mutation testing (use tdd), load testing (use performance-profiler), or security fuzzing (use security-audit).
- ▌ Pwntools Exploitation Skill · aibot88 bundleExploit development automation using pwntools framework
- ▌ QA Security Scan · aibot88 bundleSecurity scanning templates and checklists for OWASP Top 10, authentication, authorization, data protection. Use when conducting security testing or vulnerability assessment. This skill provides comprehensive security testing: - OWASP Top 10 checklist with remediation - Authentication and authorization testing - Data protection verification - Security report generation - Integration with Codex CLI MCP for automated scanning Triggers: "security scan", "vulnerability check", "OWASP", "security test", "セキュリティスキャン", "脆弱性チェック", "セキュリティテスト"
- ▌ Qpay Integration · aibot88 bundleIntegrate QPay — Mongolia's primary QR payment system — into a developer's project so they can accept MNT payments through Khan Bank, Golomt, State Bank, Xac Bank and other Mongolian banks. Trigger this whenever the user mentions QPay, qpay.mn, merchant.qpay.mn, merchant-sandbox.qpay.mn, or asks how to accept MNT / payments from Mongolian users / Mongolian bank QR or deep links. Also trigger when a Mongolian indie dev or business says they need payments and is targeting domestic MNT customers, even if they haven't said "QPay" — for the Mongolian domestic market QPay is the default, so raise it. Covers getting credentials from QPay, setting up .env without breaking existing keys, sandbox vs production switching, generating invoice and webhook code in their stack (Next.js, Node/Express, Python FastAPI/Django, PHP/Laravel), local testing with ngrok, and a go-live checklist. The goal is the developer ends the session with QPay actually working — not just a plan or a snippet.
- ▌ Quality Reviewer · aibot88 bundleDeep code review with web research to verify against latest ecosystem. Use when user says 'double check against latest', 'verify versions', 'check security', 'review against docs', or needs deep analysis beyond automatic quality hook.
- ▌ Quarto Authoring · aibot88 bundleUse when the user is explicitly working with Quarto, .qmd files, _quarto.yml, Quarto projects, or Quarto features such as callouts, cross-references, citations, Mermaid diagrams, extensions, websites, books, presentations, and reports. Also use for explicit migration from or comparison with R Markdown, bookdown, blogdown, xaringan, distill, or Jupyter notebooks to Quarto. Do not use for general R Markdown or related-format questions unless Quarto or migration to Quarto is explicitly mentioned.
- ▌ Rails Setup Flow · aibot88 bundleComplete Rails project setup workflow. Installs dependencies via Bundler, configures database connections, generates Rails app scaffold, validates the dev environment, and generates GitHub Actions or GitLab CI pipelines with linting, testing, and security scanning. Use when starting a new Rails project, running `rails new`, configuring a Gemfile or .ruby-version, setting up a development environment, or wiring up CI/CD for a Ruby on Rails app. Trigger: setup project, new Rails app, configure CI/CD, dev environment setup, rails new, Gemfile setup, .ruby-version, Ruby on Rails project bootstrap.
- ▌ Recht Compliance · aibot88 bundleCompliance gap analysis for Austrian law — KSchG, DSGVO/DSG, MRG, UGB, GewO, ArbVG, FAGG. For contracts, websites, and business operations.
- ▌ Red Team Bundler · aibot88 bundleInteractively prepares a targeted Red Team Review package. It conducts a brief discovery interview to determine the threat model, generates a strict security auditor prompt, compiles a manifest of relevant project files, and bundles them into a single Markdown artifact or ZIP archive ready for an external LLM (like Grok, ChatGPT, or Gemini) or a human reviewer.
- ▌ Research Analyst · aibot88 bundleUse this agent when you need comprehensive research across multiple sources with synthesis of findings into actionable insights, trend identification, and detailed reporting. Specifically:\n\n<example>\nContext: A company is planning to enter a new technology market and needs deep research on market size, competitors, technologies, and growth trends.\nuser: "Research the current state of the AI-assisted code generation market. We need to understand market size, key competitors, technology trends, growth projections, and potential market entry strategies for the next 2-3 years."\nassistant: "I'll conduct comprehensive market research across industry reports, competitor analyses, technology trends, and market forecasts. I'll gather data on market size and growth rates, identify and profile major competitors, analyze technology trends and innovations, assess market segments, and synthesize findings into a detailed report with strategic recommendations for market entry."\n<commentary>\nInvoke research-analyst whe
- ▌ REST Assured API Testing · aibot88 bundleAPI testing skill using REST Assured for Java, covering request specifications, response validation, authentication, JSON schema validation, and serialization.
- ▌ Review Claude Md · aibot88 bundleAudit and fix CLAUDE.md files using a tiered binary checklist based on official Anthropic best practices and community guidelines. Use when the user asks to "review CLAUDE.md", "audit CLAUDE.md", "score CLAUDE.md", "improve CLAUDE.md", or "fix CLAUDE.md".
- ▌ Review Github Pr · aibot88 bundleGitHub PR code review - fetches the diff, runs automated checks, launches 3 parallel review agents (correctness, convention compliance, efficiency) to analyze changes, validates findings against actual code, and drafts a GitHub review. Use when reviewing pull requests. Triggers on "review this PR", "review PR
- ▌ Review Migration · aibot88 bundleUse when planning or reviewing production database migrations, adding columns, indexes, constraints, backfills, renames, table rewrites, or concurrent operations. Covers phased rollouts, lock behavior, rollback strategy, strong_migrations compliance, and deployment ordering for schema changes.
- ▌ Routeros Sniffer · aibot88 bundleRouterOS packet capture and TZSP streaming for protocol debugging. Use when: capturing packets on RouterOS, setting up /tool/sniffer, streaming live traffic via TZSP, using firewall mangle action=sniff-tzsp, debugging network protocols on MikroTik, receiving TZSP with Wireshark or tshark, saving pcap files from RouterOS, or when the user mentions packet sniffer, TZSP, sniff-tzsp, /tool/sniffer, or packet capture on RouterOS.
- ▌ S4hana Create Po · aibot88 bundleCreate purchase orders (POs) in SAP S/4HANA Cloud Public or on-prem private edition via the OData V2 A_PurchaseOrder deep-insert at API_PURCHASEORDER_PROCESS_SRV. Use whenever the user wants to post, create, add, generate, seed, clone, or backdate purchase orders on S/4HANA — phrases like "make me a few POs", "post 20 POs", "seed PO demo data", "create PO for supplier X material Y", "clone these on-prem POs to cloud". Handles header+item deep-insert, CSRF token flow, master-data resolution (supplier/material/plant/currency from PO ItemCategory 0), idempotent bulk batches, and known field constraints (UoM='PC', no D/9 service item categories, no account-assignment deep-insert). Do NOT use for service-based POs (item category D/9), framework agreements, scheduling agreements, or PO updates — those need different shapes (track under generic skill until verified).
- ▌ Sales Mailerlite · aibot88 bundleMailerLite platform help — email campaigns, automation workflows, landing pages, signup forms, websites, e-commerce, digital products, paid newsletters, transactional email, and email verification. Use when emails aren't reaching subscribers, automation workflow isn't triggering, landing page conversion is low, signup forms aren't collecting leads, MailerLite account got suspended or rejected, domain authentication (SPF/DKIM) setup is failing, free plan limits are too restrictive, or you need help with the MailerLite API. Do NOT use for cross-platform email strategy (use /sales-email-marketing) or general deliverability (use /sales-deliverability).
- ▌ Sales Mimestream · aibot88 bundleMimestream platform help — native macOS email client built exclusively for Gmail using the Gmail API, with tracking prevention, email templates, Markdown compose, multi-account unified inbox, snooze, and deep macOS integration ($50/yr, no free tier). Use when setting up Mimestream for multiple Gmail accounts, Mimestream not showing labels or categories correctly, wondering if Mimestream is worth it over Gmail web or Apple Mail, comparing Mimestream to Superhuman or Airmail or Spark Mail for Mac, Mimestream notifications not working or delayed, Mimestream templates or Markdown formatting issues, frustrated by no Mimestream iOS app and stuck on Gmail mobile, or evaluating Mimestream privacy and tracking prevention. Do NOT use for AI email triage or AI-drafted replies (Mimestream has no AI features — use /sales-superhuman or /sales-fyxer). Do NOT use for team shared inbox or collaboration (use /sales-missive or /sales-hiver).
- ▌ Sales Note Taker · aibot88 bundleSales meeting note-taker and conversation-intelligence strategy — platform selection (Fathom, Fireflies, Avoma, Gong, Otter, Fellow, Grain, Sembly, Read.ai, MeetGeek, Jamie, Krisp, Colibri, Cluely, Jamy, Wave, tl;dv, Claap, Tactiq, Granola, Hedy, Omi, Bluedot, Lindy, Notta, Rilla, Siro, Plaud, Speakwise, Sybill, Winn.ai, Sonnet, Supernormal, VoiceToNotes, Sonix, Outdoo, Jiminny, Enthu.AI, Demodesk, Clari Copilot, Salesken, Cresta, Balto, Observe.AI, Oliv, Weflow, Noota, Dialpad, Modjo, Verbit, Temi, Char, Amical, Handy, IRIS Clarity, Soz AI, Shadow, HappyScribe, Circleback, monday Notetaker, Memoro, MinutesLink, Voicenotes, Letterly, Cleft Notes, Coconote, HyNote AI, Backtrack, Superpowered, Noted, People.ai/Backstory, Scribbl, Audionotes, Bubbles, KUDO, Interprefy, Transync AI, Rimo, Liznr, Meeting.ai, KaraX.ai, reason8, NoteWave) plus backend API integration for auto-downloading transcripts into CRM, data warehouse, Slack, or internal tools. Use when choosing an AI note-taker, comparing pricing or features,
- ▌ Sales Observe AI · aibot88 bundleObserve.AI platform help — enterprise contact center intelligence with Auto QA scoring on 100% of interactions, Agent Copilot real-time guidance, Coaching Copilot post-call performance management, VoiceAI and ChatAI virtual agents, screen recording, Insights Copilot. Use when setting up Observe.AI Auto QA scorecards for contact center agents, Agent Copilot not surfacing guidance during live calls, transcription accuracy issues or speaker attribution errors, comparing Observe.AI vs Balto or Cresta or CallMiner for contact center QA, integrating Observe.AI with Five9 or Amazon Connect or Talkdesk, or configuring compliance monitoring and regulatory audit trails. Do NOT use for building a general coaching program (use /sales-coaching) or reviewing a specific call transcript (use /sales-call-review).
- ▌ Sales Salesforce · aibot88 bundleSalesforce platform help — Sales Cloud, Service Cloud, Marketing Cloud, Commerce Cloud, Data Cloud, Agentforce AI, Platform (Lightning/Apex/Flow), AppExchange, and REST API (v66.0, OAuth 2.0, SOQL, Bulk API 2.0). Use when Salesforce workflows or Flows aren't firing, reports don't show the right numbers, lead assignment rules aren't working, Apex triggers are failing, AppExchange app won't install, need help with SOQL queries, implementation is stalling, data migration to or from Salesforce, or not sure which Salesforce edition you need. Do NOT use for CRM comparison and selection (use /sales-crm-selection) or CRM data cleanup strategy (use /sales-data-hygiene).
- ▌ Sales Spark Mail · aibot88 bundleSpark Mail platform help — cross-platform AI email client by Readdle with Smart Inbox categorization, Gatekeeper sender screening, AI writing and summarization, email translation, team collaboration (shared drafts, internal comments, delegation), calendar integration, works with Gmail/Outlook/iCloud/Exchange/Yahoo/IMAP on Mac/Windows/iOS/Android (Free, Premium $5/mo, Teams $6.99/user/mo). Use when setting up Spark Mail Smart Inbox or Gatekeeper for email triage, Spark AI writing or summarization not working well, Spark sync issues or crashes across devices, comparing Spark to Superhuman or Shortwave or Apple Mail, choosing between Spark free vs Premium vs Teams plans, or worried about Spark Mail privacy and server-side processing. Do NOT use for comparing AI email assistants broadly (use /sales-do). Do NOT use for team shared inbox with ticketing (use /sales-missive or /sales-hiver).
- ▌ Sales Zerobounce · aibot88 bundleZeroBounce platform help — email validation, email finder, AI scoring, activity data, inbox placement testing, blacklist monitoring, DMARC, warmup. Use when your email list has too many bounces, catch-all addresses are hurting deliverability, you need to check if your IP is blacklisted, DMARC reports show unauthorized senders, or the ZeroBounce API isn't returning expected validation results. Do NOT use for general deliverability strategy (use /sales-deliverability), enrichment strategy (use /sales-enrich), or prospect list building strategy (use /sales-prospect-list).
- ▌ Sast Missingauth · aibot88 bundleDetect missing authentication and broken function-level authorization vulnerabilities in a codebase using a three-phase approach: recon (map endpoints and the role/permission system), batched verify (check auth/authz in parallel subagents, 3 endpoints each), and merge (consolidate batch results). Covers unauthenticated access and vertical privilege escalation (e.g., regular user accessing admin-only functions). Requires sast/architecture.md (run sast-analysis first). Outputs findings to sast/missingauth-results.md. Use when asked to find missing auth, broken access control, or privilege escalation bugs.
- ▌ Schema Authoring · aibot88 bundleAuthor a Schema.yaml from scratch for the Jardis Designer — from a plain-text domain idea, draft tables (snake_case plural), columns with realistic types, primary keys, indexes (primary/unique/index), optional foreign keys. Output matches the DB-export format the Designer's importer parses.
- ▌ Tray Scripts Externos · aibot88 bundleAPI de Scripts Externos da Tray. Utilize quando o desenvolvedor precisar gerenciar scripts JavaScript customizados injetados na vitrine da loja, incluindo listagem, cadastro, atualização e exclusão.
- ▌ Security Arsenal · aibot88 bundleSecurity payloads, bypass tables, wordlists, gf pattern names, always-rejected bug list, and conditionally-valid-with-chain table. Use when you need specific payloads for XSS/SSRF/SQLi/XXE/IDOR/path-traversal, bypass techniques, or to check if a finding is submittable. Also use when asked about what NOT to submit.
- ▌ Security Headers · aibot88 bundleSecurity headers and hardening for Next.js — CSP, CORS, rate limiting, CSRF protection, input sanitization, secrets management. Use when hardening a Next.js app, configuring security headers, or implementing rate limiting.
- ▌ Security Hygiene · aibot88 bundleSecurity hygiene for GSD's self-modifying skill and agent system. Use this skill whenever: creating, editing, or deleting skill files (.claude/skills/, .claude/commands/), modifying agent definitions (.claude/agents/), working with YAML configuration or chipset files, handling JSONL observation data (.planning/patterns/), processing community-contributed skills or chipsets, any file path operations that could involve user input, or when installing/updating project-claude configuration. Also activates for discussions about skill-creator security, trust models, or content hygiene.
- ▌ Security Sandbox · aibot88 bundleIsolated analysis environment management for malware and exploit testing. Create and manage isolated VMs, configure Cuckoo Sandbox, set up REMnux/FlareVM environments, manage Docker-based analysis containers, and capture filesystem and process changes.
- ▌ Security Scanner · aibot88 bundleRun security scans including SAST, dependency scanning, and secret detection
- ▌ Session Template · aibot88 bundleApply task-specific templates to AI session plans using ai-update-plan. Use when starting a new task to load appropriate plan structure (feature, bugfix, refactor, documentation, security).
- ▌ Setup Zoom OAUTH · aibot88 bundleImplement Zoom authentication correctly. Use when setting up app credentials, choosing an OAuth grant, requesting scopes, handling token refresh, or debugging auth failures.
- ▌ Sharepoint Audit · aibot88 bundleGuide and run a SharePoint audit locally. Collect inputs, confirm PowerShell 7.4+ and Python 3.10+ are available, call PowerShell with certificate auth via wrapper, parse audit.json, and render Markdown/HTML. Use only local shell commands.