gabrielmoreira
- 21k skills
- 0 followers
- 17 repo stars
- 2 weeks ago last updated
- ▌ Rf Model Importance Analysis · gabrielmoreiraUse when you need a standardized R CLI workflow to train a two-class random forest model from an expression-like feature matrix, rank variable importance, and generate reproducible error and importance plots. NOT for regression tasks, multi-class classification, missing-value imputation, preprocessing, or remote data fetching.
- ▌ Figure First Paper Reader · gabrielmoreiraReads a paper figure by figure before re-integrating the full narrative, so the user can identify the core findings quickly and check whether each visual actually supports the authors' main claims. Always separate figure content, figure-linked claim, evidentiary strength, and unsupported interpretation. Never fabricate references, PMIDs, DOIs, figure content, panel labels, result values, or study details that were not actually provided.
- ▌ High Value Paper Screener · gabrielmoreiraQuickly judges whether a biomedical paper is worth deep reading by screening for question fit, design quality, sample adequacy, methodological novelty, and reproducibility value.
- ▌ Case Control Study Planner · gabrielmoreiraDesign a structured case-control study framework with explicit source population logic, control selection rules, matching decisions, exposure measurement planning, and bias-control checkpoints.
- ▌ Outcome Extraction For Clinical Trials · gabrielmoreiraClinical research outcome extraction for meta-analysis. Use when users need to extract outcome measures (binary, continuous, or survival data) from clinical research papers for systematic review and meta-analysis. Handles both database lookup by PMID and real-time LLM extraction.
- ▌ Network Tox Docking Research Planner · gabrielmoreiraGenerates complete network toxicology + molecular docking research designs from a user-provided toxicant and disease/phenotype. Always use this skill when users want to investigate how an environmental toxicant, endocrine disruptor, heavy metal, food contaminant, pharmaceutical residue, or consumer product chemical may contribute to a disease through shared molecular targets, hub genes, pathways, and docking evidence. Trigger for:"network toxicology study", "toxicology mechanism paper", "target prediction + PPI + docking", "environmental pollutant and disease mechanism", "hub genes and docking for toxicant", "Lite/Standard/Advanced toxicology plan", "CTD + SwissTargetPrediction + GeneCards + STRING", "CB-Dock2 docking study", "triclosan/BPA/cadmium/PFAS + disease". Also triggers for Chinese phrasings:"网络毒理学研究设计"、"毒物机制论文"、"靶点预测+PPI+对接"、"环境污染物与疾病机制". Trigger even for casual phrasings like "I want to study how chemical X affects disease Y" or "help me design a toxicology paper". Always output four workload confi
- ▌ Generative AI Design · gabrielmoreiraGenerative design for construction: text-to-BIM concepts, option generation, and AI-assisted design iteration with cost and carbon feedback. Use when exploring early design options with AI.
- ▌ Oce Bim Takeoff · gabrielmoreiraCAD/BIM takeoff in OpenConstructionERP: upload Revit/IFC/DWG/DGN models, browse elements, bulk-link them to BOQ lines, measure DWG drawings and PDF plans, and push quantities into the estimate. Use for any model-based quantification workflow.
- ▌ Research Summarizer · gabrielmoreiraStructured research summarization agent skill for non-dev users. Handles academic papers, web articles, reports, and documentation. Extracts key findings, generates comparative analyses, and produces properly formatted citations. Use when: user wants to summarize a research paper, compare multiple sources, extract citations from documents, or create structured research briefs. Plugin for Claude Code, Codex, Gemini CLI, and OpenClaw.
- ▌ Token Waste Elimination · gabrielmoreiraAudit and eliminate token waste from cognitive architecture memory files -- instructions, prompts, skills, and agents
- ▌
- ▌ Data Preparation · gabrielmoreiraData cleaning, profiling, transformation, and quality gates -- prepares raw data for visualization and analysis
- ▌ Oda Copilot Customization · gabrielmoreiraApply, review, improve, or maintain a repository's Copilot customization with the Ownership-Driven AI Customization Architecture and the latest official GitHub Copilot docs. Use when shaping or auditing a repository's customization map, governance files, supporting docs, and safeguards for drift, health, weak controls, outdated assumptions, or when deciding how a specific customization problem should be handled.
- ▌ Impact Review · gabrielmoreiraAssess likely downstream impact, decide what should be reconciled now versus carried forward explicitly, and keep the repository coherent without sweeping every related surface.
- ▌ Find Management Consultant · gabrielmoreiraUse whenever the user wants to find, shortlist, vet, or enrich US management consultancies — strategy, operations, executive coaching, leadership development, org-development/change management, PMO/program management, sales/revenue operations consulting. Triggers on "find me three top strategy consultancies in California", "shortlist boutique ops-consulting firms with healthcare experience", "we need an executive coach for our new CEO", or "pull contact info for these 10 consulting firm domains", even when described indirectly (post-merger integration help, change-management partner, fractional COO). Drives the ServiceGraph API (api.servicegraph.co) — a 100k+ US firm catalog filterable by industry, services, location, size, ratings. Skip in-house strategy hires, "help me build a strategy" do-the-work asks, framework comparisons (Lean vs Agile, BCG matrix, etc.), academic/MBA-program questions, life/career coaching for individuals, non-US firms, individual freelancers.
- ▌ Promote · gabrielmoreiraRuns the full release workflow for the current project. Commits any uncommitted changes, pushes to remote, creates and merges a PR if on a feature branch, determines the next semver version from conventional commits, creates an annotated git tag and GitHub release with generated notes, cleans up merged branches, and returns to a clean main. Use when the user says promote, ship, release, commit and push, tag and release, or get back to main.
- ▌ CI Automation · gabrielmoreiraUse when running GitHub Actions locally, creating task runner recipes, generating changelogs from git history, managing GitHub PRs/issues/releases programmatically, or creating encrypted backups
- ▌ Abridge Cost Tuning · gabrielmoreiraOptimize Abridge clinical AI costs through tier selection, session management, and usage monitoring for healthcare organizations. Use when analyzing Abridge billing, optimizing encounter volume, or right-sizing your Abridge contract for provider count. Trigger: "abridge cost", "abridge pricing", "abridge billing", "abridge budget", "abridge ROI".
- ▌ Abridge Hello World · gabrielmoreiraCreate a minimal Abridge ambient AI clinical documentation example. Use when testing Abridge integration, verifying EHR connectivity, or learning how Abridge captures and structures clinical conversations. Trigger: "abridge hello world", "abridge example", "abridge quick start", "test abridge".
- ▌ Abridge Rate Limits · gabrielmoreiraImplement Abridge rate limiting, backoff, and session throttling patterns. Use when handling 429 errors, managing concurrent encounter sessions, or optimizing API throughput for high-volume clinical deployments. Trigger: "abridge rate limit", "abridge 429", "abridge throttling", "abridge concurrent sessions".
- ▌ Adobe Core Workflow B · gabrielmoreiraExecute Adobe PDF Services workflow: create PDFs from HTML/DOCX, extract text/tables, document generation from templates, and PDF-to-Markdown conversion. Use when building document automation, extracting content from PDFs, or generating dynamic reports. Trigger with phrases like "adobe pdf", "pdf services", "extract pdf", "create pdf", "document generation", "pdf to markdown".
- ▌ Adobe Security Basics · gabrielmoreiraApply Adobe security best practices for OAuth credentials, secret rotation, I/O Events webhook signature verification, and least-privilege scoping. Use when securing API credentials, implementing webhook validation, or auditing Adobe security configuration. Trigger with phrases like "adobe security", "adobe secrets", "secure adobe", "adobe credential rotation", "adobe webhook signature".
- ▌ Adobe Webhooks Events · gabrielmoreiraImplement Adobe I/O Events webhook registration, RSA-SHA256 signature verification, challenge handshake, and event-driven architectures with Creative Cloud, Experience Platform, and Firefly Services events. Trigger with phrases like "adobe webhook", "adobe events", "adobe I/O events", "adobe event registration", "adobe notifications".
- ▌ Anima Core Workflow A · gabrielmoreiraBuild automated Figma-to-React pipeline with the Anima SDK. Use when automating design handoff, building CI/CD design-to-code workflows, or creating a design system code generator from Figma components. Trigger: "anima design pipeline", "figma to react pipeline", "automated design handoff", "anima component generator".
- ▌ Anth Sdk Patterns · gabrielmoreiraApply production-ready Anthropic SDK patterns for TypeScript and Python. Use when implementing Claude integrations, building reusable wrappers, or establishing team coding standards for the Messages API. Trigger with phrases like "anthropic SDK patterns", "claude best practices", "anthropic code patterns", "production claude code".
- ▌ Attio Core Workflow A · gabrielmoreiraFull CRUD on Attio records -- create, read, update, delete, and search across people, companies, deals, and custom objects. Trigger: "attio records", "attio CRUD", "create attio record", "update attio person", "search attio companies", "attio objects".
- ▌ Attio Core Workflow B · gabrielmoreiraManage Attio lists, entries, notes, and tasks via the REST API. Use when working with sales pipelines, kanban boards, CRM notes, or task assignments in Attio. Trigger: "attio lists", "attio entries", "attio pipeline", "attio notes", "attio tasks", "add to attio list".
- ▌ Attio Security Basics · gabrielmoreiraSecure Attio API integrations -- token scoping, secret management, scope auditing, webhook signature verification, and rotation procedures. Trigger: "attio security", "attio secrets", "secure attio", "attio API key security", "attio scopes", "attio token rotation".
- ▌ Clay Policy Guardrails · gabrielmoreiraImplement credit spending limits, data privacy enforcement, and input validation guardrails for Clay pipelines. Use when enforcing spending caps, blocking PII enrichment, or adding pre-enrichment validation rules. Trigger with phrases like "clay policy", "clay guardrails", "clay spending limit", "clay data privacy rules", "clay validation", "clay controls".
- ▌ Cohere Observability · gabrielmoreiraSet up comprehensive observability for Cohere API v2 with metrics, traces, and alerts. Use when implementing monitoring for Chat/Embed/Rerank operations, setting up dashboards, or configuring alerts for Cohere integrations. Trigger with phrases like "cohere monitoring", "cohere metrics", "cohere observability", "monitor cohere", "cohere alerts", "cohere tracing".
- ▌ Gamma Core Workflow A · gabrielmoreiraGenerate presentations, documents, and webpages via Gamma API. Use when creating content from text prompts, configuring themes, image styles, text modes, and output formats. Trigger: "gamma generate", "gamma presentation from text", "gamma AI slides", "gamma create deck", "gamma content generation".
- ▌ Gamma Core Workflow B · gabrielmoreiraGenerate from templates, retrieve exports, and manage sharing via Gamma API. Use when creating content from template gammas, downloading PDF/PPTX/PNG exports, or configuring sharing and folder organization. Trigger: "gamma template", "gamma export", "gamma download PDF", "gamma PPTX", "gamma sharing", "gamma from template".
- ▌ Posthog Cost Tuning · gabrielmoreiraOptimize PostHog costs: autocapture tuning, event sampling with before_send, bot filtering, session recording sampling, and billing monitoring. Trigger: "posthog cost", "posthog billing", "reduce posthog costs", "posthog pricing", "posthog expensive", "posthog budget", "posthog free tier".
- ▌ Posthog Rate Limits · gabrielmoreiraHandle PostHog API rate limits with exponential backoff, request queuing, and understanding PostHog's actual limit tiers (240/min analytics, 600/min flags). Trigger: "posthog rate limit", "posthog throttling", "posthog 429", "posthog retry", "posthog backoff", "posthog too many requests".
- ▌ Replit Data Handling · gabrielmoreiraImplement secure data handling on Replit: PostgreSQL, KV Database, Object Storage, and data security patterns. Use when handling sensitive data, connecting databases, implementing data access patterns, or ensuring secure data flow in Replit-hosted applications. Trigger with phrases like "replit data", "replit database", "replit PostgreSQL", "replit storage", "replit data security", "replit GDPR".
- ▌ Serpapi Rate Limits · gabrielmoreiraHandle SerpApi rate limits and credit-based usage quotas. Use when managing API credit consumption, implementing request throttling, or optimizing search volume for your plan tier. Trigger: "serpapi rate limit", "serpapi credits", "serpapi quota", "serpapi throttle".
- ▌ Webflow Hello World · gabrielmoreiraCreate a minimal working Webflow Data API v2 example. Use when starting a new Webflow integration, testing your setup, or learning basic Webflow API patterns — list sites, read CMS collections, create items. Trigger with phrases like "webflow hello world", "webflow example", "webflow quick start", "simple webflow code", "first webflow API call".
- ▌ Webflow Rate Limits · gabrielmoreiraHandle Webflow Data API v2 rate limits — per-key limits, Retry-After headers, exponential backoff, request queuing, and bulk endpoint optimization. Use when hitting 429 errors, implementing retry logic, or optimizing API request throughput. Trigger with phrases like "webflow rate limit", "webflow throttling", "webflow 429", "webflow retry", "webflow backoff", "webflow too many requests".
- ▌ HTTP Header Security Audit · gabrielmoreiraExecute http header security audit operations. Auto-activating skill for Security Fundamentals. Triggers on: http header security audit, http header security audit Part of the Security Fundamentals skill category. Use when analyzing or auditing http header security audit. Trigger with phrases like "http header security audit", "http audit", "http".
- ▌ License Compliance Scanner · gabrielmoreiraScan license compliance scanner operations. Auto-activating skill for Security Fundamentals. Triggers on: license compliance scanner, license compliance scanner Part of the Security Fundamentals skill category. Use when working with license compliance scanner functionality. Trigger with phrases like "license compliance scanner", "license scanner", "license".
- ▌ Password Strength Analyzer · gabrielmoreiraAnalyze password strength analyzer operations. Auto-activating skill for Security Fundamentals. Triggers on: password strength analyzer, password strength analyzer Part of the Security Fundamentals skill category. Use when analyzing or auditing password strength analyzer. Trigger with phrases like "password strength analyzer", "password analyzer", "analyze password strength r".
- ▌ Security Headers Generator · gabrielmoreiraGenerate security headers generator operations. Auto-activating skill for Security Fundamentals. Triggers on: security headers generator, security headers generator Part of the Security Fundamentals skill category. Use when working with security headers generator functionality. Trigger with phrases like "security headers generator", "security generator", "security".
- ▌ Vulnerability Report Generator · gabrielmoreiraGenerate vulnerability report generator operations. Auto-activating skill for Security Advanced. Triggers on: vulnerability report generator, vulnerability report generator Part of the Security Advanced skill category. Use when working with vulnerability report generator functionality. Trigger with phrases like "vulnerability report generator", "vulnerability generator", "vulnerability".
- ▌ Performance Baseline Creator · gabrielmoreiraCreate performance baseline creator operations. Auto-activating skill for Performance Testing. Triggers on: performance baseline creator, performance baseline creator Part of the Performance Testing skill category. Use when working with performance baseline creator functionality. Trigger with phrases like "performance baseline creator", "performance creator", "performance".
- ▌ Configuration Reference Generator · gabrielmoreiraGenerate configuration reference generator operations. Auto-activating skill for Technical Documentation. Triggers on: configuration reference generator, configuration reference generator Part of the Technical Documentation skill category. Use when configuring systems or services. Trigger with phrases like "configuration reference generator", "configuration generator", "configuration".
- ▌ Acceptance Criteria Creator · gabrielmoreiraCreate acceptance criteria creator operations. Auto-activating skill for Enterprise Workflows. Triggers on: acceptance criteria creator, acceptance criteria creator Part of the Enterprise Workflows skill category. Use when working with acceptance criteria creator functionality. Trigger with phrases like "acceptance criteria creator", "acceptance creator", "acceptance".
- ▌ Manage Expiration Controlled Inventory · gabrielmoreira bundleManage expiration-controlled inventory by tracing expiry dates, usable life, status, rotation rules, and hold boundaries.
- ▌ Map Warehouse Process · gabrielmoreira bundleMap warehouse processes from physical flow, roles, systems, queues, handoffs, controls, exceptions, and evidence.
- ▌ Select Logistics Kpis · gabrielmoreira bundleSelect logistics KPIs from operation type, goals, constraints, available data, decision needs, and review boundaries.
- ▌ Forecast Capacity Requirements · gabrielmoreira bundleForecast warehouse capacity requirements from growth, inventory, throughput, seasonality, utilization targets, and constraints.
- ▌ Identify Canadian Logistics Jurisdiction · gabrielmoreiraIdentify federal, provincial, territorial, modal, product, workplace, and activity jurisdiction for Canadian logistics research.
- ▌ Research Canadian Import Export Controls · gabrielmoreiraPrepare CBSA-centered Canadian import and export research briefs for logistics evidence, documentation, release, reporting, and broker review.
- ▌ Deepmd Finetune Dpa3 · gabrielmoreiraFine-tune a DPA3 model in DeePMD-kit using the PyTorch backend. Use when the user wants to adapt a pre-trained DPA3 model to a new downstream dataset. Supports fine-tuning from a self-trained DPA3 model (.pt checkpoint), from a multi-task pre-trained model, or from a built-in pretrained model downloaded via `dp pretrained download` (e.g., DPA-3.1-3M, DPA-3.2-5M, DPA-3.3-1M). Covers single-task and multi-task fine-tuning workflows.
- ▌ Resolve Design Errors · gabrielmoreiraUse when asked to run Design Error Detection (quick defect scan), find design errors in a Simulink model, perform root cause analysis on DED findings, fix division-by-zero, overflow, dead logic or out-of-bounds defects detected by SLDV, or diagnose why missing coverage cannot be achieved (dead logic blocking coverage objectives). Do NOT use for requirement verification, test generation, Inf/NaN detection, active logic analysis, or coverage measurement.
- ▌ Implementing Image Provenance Verification With Cosign · gabrielmoreira bundleSigns and verifies container image provenance with Sigstore Cosign, covering key-based and keyless OIDC signing (Fulcio, Rekor transparency log), SLSA attestations, and enforcing signature verification through Kubernetes admission control. Use when signing images for supply chain security, setting up keyless OIDC signing, attaching attestations, or enforcing a verified-images-only policy at admission. Keywords: Cosign, Sigstore, Fulcio, Rekor, keyless, attestation, cosign verify, admission policy. Do not use for in-toto layout-based pipeline attestation - use implementing-supply-chain-security-with-in-toto.
- ▌ Implementing Iso 27001 Information Security Management · gabrielmoreira bundleGuides implementation of an ISO/IEC 27001:2022 Information Security Management System (ISMS) end to end: gap analysis and scoping, risk assessment methodology, Annex A control selection, Statement of Applicability (SoA) creation, and continuous improvement. Use when scoping a new ISMS, preparing for ISO 27001 certification or audit, or selecting and documenting Annex A controls for a compliance program.
- ▌ Performing GCP Penetration Testing With Gcpbucketbrute · gabrielmoreira bundlePerforms authorized GCP security testing using GCPBucketBrute to enumerate publicly accessible storage buckets, combined with gcloud CLI IAM enumeration to find privilege escalation paths and audit service account permissions. Use when penetration testing a GCP project for exposed buckets, overly permissive IAM bindings, or service account key exposure.
- ▌ Exploiting Glibc Heap Vulnerabilities · gabrielmoreiraMethodology for exploiting glibc ptmalloc2 heap vulnerabilities during authorized engagements — use-after-free, double-free, heap overflow, and bin-based attacks (tcache poisoning, fast-bin dup, unsorted/large-bin) — including modern mitigations (tcache key, safe-linking, hook removal) and how to obtain leaks and arbitrary read/write.
- ▌ Performing Cloud Log Forensics With Athena · gabrielmoreiraUses AWS Athena to query CloudTrail, VPC Flow Logs, S3 access logs, and ALB logs for forensic investigation. Covers CREATE TABLE DDL with partition projection, forensic SQL queries for detecting unauthorized access, data exfiltration, lateral movement, and privilege escalation. Use when investigating AWS security incidents or building cloud-native forensic workflows at scale.
- ▌ Detecting Fileless Attacks On Endpoints · gabrielmoreiraDetects fileless malware and in-memory attacks that execute entirely in RAM without writing persistent files to disk, evading traditional antivirus. Use when building detections for PowerShell-based attacks, reflective DLL injection, WMI persistence, and registry-resident malware. Activates for requests involving fileless malware detection, in-memory attacks, PowerShell exploitation, or living-off-the-land techniques.
- ▌ Analyzing Network Traffic For Incidents · gabrielmoreiraAnalyzes network traffic captures and flow data to identify adversary activity during security incidents, including command-and-control communications, lateral movement, data exfiltration, and exploitation attempts. Uses Wireshark, Zeek, and NetFlow analysis techniques. Activates for requests involving network traffic analysis, packet capture investigation, PCAP analysis, network forensics, C2 traffic detection, or exfiltration detection.
- ▌ Performing Network Pivoting And Tunneling · gabrielmoreiraPivoting into segmented internal networks during authorized engagements via SSH local/remote/dynamic forwarding, SOCKS proxies with proxychains, and modern tunneling tools (chisel, ligolo-ng, socat, sshuttle) plus egress-restricted options (DNS/ICMP tunnels, cloudflared, ngrok, frp) to reach otherwise unreachable hosts.
- ▌ Analyzing IOS App Security With Objection · gabrielmoreiraPerforms runtime mobile security exploration of iOS applications using Objection, a Frida-powered toolkit that enables security testers to interact with app internals without jailbreaking. Use when assessing iOS app security posture, bypassing client-side protections, dumping keychain items, inspecting filesystem storage, and evaluating runtime behavior. Activates for requests involving iOS security testing, Objection runtime analysis, Frida-based iOS assessment, or mobile runtime exploration.
- ▌ Analyzing Network Flow Data With Netflow · gabrielmoreiraParse NetFlow v9 and IPFIX records to detect volumetric anomalies, port scanning, data exfiltration, and C2 beaconing patterns. Uses the Python netflow library to decode flow records, builds traffic baselines, and applies statistical analysis to identify flows with abnormal byte counts, connection durations, and periodic timing patterns.
- ▌ Analyzing Network Traffic With Wireshark · gabrielmoreiraCaptures and analyzes network packet data using Wireshark and tshark to identify malicious traffic patterns, diagnose protocol issues, extract artifacts, and support incident response investigations on authorized network segments.
- ▌ Exploiting Bgp Hijacking Vulnerabilities · gabrielmoreiraAnalyzes and simulates BGP hijacking scenarios in authorized lab environments to assess route origin validation, RPKI deployment, and BGP monitoring defenses against prefix hijacking and route leak attacks on internet routing infrastructure.
- ▌ Implementing Attack Surface Management · gabrielmoreiraImplements external attack surface management (EASM) using Shodan, Censys, and ProjectDiscovery tools (subfinder, httpx, nuclei) for asset discovery, subdomain enumeration, service fingerprinting, and exposure scoring. Includes a weighted risk scoring algorithm based on OWASP attack surface analysis methodology and the Relative Attack Surface Quotient (RSQ). Use when building continuous ASM programs or performing external reconnaissance for security assessments.
- ▌ Monitoring Scada Modbus Traffic Anomalies · gabrielmoreiraMonitors Modbus TCP traffic on SCADA and ICS networks to detect anomalous function code usage, unauthorized register writes, and suspicious communication patterns. The analyst uses deep packet inspection with pymodbus, Scapy, and Zeek to baseline normal PLC/RTU communication behavior, then applies statistical and rule-based anomaly detection to identify reconnaissance, parameter manipulation, and denial-of-service attacks targeting Modbus devices on port 502. Activates for requests involving Modbus traffic analysis, SCADA network monitoring, ICS anomaly detection, PLC security monitoring, or OT network threat detection.
- ▌ Performing Ot Network Security Assessment · gabrielmoreiraThis skill covers conducting comprehensive security assessments of Operational Technology (OT) networks including SCADA systems, DCS architectures, and industrial control system communication paths. It addresses the Purdue Reference Model layers, identifies IT/OT convergence risks, evaluates firewall rules between zones, and maps industrial protocol traffic (Modbus, DNP3, OPC UA, EtherNet/IP) to detect misconfigurations, unauthorized connections, and attack surfaces in critical infrastructure.
- ▌ Performing Plc Firmware Security Analysis · gabrielmoreiraThis skill covers analyzing Programmable Logic Controller (PLC) firmware for security vulnerabilities including hardcoded credentials, insecure update mechanisms, backdoor functions, memory corruption flaws, and undocumented debug interfaces. It addresses firmware extraction from common PLC platforms (Siemens S7, Allen-Bradley, Schneider Modicon), static analysis of firmware images, dynamic analysis in emulated environments, and comparison against known-good baselines to detect tampering.
- ▌ Performing Open Source Intelligence Gathering · gabrielmoreiraOpen Source Intelligence (OSINT) gathering is the first active phase of a red team engagement, where operators collect publicly available information about the target organization to identify attack s
- ▌ Implementing Ebpf Security Monitoring · gabrielmoreiraImplements eBPF-based security monitoring using Cilium Tetragon for real-time process execution tracking, network connection observability, file access auditing, and runtime enforcement. Covers TracingPolicy CRD authoring with kprobe/tracepoint hooks, in-kernel filtering via matchArgs/matchBinaries selectors, JSON event export, and integration with SIEM pipelines. Use when building kernel-level runtime security observability for Linux hosts or Kubernetes clusters.
- ▌ Implementing Mitre Attack Coverage Mapping · gabrielmoreiraImplement MITRE ATT&CK coverage mapping to identify detection gaps, prioritize rule development, and measure SOC detection maturity against adversary techniques.
- ▌ Performing Deception Technology Deployment · gabrielmoreiraDeploys deception technology including honeypots, honeytokens, and decoy systems to detect attackers who have bypassed perimeter defenses, providing high-fidelity alerts with near-zero false positive rates. Use when SOC teams need early warning of lateral movement, credential abuse, or internal reconnaissance by deploying convincing traps across the network.
- ▌ Hunting For Anomalous Powershell Execution · gabrielmoreiraHunt for malicious PowerShell activity by analyzing Script Block Logging (Event 4104), Module Logging (Event 4103), and process creation events. The analyst parses Windows Event Log EVTX files to detect obfuscated commands, AMSI bypass attempts, encoded payloads, credential dumping keywords, and suspicious download cradles. Activates for requests involving PowerShell threat hunting, script block analysis, encoded command detection, or AMSI bypass identification.
- ▌ Exploiting CSV Formula Injection · gabrielmoreiraIdentifying and exploiting CSV/Excel formula (DDE) injection in import and export features where attacker-controlled data is written into spreadsheets and executed when opened in Excel or LibreOffice.
- ▌ Testing Session Management Flaws · gabrielmoreiraIdentifying and exploiting weaknesses in session handling including fixation, weak token entropy, missing cookie flags, improper invalidation on logout/password change, and client-side session tampering.
- ▌ Statistical Problem Formulation · gabrielmoreiraFormulate statistical research problems with formal notation, target parameters, assumptions, hypotheses, evaluation criteria, and theory targets.
- ▌ Conference Abstract Writer · gabrielmoreiraCondenses a full study into conference-submission abstract format. Use when adapting a manuscript abstract or study summary to meet a specific conference's word limit, structured format (Background/Methods/Results/Conclusion), character limits, or required section headings. Also triggers on "adapt my abstract for [conference]", "shorten my abstract to 250 words", "reformat for ASCO/ASGCT/SfN/AACR", "I need a conference abstract", or "cut my abstract to fit the word limit".
- ▌ Grant Specific Aims Writer · gabrielmoreiraWrites Specific Aims pages for grant applications. Use when drafting or revising the Specific Aims page (NIH R01/R21/R03), NSF Project Summary, or equivalent for any major funding agency. Also triggers on "write my specific aims", "help me draft specific aims for NIH", "what should a specific aims page include", "NSF project summary", "write my grant aims", or "how do I structure an R01".
- ▌ Introduction Logic Builder · gabrielmoreiraBuilds background-gap-objective logic for biomedical manuscript introductions with clear study positioning and disciplined narrative structure.
- ▌ Limitation And Risk Writer · gabrielmoreiraAcknowledges limitations in sample, design, measurement, and validation in a professional way that improves credibility without undermining the whole paper. Use when writing the limitations paragraph of a Discussion section, preparing a grant risk assessment, responding to reviewers about study weaknesses, or framing scope boundaries for a paper. Also triggers on "write my limitations", "how should I address the limitation of", "reviewer said my sample is too small", or "help me word this limitation".
- ▌ Results Section Structurer · gabrielmoreiraOrganizes biomedical figures, analyses, and result blocks into a clear Results section structure with disciplined narrative ordering and evidence-aware presentation.
- ▌ Slide Deck For Lab Meeting · gabrielmoreiraStructures research progress into focused and actionable slides for lab meetings or project reviews without inventing missing content.
- ▌ Consensus Clustering Analysis · gabrielmoreiraUse when identifying stable sample subtypes from bulk expression matrices with ConsensusClusterPlus, including PAC-based model selection and consensus matrix/CDF visualization. NOT for: differential expression analysis, single-cell clustering workflows, or non-expression tables.
- ▌ Elastic Net Feature Selection · gabrielmoreiraUse when selecting predictive genes or other molecular features from bulk expression matrices for binary case-vs-control classification with elastic net logistic regression, including coefficient path and cross-validation plots. Trigger keywords: elastic net, glmnet, feature selection, binary classification, lambda.min, lambda.1se. NOT for: survival/Cox modeling, multiclass outcomes, single-cell data, or non-expression tables.
- ▌ Svm Model Importance Analysis · gabrielmoreiraUse when you need a standardized R CLI workflow to run two-class SVM-RFE feature ranking on an expression-like matrix, choose an informative feature count from cross-validated error, and generate reproducible ranking and error plots. NOT for regression, multi-class classification, missing-value imputation, or remote data fetching.
- ▌ Result Reliability Checker · gabrielmoreiraAssesses whether study results are trustworthy by auditing design integrity, sample structure, statistical handling, bias control, validation chain, and claim discipline. It identifies where results are robust, fragile, overfit, under-validated, or overclaimed. Always separate reported findings from reliability judgment. Never fabricate references, PMIDs, DOIs, trial identifiers, study features, or validation claims.
- ▌ Aim And Hypothesis Designer · gabrielmoreiraDesigns primary aims, secondary aims, and testable hypotheses from broad biomedical research ideas. Use this skill when a user needs to convert a loose study idea into a tighter protocol-framing structure with clear aim hierarchy, hypothesis discipline, and separation between hypothesis-driven and exploratory components. Always keep aims answerable, non-overlapping, and aligned to the intended evidence type and study scope.
- ▌ Baseline Extraction For Clinical Trials · gabrielmoreiraExtracts clinical trial baseline data (study, region, participants, etc.) from article text or PMID. Checks PubMed for metadata; always falls back to LLM extraction for full details.
- ▌ Cherry Assistant Guide · gabrielmoreira从当前安装包查询 Cherry Studio 产品信息并排查运行问题。当用户询问功能、路由、快捷键、Provider、语言、Agent、频道、定时任务、Code CLI、当前版本,或报告运行错误、连接失败、配置异常并需要诊断时触发。
- ▌ Cherry Studio Feedback · gabrielmoreiraUse when Cherry Studio 用户希望报告、提交或整理 BUG、UI/UX 问题或功能建议,但未明确要求创建 GitHub Issue。
- ▌ Meeting Note Summarizer · gabrielmoreiraTransforms messy meeting transcripts, notes, or voice memos into structured summaries with clear action items, decisions, and key takeaways. Designed for freelancers, remote teams, and solopreneurs who need to extract signal from hours of meetings.
- ▌ Time Blocking Scheduler · gabrielmoreiraA structured time management coach that designs deep work schedules, energy-aligned routines, and priority-focused blocks for freelancers, solopreneurs, and creative professionals who need to protect their focus from the chaos of unstructured days.
- ▌ Oce Cost Browser · gabrielmoreiraBrowse and search the OpenConstructionERP cost database: classification tree, SQL and semantic search, autocomplete, certainty badges, and the resource catalog. Use when a user wants to explore cost data without building a BOQ yet.
- ▌ Oce Estimate Boq · gabrielmoreiraCreate bills of quantities and estimates in OpenConstructionERP: search cost items, build BOQ sections, link BIM elements in bulk, validate the BOQ, and export GAEB/XLSX/JSON. Use for any estimating workflow on the platform.
- ▌ Oce Property Dev · gabrielmoreiraProperty development lifecycle in OpenConstructionERP: lead to SPA to handover — feasibility, budgeting from cost bases, sales tracking and construction handover. Use for residential/commercial development projects.
- ▌
- ▌
- ▌ Meeting Efficiency · gabrielmoreiraAgenda design, time boxing, decision capture, async alternatives, and productive facilitation