gabrielmoreira
- 21k skills
- 0 followers
- 17 repo stars
- 2 weeks ago last updated
- ▌ Paper To Claim Verifier · gabrielmoreiraVerifies whether a scientific or biomedical claim is actually supported by the cited original papers rather than by citation drift, overstatement, selective citation, or correlation-to-causation inflation. Use this skill whenever a user wants to check whether a repeated statement, slide claim, manuscript sentence, review assertion, or “people often say” scientific conclusion is truly supported by the underlying primary literature. Always separate the claim itself, the cited paper(s), what the paper actually showed, what it did not show, and whether later retellings drifted beyond the original evidence. Never fabricate references, findings, study features, or citation chains.
- ▌ Population Gap Detector · gabrielmoreiraDetects overlooked, underrepresented, weakly resolved, or poorly validated populations and subgroups within a biomedical research area so users can identify more precise and meaningful study populations. Always use this skill when the real question is not just what is under-studied, but which populations, strata, or subgroups are missing, thinly represented, superficially analyzed, pooled without resolution, or insufficiently validated in the current evidence base. Focus on meaningful subgroup gaps rather than generic calls for diversity.
- ▌ Study Design Identifier · gabrielmoreiraIdentifies the real underlying study design used in a medical or biomedical paper, distinguishes primary and secondary design components when papers are hybrid, and converts the paper into an evidence-aware design label suitable for literature appraisal, evidence grading, and downstream review workflows. Always identify the actual design from what the study did, not from how the authors describe it. Never fabricate references, metadata, or study features.
- ▌ Primary Plan Recommender · gabrielmoreiraCompares multiple study-route options for the same biomedical research question and recommends one primary plan, while explicitly explaining why alternative routes are secondary, premature, weaker, or dependency-heavy. Always use this skill when the user already has a reasonably defined question but is unsure which main study route should anchor the project. Focus on plan comparison, route selection, dependency awareness, and primary-plan justification rather than full protocol drafting.
- ▌ Meta Results Sensitivity Analysis · gabrielmoreiraGenerates the "Results" section for meta-analysis sensitivity analysis based on statistical tables and titles. Use when the user wants to describe sensitivity analysis results or format sensitivity tables for a meta-analysis paper.
- ▌ Storytelling Advisor · gabrielmoreiraA narrative architecture coach that guides you through proven story frameworks — Hero's Journey, Pixar Storytelling Formula, Freytag's Pyramid, and more — to shape compelling narratives for pitches, brand stories, content, and presentations.
- ▌ Oce Field Ops · gabrielmoreiraField operations in OpenConstructionERP: punch list, daily diary, HSE observations and task tracking on site. Use when automating construction site workflows (deficiencies, diaries, safety, site tasks).
- ▌ Oce Tendering · gabrielmoreiraTendering and reporting in OpenConstructionERP: prepare tender BOQs, compare bids, manage risks, and generate reports (weekly, monthly, closeout). Use when a project goes to tender or needs reporting.
- ▌ Spline 3d Integration · gabrielmoreiraUse when adding interactive 3D scenes from Spline.design to web projects, including React embedding and runtime control API.
- ▌ Foundry Agent Platform · gabrielmoreiraMicrosoft Foundry agent deployment, orchestration, and cloud-native AI service patterns
- ▌ AI Writing Avoidance · gabrielmoreiraHelp writers produce content that sounds genuinely human by avoiding telltale AI-generated text patterns
- ▌ Dissertation Defense · gabrielmoreiraComprehensive preparation for doctoral dissertation defense including timeline management, presentation design, Q&A practice, mock sessions, and committee dynamics.
- ▌ Vitepress Clean Urls · gabrielmoreiraWith `cleanUrls: true`, nav links must NOT have `.html` extensions:
- ▌ Spec Generator · gabrielmoreiraGenerates a structured Workable Spec JSON to guide a Developer Worker.
- ▌ Aizynthfinder Retrosynthesis · gabrielmoreiraAiZynthFinder retrosynthetic route planning (CASP) from AstraZeneca Molecular AI. Monte Carlo tree search guided by a template-based neural expansion policy recursively disconnects a target SMILES until precursors are found in a purchasable stock. Covers config.yml (v4 format), aizynthcli batch screening, the AiZynthFinder/AiZynthExpander Python API, one-step disconnections, custom stocks via smiles2stock, scorers, Retro*/breadth-first/DFPN search alternatives, and reading output.json.gz / trees.json. Use for synthesis route planning, synthesizability screening, and building-block/precursor search. For reaction barriers use neb-irc-activation-energy; for 2D reaction scheme drawing use rdkit-chemdraw-cdxml.
- ▌ Find Product Directories · gabrielmoreiraUse whenever the user wants to find, rank, or shortlist directories, listing sites, or launch platforms where they can submit a software product, SaaS, app, tool, or startup — to get backlinks, referral traffic, and launch-day reach. Triggers on "where can I submit my SaaS for launch", "list of Product Hunt alternatives", "directories to get backlinks for our app", "where should I list my startup", or "pull submission details for these 8 directory domains", even when described indirectly. Drives the ServiceGraph API (api.servicegraph.co) — a catalog of 1,000+ product directories enriched with Domain Rating, backlinks, and organic traffic. Defer to find-mcp-directories for MCP-server listings and find-ai-directories for AI-tool / AI-agent / agent-skill listings. Skip finding a firm/agency to hire (use the find-* agency skills), finding products *inside* a directory ("recommend the best CRM"), building a directory site (do-the-work), local/business directories for brick-and-mortar, and link-building *services*.
- ▌ Adobe Data Handling · gabrielmoreiraImplement data handling for Adobe APIs including PII redaction in logs, Firefly content policy compliance, PDF document data classification, and GDPR/CCPA data subject access requests via Adobe Privacy Service. Trigger with phrases like "adobe data", "adobe PII", "adobe GDPR", "adobe data retention", "adobe privacy", "adobe content policy".
- ▌ Adobe Observability · gabrielmoreiraSet up comprehensive observability for Adobe API integrations with Prometheus metrics, OpenTelemetry traces, structured logging, and alert rules covering Firefly, PDF Services, and Photoshop APIs. Trigger with phrases like "adobe monitoring", "adobe metrics", "adobe observability", "monitor adobe", "adobe alerts", "adobe tracing".
- ▌ Attio Common Errors · gabrielmoreiraDiagnose and fix the top Attio REST API errors by HTTP status code. Real error response formats, actual error codes, and proven fixes. Trigger: "attio error", "fix attio", "attio not working", "attio 429", "attio 403", "attio 422", "debug attio".
- ▌ Linear Cost Tuning · gabrielmoreira bundleOptimize Linear API usage, reduce unnecessary calls, and maximize efficiency within rate limit budgets. Trigger: "linear cost", "reduce linear API calls", "linear efficiency", "linear API usage", "optimize linear costs", "linear budget".
- ▌ Miro Core Workflow A · gabrielmoreiraManage Miro boards and items — create, read, update, delete boards, sticky notes, shapes, cards, frames, and tags via REST API v2. Trigger with phrases like "miro board management", "create miro board", "miro items CRUD", "miro sticky notes", "organize miro board".
- ▌ Miro Enterprise Rbac · gabrielmoreiraConfigure Miro Enterprise features: organization management, SCIM provisioning, board-level access control, audit logs, and SSO integration via REST API v2. Trigger with phrases like "miro SSO", "miro RBAC", "miro enterprise", "miro SCIM", "miro permissions", "miro organization".
- ▌ Miro Multi Env Setup · gabrielmoreiraConfigure Miro REST API v2 across development, staging, and production with separate OAuth apps, isolated test boards, and secret management. Trigger with phrases like "miro environments", "miro staging", "miro dev prod", "miro environment setup", "miro multi env".
- ▌ Miro Security Basics · gabrielmoreiraApply Miro REST API v2 security best practices — OAuth scope minimization, token storage, webhook signature validation, and secret rotation. Trigger with phrases like "miro security", "miro secrets", "secure miro", "miro token security", "miro webhook signature".
- ▌ Miro Webhooks Events · gabrielmoreiraImplement Miro REST API v2 webhooks with board subscriptions, event handling, and signature verification for real-time board change notifications. Trigger with phrases like "miro webhook", "miro events", "miro board subscription", "miro real-time", "miro notifications".
- ▌ Replit Hello World · gabrielmoreiraCreate a minimal working Replit app with database, object storage, and auth. Use when starting a new Replit project, testing your setup, or learning Replit's built-in services (DB, Auth, Object Storage). Trigger with phrases like "replit hello world", "replit starter", "replit quick start", "first replit app", "replit example".
- ▌ Replit Rate Limits · gabrielmoreiraHandle Replit resource limits: KV database caps, deployment quotas, and request throttling. Use when hitting storage limits, managing deployment resources, or implementing rate limiting in your Replit-hosted app. Trigger with phrases like "replit rate limit", "replit throttling", "replit 429", "replit storage limit", "replit quota".
- ▌ Monitor Test Run · gabrielmoreiraWatch a running Kobiton test run and narrate it to the user: read the org's live-remediation flag up front, poll the run until every execution is terminal, surface the live-remediation URL the moment an execution is blocked, and give a correct post-mortem so a COMPLETED-with-BLOCKER_ENCOUNTERED execution is never reported as passed. Quiet on passes, loud on blockers and the final summary; suite runs are grouped by test case. When live remediation is enabled, it asks up front whether to auto-open the live-remediation browser window when a blocker hits. Use when the user asks to "watch", "monitor", "track", or "follow" a test run, or as the natural follow-up right after createTestRun returns a testRunId. The watch runs a bundled poller that emits only on real state changes (no per-poll chatter); uses getOrgSettings up front and terminateTestRun on request, plus the shared chromeless launcher — it does not drive or resolve the blocker itself.
- ▌ Creating Github Issues From Web Research · gabrielmoreira bundleExecute this skill enhances AI assistant's ability to conduct web research and translate findings into actionable github issues. it automates the process of extracting key information from web search results and formatting it into a well-structured issue, ready... Use when managing version control. Trigger with phrases like 'commit', 'branch', or 'git'.
- ▌ Cookie Security Analyzer · gabrielmoreiraAnalyze cookie security analyzer operations. Auto-activating skill for Security Fundamentals. Triggers on: cookie security analyzer, cookie security analyzer Part of the Security Fundamentals skill category. Use when analyzing or auditing cookie security analyzer. Trigger with phrases like "cookie security analyzer", "cookie analyzer", "analyze cookie security r".
- ▌ Input Validation Checker · gabrielmoreiraValidate input validation checker operations. Auto-activating skill for Security Fundamentals. Triggers on: input validation checker, input validation checker Part of the Security Fundamentals skill category. Use when working with input validation checker functionality. Trigger with phrases like "input validation checker", "input checker", "input".
- ▌ Session Security Checker · gabrielmoreiraValidate session security checker operations. Auto-activating skill for Security Fundamentals. Triggers on: session security checker, session security checker Part of the Security Fundamentals skill category. Use when working with session security checker functionality. Trigger with phrases like "session security checker", "session checker", "session".
- ▌ Artillery Config Generator · gabrielmoreiraGenerate artillery config generator operations. Auto-activating skill for Performance Testing. Triggers on: artillery config generator, artillery config generator Part of the Performance Testing skill category. Use when configuring systems or services. Trigger with phrases like "artillery config generator", "artillery generator", "artillery".
- ▌ Load Test Scenario Planner · gabrielmoreiraPlan load test scenario planner operations. Auto-activating skill for Performance Testing. Triggers on: load test scenario planner, load test scenario planner Part of the Performance Testing skill category. Use when writing or running tests. Trigger with phrases like "load test scenario planner", "load planner", "load".
- ▌ Mermaid Class Diagram Generator · gabrielmoreiraGenerate mermaid class diagram generator operations. Auto-activating skill for Visual Content. Triggers on: mermaid class diagram generator, mermaid class diagram generator Part of the Visual Content skill category. Use when working with mermaid class diagram generator functionality. Trigger with phrases like "mermaid class diagram generator", "mermaid generator", "mermaid".
- ▌ Confluence Page Generator · gabrielmoreiraGenerate confluence page generator operations. Auto-activating skill for Enterprise Workflows. Triggers on: confluence page generator, confluence page generator Part of the Enterprise Workflows skill category. Use when working with confluence page generator functionality. Trigger with phrases like "confluence page generator", "confluence generator", "confluence".
- ▌ Executive Summary Creator · gabrielmoreiraCreate executive summary creator operations. Auto-activating skill for Enterprise Workflows. Triggers on: executive summary creator, executive summary creator Part of the Enterprise Workflows skill category. Use when working with executive summary creator functionality. Trigger with phrases like "executive summary creator", "executive creator", "executive".
- ▌ Analyze Overtime Requirements · gabrielmoreira bundleAnalyze overtime requirements from workload, staffing, capacity, deadlines, constraints, and supplied policy boundaries.
- ▌ Analyze Wms Transaction History · gabrielmoreira bundleAnalyze WMS transaction logs for chronology, status changes, user actions, location moves, inventory effects, and source conflicts.
- ▌ Calculate Warehouse Capacity · gabrielmoreira bundleCalculate warehouse capacity from building dimensions, usable space, storage methods, location capacity, and constraints.
- ▌ Research Canadian Storage Requirements · gabrielmoreiraPrepare Canadian storage requirement research briefs for warehouses, yards, regulated goods, hazardous products, inventory status, and facility controls.
- ▌ Research Canadian Transportation Rules · gabrielmoreiraPrepare Canadian transportation rule research briefs for logistics movements while separating mode, province, territory, federal, carrier, and shipper scope.
- ▌ Support Food Recall Logistics · gabrielmoreiraSupport food recall logistics evidence collection, affected-lot tracing, hold segregation, distribution lists, and reviewer handoffs.
- ▌ Research Us Logistics Documents · gabrielmoreiraPrepare United States logistics documentation research briefs for warehouse, transportation, hazmat, customs, import, export, carrier, and audit records.
- ▌ Xtbloom Integrate Ase Dpdata · gabrielmoreiraIntegrate xTBloom with ASE or dpdata for molecular energy, force, charge, labeling, relaxation, optimizer, or dynamics workflows. Use when an AI coding agent needs to attach the xTBloom ASE calculator, configure dpdata's xtbloom driver or batch minimizer, preserve the adapters' eV/angstrom conventions, choose reproducible versus warm-started execution, or diagnose unsupported periodic inputs.
- ▌ Xtbloom Run Python Inference · gabrielmoreiraWrite, review, and run high-level xTBloom Python GFN2-xTB inference with `Calculator`, `Structure`, and `BatchCalculator`, including single systems, repeated geometry updates, heterogeneous ragged batches, backend selection, units, finite-temperature meaning, and peer-local failure handling. Use for ordinary NumPy-based energy, force, and charge workflows; use a dedicated integration skill instead for Array API/DLPack/PyTorch zero-copy, ASE/dpdata, the native C API, or QM/MM coupling.
- ▌ Simulink Single Precision Conversion · gabrielmoreiraConverts a double-precision Simulink system or subsystem to single precision using DataTypeWorkflow.Single (Fixed-Point Designer). The single conversion replaces all user-specified double-precision data types, as well as output data types that compile to double precision, with single-precision data types. Use this skill when converting Simulink systems to single precision, reducing memory usage of a Simulink system, optimizing for embedded targets. Do NOT use for standalone MATLAB .m code single conversion.
- ▌ Simulink Curating Library Kg · gabrielmoreiraUse this skill when the user wants to curate the SATK library knowledge index for a Simulink project — mark commonly used blocks, correct auto-assigned block categories, or improve block descriptions so the model-building agent picks better blocks from custom libraries. Triggered by phrases like "mark blocks common", "improve block descriptions", "correct block category", "make the agent prefer certain blocks", and from Gate 3 of building-simulink-models.
- ▌ Analyzing Malware Family Relationships With Malpedia · gabrielmoreira bundleQuery the Malpedia API to look up malware family aliases and naming (platform.family_name), pull community/vendor YARA rules, link families to threat actors, and map family relationships such as loader-payload chains and shared authorship. Use when researching a malware family's aliases, lineage, or actor attribution, or when sourcing YARA rules for detection.
- ▌ Detecting Broken Object Property Level Authorization · gabrielmoreira bundleDetect and test for OWASP API3:2023 Broken Object Property Level Authorization (BOPLA), covering excessive data exposure in API responses and mass assignment via injected request-body properties. Use when reviewing API responses/requests for over-exposed or over-writable object fields, or building detection rules and test cases for property-level authorization gaps that object-level checks miss.
- ▌ Exploiting Vulnerabilities With Metasploit Framework · gabrielmoreira bundleUses the Metasploit Framework (msfconsole and its exploit, auxiliary, and post-exploitation modules) to validate that identified CVEs and vulnerabilities are actually exploitable, gather post-exploitation evidence, and confirm patch remediation. Use when performing vulnerability management validation, penetration testing, or post-patch verification and you need to prove real-world exploitability rather than rely on a scanner score alone.
- ▌ Implementing Azure Ad Privileged Identity Management · gabrielmoreira bundleConfigure Microsoft Entra Privileged Identity Management (PIM) to convert standing privileged assignments into eligible, time-bound roles requiring justification, MFA, and approval, covering Entra roles, Azure resource roles, and PIM for Groups, plus access reviews. Use for role-assignment audits, just-in-time admin activation, or Zero Trust identity governance in Entra/Azure AD.
- ▌ Implementing Continuous Security Validation With Bas · gabrielmoreira bundleDeploys Breach and Attack Simulation (BAS) platforms such as SafeBreach, AttackIQ, Picus, Cymulate, Pentera, or SCYTHE to continuously validate endpoint, network, email-gateway, SIEM, and incident-response effectiveness by safely emulating MITRE ATT&CK techniques. Use when moving beyond point-in-time pentesting to continuous control validation, or standing up automated adversary emulation.
- ▌ Implementing Device Posture Assessment In Zero Trust · gabrielmoreira bundleImplements device posture assessment as a zero trust access control by integrating endpoint health signals from CrowdStrike ZTA, Microsoft Intune, and Jamf into conditional access policies that enforce compliance before granting access. Use when requiring device health checks before app access, wiring posture signals into conditional access, or implementing the CISA Zero Trust device pillar.
- ▌ Implementing Next Generation Firewall With Palo Alto · gabrielmoreira bundleConfigures and deploys Palo Alto Networks next-generation firewalls end-to-end, covering App-ID application-aware policies, User-ID identity-based enforcement, zone-based security rules, SSL decryption for encrypted traffic visibility, and Content-ID threat prevention profiles. Use when moving an enterprise from port-based firewall rules to application- and identity-aware NGFW policy on Palo Alto hardware.
- ▌ Implementing Ot Network Traffic Analysis With Nozomi · gabrielmoreira bundleDeploy Nozomi Networks Guardian sensors for passive OT network traffic analysis, providing asset visibility, behavioral anomaly detection, protocol-aware monitoring, and vulnerability assessment across industrial control systems without disrupting operations. Use when deploying OT/ICS network monitoring, configuring Guardian sensors, or building real-time threat detection for SCADA and industrial environments.
- ▌ Implementing Security Information Sharing With Stix2 · gabrielmoreira bundleCreate, validate, and share STIX 2.1 threat intelligence objects (indicators, malware, campaigns, relationships, bundles) using the stix2 Python library, and publish them over TAXII 2.1. Use when building or exchanging structured threat intelligence, modeling relationships between threat objects, or publishing/consuming a TAXII 2.1 feed.
- ▌ Implementing Vulnerability Management With Greenbone · gabrielmoreira bundleDeploy and operate Greenbone/OpenVAS vulnerability management using the python-gvm library over the Greenbone Management Protocol (GMP) to connect via Unix socket or TLS, create scan targets and configs, execute scans, and parse the XML scan reports into actionable findings. Use when automating OpenVAS/GVM scan creation and execution, or programmatically retrieving and parsing vulnerability scan reports.
- ▌ Implementing Zero Knowledge Proof For Authentication · gabrielmoreira bundleImplements the Schnorr identification protocol and a simplified Zero-Knowledge Password Proof (ZKPP) over the discrete logarithm problem, letting a prover authenticate by demonstrating knowledge of a secret without ever revealing it to the server. Use when designing or building password-less or password-secret-free authentication, or when a server must verify a user's credential without learning or storing the underlying secret.
- ▌ Rxjava To Coroutines Migration · gabrielmoreiraGuide and execute the migration of asynchronous code from RxJava to Kotlin Coroutines and Flow. Use this skill when a user asks to convert RxJava (Observables, Singles, Completables, Subjects) to Coroutines (suspend functions, Flows, StateFlows).
- ▌ Migrating Langchain To Pydantic AI · gabrielmoreiraMigrate Python LangChain or LangGraph applications to Pydantic AI. Use for LangChain agents, chains, LCEL, or direct LangGraph graphs, persistence, interrupts, and streaming. Do not use for migrations centered on `create_deep_agent` or Deep Agents harness features.
- ▌ Smart Data Collection · gabrielmoreira智能数据采集技能,用于从图片或文档(PDF、Word、Excel)中提取结构化数据,基于知识网络完成字段映射,生成SQL并写入数据库。当用户提到"数据采集"、"从文档提取数据"、"图片转数据"、"数据导入"、"文档数据入库"、"批量数据提取"或需要从非结构化文件中提取结构化数据并存储时,自动使用此技能。
- ▌ Engineer Gete Thermoelectrics · gabrielmoreiraEngineer and audit GeTe-based thermoelectric materials and devices across defect chemistry, carrier concentration, band and phase engineering, phonon scattering, synthesis, temperature-dependent transport, contacts, diffusion barriers, legs, modules, and reliability; use when GeTe composition, Ge vacancies, rhombohedral-cubic transition, band convergence, average zT, junctions, or mid-temperature module performance is central.
- ▌ Testing LLM Prompt Injection And Jailbreaks · gabrielmoreiraTesting LLM-backed applications, chatbots, and AI agents for direct and indirect prompt injection, jailbreaks, system-prompt leakage, and tool/agent abuse during authorized penetration tests, using structured payload families and reliable confirmation signals.
- ▌ Analyzing Memory Dumps With Volatility · gabrielmoreiraAnalyzes RAM memory dumps from compromised systems using the Volatility framework to identify malicious processes, injected code, network connections, loaded modules, and extracted credentials. Supports Windows, Linux, and macOS memory forensics. Activates for requests involving memory forensics, RAM analysis, volatile data examination, process injection detection, or memory-resident malware investigation.
- ▌ Detecting Process Injection Techniques · gabrielmoreiraDetects and analyzes process injection techniques used by malware including classic DLL injection, process hollowing, APC injection, thread hijacking, and reflective loading. Uses memory forensics, API monitoring, and behavioral analysis to identify injection artifacts. Activates for requests involving process injection detection, code injection analysis, hollowed process investigation, or in-memory threat detection.
- ▌ Conducting Network Penetration Test · gabrielmoreiraConducts comprehensive network penetration tests against authorized target environments by performing host discovery, port scanning, service enumeration, vulnerability identification, and controlled exploitation to assess the security posture of network infrastructure. The tester follows PTES methodology from reconnaissance through post-exploitation and reporting. Activates for requests involving network pentest, infrastructure security assessment, internal network testing, or external perimeter testing.
- ▌ Performing Privacy Impact Assessment · gabrielmoreiraAutomates the Privacy Impact Assessment (PIA) workflow including data flow mapping, privacy risk scoring matrices, GDPR Article 35 DPIA and CCPA/CPRA alignment checks, data inventory cataloging, and remediation tracking. Implements the NIST Privacy Framework PRAM methodology and ICO DPIA guidance for systematic identification and mitigation of privacy risks across processing activities. Use when conducting privacy assessments for new systems, evaluating regulatory compliance posture, or building automated privacy governance programs.
- ▌ Exploiting Active Directory With Bloodhound · gabrielmoreiraBloodHound is a graph-based Active Directory reconnaissance tool that uses graph theory to reveal hidden and unintended relationships within AD environments. Red teams use BloodHound to identify attac
- ▌ Hunting Credential Stuffing Attacks · gabrielmoreiraDetects credential stuffing attacks by analyzing authentication logs for login velocity anomalies, ASN diversity, password spray patterns, and geographic distribution of failed logins. Uses statistical analysis on Splunk or raw log data. Use when investigating account takeover campaigns or building detection rules for auth abuse.
- ▌ Building Vulnerability Scanning Workflow · gabrielmoreiraBuilds a structured vulnerability scanning workflow using tools like Nessus, Qualys, and OpenVAS to discover, prioritize, and track remediation of security vulnerabilities across infrastructure. Use when SOC teams need to establish recurring vulnerability assessment processes, integrate scan results with SIEM alerting, and build remediation tracking dashboards.
- ▌ Hunting For Registry Run Key Persistence · gabrielmoreiraDetect MITRE ATT&CK T1547.001 registry Run key persistence by analyzing Sysmon Event ID 13 logs and registry queries to identify malicious auto-start entries.
- ▌ Analyzing Threat Intelligence Feeds · gabrielmoreiraAnalyzes structured and unstructured threat intelligence feeds to extract actionable indicators, adversary tactics, and campaign context. Use when ingesting commercial or open-source CTI feeds, evaluating feed quality, normalizing data into STIX 2.1 format, or enriching existing IOCs with campaign attribution. Activates for requests involving ThreatConnect, Recorded Future, Mandiant Advantage, MISP, AlienVault OTX, or automated feed aggregation pipelines.
- ▌ Collecting Open Source Intelligence · gabrielmoreiraCollects and synthesizes open-source intelligence (OSINT) about threat actors, malicious infrastructure, and attack campaigns using publicly available data sources, passive reconnaissance tools, and dark web monitoring. Use when investigating external threat actor infrastructure, performing pre-engagement reconnaissance for authorized red team assessments, or enriching CTI reports with publicly available adversary context. Activates for requests involving Maltego, Shodan, OSINT framework, SpiderFoot, or infrastructure reconnaissance.
- ▌ Hunting Advanced Persistent Threats · gabrielmoreiraProactively hunts for Advanced Persistent Threat (APT) activity within enterprise environments using hypothesis-driven searches across endpoint telemetry, network logs, and memory artifacts. Use when conducting scheduled threat hunting cycles, investigating anomalous behavior flagged by UEBA, or validating that known APT TTPs are not present in the environment. Activates for requests involving MITRE ATT&CK, Velociraptor, osquery, Zeek, or threat hunting playbooks.
- ▌ Implementing Diamond Model Analysis · gabrielmoreiraThe Diamond Model of Intrusion Analysis provides a structured framework for analyzing cyber intrusions by examining four core features - Adversary, Capability, Infrastructure, and Victim. This skill covers implementing the Diamond Model programmatically to classify and correlate intrusion events, build activity threads, and generate pivot-ready intelligence.
- ▌ Exploiting Reverse Tab Nabbing · gabrielmoreiraIdentifying and exploiting reverse tabnabbing, where a link opened with target="_blank" without rel="noopener" gives the newly opened (attacker-controlled) page a reference to the originating window via window.opener, allowing it to redirect the original tab to a phishing clone. Activates when assessing user-controllable links, outbound links, or any anchor/window.open that opens new tabs.
- ▌ Poster Storyline Builder · gabrielmoreiraReorganizes a paper into a storyline suitable for scientific posters. Use when planning the section structure, title hierarchy, figure selection, and live-explanation flow for an academic conference poster. Also triggers on "help me design a poster layout", "what sections should my poster have", "how do I arrange my poster", "poster structure for [conference]", or "which figures should I use for my poster".
- ▌ Sample Correlation Analysis · gabrielmoreiraUse when performing correlation analysis between two variables including Pearson and Spearman correlation methods. Supports command-line parameter input, automatic data format detection, parameter validation, result directory creation, and CSV or TXT format result export.
- ▌ Methods Reverse Engineer · gabrielmoreiraReverse-engineers the methods section of a biomedical paper into a structured, reproducible workflow. Use this skill when a user wants to understand how a study was actually executed, extract data sources, inclusion/exclusion logic, preprocessing, analytical sequence, software/tools, validation path, and critical parameters, or build a replication checklist from a paper, abstract, DOI, PMID, title, screenshot, or partial methods text. Do not treat this as generic summarization. Focus on reconstructing the operational method pipeline, surfacing missing reproducibility details, and distinguishing explicitly reported steps from inferred or unresolved ones. Never fabricate references, methods details, identifiers, software versions, parameters, datasets, or validation steps.
- ▌ Mr Scrna Research Planner · gabrielmoreiraGenerates complete Mendelian Randomization + single-cell transcriptomics (scRNA-seq) research designs from a user-provided direction. Always use this skill whenever a user wants to design, plan, or build a study combining MR and single-cell data — even if phrased as "help me write a paper on X", "design a bioinformatics study for Y", or "I want to study Z using MR and scRNA". Covers five study patterns (mechanism gene-set, key-cell, candidate-gene reverse validation, exposure-disease-cell triangulation, translational biomarker) and always outputs four workload configs (Lite / Standard / Advanced / Publication+) with recommended primary plan, step-by-step workflow, figure plan, validation strategy, minimal executable version, publication upgrade path, and a strictly verified reference literature retrieval layer with real references only.
- ▌ Meta Results Funnel Plot Generator · gabrielmoreiraGenerates a Meta-analysis results section description for funnel plots, including statistical tables (Egger's, Begg's, Trim & Fill) and figure legends. Supports English and Chinese outputs. Use when user provides a funnel plot image and statistics and wants a formatted report.
- ▌ PDF Extract Experimental Materials · gabrielmoreiraExtract experimental materials and instrument information from PDFs (or PDF-derived text/Markdown) into three CSV tables; use when a paper/report contains sections like Materials and Methods, Key Resources Table, Reagents, Antibodies, Consumables, Software, Equipment, Instruments, or Reagent Preparation.
- ▌ Daily Standup Journal · gabrielmoreiraA structured reflection engine that generates daily standup prompts, journaling questions, and weekly retrospectives for solopreneurs, freelancers, and remote teams. Helps build momentum, surface blockers, and track progress without the overhead of a manager.
- ▌ Embodied Carbon Esg · gabrielmoreiraEstimate embodied carbon and produce ESG/climate reporting for construction: LCA per work item, material-based carbon factors, EU taxonomy and CSRD alignment. Use when a project needs carbon estimates or sustainability reporting.
- ▌ Context7 Version Aware Implementation · gabrielmoreiraUse the current project dependency versions and Context7 documentation to implement or upgrade code without importing APIs from a different release line.
- ▌ Bicep Avm Mastery · gabrielmoreiraAzure Verified Modules (AVM), Bicep best practices, and MCP-powered infrastructure as code for Azure
- ▌ Snowflake Native App Release Sheriff · gabrielmoreira bundlePreflight Snowflake Native App package releases from trusted, privacy-safe provider evidence without publishing, upgrading, altering, granting, or approving anything. Use when reviewing manifest/setup safety, security-scan gates, version and release-directive validation, App Spec or privilege changes, upgrade-cohort compatibility, and rollback readiness. Trigger with "Native App release", "application package scan", "upgrade cohort", or "App Spec".
- ▌ Ansible Playbook Generator · gabrielmoreiraGenerate ansible playbook generator operations. Auto-activating skill for DevOps Advanced. Triggers on: ansible playbook generator, ansible playbook generator Part of the DevOps Advanced skill category. Use when working with ansible playbook generator functionality. Trigger with phrases like "ansible playbook generator", "ansible generator", "ansible".
- ▌ Kubernetes Secrets Manager · gabrielmoreiraManage kubernetes secrets manager operations. Auto-activating skill for DevOps Advanced. Triggers on: kubernetes secrets manager, kubernetes secrets manager Part of the DevOps Advanced skill category. Use when working with kubernetes secrets manager functionality. Trigger with phrases like "kubernetes secrets manager", "kubernetes manager", "kubernetes".
- ▌ Kubernetes Service Manager · gabrielmoreiraManage kubernetes service manager operations. Auto-activating skill for DevOps Advanced. Triggers on: kubernetes service manager, kubernetes service manager Part of the DevOps Advanced skill category. Use when working with kubernetes service manager functionality. Trigger with phrases like "kubernetes service manager", "kubernetes manager", "kubernetes".
- ▌ Forensics Data Collector · gabrielmoreiraProcess forensics data collector operations. Auto-activating skill for Security Advanced. Triggers on: forensics data collector, forensics data collector Part of the Security Advanced skill category. Use when working with forensics data collector functionality. Trigger with phrases like "forensics data collector", "forensics collector", "forensics".
- ▌ Kubernetes Rbac Analyzer · gabrielmoreiraAnalyze kubernetes rbac analyzer operations. Auto-activating skill for Security Advanced. Triggers on: kubernetes rbac analyzer, kubernetes rbac analyzer Part of the Security Advanced skill category. Use when analyzing or auditing kubernetes rbac analyzer. Trigger with phrases like "kubernetes rbac analyzer", "kubernetes analyzer", "analyze kubernetes rbac r".
- ▌ Network Security Scanner · gabrielmoreiraScan network security scanner operations. Auto-activating skill for Security Advanced. Triggers on: network security scanner, network security scanner Part of the Security Advanced skill category. Use when working with network security scanner functionality. Trigger with phrases like "network security scanner", "network scanner", "network".
- ▌ Penetration Test Planner · gabrielmoreiraPlan penetration test planner operations. Auto-activating skill for Security Advanced. Triggers on: penetration test planner, penetration test planner Part of the Security Advanced skill category. Use when writing or running tests. Trigger with phrases like "penetration test planner", "penetration planner", "penetration".
- ▌ Zero Trust Config Helper · gabrielmoreiraConfigure with zero trust config helper operations. Auto-activating skill for Security Advanced. Triggers on: zero trust config helper, zero trust config helper Part of the Security Advanced skill category. Use when configuring systems or services. Trigger with phrases like "zero trust config helper", "zero helper", "zero".
- ▌ Performance Lighthouse Runner · gabrielmoreiraManage performance lighthouse runner operations. Auto-activating skill for Frontend Development. Triggers on: performance lighthouse runner, performance lighthouse runner Part of the Frontend Development skill category. Use when working with performance lighthouse runner functionality. Trigger with phrases like "performance lighthouse runner", "performance runner", "performance".
- ▌ Property Based Test Helper · gabrielmoreiraAssist with property based test helper operations. Auto-activating skill for Test Automation. Triggers on: property based test helper, property based test helper Part of the Test Automation skill category. Use when writing or running tests. Trigger with phrases like "property based test helper", "property helper", "property".
- ▌ Apdex Score Calculator · gabrielmoreiraCalculate apdex score calculator operations. Auto-activating skill for Performance Testing. Triggers on: apdex score calculator, apdex score calculator Part of the Performance Testing skill category. Use when working with apdex score calculator functionality. Trigger with phrases like "apdex score calculator", "apdex calculator", "apdex".
- ▌ Network Latency Tester · gabrielmoreiraTest network latency tester operations. Auto-activating skill for Performance Testing. Triggers on: network latency tester, network latency tester Part of the Performance Testing skill category. Use when writing or running tests. Trigger with phrases like "network latency tester", "network tester", "network".