gabrielmoreira
- 21k skills
- 0 followers
- 17 repo stars
- 2 weeks ago last updated
- ▌ Generate Social · gabrielmoreiraGenerates platform-sized, on-brand social templates as SVG from the active brand profile, with editable headline, subhead, and call-to-action zones. Vector output needs no account, key, or network. Use when a user asks for an Instagram post or story, an Open Graph or social card, a YouTube thumbnail, or a banner. Trigger with "make an Instagram post", "social card", or "/brand-make social".
- ▌ Sync Setup · gabrielmoreiraUse when the user wants to set up config sync for the first time, connect to GitHub, or re-initialize the backup repo.
- ▌ Adapting Transfer Learning Models · gabrielmoreira bundleBuild this skill automates the adaptation of pre-trained machine learning models using transfer learning techniques. it is triggered when the user requests assistance with fine-tuning a model, adapting a pre-trained model to a new dataset, or performing... Use when appropriate context detected. Trigger with relevant phrases based on skill purpose.
- ▌ Brightdata Reference Architecture · gabrielmoreiraImplement Bright Data reference architecture with best-practice project layout. Use when designing new Bright Data integrations, reviewing project structure, or establishing architecture standards for Bright Data applications. Trigger with phrases like "brightdata architecture", "brightdata best practices", "brightdata project structure", "how to organize brightdata", "brightdata layout".
- ▌ Clickhouse Reference Architecture · gabrielmoreira bundleProduction reference architecture for ClickHouse-backed applications — project layout, data flow, multi-tenant patterns, and operational topology. Use when designing a new ClickHouse system, reviewing an existing analytics architecture, or establishing standards for ClickHouse integrations. Trigger with "clickhouse architecture", "clickhouse project structure", "clickhouse design", "clickhouse multi-tenant", "clickhouse reference".
- ▌ Coderabbit Reference Architecture · gabrielmoreiraImplement CodeRabbit reference architecture with production-grade .coderabbit.yaml configuration. Use when designing review configuration for a new project, establishing team standards, or building a comprehensive review setup from scratch. Trigger with phrases like "coderabbit architecture", "coderabbit best practices", "coderabbit project structure", "coderabbit reference config", "coderabbit full setup".
- ▌ Collecting Infrastructure Metrics · gabrielmoreira bundleCollect comprehensive infrastructure performance metrics across compute, storage, network, containers, load balancers, and databases. Use when monitoring system performance or troubleshooting infrastructure issues. Trigger with phrases like "collect infrastructure metrics", "monitor server performance", or "track system resources".
- ▌ Configuring Auto Scaling Policies · gabrielmoreira bundleConfigure use when you need to work with auto-scaling. This skill provides auto-scaling configuration with comprehensive guidance and automation. Trigger with phrases like "configure auto-scaling", "set up elastic scaling", or "implement scaling".
- ▌ Customerio Reference Architecture · gabrielmoreira bundleImplement Customer.io enterprise reference architecture. Use when designing integration layers, event-driven architectures, or enterprise-grade Customer.io setups. Trigger: "customer.io architecture", "customer.io design", "customer.io enterprise", "customer.io integration pattern".
- ▌ Deploying Machine Learning Models · gabrielmoreira bundleDeploy this skill enables AI assistant to deploy machine learning models to production environments. it automates the deployment workflow, implements best practices for serving models, optimizes performance, and handles potential errors. use this skill when th... Use when deploying or managing infrastructure. Trigger with phrases like 'deploy', 'infrastructure', or 'CI/CD'.
- ▌ Detecting Performance Bottlenecks · gabrielmoreira bundleExecute this skill enables AI assistant to detect and resolve performance bottlenecks in applications. it analyzes cpu, memory, i/o, and database performance to identify areas of concern. use this skill when you need to diagnose slow application performance, op... Use when optimizing performance. Trigger with phrases like 'optimize', 'performance', or 'speed up'.
- ▌ Detecting Performance Regressions · gabrielmoreira bundleAutomatically detect performance regressions in CI/CD pipelines by comparing metrics against baselines. Use when validating builds or analyzing performance trends. Trigger with phrases like "detect performance regression", "compare performance metrics", or "analyze performance degradation".
- ▌ Elevenlabs Reference Architecture · gabrielmoreira bundleImplement an ElevenLabs reference architecture for production TTS/voice applications. Use when designing new ElevenLabs integrations, reviewing project structure, or building a scalable audio generation service. Trigger with "elevenlabs architecture", "elevenlabs project structure", "how to organize elevenlabs", "TTS service architecture", "elevenlabs design patterns", "voice API architecture".
- ▌ Generating Infrastructure As Code · gabrielmoreira bundleExecute use when generating infrastructure as code configurations. Trigger with phrases like "create Terraform config", "generate CloudFormation template", "write Pulumi code", or "IaC for AWS/GCP/Azure". Produces production-ready code for Terraform, CloudFormation, Pulumi, ARM templates, and CDK across multiple cloud providers.
- ▌ Generating Security Audit Reports · gabrielmoreira bundleGenerate comprehensive security audit reports for applications and systems. Use when you need to assess security posture, identify vulnerabilities, evaluate compliance status, or create formal security documentation. Trigger with phrases like "create security audit report", "generate security assessment", "audit security posture", or "PCI-DSS compliance report".
- ▌ Implementing Real User Monitoring · gabrielmoreira bundleImplement Real User Monitoring (RUM) to capture actual user performance data including Core Web Vitals and page load times. Use when setting up user experience monitoring or tracking custom performance events. Trigger with phrases like "setup RUM", "track Core Web Vitals", or "monitor real user performance".
- ▌ Langchain Langgraph Checkpointing · gabrielmoreira bundlePersist LangGraph agent state correctly with MemorySaver and PostgresSaver — thread_id discipline, JSON-serializable state rules, time-travel, schema migration. Use when adding chat memory, migrating from ConversationBufferMemory, or time-traveling an agent state to debug an incident. Trigger with "langgraph checkpointer", "MemorySaver", "PostgresSaver", "thread_id", "langgraph time travel", "langgraph state persistence".
- ▌ Langchain Langgraph Human In Loop · gabrielmoreira bundleBuild LangGraph 1.0 human-in-the-loop approval flows with interrupt_before / interrupt_after and Command(resume=...) — JSON-serializable state, clean resume semantics, and UI wiring for approval decisions. Use when adding an approval gate before an expensive tool call, wiring a Slack/web UI for agent approvals, or debugging a graph that crashes on interrupt. Trigger with "langgraph human in loop", "langgraph interrupt_before", "langgraph approval flow", "Command resume", "langgraph HITL".
- ▌ Openrouter Reference Architecture · gabrielmoreira bundleDesign production architectures using OpenRouter as the LLM gateway. Use when planning system design, reviewing architecture, or scaling AI applications. Triggers: 'openrouter architecture', 'openrouter system design', 'openrouter at scale', 'llm gateway architecture'.
- ▌ Orchestrating Multi Agent Systems · gabrielmoreira bundleExecute orchestrate multi-agent systems with handoffs, routing, and workflows across AI providers. Use when building complex AI systems requiring agent collaboration, task delegation, or workflow coordination. Trigger with phrases like "create multi-agent system", "orchestrate agents", or "coordinate agent workflows".
- ▌ Profiling Application Performance · gabrielmoreira bundleExecute this skill enables AI assistant to profile application performance, analyzing cpu usage, memory consumption, and execution time. it is triggered when the user requests performance analysis, bottleneck identification, or optimization recommendations. the... Use when optimizing performance. Trigger with phrases like 'optimize', 'performance', or 'speed up'.
- ▌ Retellai Advanced Troubleshooting · gabrielmoreira bundleRetell AI advanced troubleshooting — AI voice agent and phone call automation. Use when working with Retell AI for voice agents, phone calls, or telephony. Trigger with phrases like "retell advanced troubleshooting", "retellai-advanced-troubleshooting", "voice agent".
- ▌ Salesforce Reference Architecture · gabrielmoreiraImplement Salesforce integration reference architecture with jsforce, SFDX, and event-driven patterns. Use when designing new Salesforce integrations, reviewing project structure, or establishing architecture standards for Salesforce-connected applications. Trigger with phrases like "salesforce architecture", "salesforce project structure", "salesforce integration design", "how to organize salesforce code", "salesforce layout".
- ▌ Supabase Advanced Troubleshooting · gabrielmoreira bundleDeep Supabase diagnostics: pg_stat_statements for slow queries, lock debugging with pg_locks, connection leak detection, RLS policy conflicts, Edge Function cold starts, and Realtime connection drop analysis. Use when standard troubleshooting fails, when investigating performance regressions, when debugging race conditions, or when building evidence for a Supabase support escalation. Trigger with "supabase deep debug", "supabase slow query", "supabase lock contention", "supabase connection leak", "supabase RLS conflict", "supabase cold start".
- ▌ Supabase Schema From Requirements · gabrielmoreira bundleDesign Supabase Postgres schema from business requirements with migrations, RLS, and types. Use when translating specifications into database tables, creating migration files, adding Row Level Security policies, or generating TypeScript types from schema. Trigger with phrases like "supabase schema", "design database supabase", "schema from requirements", "supabase migration", "supabase tables from spec".
- ▌ Validating AI Ethics And Fairness · gabrielmoreira bundleValidate AI/ML models and datasets for bias, fairness, and ethical concerns. Use when auditing AI systems for ethical compliance, fairness assessment, or bias detection. Trigger with phrases like "evaluate model fairness", "check for bias", or "validate AI ethics".
- ▌ Windsurf Advanced Troubleshooting · gabrielmoreiraAdvanced Windsurf debugging for hard-to-diagnose IDE, Cascade, and indexing issues. Use when standard troubleshooting fails, Cascade produces consistently wrong output, or investigating deep configuration problems. Trigger with phrases like "windsurf deep debug", "windsurf mystery error", "windsurf impossible to fix", "cascade keeps failing", "windsurf advanced debug".
- ▌ Terraform State Manager · gabrielmoreiraManage terraform state manager operations. Auto-activating skill for DevOps Advanced. Triggers on: terraform state manager, terraform state manager Part of the DevOps Advanced skill category. Use when working with terraform state manager functionality. Trigger with phrases like "terraform state manager", "terraform manager", "terraform".
- ▌ Iso27001 Gap Analyzer · gabrielmoreiraAnalyze iso27001 gap analyzer operations. Auto-activating skill for Security Advanced. Triggers on: iso27001 gap analyzer, iso27001 gap analyzer Part of the Security Advanced skill category. Use when analyzing or auditing iso27001 gap analyzer. Trigger with phrases like "iso27001 gap analyzer", "iso27001 analyzer", "analyze iso27001 gap r".
- ▌ Log Analysis Security · gabrielmoreiraExecute log analysis security operations. Auto-activating skill for Security Advanced. Triggers on: log analysis security, log analysis security Part of the Security Advanced skill category. Use when working with log analysis security functionality. Trigger with phrases like "log analysis security", "log security", "log".
- ▌ Accessibility Audit Runner · gabrielmoreiraRun accessibility audit runner operations. Auto-activating skill for Frontend Development. Triggers on: accessibility audit runner, accessibility audit runner Part of the Frontend Development skill category. Use when analyzing or auditing accessibility audit runner. Trigger with phrases like "accessibility audit runner", "accessibility runner", "accessibility".
- ▌ Keyboard Navigation Tester · gabrielmoreiraTest keyboard navigation tester operations. Auto-activating skill for Frontend Development. Triggers on: keyboard navigation tester, keyboard navigation tester Part of the Frontend Development skill category. Use when writing or running tests. Trigger with phrases like "keyboard navigation tester", "keyboard tester", "keyboard".
- ▌ Request Validator Generator · gabrielmoreiraGenerate request validator generator operations. Auto-activating skill for Backend Development. Triggers on: request validator generator, request validator generator Part of the Backend Development skill category. Use when working with request validator generator functionality. Trigger with phrases like "request validator generator", "request generator", "request".
- ▌ Feature Importance Analyzer · gabrielmoreiraAnalyze feature importance analyzer operations. Auto-activating skill for ML Training. Triggers on: feature importance analyzer, feature importance analyzer Part of the ML Training skill category. Use when analyzing or auditing feature importance analyzer. Trigger with phrases like "feature importance analyzer", "feature analyzer", "analyze feature importance r".
- ▌ Streaming Inference Setup · gabrielmoreiraConfigure streaming inference setup operations. Auto-activating skill for ML Deployment. Triggers on: streaming inference setup, streaming inference setup Part of the ML Deployment skill category. Use when working with streaming inference setup functionality. Trigger with phrases like "streaming inference setup", "streaming setup", "streaming".
- ▌ Factory Pattern Creator · gabrielmoreiraCreate factory pattern creator operations. Auto-activating skill for Test Automation. Triggers on: factory pattern creator, factory pattern creator Part of the Test Automation skill category. Use when working with factory pattern creator functionality. Trigger with phrases like "factory pattern creator", "factory creator", "factory".
- ▌ Cpu Profiler Config · gabrielmoreiraConfigure cpu profiler config operations. Auto-activating skill for Performance Testing. Triggers on: cpu profiler config, cpu profiler config Part of the Performance Testing skill category. Use when configuring systems or services. Trigger with phrases like "cpu profiler config", "cpu config", "cpu".
- ▌ K6 Script Generator · gabrielmoreiraGenerate k6 script generator operations. Auto-activating skill for Performance Testing. Triggers on: k6 script generator, k6 script generator Part of the Performance Testing skill category. Use when working with k6 script generator functionality. Trigger with phrases like "k6 script generator", "k6 generator", "k6".
- ▌ Locust Test Creator · gabrielmoreiraCreate locust test creator operations. Auto-activating skill for Performance Testing. Triggers on: locust test creator, locust test creator Part of the Performance Testing skill category. Use when writing or running tests. Trigger with phrases like "locust test creator", "locust creator", "locust".
- ▌ Percentile Analyzer · gabrielmoreiraAnalyze percentile analyzer operations. Auto-activating skill for Performance Testing. Triggers on: percentile analyzer, percentile analyzer Part of the Performance Testing skill category. Use when analyzing or auditing percentile analyzer. Trigger with phrases like "percentile analyzer", "percentile analyzer", "analyze percentile r".
- ▌ Airflow Operator Creator · gabrielmoreiraCreate airflow operator creator operations. Auto-activating skill for Data Pipelines. Triggers on: airflow operator creator, airflow operator creator Part of the Data Pipelines skill category. Use when working with airflow operator creator functionality. Trigger with phrases like "airflow operator creator", "airflow creator", "airflow".
- ▌ Dagster Pipeline Creator · gabrielmoreiraCreate dagster pipeline creator operations. Auto-activating skill for Data Pipelines. Triggers on: dagster pipeline creator, dagster pipeline creator Part of the Data Pipelines skill category. Use when working with dagster pipeline creator functionality. Trigger with phrases like "dagster pipeline creator", "dagster creator", "dagster".
- ▌ Dashboard Layout Planner · gabrielmoreiraConfigure dashboard layout planner operations. Auto-activating skill for Data Analytics. Triggers on: dashboard layout planner, dashboard layout planner Part of the Data Analytics skill category. Use when working with dashboard layout planner functionality. Trigger with phrases like "dashboard layout planner", "dashboard planner", "dashboard".
- ▌ Filtering Query Builder · gabrielmoreiraBuild filtering query builder operations. Auto-activating skill for API Development. Triggers on: filtering query builder, filtering query builder Part of the API Development skill category. Use when working with filtering query builder functionality. Trigger with phrases like "filtering query builder", "filtering builder", "filtering".
- ▌ Status Code Recommender · gabrielmoreiraManage status code recommender operations. Auto-activating skill for API Development. Triggers on: status code recommender, status code recommender Part of the API Development skill category. Use when working with status code recommender functionality. Trigger with phrases like "status code recommender", "status recommender", "status".
- ▌ Polling Mechanism Setup · gabrielmoreiraConfigure polling mechanism setup operations. Auto-activating skill for API Integration. Triggers on: polling mechanism setup, polling mechanism setup Part of the API Integration skill category. Use when working with polling mechanism setup functionality. Trigger with phrases like "polling mechanism setup", "polling setup", "polling".
- ▌ Architecture Doc Creator · gabrielmoreiraCreate architecture doc creator operations. Auto-activating skill for Technical Documentation. Triggers on: architecture doc creator, architecture doc creator Part of the Technical Documentation skill category. Use when working with architecture doc creator functionality. Trigger with phrases like "architecture doc creator", "architecture creator", "architecture".
- ▌ Tutorial Outline Creator · gabrielmoreiraCreate tutorial outline creator operations. Auto-activating skill for Technical Documentation. Triggers on: tutorial outline creator, tutorial outline creator Part of the Technical Documentation skill category. Use when working with tutorial outline creator functionality. Trigger with phrases like "tutorial outline creator", "tutorial creator", "tutorial".
- ▌ Vitepress Config Creator · gabrielmoreiraCreate vitepress config creator operations. Auto-activating skill for Technical Documentation. Triggers on: vitepress config creator, vitepress config creator Part of the Technical Documentation skill category. Use when configuring systems or services. Trigger with phrases like "vitepress config creator", "vitepress creator", "vitepress".
- ▌ API Flow Diagram Creator · gabrielmoreiraCreate api flow diagram creator operations. Auto-activating skill for Visual Content. Triggers on: api flow diagram creator, api flow diagram creator Part of the Visual Content skill category. Use when working with APIs or building integrations. Trigger with phrases like "api flow diagram creator", "api creator", "api".
- ▌ Excel Macro Creator · gabrielmoreiraCreate excel macro creator operations. Auto-activating skill for Business Automation. Triggers on: excel macro creator, excel macro creator Part of the Business Automation skill category. Use when working with excel macro creator functionality. Trigger with phrases like "excel macro creator", "excel creator", "excel".
- ▌ Form Builder Helper · gabrielmoreiraBuild form builder helper operations. Auto-activating skill for Business Automation. Triggers on: form builder helper, form builder helper Part of the Business Automation skill category. Use when working with form builder helper functionality. Trigger with phrases like "form builder helper", "form helper", "form".
- ▌ Asana Task Creator · gabrielmoreiraCreate asana task creator operations. Auto-activating skill for Enterprise Workflows. Triggers on: asana task creator, asana task creator Part of the Enterprise Workflows skill category. Use when working with asana task creator functionality. Trigger with phrases like "asana task creator", "asana creator", "asana".
- ▌ Audit Trail Helper · gabrielmoreiraAudit Trail Helper - Auto-activating skill for Enterprise Workflows. Triggers on: audit trail helper, audit trail helper Part of the Enterprise Workflows skill category. Use when analyzing or auditing audit trail helper. Trigger with phrases like "audit trail helper", "audit helper", "audit".
- ▌ Diagnose Receiving Bottleneck · gabrielmoreira bundleDiagnose receiving bottlenecks from inbound volume, dock capacity, labor, equipment, documents, queues, and exceptions.
- ▌ Process Receiving Discrepancy · gabrielmoreira bundleProcess receiving discrepancies by classifying variance type, evidence, impact, ownership, and next actions.
- ▌ Analyze Equipment Utilization · gabrielmoreira bundleAnalyze equipment utilization from equipment hours, moves, downtime, capacity, availability, queues, and operating constraints.
- ▌ Evaluate Conveyor Application · gabrielmoreira bundleEvaluate conveyor applicability from throughput, product profile, dimensions, layout, labor, controls, safety, and capital intensity.
- ▌ Investigate Picking Error · gabrielmoreira bundleInvestigate picking errors by tracing order, pick record, SKU, location, scanner, pack, ship, and customer evidence.
- ▌ Design Reverse Logistics Flow · gabrielmoreira bundleDesign reverse-logistics flow from return types, channels, facility process, disposition paths, systems, controls, and review boundaries.
- ▌ Analyze Slotting Efficiency · gabrielmoreira bundleAnalyze slotting efficiency from pick activity, travel distance, replenishment workload, location fit, and congestion evidence.
- ▌ Analyze Storage Utilization · gabrielmoreira bundleAnalyze storage utilization from capacity, occupied inventory, unavailable locations, unit basis, and operating constraints.
- ▌ Interpret Bill Of Lading · gabrielmoreira bundleInterpret bill of lading fields from shipment context, parties, goods, service terms, references, and evidence boundaries.
- ▌ Plan Multi Stop Shipment · gabrielmoreira bundlePlan multi-stop shipments from stops, sequence constraints, service windows, load profile, route facts, and review boundaries.
- ▌ Agent Taskboard Manifest · gabrielmoreiraIt is a specification for semantic workflows used by agents to plan, generate, formalize, summarize, and execute complex tasks, projects, experiments,and research efforts for agents, requiring explicit structure, lazy loading,scoped context, evidence-grounded routing, and human review at critical checkpoints. USE WHEN the user asks for a complex task, project, experiment, or research effort that needs to be carefully planned before execution USE WHEN the user provides a text-based plan and wants it to be made more detailed and formalized according to this specification. USE WHEN the user asks to summarize ongoing or completed work into a reusable workflow manifest. USE WHEN the user specifies the location of an existing agent workflow and wants it loaded and executed according to the specification.
- ▌ Ase Calculators · gabrielmoreiraRoute ASE calculator-backend requests to adapter subskills based on backend choice. Use when ASE workflows need backend-specific calculator setup (for example GPAW or MACE) while keeping workflow logic backend-agnostic.
- ▌ Dotnet Testing Advanced Testcontainers Nosql · gabrielmoreira bundleTestcontainers NoSQL 整合測試完整指南。當需要對 MongoDB 或 Redis 進行容器化整合測試時使用。涵蓋 MongoDB 文件操作、Redis 五種資料結構、Collection Fixture 模式。包含 BSON 序列化、索引效能測試、資料隔離策略與容器生命週期管理。 Make sure to use this skill whenever the user mentions Testcontainers MongoDB, Testcontainers Redis, NoSQL integration test, BSON serialization, or Redis data structure testing, even if they don't explicitly ask for NoSQL container testing. Keywords: testcontainers mongodb, testcontainers redis, mongodb integration test, redis integration test, nosql testing, MongoDbContainer, RedisContainer, IMongoDatabase, IConnectionMultiplexer, BSON serialization, BsonDocument, 文件模型測試, 快取測試, Collection Fixture
- ▌ Dotnet Testing Autofixture Bogus Integration · gabrielmoreira bundleAutoFixture 與 Bogus 整合完整指南。當需要結合 AutoFixture 與 Bogus 產生兼具匿名性與真實感的測試資料時使用。涵蓋 SpecimenBuilder 整合、混合產生器、測試資料工廠與循環參考處理。 Make sure to use this skill whenever the user mentions AutoFixture with Bogus, Faker integration, realistic test data, semantic test data, or HybridTestDataGenerator, even if they don't explicitly ask for integration guidance. Keywords: autofixture bogus integration, autofixture bogus, bogus integration, Faker, EmailSpecimenBuilder, PhoneSpecimenBuilder, NameSpecimenBuilder, 真實感測試資料, 語意化資料, 混合產生器, HybridTestDataGenerator, OmitOnRecursionBehavior, 循環參考
- ▌ Dotnet Testing Datetime Testing Timeprovider · gabrielmoreira bundle使用 TimeProvider 測試時間相依邏輯的專門技能。當需要測試 DateTime、控制時間流逝、處理時區轉換、測試過期邏輯時使用。涵蓋 TimeProvider 抽象化、FakeTimeProvider 時間控制、時間凍結與快轉等。 Make sure to use this skill whenever the user mentions DateTime testing, TimeProvider, FakeTimeProvider, time-dependent logic, cache expiration, or token expiration testing, even if they don't explicitly ask for time testing guidance. Keywords: datetime, time testing, 時間測試, TimeProvider, FakeTimeProvider, DateTime.Now, 時間相依, 快取過期, token 過期, Microsoft.Bcl.TimeProvider, GetUtcNow, SetUtcNow, Advance, time freeze, 時間凍結, 時間快轉
- ▌ Authoring Simulink Inputs · gabrielmoreiraSynthesize new waveforms from scratch for Simulink inports using createInputDataset. Use ONLY when the user asks to generate, create, or synthesize signals (step, ramp, sine, chirp, pulse, noise) to populate a Dataset for External Inputs or Signal Editor. Covers timeseries and timetable formats with correct data type, interpolation, units, and dimensions. Also covers function-call and trigger inport timing setup. Do NOT use when the user wants to load, import, or read existing data from files (MAT, CSV, spreadsheet) — even if that data will be used as model input. Do NOT use for running simulations or plotting outputs.
- ▌ Azure Messaging Webpubsubservice Py · gabrielmoreiraAzure Web PubSub Service SDK for Python. Use for real-time messaging, WebSocket connections, and pub/sub patterns. Triggers: "azure-messaging-webpubsubservice", "WebPubSubServiceClient", "real-time", "WebSocket", "pub/sub".
- ▌ 23 Personal Brand Strategy Global · gabrielmoreiraUse when a PERSONAL brand — founder, coach, or creator — needs a 12-month strategy: niche selection with Ikigai and a 3x3 matrix, positioning statement, a three-chapter story arc, four content pillars with 28 topics, a five-stage authority ladder, and a Q1 to Q4 growth plan. Trigger on 'personal brand strategy', 'founder brand plan', 'coach positioning', 'creator strategy', 'what niche should I own', 'I post constantly and nothing compounds'. Also use when the user has followers and no direction. Not for — a company brand, see `58-positioning-global` and `00-marketing-plan-global`; the context file this reads first, see `22-personal-brand-context-global`; turning it into revenue, see `27-personal-brand-monetize-global`.
- ▌ 27 Personal Brand Monetize Global · gabrielmoreiraUse when a PERSONAL brand needs to make money — three funnel versions for founder, coach, and creator, an offer ladder from free to low to mid to high ticket, pricing psychology, inbound versus outbound outreach, and brand deal and sponsorship negotiation, with tax and legal variants for US LLC, EU per country, SEA Pte Ltd, and LATAM MEI. Trigger on 'monetize my personal brand', 'offer ladder', 'launch my course', 'coaching packages', 'sponsorship rates', 'I have an audience and no income'. Not for — a company product offer, see `31-offer-design-global` and `17-pricing-strategy-global`; the strategy that comes first, see `23-personal-brand-strategy-global`; running the community, see `28-community-building-global`.
- ▌ Analyzing Threat Actor Ttps With Mitre Attack · gabrielmoreira bundleSystematically map threat actor behavior and observed IOCs to the MITRE ATT&CK framework, build technique coverage heatmaps with the ATT&CK Navigator, identify detection gaps, and produce actionable threat intelligence reports across the Enterprise, Mobile, and ICS matrices. Use when analyzing threat actor TTPs, correlating IOCs to specific ATT&CK techniques, or assessing defensive detection coverage against adversary behavior.
- ▌ Analyzing Typosquatting Domains With Dnstwist · gabrielmoreira bundleGenerate domain permutations with dnstwist and check DNS resolution to detect typosquatting, homograph phishing, and brand impersonation domains registered against your organization. Use when asked to monitor for lookalike domains, investigate a phishing domain, or assess brand-impersonation risk.
- ▌ Auditing Kubernetes Rbac Privilege Escalation · gabrielmoreira bundleFinds over-permissive RBAC roles and service-account token abuse paths in a Kubernetes cluster using kubectl auth can-i, rbac-police, kubectl-who-can, and rakkess, tracing which subjects can escalate toward cluster-admin. Use when reviewing who can escalate privileges in a cluster, hunting exploitable RoleBindings during an authorized review, or validating least privilege after an RBAC change. Keywords: RBAC, ClusterRoleBinding, service account token, auth can-i, rbac-police, escalate, bind, impersonate. Do not use for designing and applying hardened RBAC - use implementing-rbac-hardening-for-kubernetes.
- ▌ Building Ioc Enrichment Pipeline With Opencti · gabrielmoreira bundleBuild an automated IOC enrichment pipeline on OpenCTI (STIX 2.1 native threat intel platform) using its internal enrichment connectors to pull context from VirusTotal, Shodan, AbuseIPDB, and GreyNoise, correlate indicators with known actors/campaigns, and score them for analyst prioritization. Use when deploying OpenCTI or automating enrichment and confidence scoring of newly ingested indicators.
- ▌ Building Vulnerability Aging And Sla Tracking · gabrielmoreira bundleImplement a vulnerability aging dashboard and SLA tracking system that measures time-to-remediation against severity-based deadlines (e.g. 14 days critical, 30 days high, 60 days medium, 90 days low), with automated escalations and compliance metrics reporting. Use when designing SLA policies, building aging/remediation dashboards, or proving compliance with remediation timelines.
- ▌ Conducting External Reconnaissance With Osint · gabrielmoreira bundleConduct external recon using OSINT techniques to map an organization's external attack surface without touching target systems, gathering DNS records, certificate transparency logs, search results, social media, code repositories, and breach databases into a target profile. Use for the passive info-gathering phase of a pentest, external footprinting, or collecting employee/email intel for a social engineering campaign.
- ▌ Configuring Snort Ids For Intrusion Detection · gabrielmoreira bundleInstalls, configures, and tunes Snort 3 to monitor network traffic for malicious activity using custom and community rulesets, preprocessors, and alert output plugins. Use when deploying network-based intrusion detection at key boundaries, writing custom Snort rules, tuning rulesets to reduce false positives, or integrating Snort alerts with a SIEM.
- ▌ Configuring Tls 1 3 For Secure Communications · gabrielmoreira bundleConfigures TLS 1.3 (RFC 8446) on servers, covering cipher suite and key-exchange group selection, and validates the resulting configuration with openssl s_client and testssl.sh. Use when deploying or hardening TLS 1.3 for secure communications, or when testing a server for common TLS misconfigurations and vulnerabilities.
- ▌ Detecting Entra Offensive Tools In Graph Logs · gabrielmoreira bundleHunt AADGraphActivityLogs and MicrosoftGraphActivityLogs in Microsoft Sentinel/Log Analytics using KQL to fingerprint offensive Entra ID enumeration tools such as ROADtools, AADInternals, and AzureHound, including User-Agent signatures, roadrecon endpoint sweeps, and sign-in correlation. Use when investigating suspicious Microsoft Graph API activity, Entra ID reconnaissance, or building Sentinel analytics rules to detect these tools.
- ▌ Detecting T1055 Process Injection With Sysmon · gabrielmoreira bundleDetect process injection techniques (T1055) - including DLL injection, process hollowing, and APC injection - by analyzing Sysmon Event IDs 1, 7, 8, 10, and 25 for cross-process memory operations, remote thread creation, and anomalous DLL loads. Use when hunting defense-evasion activity that hides code inside legitimate processes, investigating an EDR alert on suspicious cross-process access, or validating Sysmon coverage for injection detection.
- ▌ Emulating Cloud Attacks With Stratus Red Team · gabrielmoreira bundleInstall and run Stratus Red Team to detonate granular, MITRE ATT&CK-mapped AWS, Azure, GCP, and Kubernetes attack techniques through their warmup-detonate-revert-cleanup lifecycle, then verify the telemetry they generate. Use to validate that cloud detections (CloudTrail, GuardDuty, Microsoft Sentinel, GCP SCC, Falco) actually fire, or to run a repeatable purple-team exercise generating realistic attacker telemetry.
- ▌ Exploiting Ms17 010 Eternalblue Vulnerability · gabrielmoreira bundleDetects and exploits MS17-010 (EternalBlue), a critical remote code execution flaw in Microsoft's SMBv1 implementation, using Nmap's ms-17-010 NSE script for detection and Metasploit's ms17_010_eternalblue/ms17_010_psexec modules for exploitation. Use during authorized red-team engagements or penetration tests against legacy Windows environments with unpatched SMBv1 to gain remote code execution.
- ▌ Exploiting Template Injection Vulnerabilities · gabrielmoreira bundleDetects and exploits Server-Side Template Injection (SSTI) vulnerabilities across Jinja2, Twig, Freemarker, and other template engines to achieve remote code execution. Use when pentesting a web application that renders user input through a server-side template engine and you need to confirm and weaponize SSTI.
- ▌ Hunting For Persistence Mechanisms In Windows · gabrielmoreira bundleSystematically hunts for adversary persistence mechanisms across Windows endpoints, covering registry Run/RunOnce keys, services, startup folders, scheduled tasks, and WMI event subscriptions. Use when performing a broad persistence sweep during incident response or building SIEM detections that cover the full range of Windows persistence techniques (MITRE T1547).
- ▌ Hunting For Persistence Via Wmi Subscriptions · gabrielmoreira bundleHunts for adversary persistence via WMI event subscriptions (MITRE T1546.003) by monitoring the creation of WMI event filters, consumers, and filter-to-consumer bindings that trigger malicious code execution on system events. Use when investigating fileless, trigger-based persistence on Windows hosts or auditing WMI repository contents for malicious event subscriptions.
- ▌ Implementing API Rate Limiting And Throttling · gabrielmoreira bundleImplements API rate limiting and throttling with token bucket, sliding window, and fixed window algorithms, configuring per-user, per-IP, and per-endpoint limits via Redis-backed counters, API gateway plugins, or middleware, and returning proper HTTP 429 responses with Retry-After headers. Use when setting up request quota management or preventing brute force, credential stuffing, and resource exhaustion attacks against APIs.
- ▌ Implementing Envelope Encryption With AWS Kms · gabrielmoreira bundleImplements envelope encryption with AWS KMS, encrypting data locally with a data encryption key (DEK) and protecting that DEK with a KMS-managed key (KEK), covering the encrypt/decrypt flow, KMS key types, and security validation criteria. Use when designing key management for encrypting large or numerous data objects on AWS, or when reducing direct KMS API call volume.
- ▌ Implementing Just In Time Access Provisioning · gabrielmoreira bundleImplements Just-In-Time (JIT) access provisioning to eliminate standing privileges by granting temporary, time-bound access, covering approval workflows, automatic expiration/revocation, and PAM/IGA integration. Use when designing access approval workflows or replacing standing privileged accounts with time-bound, zero-trust-aligned grants.
- ▌ Implementing Ransomware Kill Switch Detection · gabrielmoreira bundleAnalyzes ransomware kill switch mechanisms, including mutex-based execution guards, domain-based kill switches (e.g. WannaCry-style), and registry termination checks, then implements mutex vaccination and kill switch domain monitoring to stop ransomware before it runs. Use when analyzing a sample's execution guards or deploying vaccination/monitoring as a defensive control.
- ▌ Implementing Zero Trust For Saas Applications · gabrielmoreira bundleSecures SaaS apps (Microsoft 365, Google Workspace, Salesforce, Slack) via CASB/SSPM deployment, conditional access policies, OAuth app governance, and session-level DLP controls enforcing identity verification and device compliance. Use when adding MFA/device-compliance conditional access, discovering shadow IT, governing OAuth consent grants, or applying session controls to sensitive SaaS data.
- ▌ Integrating Sast Into Github Actions Pipeline · gabrielmoreira bundleIntegrates CodeQL and Semgrep SAST scanning into GitHub Actions, covering scans on pull requests/pushes, rule tuning to cut false positives, SARIF upload to GitHub Advanced Security, and merge-blocking quality gates for high-severity findings. Use when adding automated code vulnerability detection to CI, enforcing consistent SAST org-wide, or producing SOC 2/PCI DSS/NIST SSDF compliance evidence.
- ▌ Performing Cloud Storage Forensic Acquisition · gabrielmoreira bundlePerform forensic acquisition of cloud storage services including Google Drive, OneDrive, Dropbox, and Box by pulling API-based remote data such as revision history and audit logs, and collecting local sync-client artifacts including KAPE targets and OneDrive databases from endpoints. Use during incident response or e-discovery when evidence resides in cloud-synced storage and both cloud-side and endpoint-side artifacts must be preserved.
- ▌ Performing Network Traffic Analysis With Zeek · gabrielmoreira bundleDeploy Zeek (formerly Bro) as a passive network security monitor to generate structured logs of protocol metadata (HTTP, DNS, TLS, SSH, SMTP, FTP, and more), write custom detection scripts, and integrate outputs with SIEM platforms. Use when standing up continuous, high-fidelity network traffic monitoring for threat detection, anomaly identification, or forensic investigation beyond what raw PCAP analysis provides.
- ▌ Performing Timeline Reconstruction With Plaso · gabrielmoreira bundleBuilds comprehensive forensic super-timelines using Plaso (log2timeline and psort) to correlate events across file system metadata, event logs, browser history, and registry artifacts into a unified chronological view. Use during complex forensic investigations that need cross-source event correlation, or when standard log analysis is insufficient to establish the sequence of activities for reporting findings.
- ▌ Reverse Engineering Android Malware With Jadx · gabrielmoreira bundleReverse engineers malicious Android APK files using the JADX decompiler to read Java/Kotlin source, inspect manifest permissions, receivers, services, and native libraries, and identify data theft, C2 communication, privilege escalation, or overlay-attack behavior. Use when analyzing a suspected Android banking trojan, spyware, SMS stealer, or other flagged APK, or when investigating mobile malware or Android threats generally.
- ▌ Reverse Engineering Dotnet Malware With Dnspy · gabrielmoreira bundleReverse engineers .NET malware samples using the dnSpy decompiler and debugger to read C#/VB.NET source, deobfuscate code protected by tools like ConfuserEx or SmartAssembly, and extract hardcoded C2 configurations, keys, and credentials. Use when a sample is identified as a .NET assembly (e.g. AgentTesla, AsyncRAT, RedLine Stealer, Quasar RAT) and needs decompilation, deobfuscation, or config extraction.
- ▌ Testing API For Mass Assignment Vulnerability · gabrielmoreira bundleTests APIs for mass assignment (auto-binding), OWASP API3:2023, by identifying writable endpoints, adding undocumented fields to request bodies (role, isAdmin, price, balance), and checking whether the server binds them to the data model without filtering. Use when testing an API for mass assignment, parameter binding abuse, or over-posting on profile, registration, or object-creation endpoints.