all publishers

gabrielmoreira

@gabrielmoreira source repo

21,231 published skills · page 64 of 213

  1. ▌
    Config Transcription Verification · gabrielmoreira
    When extracting hardcoded data to JSON, field values silently drift:
    17 repo stars
  2. ▌
    Register Feature Flag · gabrielmoreira
    Register the domain's feature flag in `feature_flag.xml`. This entry populates the `ps_feature_flag` table at install/upgrade and enables the flag-based routing between legacy and Symfony controllers.
    17 repo stars
  3. ▌
    Create TS Entry Point · gabrielmoreira
    Create the TypeScript entry point files for a new admin page. Covers the directory structure, listing and form entry points, and webpack registration. References init-js-components and init-grid-extensions for component/extension details. Trigger: "create JS entry point for {Domain}".
    17 repo stars
  4. ▌
    Prepare International Shipment Document Research · gabrielmoreira
    Prepare international shipment document research for commercial invoices, packing lists, transport documents, certificates, filings, and review boundaries.
    17 repo stars
  5. ▌
    Active Comparator Single Soc Faers Safety Comparison · gabrielmoreira
    Generates complete FAERS pharmacovigilance study designs for multi-drug or class-level safety comparison inside one predefined SOC or AE family using active comparators, disproportionality analysis, subgroup characterization, and reviewer-facing evidence control.
    17 repo stars
  6. ▌
    Comorbidity Common Immune Biomarker Research Planner · gabrielmoreira
    Generates complete comorbidity-oriented shared-biomarker bioinformatics research designs from a user-provided disease pair and validation direction. Use when a study links two clinically related diseases through shared DEGs, enrichment, PPI hub genes, machine-learning feature selection, public diagnostic validation, gene-regulatory networks, immune infiltration, and optional downstream follow-up. Covers five study patterns (shared-DEG discovery, hub-gene prioritization, machine-learning biomarker selection, immune/regulatory interpretation, multi-layer validation) and always outputs Lite / Standard / Advanced / Publication+ with a recommended primary plan, stepwise workflow, figure plan, validation hierarchy, minimal executable version, publication upgrade path, and strictly verified literature retrieval.
    17 repo stars
  7. ▌
    Staged Transformation Pipeline · gabrielmoreira
    Monolithic transformations are hard to test and debug:
    17 repo stars
  8. ▌
    Audit Legacy Controller · gabrielmoreira
    Read the legacy `Admin{Domain}sController.php` without modifying it. Extract every field rendered, every action method, and every `Hook::exec()` call.
    17 repo stars
  9. ▌
    Write Upgrade SQL Script · gabrielmoreira
    Author a SQL upgrade script for shops upgrading to a target PrestaShop version. Covers schema changes, default fixtures / configuration row updates, and feature-flag state transitions.
    17 repo stars
  10. ▌
    Cross Disease Shared Biomarker Network Research Planner · gabrielmoreira
    Generates complete cross-disease shared-biomarker bioinformatics research designs from a user-provided disease pair and validation direction. Always use this skill whenever a user wants to design, plan, or build a multi-dataset study linking two related diseases through shared DEGs, enrichment, PPI hub genes, public validation, regulatory-network analysis, immune infiltration, drug-gene interaction screening, and optional qRT-PCR or cell-line validation. Covers five study patterns (shared-DEG discovery, hub-gene prioritization, regulatory-network interpretation, immune/drug follow-up, bioinformatics-plus-validation) and always outputs four workload configs (Lite / Standard / Advanced / Publication+) with recommended primary plan, step-by-step workflow, figure plan, validation strategy, minimal executable version, publication upgrade path, and a strictly verified reference literature retrieval layer with real references only.
    17 repo stars
  11. ▌
    Stata C Plugins · gabrielmoreira bundle
    Develop high-performance C/C++ plugins for Stata using the stplugin.h SDK. Use when the user asks to create a Stata plugin, write C/C++ code for Stata, accelerate a Stata command with C, build cross-platform Stata plugins, or translate/port a Python or R package into Stata. Covers the full lifecycle: SDK setup, data flow, memory safety, .ado wrappers with preserve/merge, cross-platform compilation, performance optimization (pthreads, pre-sorted indices, XorShift RNG), debugging, and distribution via net install. Also includes a translation workflow for porting Python/R packages to Stata — wrapping existing C++ backends when available, or writing C from scratch when not.
    17 repo stars
  12. ▌
    Create Controller Listing · gabrielmoreira
    Create the listing page actions in the admin controller: index (grid with filters), delete, toggle status, and any bulk actions the entity requires. Trigger: "create listing for {Domain}", "create index action for {Domain}".
    17 repo stars
  13. ▌
    Skill Invocation Router · gabrielmoreira
    Design and test explicit human, implicit model or agent, programmatic application, bounded skill-composition, and harness activation policies for an Agent Skill catalog.
    17 repo stars
  14. ▌
    Ian Xiaohei Svg Motion · gabrielmoreira
    Create Ian Xiaohei-style HTML/SVG motion illustrations for Chinese articles, scripts, storyboard scenes, workflow explanations, concept metaphors, and short video visual aids. Use when the user asks for 小黑 SVG、漫画感 HTML、分层 SVG 动效、把小黑生图做成 HTML/SVG、可编辑矢量动效、口播流程动画、手绘漫画动效、正文配图动画, or wants a Xiaohei illustration style adapted into controllable HTML/SVG/GSAP output instead of raster image generation.
    17 repo stars
  15. ▌
    Nhanes Clinical Retrospective Biomarker Research Planner · gabrielmoreira
    Generates complete NHANES-style cross-sectional epidemiology + retrospective clinical validation research designs from a user-provided disease and biomarker direction. Always use this skill whenever a user wants to design, plan, or build a population-level biomarker association study using NHANES or similar survey datasets, especially when the article logic includes disease definition, biomarker formula derivation, multivariable logistic regression, restricted cubic spline analysis, subgroup stability testing, and a secondary hospital-based retrospective validation cohort. Covers five study patterns (cross-sectional association, dose-response / RCS, subgroup-stability, NHANES + retrospective validation, preliminary screening-performance) and always outputs four workload configs (Lite / Standard / Advanced / Publication+) with recommended primary plan, step-by-step workflow, figure plan, validation strategy, minimal executable version, publication upgrade path...
    17 repo stars
  16. ▌
    Implementing Email Sandboxing With Proofpoint · gabrielmoreira
    Email sandboxing detonates suspicious attachments and URLs in isolated environments to detect zero-day malware and evasive phishing payloads. Proofpoint Targeted Attack Protection (TAP) is an industry
    17 repo stars
  17. ▌
    Detecting Malicious Scheduled Tasks With Sysmon · gabrielmoreira
    Detect malicious scheduled task creation and modification using Sysmon Event IDs 1 (Process Create for schtasks.exe), 11 (File Create for task XML), and Windows Security Event 4698/4702. The analyst correlates task creation with suspicious parent processes, public directory paths, and encoded command arguments to identify persistence and lateral movement via scheduled tasks. Activates for requests involving scheduled task detection, Sysmon persistence hunting, or T1053.005 Scheduled Task/Job analysis.
    17 repo stars
  18. ▌
    Auditing Tls Certificate Transparency Logs · gabrielmoreira
    Monitors Certificate Transparency (CT) logs to detect unauthorized certificate issuance, discover subdomains via CT data, and alert on suspicious certificate activity for owned domains. Uses the crt.sh API and direct CT log querying based on RFC 6962 to build continuous monitoring pipelines that catch rogue certificates, track CA behavior, and map the external attack surface. Activates for requests involving certificate transparency monitoring, CT log auditing, subdomain discovery via certificates, or certificate issuance alerting.
    17 repo stars
  19. ▌
    Performing Dark Web Monitoring For Threats · gabrielmoreira
    Dark web monitoring involves systematically scanning Tor hidden services, underground forums, paste sites, and dark web marketplaces to identify threats targeting an organization, including leaked cre
    17 repo stars
  20. ▌
    Exploiting Client Side Path Traversal · gabrielmoreira
    Exploiting Client-Side Path Traversal (CSPT, also known as On-Site Request Forgery) where attacker-controlled input is concatenated into a same-origin URL that the victim's browser fetches with their credentials, enabling CSPT-to-CSRF, cache deception/poisoning, and open-redirect-to-XSS/SSRF chains. Activates when SPA routers, fetch/XHR wrappers, or CSS/link generators build request paths from route params, stored values, or UI fragments.
    17 repo stars
  21. ▌
    Exploiting Xslt Server Side Injection · gabrielmoreira
    Exploiting server-side XSLT injection where an application transforms XML with attacker-influenced stylesheets, enabling processor fingerprinting, local file read, SSRF, file write, and remote code execution via processor-specific extension functions (libxslt/lxml, Saxon, Xalan, .NET msxsl:script, PHP php:function). Activates when XSL/XSLT content or document/stylesheet references reach a server-side transformer.
    17 repo stars
  22. ▌
    Performing Second Order SQL Injection · gabrielmoreira
    Detect and exploit second-order SQL injection vulnerabilities where malicious input is stored in a database and later executed in an unsafe SQL query during a different application operation.
    17 repo stars
  23. ▌
    Performing Web Cache Poisoning Attack · gabrielmoreira
    Exploiting web cache mechanisms to serve malicious content to other users by poisoning cached responses through unkeyed headers and parameters during authorized security tests.
    17 repo stars
  24. ▌
    Repository Investigation · gabrielmoreira
    Investigate an unfamiliar repository before changing it. Use this whenever a coding task spans multiple modules, asks for architecture or root-cause analysis, names behavior whose implementation location is unknown, or risks editing before enough evidence is gathered.
    17 repo stars
  25. ▌
    Contradictory Findings Resolver · gabrielmoreira
    Explains why studies on the same biomedical topic reach different or opposing conclusions by auditing differences in population, endpoint definition, sample source, assay or platform, study design, statistical model, adjustment strategy, validation chain, and bias control. It separates true contradiction from apparent contradiction caused by framing or methods. Never fabricate references, PMIDs, DOIs, trial identifiers, dataset details, platform details, study features, or conflict explanations that are not supported by the input.
    17 repo stars
  26. ▌
    Novelty Vs Feasibility Assessor · gabrielmoreira
    Assesses whether a medical research topic is worth starting now by separating true novelty from pseudo-novelty, auditing real feasibility under stated resource constraints, and forcing a concrete start / narrow / redesign / stop decision. Always require explicit assumptions and never fabricate references, datasets, resource availability, precedent studies, or publication claims.
    17 repo stars
  27. ▌
    Qtl Colocalization Study Planner · gabrielmoreira
    Designs QTL colocalization studies that connect eQTL, pQTL, sQTL, or related molecular QTL signals with GWAS loci. Always use this skill whenever a user wants to plan, scope, or structure a locus-level study asking whether a GWAS association and a molecular QTL association may reflect the same underlying causal signal. Covers locus definition, QTL/GWAS source architecture, ancestry and LD alignment, single-locus vs multi-locus strategy, candidate-gene prioritization, optional fine-mapping, linked MR/SMR follow-up, and functional annotation. Always output four workload configurations (Lite / Standard / Advanced / Publication+) with a recommended primary plan, stepwise workflow, method rationale, evidence hierarchy, figure plan, minimal executable version, and strictly verified literature guidance with no fabricated references. Never equate colocalization with causality proof, mediation proof, or automatic target validation. Always include the mandatory Dataset Disclaimer immediately before any workflow section
    17 repo stars
  28. ▌
    Diagnostic Study Quality Assessment Quadas · gabrielmoreira
    Analyzes clinical diagnostic accuracy studies for bias using the QUADAS-2 tool. Use when Claude needs to assess the quality, risk of bias, or applicability of diagnostic accuracy studies (e.g., "Assess this paper using QUADAS-2").
    17 repo stars
  29. ▌
    MCP Apps Builder · gabrielmoreira
    **MANDATORY for ALL MCP server work** - mcp-use framework best practices and patterns. **READ THIS FIRST** before any MCP server work, including: - Creating new MCP servers - Modifying existing MCP servers (adding/updating tools, resources, prompts, widgets) - Debugging MCP server issues or errors - Reviewing MCP server code for quality, security, or performance - Answering questions about MCP development or mcp-use patterns - Making ANY changes to server.tool(), server.resource(), server.prompt(), or widgets This skill contains critical architecture decisions, security patterns, and common pitfalls. Always consult the relevant reference files BEFORE implementing MCP features.
    17 repo stars
  30. ▌
    Oce Platform Overview · gabrielmoreira
    Guide to OpenConstructionERP: architecture, modules, API surface and quick start. Use when starting any OpenConstructionERP work, onboarding a user to the platform, or deciding which module/endpoint to use.
    17 repo stars
  31. ▌
    Oce Validation Engine · gabrielmoreira
    Use the OpenConstructionERP validation engine: rule packs (BOQ quality, DIN 276, NRM, GAEB, MasterFormat, DPGF) that check estimates at import time and on demand. Use when verifying BOQ correctness or writing custom validation rules.
    17 repo stars
  32. ▌
    Latex Paper Conversion · gabrielmoreira
    This skill should be used when the user asks to convert an academic paper in LaTeX from one format (e.g., Springer, IPOL) to another format (e.g., MDPI, IEEE, Nature). It automates extraction, injection, fixing formatting, and compiling.
    17 repo stars
  33. ▌
    Machine Readable Content · gabrielmoreira
    Emoji, color codes, and visual markers in files parsed by regex or LLMs break tooling:
    17 repo stars
  34. ▌
    Version Stamp Automation · gabrielmoreira
    Version numbers in 5+ files WILL drift with manual edits:
    17 repo stars
  35. ▌
    Repurpose Content · gabrielmoreira
    Turn one source piece (blog, newsletter, transcript) into platform-native posts for X and LinkedIn.
    17 repo stars
  36. ▌
    Deal Qualify · gabrielmoreira
    MEDDPICC-based deal qualification worksheet — guide Deal through structured qualification of any opportunity and produce a filled card + recommended next action. Use when asked to "qualify this deal", "run MEDDPICC on this opportunity", "should we pursue this", or "is this deal real".
    17 repo stars
  37. ▌
    Keep Segment · gabrielmoreira
    Customer segmentation model builder — tiers customers by ARR, health, and expansion potential; defines CS motion per tier; maps resource allocation. Use when asked to "segment our customers", "define our CS tiers", "how should we allocate CS resources", "build a customer segmentation model", or "who gets high-touch vs. digital".
    17 repo stars
  38. ▌
    Bamboohr Core Workflow A · gabrielmoreira
    Execute BambooHR primary workflows: employee CRUD, directory sync, and custom reports. Use when managing employees, syncing employee data to external systems, or building HR data pipelines with BambooHR. Trigger with phrases like "bamboohr employees", "bamboohr employee management", "sync bamboohr directory", "bamboohr custom report", "add employee bamboohr".
    17 repo stars
  39. ▌
    Bamboohr Core Workflow B · gabrielmoreira
    Execute BambooHR secondary workflows: time off requests, PTO balances, benefits administration, and employee files/photos. Use when managing time off, checking PTO balances, handling benefits data, or working with employee documents in BambooHR. Trigger with phrases like "bamboohr time off", "bamboohr PTO", "bamboohr benefits", "bamboohr vacation", "bamboohr files", "bamboohr leave request".
    17 repo stars
  40. ▌
    Bamboohr Security Basics · gabrielmoreira
    Apply BambooHR security best practices for API keys, webhook verification, and PII data handling compliance. Use when securing API keys, implementing webhook signature validation, or handling sensitive employee data from BambooHR. Trigger with phrases like "bamboohr security", "bamboohr secrets", "secure bamboohr", "bamboohr PII", "bamboohr data protection".
    17 repo stars
  41. ▌
    Bamboohr Webhooks Events · gabrielmoreira
    Implement BambooHR webhook endpoints with HMAC signature validation and employee change event handling. Covers global and permissioned webhooks. Use when setting up real-time employee notifications, implementing sync triggers, or handling BambooHR webhook payloads. Trigger with phrases like "bamboohr webhook", "bamboohr events", "bamboohr real-time sync", "bamboohr notifications", "bamboohr employee changes".
    17 repo stars
  42. ▌
    Cohere Migration Deep Dive · gabrielmoreira
    Migrate from OpenAI/Anthropic/other LLM providers to Cohere, or vice versa. Use when switching LLM providers, migrating embeddings between models, or re-platforming existing AI integrations to Cohere API v2. Trigger with phrases like "migrate to cohere", "switch from openai to cohere", "cohere migration", "replace openai with cohere", "cohere replatform".
    17 repo stars
  43. ▌
    Fireflies Data Handling · gabrielmoreira
    Handle Fireflies.ai transcript data: export formats, PII redaction, retention policies, and compliance. Use when exporting transcripts, implementing data redaction, configuring retention, or ensuring GDPR/CCPA compliance. Trigger with phrases like "fireflies data", "fireflies PII", "fireflies GDPR", "fireflies data retention", "fireflies privacy", "fireflies export".
    17 repo stars
  44. ▌
    Instantly Data Handling · gabrielmoreira
    Implement Instantly.ai lead data management, GDPR/CAN-SPAM compliance, and list operations. Use when handling lead imports, managing block lists, implementing unsubscribe flows, or ensuring compliance with email regulations. Trigger with phrases like "instantly leads", "instantly data", "instantly GDPR", "instantly block list", "instantly lead management", "instantly unsubscribe".
    17 repo stars
  45. ▌
    Instantly Observability · gabrielmoreira
    Set up monitoring, alerting, and dashboards for Instantly.ai integrations. Use when implementing campaign health monitoring, account health alerts, or building analytics dashboards from Instantly data. Trigger with phrases like "instantly monitoring", "instantly dashboard", "instantly alerts", "instantly observability", "monitor instantly campaigns".
    17 repo stars
  46. ▌
    Langfuse Core Workflow B · gabrielmoreira
    Execute Langfuse secondary workflow: Evaluation, scoring, and datasets. Use when implementing LLM evaluation, adding user feedback, or setting up automated quality scoring and experiment datasets. Trigger with phrases like "langfuse evaluation", "langfuse scoring", "rate llm outputs", "langfuse feedback", "langfuse datasets", "langfuse experiments".
    17 repo stars
  47. ▌
    Langfuse Security Basics · gabrielmoreira
    Implement Langfuse security best practices for API keys and data privacy. Use when securing Langfuse integration, protecting API keys, or implementing data privacy controls for LLM observability. Trigger with phrases like "langfuse security", "langfuse API key security", "langfuse data privacy", "secure langfuse", "langfuse PII".
    17 repo stars
  48. ▌
    Lucidchart Hello World · gabrielmoreira
    Create a minimal working Lucidchart example. Trigger: "lucidchart hello world", "lucidchart example", "test lucidchart".
    17 repo stars
  49. ▌
    Mindtickle Hello World · gabrielmoreira
    Create a minimal working MindTickle example. Trigger: "mindtickle hello world", "mindtickle example", "test mindtickle".
    17 repo stars
  50. ▌
    Obsidian Security Basics · gabrielmoreira
    Implement secure Obsidian plugin development practices. Covers credential storage, input validation, XSS prevention, network security, URI handler safety, and Electron security. Use when handling user data, storing API keys, making network requests, or preparing for community plugin submission. Trigger with phrases like "obsidian security", "secure obsidian plugin", "obsidian data protection", "obsidian privacy", "obsidian api key storage".
    17 repo stars
  51. ▌
    Posthog Upgrade Migration · gabrielmoreira
    Upgrade posthog-js and posthog-node SDKs with breaking change detection. Covers v4 to v5 posthog-node migration (sendFeatureFlags change), posthog-js autocapture API changes, and version-specific gotchas. Trigger: "upgrade posthog", "posthog breaking changes", "update posthog SDK", "posthog version", "posthog migration".
    17 repo stars
  52. ▌
    Salesloft Common Errors · gabrielmoreira
    Diagnose and fix SalesLoft API errors: 401, 403, 422, 429, and 5xx. Use when encountering SalesLoft errors, debugging failed requests, or troubleshooting OAuth token issues. Trigger: "salesloft error", "fix salesloft", "salesloft not working", "salesloft 429".
    17 repo stars
  53. ▌
    Serpapi Upgrade Migration · gabrielmoreira
    Migrate between SerpApi client versions and handle package changes. Use when upgrading from google-search-results to serpapi package, or handling API response schema changes. Trigger: "upgrade serpapi", "serpapi migration", "serpapi new package".
    17 repo stars
  54. ▌
    Stackblitz Rate Limits · gabrielmoreira
    WebContainer resource limits: memory, CPU, file system size, process count. Use when working with WebContainers or StackBlitz SDK. Trigger: "webcontainer limits".
    17 repo stars
  55. ▌
    Techsmith Common Errors · gabrielmoreira
    TechSmith common errors for Snagit COM API and Camtasia automation. Use when working with TechSmith screen capture and video editing automation. Trigger: "techsmith common errors".
    17 repo stars
  56. ▌
    Together Core Workflow A · gabrielmoreira
    Together AI core workflow a for inference, fine-tuning, and model deployment. Use when working with Together AI's OpenAI-compatible API. Trigger: "together core workflow a".
    17 repo stars
  57. ▌
    Together Security Basics · gabrielmoreira
    Together AI security basics for inference, fine-tuning, and model deployment. Use when working with Together AI's OpenAI-compatible API. Trigger: "together security basics".
    17 repo stars
  58. ▌
    Together Webhooks Events · gabrielmoreira
    Together AI webhooks events for inference, fine-tuning, and model deployment. Use when working with Together AI's OpenAI-compatible API. Trigger: "together webhooks events".
    17 repo stars
  59. ▌
    Webflow Upgrade Migration · gabrielmoreira
    Analyze, plan, and execute Webflow SDK upgrades (webflow-api v1 to v3) with breaking change detection, API v1-to-v2 migration, and deprecation handling. Trigger with phrases like "upgrade webflow", "webflow migration", "webflow breaking changes", "update webflow SDK", "webflow v1 to v2".
    17 repo stars
  60. ▌
    Windsurf Security Basics · gabrielmoreira
    Apply Windsurf security best practices for workspace isolation, data privacy, and secret protection. Use when securing sensitive code from AI indexing, configuring telemetry, or auditing Windsurf security posture. Trigger with phrases like "windsurf security", "windsurf secrets", "windsurf privacy", "windsurf data protection", "codeiumignore".
    17 repo stars
  61. ▌
    Workhuman Common Errors · gabrielmoreira
    Workhuman common errors for employee recognition and rewards API. Use when integrating Workhuman Social Recognition, or building recognition workflows with HRIS systems. Trigger: "workhuman common errors".
    17 repo stars
  62. ▌
    Drive Automation Session · gabrielmoreira
    Drive an already-reserved Kobiton device from a natural-language intent. Opens an automation Appium session directly against the Kobiton WebDriver hub, runs an observe-decide-act loop with one action per iteration, pauses to ask the user when stuck (same-action repetition, screen unchanged, or model self-declared blocker), and returns the session id. Use when the user says "drive the device to X", describes a flow they want exercised on a reserved device, or asks to "automate this intent on Kobiton". Complements run-interactive-session (which uses the CLI session type) by using the automation session type so the resulting session is consumable by saveTestCase and the existing test-run authoring flow.
    17 repo stars
  63. ▌
    Dependency Vulnerability Checker · gabrielmoreira
    Validate dependency vulnerability checker operations. Auto-activating skill for Security Fundamentals. Triggers on: dependency vulnerability checker, dependency vulnerability checker Part of the Security Fundamentals skill category. Use when working with dependency vulnerability checker functionality. Trigger with phrases like "dependency vulnerability checker", "dependency checker", "dependency".
    17 repo stars
  64. ▌
    Insecure Deserialization Checker · gabrielmoreira
    Validate insecure deserialization checker operations. Auto-activating skill for Security Fundamentals. Triggers on: insecure deserialization checker, insecure deserialization checker Part of the Security Fundamentals skill category. Use when working with insecure deserialization checker functionality. Trigger with phrases like "insecure deserialization checker", "insecure checker", "insecure".
    17 repo stars
  65. ▌
    Compare Logistics Scenarios · gabrielmoreira bundle
    Compare logistics scenarios using assumptions, KPI, cost, service, capacity, risk, implementation, and measurement evidence.
    17 repo stars
  66. ▌
    Classify Food Cold Chain Requirements · gabrielmoreira
    Classify food and cold-chain logistics requirements by product, temperature sensitivity, lot or expiry controls, sanitation needs, transport context, and jurisdiction.
    17 repo stars
  67. ▌
    Route Contract Review · gabrielmoreira bundle
    Pick the right LLM for CONTRACT REVIEW — reviewing an existing agreement for risk, deviations from standard, missing protections, and internal contradictions, and proposing redlines. Vendor-neutral routing grounded in mid-2026 legal benchmarks. Contract review is a COMPOSITE skill (extraction + reasoning + redlining + conflict-detection), so this routes by the dominant sub-task. Asks up to 4 quick questions (cost, speed, accuracy/stakes, privacy/jurisdiction/ language), then recommends a primary model + fallback + what to avoid + what a human must verify. Use when someone asks "which model to review this contract / NDA / MSA", "best AI to redline", "route this contract review", or is about to review an agreement without a fixed model.
    17 repo stars
  68. ▌
    Route Info Extraction · gabrielmoreira bundle
    Pick the right LLM for LEGAL INFO EXTRACTION — pulling facts, clauses, dates, parties, obligations, and structured fields out of contracts and legal documents. Vendor-neutral routing grounded in mid-2026 benchmarks (legalbenchmarks.ai Info Extraction; CUAD/MAUD/ACORD). Asks up to 4 quick questions (cost, speed, accuracy/stakes, privacy/jurisdiction/language), then recommends a primary model + fallback + what to avoid + what a human must verify. Use when someone asks "which model should I use to extract clauses/data from these documents", "best AI for contract data extraction", "route this extraction task", or is about to pull structured fields from legal docs without a fixed model.
    17 repo stars
  69. ▌
    Large File Parquet Analysis And Highlight · gabrielmoreira
    当Excel文件总行数超过1万行时,通过转换为Parquet格式提升读取性能,提取目标指标并计算最大值,最后将结果输出为Excel并对特定行进行高亮标注。
    17 repo stars
  70. ▌
    Group By Analysis · gabrielmoreira
    对多 Sheet 的 Excel 文件进行行数统计、大文件 Parquet 转换预处理、数据清洗及分组聚合分析,并生成带样式标记的统计表与可视化图表。
    17 repo stars
  71. ▌
    Excel Multi Sheet Threshold Analysis · gabrielmoreira
    统计多Sheet Excel总行数并根据规模选择处理策略,提取特定维度信息进行去重统计,并生成摘要与明细报表。
    17 repo stars
  72. ▌
    Outlier Detection And Quality Assessment · gabrielmoreira
    执行全面的异常值检测与数据质量评估,利用 IQR 方法识别异常值并结合偏度、峰度分析数据分布特征,适用于非正态分布数据的预处理阶段。
    17 repo stars
  73. ▌
    Exploiting Integer Overflow Vulnerabilities · gabrielmoreira
    Methodology for finding and exploiting integer overflow, underflow, truncation, and signedness bugs in native code during authorized engagements, focusing on how wrapped arithmetic in size/length calculations leads to undersized allocations, oversized copies, length-check bypasses, and downstream heap/stack overflows.
    17 repo stars
  74. ▌
    Detecting Evasion Techniques In Endpoint Logs · gabrielmoreira
    Detects defense evasion techniques used by adversaries in endpoint logs including log tampering, timestomping, process injection, and security tool disabling. Use when investigating suspicious endpoint behavior, building detection rules for evasion tactics, or conducting threat hunting for stealthy adversary activity. Activates for requests involving evasion detection, defense evasion analysis, log tampering detection, or MITRE ATT&CK TA0005.
    17 repo stars
  75. ▌
    Hardening Windows Endpoint With Cis Benchmark · gabrielmoreira
    Hardens Windows endpoints using CIS (Center for Internet Security) Benchmark recommendations to reduce attack surface, enforce security baselines, and meet compliance requirements. Use when deploying new Windows workstations or servers, remediating audit findings, or establishing organization-wide security baselines. Activates for requests involving Windows hardening, CIS benchmarks, GPO security baselines, or endpoint configuration compliance.
    17 repo stars
  76. ▌
    Performing Endpoint Vulnerability Remediation · gabrielmoreira
    Performs vulnerability remediation on endpoints by prioritizing CVEs based on risk scoring, deploying patches, applying configuration changes, and validating fixes. Use when remediating findings from vulnerability scans, responding to critical CVE advisories, or maintaining endpoint compliance with patch management SLAs. Activates for requests involving vulnerability remediation, CVE patching, endpoint vulnerability management, or security fix deployment.
    17 repo stars
  77. ▌
    Analyzing Active Directory Acl Abuse · gabrielmoreira
    Detect dangerous ACL misconfigurations in Active Directory using ldap3 to identify GenericAll, WriteDACL, and WriteOwner abuse paths
    17 repo stars
  78. ▌
    Exploiting Sudo Suid And Cron Misconfigurations · gabrielmoreira
    Local privilege escalation through sudo rule abuse (GTFOBins, SETENV/LD_PRELOAD/BASH_ENV/PYTHONPATH), SUID/SGID binaries, writable cron jobs and cron PATH hijacking, and wildcard (glob) argument injection against privileged tar/rsync/zip/chown/tcpdump invocations during authorized engagements.
    17 repo stars
  79. ▌
    Conducting Man In The Middle Attack Simulation · gabrielmoreira
    Simulates man-in-the-middle attacks using Ettercap, mitmproxy, and Bettercap in authorized environments to intercept, analyze, and modify network traffic for testing encryption enforcement, certificate validation, and detection capabilities.
    17 repo stars
  80. ▌
    Detecting Network Scanning With Ids Signatures · gabrielmoreira
    Detect network reconnaissance and port scanning using Suricata and Snort IDS signatures, threshold-based detection rules, and traffic anomaly analysis to identify Nmap, Masscan, and custom scanning activity.
    17 repo stars
  81. ▌
    Exploiting Smb Vulnerabilities With Metasploit · gabrielmoreira
    Identifies and exploits SMB protocol vulnerabilities using Metasploit Framework during authorized penetration tests to demonstrate risks from unpatched Windows systems, misconfigured shares, and weak authentication in enterprise networks.
    17 repo stars
  82. ▌
    Performing Web Application Penetration Test · gabrielmoreira
    Performs systematic security testing of web applications following the OWASP Web Security Testing Guide (WSTG) methodology to identify vulnerabilities in authentication, authorization, input validation, session management, and business logic. The tester uses Burp Suite as the primary interception proxy alongside manual testing techniques to find flaws that automated scanners miss. Activates for requests involving web app pentest, OWASP testing, application security assessment, or web vulnerability testing.
    17 repo stars
  83. ▌
    Implementing Proofpoint Email Security Gateway · gabrielmoreira
    Deploy and configure Proofpoint Email Protection as a secure email gateway to detect and block phishing, malware, BEC, and spam before messages reach user inboxes.
    17 repo stars
  84. ▌
    Analyzing Tls Certificate Transparency Logs · gabrielmoreira
    Queries Certificate Transparency logs via crt.sh and pycrtsh to detect phishing domains, unauthorized certificate issuance, and shadow IT. Monitors newly issued certificates for typosquatting and brand impersonation using Levenshtein distance. Use for proactive phishing domain detection and certificate monitoring.
    17 repo stars
  85. ▌
    Detecting Insider Data Exfiltration Via Dlp · gabrielmoreira
    Detects insider data exfiltration by analyzing DLP policy violations, file access patterns, upload volume anomalies, and off-hours activity in endpoint and cloud logs. Uses pandas for behavioral analytics and statistical baselines. Use when investigating insider threats or building user behavior analytics for data loss prevention.
    17 repo stars
  86. ▌
    Implementing Patch Management Workflow · gabrielmoreira
    Patch management is the systematic process of identifying, testing, deploying, and verifying software updates to remediate vulnerabilities across an organization's IT infrastructure. An effective patc
    17 repo stars
  87. ▌
    Exploiting File Upload Vulnerabilities · gabrielmoreira
    Identifying and exploiting insecure file upload functionality to achieve remote code execution, stored XSS, path traversal, and denial of service during authorized penetration tests.
    17 repo stars
  88. ▌
    Exploiting Postmessage Vulnerabilities · gabrielmoreira
    Exploiting insecure cross-window messaging where senders use a wildcard targetOrigin (leaking sensitive data) or receivers register message handlers with missing/weak origin validation, enabling sensitive-message theft, DOM XSS, prototype-pollution-to-XSS, SOP bypass via null-origin iframes, and trusted-origin relay/parameter-pollution bridges. Activates when pages call postMessage or addEventListener("message", ...).
    17 repo stars
  89. ▌
    Exploiting Server Side Request Forgery · gabrielmoreira
    Identifying and exploiting SSRF vulnerabilities to access internal services, cloud metadata, and restricted network resources during authorized penetration tests.
    17 repo stars
  90. ▌
    Performing GRAPHQL Security Assessment · gabrielmoreira
    Assessing GraphQL API endpoints for introspection leaks, injection attacks, authorization flaws, and denial-of-service vulnerabilities during authorized security tests.
    17 repo stars
  91. ▌
    Testing Registration And Account Flaws · gabrielmoreira
    Identifying and exploiting weaknesses in account registration including duplicate/overwrite registration, weak password policy, missing email verification, disposable email acceptance, route-clobbering usernames, pre-account-takeover, and role mass-assignment.
    17 repo stars
  92. ▌
    Medical English Precision Editor · gabrielmoreira
    Improves medical English precision without changing the underlying facts, evidence boundaries, or intended scientific meaning.
    17 repo stars
  93. ▌
    Ssgsea Immune Infiltration Analysis · gabrielmoreira
    Use when estimating immune infiltration from bulk RNA-seq expression matrices with ssGSEA/GSVA, comparing case versus control groups, and generating downstream immune-score visualizations. NOT for single-cell RNA-seq, absolute cell proportion estimation, or clinical decision making.
    17 repo stars
  94. ▌
    Clinical Cohort Protocol Designer · gabrielmoreira
    Designs retrospective or prospective clinical cohort study protocols for biomedical and clinical research. Always use this skill when the user needs a cohort-based study plan rather than a general study idea, evidence summary, or mechanistic experiment design. Focus on cohort appropriateness, enrollment logic, baseline time-zero definition, follow-up structure, endpoint definition, variable collection, confounding control, and a coherent primary statistical analysis line. Do not invent data availability, follow-up completeness, outcome ascertainment quality, sample size adequacy, or causal interpretability.
    17 repo stars
  95. ▌
    Material Passports Circular · gabrielmoreira
    Material passports and circular construction: generate per-element material inventories from BOQ/BIM, mark reuse potential and recycled content, and prepare deconstruction data. Use for circular-economy and EU Taxonomy-aligned projects.
    17 repo stars
  96. ▌
    Azure Openai Patterns · gabrielmoreira
    Azure OpenAI API patterns for rate limiting, function calling, error handling, and token optimization
    17 repo stars
  97. ▌
    Date Threshold Arithmetic · gabrielmoreira
    Date comparisons at thresholds fail due to fractional days:
    17 repo stars
  98. ▌
    Parity Guard Test Pattern · gabrielmoreira
    When checking that all callers of a contract implement it correctly, you get false positives from wrapper delegators:
    17 repo stars
  99. ▌
    Repository Readiness Eval · gabrielmoreira
    Evaluate a repository's readiness for AI-assisted development across 4 axes: code understanding, dependency restore, build success, and test execution. Use when onboarding to a new repo, assessing CI readiness, or validating that an AI agent can work effectively in a codebase.
    17 repo stars
  100. ▌
    Counseling Psychology · gabrielmoreira
    Therapeutic frameworks, assessment, ethical practice, and client documentation for counselors and psychologists.
    17 repo stars