all publishers

gabrielmoreira

@gabrielmoreira source repo

21,231 published skills · page 69 of 213

  1. ▌
    Hunting For Beaconing With Frequency Analysis · gabrielmoreira
    Identify command-and-control beaconing patterns in network traffic by applying statistical frequency analysis, jitter calculation, and coefficient of variation scoring to detect periodic callbacks from compromised endpoints.
    17 repo stars
  2. ▌
    Evaluating Threat Intelligence Platforms · gabrielmoreira
    Evaluates and selects Threat Intelligence Platform (TIP) products based on organizational requirements including feed integration capability, STIX/TAXII support, workflow automation, analyst interface, and total cost of ownership. Use when conducting a TIP procurement, migrating between TIP solutions, or assessing whether the current TIP meets program maturity requirements. Activates for requests involving ThreatConnect, MISP, OpenCTI, Anomali, EclecticIQ, or TIP procurement decisions.
    17 repo stars
  3. ▌
    Scanning Infrastructure With Nessus · gabrielmoreira
    Tenable Nessus is the industry-leading vulnerability scanner used to identify security weaknesses across network infrastructure including servers, workstations, network devices, and operating systems.
    17 repo stars
  4. ▌
    Exploiting Insecure Deserialization · gabrielmoreira
    Identifying and exploiting insecure deserialization vulnerabilities in Java, PHP, Python, and .NET applications to achieve remote code execution during authorized penetration tests.
    17 repo stars
  5. ▌
    Performing Account Takeover Attacks · gabrielmoreira
    Systematically testing authentication, recovery, and identity flows for account takeover (ATO) — including Unicode/normalization email collisions, reusable reset/magic links, pre-account-takeover, response manipulation, email-verification bypass, session/cookie reuse, and QR/device-code login abuse. Activates when assessing login, signup, password reset, email change, SSO/OAuth, or cross-device login flows.
    17 repo stars
  6. ▌
    Performing Clickjacking Attack Test · gabrielmoreira
    Testing web applications for clickjacking vulnerabilities by assessing frame embedding controls and crafting proof-of-concept overlay attacks during authorized security assessments.
    17 repo stars
  7. ▌
    Testing Ecommerce And Payment Logic · gabrielmoreira
    Testing business-logic flaws in e-commerce and payment flows including price/product tampering, quantity abuse, voucher and gift-card manipulation, cart and shipping IDOR, payment-method and amount tampering, currency swaps, refund manipulation, and out-of-stock ordering.
    17 repo stars
  8. ▌
    Testing For Sensitive Data Exposure · gabrielmoreira
    Identifying sensitive data exposure vulnerabilities including API key leakage, PII in responses, insecure storage, and unprotected data transmission during security assessments.
    17 repo stars
  9. ▌
    Differential Expression Analysis · gabrielmoreira
    Use when analyzing bulk RNA-seq or microarray expression data to identify differentially expressed genes between two biological groups (case vs control), with volcano plots and heatmap visualization. NOT for:single-cell RNA-seq, methylation analysis, non-expression data.
    17 repo stars
  10. ▌
    Unmet Clinical Need Extractor · gabrielmoreira
    Extracts concrete unmet clinical needs from guidelines, reviews, real-world studies, and clinical-practice evidence. Use this skill when a user wants to turn broad medical research value into specific clinical pain points such as weak early detection, poor risk stratification, treatment-response heterogeneity, monitoring gaps, diagnostic delay, undertreatment, overtreatment, or implementation failure. Always ground unmet-need claims in retrieved evidence and distinguish true care gaps from generic statements of importance.
    17 repo stars
  11. ▌
    Bulk Omics Integrative Planner · gabrielmoreira
    Designs complete integrated research plans for bulk transcriptomics, proteomics, metabolomics, and related omics from a user-provided biomedical direction. Always use this skill whenever a user wants to design, scope, or structure a bulk multi-omics or single-omics-plus-clinical study — including disease-focused, mechanism-focused, biomarker-focused, stratification-oriented, or translational projects. It should define the research question, choose the best-fit study pattern, recommend example datasets as reference candidates only, specify the core analysis modules and method choices, propose a validation ladder, and output four workload configurations (Lite / Standard / Advanced / Publication+). Never fabricate datasets, accession numbers, sample counts, metadata completeness, cohort availability, assay coverage, literature references, PMIDs, DOIs, or validation status. Always include the mandatory Dataset Disclaimer immediately before any workflow section that mentions datasets or public resources.
    17 repo stars
  12. ▌
    Drug Repurposing Study Planner · gabrielmoreira
    Design evidence-discovery and validation workflows for drug repurposing studies by integrating disease mechanisms, drug-target logic, expression reversal, real-world evidence, and validation routes into a closed-loop study blueprint.
    17 repo stars
  13. ▌
    Oce Load Cost Bases · gabrielmoreira
    Load national and market cost bases into OpenConstructionERP: the 8 national bases (Turkey Birim Fiyat, China Dinge, Brazil SINAPI, Spain BCCA, Italy Prezzario Toscana, Greece GGDE, Vietnam Dinh Muc, Indonesia AHSP), the 30 global markets, and 48 PPP market catalogs per base. Use when importing a cost database, repricing into a market, or troubleshooting a load.
    17 repo stars
  14. ▌
    Oce MCP Integration · gabrielmoreira
    Connect OpenConstructionERP to AI coding assistants via MCP (Model Context Protocol): expose costs, BOQ, BIM and catalog endpoints as MCP tools so Claude Code / Antigravity / OpenCode can drive the platform. Use when wiring an assistant to the ERP.
    17 repo stars
  15. ▌
    Oce Scheduling 4d5d · gabrielmoreira
    4D scheduling and 5D cost modelling in OpenConstructionERP: build task schedules, link tasks to BIM elements and BOQ lines, roll up the cost model over time, and export Gantt/sequence views. Use for schedule-cost integration workflows.
    17 repo stars
  16. ▌
    Dual Surface Docs Drift · gabrielmoreira
    Two READMEs covering overlapping scope will diverge:
    17 repo stars
  17. ▌
    Bootstrap Learning · gabrielmoreira
    Domain-agnostic knowledge acquisition — from zero to structured expertise through conversational learning
    17 repo stars
  18. ▌
    Debugging Patterns · gabrielmoreira
    Systematic problem-solving and error analysis.
    17 repo stars
  19. ▌
    Dialog Engineering · gabrielmoreira
    CSAR Loop and structured conversation patterns for effective AI dialog -- Clarify, Summarize, Act, Reflect
    17 repo stars
  20. ▌
    Keep Churn · gabrielmoreira
    Churn risk identification and intervention — scans health signals for at-risk accounts, classifies risk level (CRITICAL/HIGH/MEDIUM), and produces an intervention sequence per risk type. Use when asked to "find at-risk accounts", "who might churn", "build a churn prevention plan", "identify churn signals", or "rescue this account".
    17 repo stars
  21. ▌
    Security Scanning · gabrielmoreira
    Use when checking code for vulnerabilities, linting shell scripts, scanning containers or IaC for security issues, or managing encrypted secrets
    17 repo stars
  22. ▌
    Channel Formats · gabrielmoreira
    Transforms one piece of content into each marketing channel's native format — length, structure, hooks, and conventions — across LinkedIn, X threads, newsletters, Instagram, YouTube, short video, and blogs. Use when reformatting content for a specific channel. Trigger with "channel format", "adapt for LinkedIn", or "/multiply".
    17 repo stars
  23. ▌
    Abridge Core Workflow A · gabrielmoreira
    Implement Abridge ambient clinical documentation capture-to-note pipeline. Use when building the primary encounter workflow: audio capture, real-time transcription, AI note generation, and EHR note insertion. Trigger: "abridge clinical workflow", "abridge encounter pipeline", "ambient documentation workflow", "abridge note generation".
    17 repo stars
  24. ▌
    Abridge Core Workflow B · gabrielmoreira
    Implement Abridge patient-facing documentation and after-visit summary generation. Use when building patient portal integration, generating plain-language summaries, multi-language translations, or after-visit instructions from clinical encounters. Trigger: "abridge patient summary", "after-visit summary", "patient portal abridge", "abridge patient-facing", "abridge multilingual".
    17 repo stars
  25. ▌
    Abridge Security Basics · gabrielmoreira
    Apply HIPAA-compliant security practices for Abridge clinical AI integrations. Use when securing PHI in transit/at rest, configuring access controls, implementing audit logging, or preparing for HIPAA security audits. Trigger: "abridge security", "abridge HIPAA", "abridge PHI protection", "abridge access control", "abridge audit logging".
    17 repo stars
  26. ▌
    Abridge Webhooks Events · gabrielmoreira
    Implement Abridge webhook handling for clinical documentation events. Use when receiving note completion notifications, encounter status changes, provider enrollment events, or quality alert callbacks from Abridge. Trigger: "abridge webhook", "abridge events", "abridge notifications", "abridge note completed event", "abridge encounter event".
    17 repo stars
  27. ▌
    Adobe Migration Deep Dive · gabrielmoreira
    Execute major Adobe re-architecture: migrating from legacy Adobe APIs to Firefly Services, consolidating Creative Cloud integrations, and strangler-fig migration from competitor document/image APIs to Adobe. Trigger with phrases like "migrate adobe", "adobe migration", "switch to adobe", "adobe replatform", "replace with adobe".
    17 repo stars
  28. ▌
    Alchemy Core Workflow A · gabrielmoreira
    Build a complete wallet portfolio tracker using Alchemy Enhanced APIs. Use when implementing token balance dashboards, NFT galleries, transaction history views, or wallet analytics applications. Trigger: "alchemy wallet tracker", "alchemy portfolio", "alchemy token dashboard", "alchemy transaction history", "build dApp with alchemy".
    17 repo stars
  29. ▌
    Alchemy Webhooks Events · gabrielmoreira
    Implement Alchemy Notify webhooks for real-time blockchain event notifications. Use when tracking wallet activity, monitoring mined transactions, watching smart contract events, or building real-time dApp features. Trigger: "alchemy webhook", "alchemy notify", "alchemy events", "alchemy address activity", "alchemy real-time notifications".
    17 repo stars
  30. ▌
    Algolia Core Workflow B · gabrielmoreira
    Implement Algolia indexing pipeline: data sync, partial updates, synonyms, and rules. The secondary money-path workflow: keep your index in sync with source data. Trigger: "algolia indexing", "sync data to algolia", "algolia synonyms", "algolia rules", "algolia partial update", "algolia reindex".
    17 repo stars
  31. ▌
    Algolia Enterprise Rbac · gabrielmoreira
    Configure Algolia enterprise access control: team-scoped API keys, Secured API Keys for multi-tenant RBAC, dashboard team management, and audit logging. Trigger: "algolia RBAC", "algolia enterprise", "algolia roles", "algolia permissions", "algolia team access", "algolia multi-tenant", "algolia SSO".
    17 repo stars
  32. ▌
    Algolia Multi Env Setup · gabrielmoreira
    Configure Algolia across dev/staging/production: index prefixing, per-environment API keys, settings-as-code, and environment isolation guards. Trigger: "algolia environments", "algolia staging", "algolia dev prod", "algolia environment setup", "algolia config by env".
    17 repo stars
  33. ▌
    Algolia Webhooks Events · gabrielmoreira
    Implement Algolia Insights API for click/conversion tracking, search analytics, and real-time event-driven index updates via database change listeners. Trigger: "algolia events", "algolia analytics", "algolia insights", "algolia click tracking", "algolia conversion", "algolia event tracking".
    17 repo stars
  34. ▌
    Clay Architecture Variants · gabrielmoreira
    Choose and implement Clay integration architecture for different scales and use cases. Use when designing new Clay integrations, comparing direct vs queue-based vs event-driven, or planning architecture for Clay-powered data operations. Trigger with phrases like "clay architecture", "clay blueprint", "how to structure clay", "clay integration design", "clay event-driven".
    17 repo stars
  35. ▌
    Clickup Enterprise Rbac · gabrielmoreira
    Implement ClickUp Enterprise SSO, OAuth 2.0 multi-workspace access, role-based permissions, and organization management via API v2. Trigger: "clickup SSO", "clickup RBAC", "clickup enterprise", "clickup roles", "clickup permissions", "clickup OAuth app", "clickup multi-workspace".
    17 repo stars
  36. ▌
    Clickup Multi Env Setup · gabrielmoreira
    Configure ClickUp API access across dev, staging, and production environments with per-environment tokens and workspace isolation. Trigger: "clickup environments", "clickup staging", "clickup dev prod", "clickup environment setup", "clickup config by env", "clickup multi-env".
    17 repo stars
  37. ▌
    Clickup Webhooks Events · gabrielmoreira
    Create and manage ClickUp webhooks for real-time event notifications. Use when setting up webhook listeners for task/list/space events, implementing two-way sync, or handling ClickUp event payloads. Trigger: "clickup webhook", "clickup events", "clickup notifications", "clickup real-time", "clickup event listener", "clickup webhook create".
    17 repo stars
  38. ▌
    Cohere Upgrade Migration · gabrielmoreira
    Migrate from Cohere API v1 to v2 and upgrade SDK versions. Use when upgrading cohere-ai SDK, migrating from CohereClient to CohereClientV2, or handling breaking changes between API versions. Trigger with phrases like "upgrade cohere", "cohere migration", "cohere v1 to v2", "update cohere SDK", "cohere breaking changes".
    17 repo stars
  39. ▌
    Instantly Rate Limits · gabrielmoreira
    Implement Instantly.ai rate limiting, backoff, and request throttling patterns. Use when handling 429 errors, implementing retry logic, or building high-throughput Instantly integrations. Trigger with phrases like "instantly rate limit", "instantly 429", "instantly throttle", "instantly backoff", "instantly retry".
    17 repo stars
  40. ▌
    Lokalise Observability · gabrielmoreira
    Set up comprehensive observability for Lokalise integrations with metrics, traces, and alerts. Use when implementing monitoring for Lokalise operations, setting up dashboards, or configuring alerting for Lokalise integration health. Trigger with phrases like "lokalise monitoring", "lokalise metrics", "lokalise observability", "monitor lokalise", "lokalise alerts", "lokalise tracing".
    17 repo stars
  41. ▌
    Mistral Core Workflow A · gabrielmoreira
    Execute Mistral AI chat completions with streaming, multi-turn, and guardrails. Use when implementing chat interfaces, building conversational AI, or integrating Mistral for text generation. Trigger with phrases like "mistral chat", "mistral completion", "mistral streaming", "mistral conversation", "mistral guardrails".
    17 repo stars
  42. ▌
    Mistral Security Basics · gabrielmoreira
    Apply Mistral AI security best practices for secrets, prompt injection, and access control. Use when securing API keys, defending against prompt injection, or auditing Mistral AI security configuration. Trigger with phrases like "mistral security", "mistral secrets", "secure mistral", "mistral prompt injection".
    17 repo stars
  43. ▌
    Posthog Core Workflow A · gabrielmoreira
    Implement PostHog product analytics: event capture, user identification, group analytics, and property management using posthog-js and posthog-node. Trigger: "posthog analytics", "capture events", "track users posthog", "posthog identify", "posthog group analytics", "product analytics".
    17 repo stars
  44. ▌
    Posthog Core Workflow B · gabrielmoreira
    Implement PostHog feature flags, A/B experiments, and cohort management. Use when rolling out features with flags, running A/B tests, creating cohorts, or evaluating multivariate experiments with PostHog. Trigger: "posthog feature flag", "posthog experiment", "posthog A/B test", "posthog cohort", "feature rollout posthog", "posthog multivariate".
    17 repo stars
  45. ▌
    Posthog Multi Env Setup · gabrielmoreira
    Configure PostHog across development, staging, and production environments. Separate PostHog projects per environment, environment-specific SDK config, feature flag rollout per env, and session recording controls. Trigger: "posthog environments", "posthog staging", "posthog dev prod", "posthog environment setup", "posthog project per env".
    17 repo stars
  46. ▌
    Replit Policy Guardrails · gabrielmoreira
    Enforce security and resource policies for Replit-hosted apps: secrets exposure prevention, resource limits, deployment visibility, and database access controls. Use when hardening a Replit app for production, auditing security posture, or setting up guardrails for team development. Trigger with phrases like "replit policy", "replit guardrails", "replit security audit", "replit hardening", "replit best practices check".
    17 repo stars
  47. ▌
    Scaffolding Generator · gabrielmoreira
    Pattern-aware code scaffolding that detects existing conventions and generates new components matching the codebase style. Use when asked to "scaffold a component", "generate boilerplate", "create a new module", "bootstrap a service", "add a new endpoint", "create a new controller", or "add a new feature module". Discovers patterns first, then replicates them.
    17 repo stars
  48. ▌
    Test Quality Analysis · gabrielmoreira
    Analyze test code quality to detect coverage-only tests, test smells, and low-value assertions. Use when asked to "analyze test quality", "find coverage-only tests", "audit our tests", "are these tests valuable", "find test smells", or "which tests should we delete". Scores tests 1-5 on real value and produces prioritized improvement reports.
    17 repo stars
  49. ▌
    Chart Interpretation · gabrielmoreira
    Read any chart (image, HTML, screenshot) and extract insights, patterns, anomalies, bias, and narrative -- the reverse of visualization
    17 repo stars
  50. ▌
    Boolean String Trap · gabrielmoreira
    JavaScript boolean-string coercion trap — "false" is truthy, JSON.parse or strict comparison required
    17 repo stars
  51. ▌
    Cloud Storage Paths · gabrielmoreira
    Cross-platform cloud storage path resolution — OneDrive, iCloud, Dropbox path discovery and normalization
    17 repo stars
  52. ▌
    Line Ending Parsing · gabrielmoreira
    Line ending handling across platforms — CRLF vs LF detection, normalization, and git config
    17 repo stars
  53. ▌
    Guide Cert Rehoming · gabrielmoreira
    End-to-end process of rehoming (moving or reissuing) certificates so every production Entra app credential lives in the same tenant and cloud as the app itself.
    17 repo stars
  54. ▌
    Lookup Nsg For Vnet · gabrielmoreira
    Checks every subnet in a Virtual Network for an associated Network Security Group, and also inspects each NIC attached to those subnets for NIC-level NSG coverage.
    17 repo stars
  55. ▌
    Web Crawling · gabrielmoreira
    Use when scraping web pages, automating browser interactions, crawling sites for content, or extracting data from rendered JavaScript pages
    17 repo stars
  56. ▌
    Adobe Known Pitfalls · gabrielmoreira
    Identify and avoid Adobe-specific anti-patterns: using deprecated JWT auth, not caching IMS tokens, ignoring Firefly content policy, missing async job polling, and leaking p8_ secrets. Real code examples with fixes. Trigger with phrases like "adobe mistakes", "adobe anti-patterns", "adobe pitfalls", "adobe what not to do", "adobe code review".
    17 repo stars
  57. ▌
    Attio CI Integration · gabrielmoreira
    Configure CI/CD pipelines for Attio integrations with GitHub Actions, mock-based unit tests, and live API integration tests. Trigger: "attio CI", "attio GitHub Actions", "attio automated tests", "CI attio", "attio pipeline", "test attio in CI".
    17 repo stars
  58. ▌
    Attio Local Dev Loop · gabrielmoreira
    Set up a fast local development loop for Attio integrations with hot reload, mock server, and integration tests. Trigger: "attio dev setup", "attio local development", "attio dev environment", "develop with attio", "attio project setup".
    17 repo stars
  59. ▌
    Attio Prod Checklist · gabrielmoreira
    Production readiness checklist for Attio API integrations -- auth, error handling, rate limits, health checks, monitoring, and rollback. Trigger: "attio production", "deploy attio", "attio go-live", "attio launch checklist", "attio production ready".
    17 repo stars
  60. ▌
    Cohere Sdk Patterns · gabrielmoreira
    Apply production-ready Cohere SDK patterns for TypeScript and Python. Use when implementing Cohere integrations, refactoring SDK usage, or establishing team coding standards for Cohere API v2. Trigger with phrases like "cohere SDK patterns", "cohere best practices", "cohere code patterns", "idiomatic cohere", "cohere wrapper".
    17 repo stars
  61. ▌
    Linear Install Auth · gabrielmoreira
    Install and configure Linear SDK/CLI authentication. Use when setting up a new Linear integration, configuring API keys, OAuth2 flows, or initializing LinearClient in your project. Trigger: "install linear", "setup linear", "linear auth", "configure linear API key", "linear SDK setup", "linear OAuth".
    17 repo stars
  62. ▌
    Miro Incident Runbook · gabrielmoreira
    Execute Miro REST API v2 incident response with triage, mitigation, and postmortem. Use when responding to Miro-related outages, investigating API errors, or running post-incident reviews for Miro integration failures. Trigger with phrases like "miro incident", "miro outage", "miro down", "miro on-call", "miro emergency", "miro broken".
    17 repo stars
  63. ▌
    Replit Install Auth · gabrielmoreira
    Set up a Replit project with .replit + replit.nix configuration, Secrets, and Replit Auth. Use when creating a new Replit App, configuring Nix packages, managing secrets, or adding user authentication with Replit Auth. Trigger with phrases like "setup replit", "replit auth", "replit nix config", "replit secrets", "configure replit", "new replit project".
    17 repo stars
  64. ▌
    Replit Sdk Patterns · gabrielmoreira
    Apply production-ready patterns for Replit Database, Object Storage, and Auth APIs. Use when implementing Replit integrations, structuring data access layers, or establishing team coding standards for Replit services. Trigger with phrases like "replit patterns", "replit best practices", "replit code patterns", "idiomatic replit", "replit SDK".
    17 repo stars
  65. ▌
    Engineering Features For Machine Learning · gabrielmoreira bundle
    Execute create, select, and transform features to improve machine learning model performance. Handles feature scaling, encoding, and importance analysis. Use when asked to "engineer features" or "select features". Trigger with relevant phrases based on skill purpose.
    17 repo stars
  66. ▌
    Validating Authentication Implementations · gabrielmoreira bundle
    Validate authentication mechanisms for security weaknesses and compliance. Use when reviewing login systems or auth flows. Trigger with 'validate authentication', 'check auth security', or 'review login'.
    17 repo stars
  67. ▌
    Csrf Protection Validator · gabrielmoreira
    Validate csrf protection validator operations. Auto-activating skill for Security Fundamentals. Triggers on: csrf protection validator, csrf protection validator Part of the Security Fundamentals skill category. Use when working with csrf protection validator functionality. Trigger with phrases like "csrf protection validator", "csrf validator", "csrf".
    17 repo stars
  68. ▌
    Https Certificate Checker · gabrielmoreira
    Validate https certificate checker operations. Auto-activating skill for Security Fundamentals. Triggers on: https certificate checker, https certificate checker Part of the Security Fundamentals skill category. Use when working with https certificate checker functionality. Trigger with phrases like "https certificate checker", "https checker", "https".
    17 repo stars
  69. ▌
    Xss Vulnerability Scanner · gabrielmoreira
    Scan xss vulnerability scanner operations. Auto-activating skill for Security Fundamentals. Triggers on: xss vulnerability scanner, xss vulnerability scanner Part of the Security Fundamentals skill category. Use when working with xss vulnerability scanner functionality. Trigger with phrases like "xss vulnerability scanner", "xss scanner", "xss".
    17 repo stars
  70. ▌
    Certificate Lifecycle Manager · gabrielmoreira
    Manage certificate lifecycle manager operations. Auto-activating skill for Security Advanced. Triggers on: certificate lifecycle manager, certificate lifecycle manager Part of the Security Advanced skill category. Use when working with certificate lifecycle manager functionality. Trigger with phrases like "certificate lifecycle manager", "certificate manager", "certificate".
    17 repo stars
  71. ▌
    Mermaid Sequence Diagram Creator · gabrielmoreira
    Create mermaid sequence diagram creator operations. Auto-activating skill for Visual Content. Triggers on: mermaid sequence diagram creator, mermaid sequence diagram creator Part of the Visual Content skill category. Use when working with mermaid sequence diagram creator functionality. Trigger with phrases like "mermaid sequence diagram creator", "mermaid creator", "mermaid".
    17 repo stars
  72. ▌
    Approval Workflow Generator · gabrielmoreira
    Generate approval workflow generator operations. Auto-activating skill for Business Automation. Triggers on: approval workflow generator, approval workflow generator Part of the Business Automation skill category. Use when working with approval workflow generator functionality. Trigger with phrases like "approval workflow generator", "approval generator", "approval".
    17 repo stars
  73. ▌
    Backlog Grooming Assistant · gabrielmoreira
    Execute backlog grooming assistant operations. Auto-activating skill for Enterprise Workflows. Triggers on: backlog grooming assistant, backlog grooming assistant Part of the Enterprise Workflows skill category. Use when working with backlog grooming assistant functionality. Trigger with phrases like "backlog grooming assistant", "backlog assistant", "backlog".
    17 repo stars
  74. ▌
    Identify Warehouse Congestion · gabrielmoreira bundle
    Identify warehouse congestion from layout, volume, queues, equipment paths, labor activity, delays, and safety boundaries.
    17 repo stars
  75. ▌
    Research Canadian Dangerous Goods Rules · gabrielmoreira
    Prepare Transport Canada dangerous-goods research briefs for Canadian logistics without classifying or certifying dangerous goods.
    17 repo stars
  76. ▌
    Monitor Cold Chain Temperature · gabrielmoreira
    Plan cold-chain temperature monitoring evidence reviews for food storage and transport without approving product release or equipment sufficiency.
    17 repo stars
  77. ▌
    Plan Cold Chain Transportation · gabrielmoreira
    Plan cold-chain food transportation evidence, equipment questions, temperature monitoring handoffs, sanitation needs, and carrier boundaries.
    17 repo stars
  78. ▌
    Research Us Storage Requirements · gabrielmoreira
    Prepare United States storage requirement research briefs for warehouses, yards, hazardous materials, hazardous waste, inventory status, and facility controls.
    17 repo stars
  79. ▌
    Research Us Transportation Rules · gabrielmoreira
    Prepare United States transportation rule research briefs while separating mode, state, federal, carrier, shipper, and consignee scope.
    17 repo stars
  80. ▌
    Conducting Internal Reconnaissance With Bloodhound Ce · gabrielmoreira bundle
    Conduct internal Active Directory reconnaissance using BloodHound Community Edition's graph database with the SharpHound (AD) and AzureHound (Entra ID) collectors, mapping ACLs, sessions, and group memberships into attack paths from a low-privileged foothold to Domain Admin. Use after an initial AD foothold to identify privilege escalation chains, or to validate that AD hardening closed known attack paths.
    17 repo stars
  81. ▌
    Implementing Infrastructure As Code Security Scanning · gabrielmoreira bundle
    Implements automated security scanning for Infrastructure as Code using Checkov, tfsec, and KICS to detect misconfigurations in Terraform, CloudFormation, Kubernetes manifests, and Helm charts, plus policy-based governance and CI/CD integration. Use when validating cloud infrastructure before deployment or blocking insecure changes (public S3 buckets, open security groups) in pull requests.
    17 repo stars
  82. ▌
    Implementing Network Segmentation With Firewall Zones · gabrielmoreira bundle
    Designs and implements network segmentation using firewall security zones, VLANs, inter-zone ACLs, and workload-level microsegmentation to restrict east-west lateral movement and enforce least-privilege access. Use when architecting security zones, writing inter-zone firewall policies, or meeting PCI DSS/HIPAA/NIST 800-53/zero-trust segmentation requirements for dynamic or traditional network environments.
    17 repo stars
  83. ▌
    Implementing Threat Intelligence Lifecycle Management · gabrielmoreira bundle
    Build out a full CTI program around the six-phase threat intelligence lifecycle (direction, collection, processing, analysis, dissemination, feedback), including defining intelligence requirements, building a collection pipeline, normalizing data, and tracking dissemination feedback. Use when standing up or maturing a threat intelligence program, defining intelligence requirements, or designing collection-to-dissemination workflows for a CTI team.
    17 repo stars
  84. ▌
    Implementing Web Application Logging With Modsecurity · gabrielmoreira bundle
    Configure ModSecurity WAF with the OWASP Core Rule Set (CRS) for web application audit logging, tuning SecRuleEngine, SecAuditEngine, and CRS paranoia levels to reduce false positives, and writing custom SecRules for application-specific threats. Use when deploying or tuning a ModSecurity WAF, analyzing audit logs for attack detection, or reducing CRS false positives.
    17 repo stars
  85. ▌
    Performing Adversary In The Middle Phishing Detection · gabrielmoreira bundle
    Detect and respond to Adversary-in-the-Middle (AiTM) phishing attacks that use reverse proxy kits like EvilProxy, Evilginx, and Tycoon 2FA to bypass MFA and steal session tokens, correlating Azure AD/Entra sign-in logs, SIEM alerts, and EDR telemetry. Use when investigating suspected MFA-bypass phishing or session token theft, or building detection and response playbooks against reverse-proxy phishing kits.
    17 repo stars
  86. ▌
    Implementing Usb Device Control Policy · gabrielmoreira
    Implements USB device control policies to restrict unauthorized removable media access on endpoints, preventing data exfiltration and malware introduction via USB devices. Use when deploying device control via Group Policy, Intune, or EDR platforms to enforce USB restrictions. Activates for requests involving USB control, removable media policy, device control, or data loss prevention via USB.
    17 repo stars
  87. ▌
    Analyzing Macos Persistence And Autostart · gabrielmoreira
    Enumerating, planting, and hunting macOS persistence and auto-start (ASEP) locations during authorized engagements - LaunchAgents/LaunchDaemons, shell rc files, login items, cron/at/periodic jobs, login/logout hooks, Dock and Terminal/iTerm2 preferences, audio/QuickLook/Spotlight plugins, PAM modules, Authorization plugins, emond, and StartupItems - and mapping each to its trigger, required privilege, and sandbox/TCC implications.
    17 repo stars
  88. ▌
    Performing Scada Hmi Security Assessment · gabrielmoreira
    Perform security assessments of SCADA Human-Machine Interface (HMI) systems to identify vulnerabilities in web-based HMIs, thin-client configurations, authentication mechanisms, and communication channels between HMI and PLCs, aligned with IEC 62443 and NIST SP 800-82 guidelines.
    17 repo stars
  89. ▌
    Detecting SQL Injection Via Waf Logs · gabrielmoreira
    Analyze WAF (ModSecurity/AWS WAF/Cloudflare) logs to detect SQL injection attack campaigns. Parses ModSecurity audit logs and JSON WAF event logs to identify SQLi patterns (UNION SELECT, OR 1=1, SLEEP(), BENCHMARK()), tracks attack sources, correlates multi-stage injection attempts, and generates incident reports with OWASP classification.
    17 repo stars
  90. ▌
    Implementing Siem Use Cases For Detection · gabrielmoreira
    Implements SIEM detection use cases by designing correlation rules, threshold alerts, and behavioral analytics mapped to MITRE ATT&CK techniques across Splunk, Elastic, and Sentinel. Use when SOC teams need to expand detection coverage, formalize use case lifecycle management, or build a detection library aligned to organizational threat profile.
    17 repo stars
  91. ▌
    Implementing Soar Automation With Phantom · gabrielmoreira
    Implements Security Orchestration, Automation, and Response (SOAR) workflows using Splunk SOAR (formerly Phantom) to automate alert triage, IOC enrichment, containment actions, and incident response playbooks. Use when SOC teams need to reduce manual analyst work, standardize response procedures, or integrate multiple security tools into automated workflows.
    17 repo stars
  92. ▌
    Hunting For Command And Control Beaconing · gabrielmoreira
    Detect C2 beaconing patterns in network traffic using frequency analysis, jitter detection, and domain reputation to identify compromised endpoints communicating with adversary infrastructure.
    17 repo stars
  93. ▌
    Performing Threat Hunting With Yara Rules · gabrielmoreira
    Use YARA pattern-matching rules to hunt for malware, suspicious files, and indicators of compromise across filesystems and memory dumps. Covers rule authoring, yara-python scanning, and integration with threat intel feeds.
    17 repo stars
  94. ▌
    Exploiting Dependency Confusion · gabrielmoreira
    Identifying and exploiting dependency confusion (substitution) attacks where a package manager resolves an internal dependency name from a public registry instead of the intended private one, leading to attacker-controlled code execution at install time. Activates when testing build pipelines, CI/CD systems, leaked manifests, or any ecosystem (npm, PyPI, NuGet, Maven, Gradle, Go, Cargo, RubyGems) that mixes internal and public package sources.
    17 repo stars
  95. ▌
    Exploiting Os Command Injection · gabrielmoreira
    Identifying and exploiting OS command injection vulnerabilities in web applications where user input is passed to a system shell, leading to arbitrary command execution. Covers in-band, blind, and out-of-band detection across Linux and Windows, separator and filter-bypass variants, and escalation to full RCE.
    17 repo stars
  96. ▌
    Detecting Bluetooth Low Energy Attacks · gabrielmoreira
    Detects and analyzes Bluetooth Low Energy (BLE) security attacks including sniffing, replay attacks, GATT enumeration abuse, and Man-in-the-Middle interception. Uses Ubertooth One and nRF52840 sniffers for packet capture, the bleak Python library for GATT service enumeration, and crackle for BLE encryption cracking. Use when assessing IoT device BLE security, monitoring for BLE-based attacks on wireless infrastructure, or performing authorized BLE penetration testing. Activates for requests involving BLE security assessment, Ubertooth sniffing, GATT enumeration, or BLE replay detection.
    17 repo stars
  97. ▌
    Claim Strength Calibrator · gabrielmoreira
    Calibrates manuscript claim strength so wording matches the actual evidence level, study design, and validation status.
    17 repo stars
  98. ▌
    Revision Strategy Planner · gabrielmoreira
    Builds prioritized manuscript revision plans for major or minor revisions by separating comments that require experiments, analyses, clarification, restructuring, or wording changes.
    17 repo stars
  99. ▌
    Hierarchical Clustering Plot · gabrielmoreira
    Use when building a sample-level hierarchical clustering dendrogram from a bulk expression matrix and sample annotation table, especially for QC, batch inspection, or sample similarity assessment. Trigger keywords: hierarchical clustering, dendrogram, sample QC, batch inspection, sample similarity. NOT for: differential expression testing, gene clustering heatmaps, single-cell clustering workflows.
    17 repo stars
  100. ▌
    Pca Dimensionality Reduction · gabrielmoreira
    Use when performing PCA principal component dimensionality reduction on tabular numeric data. Supports command-line parameter input, automatic numeric feature selection, parameter validation, result directory creation, and CSV or TXT format result export.
    17 repo stars