gabrielmoreira
- 21k skills
- 0 followers
- 17 repo stars
- 2 weeks ago last updated
- ▌ Windsurf Refactoring Large · gabrielmoreira bundleManage large-scale refactoring with Cascade coordination. Activate when users mention "large refactoring", "codebase migration", "architecture refactor", "major refactoring", or "system-wide changes". Handles complex refactoring operations. Use when working with windsurf refactoring large functionality. Trigger with phrases like "windsurf refactoring large", "windsurf large", "windsurf".
- ▌ Windsurf Upgrade Migration · gabrielmoreiraUpgrade Windsurf IDE, migrate settings from VS Code or Cursor, and handle breaking changes. Use when upgrading Windsurf versions, migrating from another editor, or handling configuration changes after updates. Trigger with phrases like "upgrade windsurf", "windsurf update", "migrate to windsurf", "windsurf from cursor", "windsurf from vscode".
- ▌ Bash Script Helper · gabrielmoreiraConfigure with bash script helper operations. Auto-activating skill for DevOps Basics. Triggers on: bash script helper, bash script helper Part of the DevOps Basics skill category. Use when working with bash script helper functionality. Trigger with phrases like "bash script helper", "bash helper", "bash".
- ▌ Makefile Generator · gabrielmoreiraGenerate makefile generator operations. Auto-activating skill for DevOps Basics. Triggers on: makefile generator, makefile generator Part of the DevOps Basics skill category. Use when working with makefile generator functionality. Trigger with phrases like "makefile generator", "makefile generator", "makefile".
- ▌ React Context Setup · gabrielmoreiraConfigure react context setup operations. Auto-activating skill for Frontend Development. Triggers on: react context setup, react context setup Part of the Frontend Development skill category. Use when working with react context setup functionality. Trigger with phrases like "react context setup", "react setup", "react".
- ▌ Go Handler Generator · gabrielmoreiraGenerate go handler generator operations. Auto-activating skill for Backend Development. Triggers on: go handler generator, go handler generator Part of the Backend Development skill category. Use when working with go handler generator functionality. Trigger with phrases like "go handler generator", "go generator", "go".
- ▌ 22 Personal Brand Context · gabrielmoreiraDung khi bat dau xay thuong hieu CA NHAN cho mot con nguoi cu the — founder, coach, creator: skill nay tao file .agents/personal-brand-context.md gom dinh vi ca nhan, niche, story arc, content pillar, chan dung nguoi theo doi, brand voice, visual identity va kho anh reference. Chay MOT LAN truoc moi skill personal brand 23-28. Kich hoat khi user nhac 'thuong hieu ca nhan', 'personal brand', 'ho so ca nhan', 'founder context', 'coach context', 'creator context', 'muon xay hinh anh ca nhan', 'bat dau lam personal brand'. Khong dung cho — thuong hieu DOANH NGHIEP hoac san pham thi dung skill product-marketing-context; dinh vi cong ty tren thi truong thi dung skill 58-positioning.
- ▌ Agency Agentic Identity Trust Architect · gabrielmoreiraDesigns identity, authentication, and trust verification systems for autonomous AI agents operating in multi-agent environments. Ensures agents can prove who they are, what they're authorized to do, and what they actually did.
- ▌ Agency Cultural Intelligence Strategist · gabrielmoreiraCQ specialist that detects invisible exclusion, researches global context, and ensures software resonates authentically across intersectional identities.
- ▌ Analyzing Bootkit And Rootkit Samples · gabrielmoreira bundleAnalyzes bootkit and advanced rootkit malware infecting the Master Boot Record (MBR), Volume Boot Record (VBR), or UEFI firmware for below-OS persistence, covering boot sector analysis, UEFI module inspection, and anti-rootkit detection. Use when compromise survives OS reinstallation or antivirus/EDR fails to detect malware despite clear infection signs.
- ▌ Analyzing Powershell Empire Artifacts · gabrielmoreira bundleDetect PowerShell Empire post-exploitation framework artifacts in Windows Script Block Logging (Event ID 4104) and Module Logging (Event ID 4103), including the default launcher string, Base64-encoded WebClient/FromBase64String payloads, known module invocations (Invoke-Mimikatz, Invoke-Kerberoast), and staging URL patterns. Use when hunting for or confirming Empire C2 activity in Windows event logs.
- ▌ Building C2 Redirector Infrastructure · gabrielmoreira bundleBuild dumb-pipe and traffic-filtering C2 redirectors with nginx (proxy_pass) and Apache (mod_rewrite), deriving filter rules from a Malleable C2 profile, layering Let's Encrypt TLS, and applying OPSEC controls like domain fronting and UA/geo filtering. Use when standing up red-team C2 that must survive blue-team triage or ensuring only profile-matching implant traffic reaches the hidden team server.
- ▌ Building Threat Intelligence Platform · gabrielmoreira bundleDesign and deploy a Threat Intelligence Platform (TIP) by integrating open-source CTI tools (MISP, OpenCTI, TheHive, Cortex) into a unified system with feed ingestion pipelines, enrichment workflows, STIX/TAXII interoperability, and analyst dashboards. Use when architecting or standing up a centralized CTI platform to collect, analyze, and disseminate threat intelligence across a security team.
- ▌ Conducting Gdpr Compliance Assessment · gabrielmoreira bundleConduct comprehensive GDPR compliance assessments by evaluating data processing activities against EU Regulation 2016/679, including Article 30 records of processing, lawful basis validation, data subject rights implementation, Data Protection Impact Assessments (DPIAs) under Article 35, breach notification procedures, international transfer safeguards (SCCs, adequacy decisions), and technical/organizational measures under Article 32. Use when processing personal data of EU residents, preparing for supervisory authority audits, implementing privacy-by-design for new systems, scoping compliance gaps for M&A due diligence, assessing third-party processors, or responding to data subject access requests at scale. Incorporates 2026 guidance from ICO, EDPB, and post-Data (Use and Access) Act 2025 UK-GDPR considerations. Do not use for implementing specific Article 32 controls — use implementing-gdpr-data-protection-controls; or for DSAR automation — use implementing-gdpr-data-subject-access-request.
- ▌ Conducting Phishing Incident Response · gabrielmoreira bundleRespond to phishing incidents by analyzing reported emails, extracting indicators, sandboxing URLs/attachments, assessing credential compromise, quarantining malicious messages organization-wide, and remediating affected accounts. Use when investigating a reported phishing or credential-phishing email, a suspected spearphishing incident, or when a mailbox-wide purge and account remediation is needed.
- ▌ Configuring Oauth2 Authorization Flow · gabrielmoreira bundleConfigures secure OAuth 2.0 authorization flows, including Authorization Code with PKCE, Client Credentials, and Device Authorization Grant, covering flow selection, PKCE implementation, token lifecycle management, and scope design per OAuth 2.1. Use when implementing or hardening OAuth 2.0 authentication/authorization for web, mobile, SPA, or machine-to-machine clients.
- ▌ Detecting Fileless Malware Techniques · gabrielmoreira bundleDetects and analyzes fileless malware that operates entirely in memory using PowerShell, WMI, .NET reflection, registry-resident payloads, and living-off-the-land binaries (LOLBins) without writing traditional executable files to disk. Use for requests involving fileless threat detection, in-memory malware investigation, LOLBin abuse analysis, or WMI persistence examination.
- ▌ Detecting Mimikatz Execution Patterns · gabrielmoreira bundleDetect Mimikatz credential-dumping activity via command-line pattern matching, LSASS access signatures, binary/hash indicators, and in-memory detection of known Mimikatz modules. Use when threat hunting for T1003 credential access, triaging EDR/SIEM alerts on LSASS access, scoping compromise during incident response, or validating detection coverage in a purple team exercise.
- ▌ Detecting Misconfigured Azure Storage · gabrielmoreira bundleAudit Azure Storage accounts for public blob containers, missing encryption, overly permissive SAS tokens, disabled logging, and network access violations using Azure CLI, PowerShell, and Microsoft Defender for Storage. Use for storage security audits across subscriptions, responding to Defender for Storage anonymous-access alerts, verifying compliance controls, or setting security baselines when onboarding a subscription.
- ▌ Detecting Network Anomalies With Zeek · gabrielmoreira bundleDeploy and configure Zeek (formerly Bro) to passively analyze network traffic, generate structured connection/DNS/HTTP/SSL/file logs, detect anomalous behavior, and write custom scripts for organization-specific threats. Use for passive monitoring at network choke points, feeding SIEM/threat hunting with protocol metadata, or retrospective log analysis during incident response; not a substitute for inline IDS/IPS or host agents.
- ▌ Detecting Process Hollowing Technique · gabrielmoreira bundleDetect process hollowing (MITRE T1055.012) by analyzing memory-mapped sections, hollowed process indicators, and parent-child anomalies using EDR telemetry, Volatility's malfind plugin, pe-sieve, Hollows Hunter, and Sysmon Event ID 25. Use when investigating a legitimate-looking process (svchost.exe, explorer.exe, rundll32.exe) suspected of hosting injected code via NtUnmapViewOfSection.
- ▌ Exploiting Nopac Cve 2021 42278 42287 · gabrielmoreira bundleExploits the noPac Active Directory privilege-escalation chain (CVE-2021-42278 sAMAccountName spoofing plus CVE-2021-42287 KDC PAC confusion) using Impacket and secretsdump.py to escalate from a standard domain user to Domain Admin. Use when red-teaming or pentesting Active Directory to validate machine-account impersonation and DCSync-based credential dumping.
- ▌ Hardening Docker Daemon Configuration · gabrielmoreira bundleHardens the Docker daemon (dockerd) through /etc/docker/daemon.json with user namespace remapping, TLS client authentication, seccomp profiles, and CIS Docker Benchmark controls such as icc, no-new-privileges, and live-restore. Use when securing a Docker host's daemon to prevent privilege escalation, breakout, or lateral movement, or when auditing daemon settings against CIS requirements. Keywords: dockerd, daemon.json, userns-remap, no-new-privileges, icc, live-restore, TLS socket. Do not use for hardening images and per-container runtime flags - use hardening-docker-containers-for-production.
- ▌ Implementing Azure Defender For Cloud · gabrielmoreira bundleEnable Microsoft Defender for Cloud (CSPM + CWPP) across VMs, containers, SQL, storage, and Key Vault, using Azure Policy for evaluation, Log Analytics for telemetry, Azure Arc for hybrid coverage, and Logic Apps for automated response. Use for Azure security monitoring, adaptive remediation, or regulatory compliance assessment; not for non-Azure-only protection or identity defense (Defender for Identity).
- ▌ Implementing GCP Binary Authorization · gabrielmoreira bundleImplements GCP Binary Authorization end to end, including creating KMS-backed attestors, Container Analysis notes, deploy-time policies, and signing image attestations, so that only trusted, verified images deploy to GKE and Cloud Run. Use when enforcing container supply-chain integrity or deploy-time attestation checks on GCP.
- ▌ Implementing Ics Firewall With Tofino · gabrielmoreira bundleDeploys and configures Tofino industrial firewalls (Belden/Hirschmann) to protect SCADA systems and PLCs, using deep packet inspection of OT protocols (Modbus, EtherNet/IP, OPC, S7comm) to enforce access control between ICS zones. Use when deploying zone-level firewall protection in front of PLCs/RTUs, enforcing IEC 62443 zone/conduit boundaries, or adding compensating controls for unpatchable legacy PLCs.
- ▌ Implementing Iec 62443 Security Zones · gabrielmoreira bundleDesigns security zones and conduits for industrial control systems (IACS) per IEC 62443-3-2 — risk-based zone partitioning, Security Level target (SL-T) assignment, conduit controls, and firewall microsegmentation validated against the Purdue Reference Model. Use when designing OT network zones for a new facility, retrofitting zones into a flat OT network, or upgrading VLAN-only segmentation for IEC 62443-3-2 compliance.
- ▌ Performing Container Escape Detection · gabrielmoreira bundleAudits container and pod configuration for escape-enabling misconfiguration using the Kubernetes Python client - privileged flags, dangerous capability grants, host path mounts, shared namespaces, and CVE-2022-0492 style cgroup abuse. Use when sweeping a cluster for workloads that could break out, producing a posture report, or checking configuration before enforcement is switched on. Keywords: privileged, hostPath, hostPID, capabilities, CVE-2022-0492, cgroup, kubernetes python client, posture audit. Do not use for runtime syscall-based detection - use detecting-container-escape-attempts. '
- ▌ Performing File Carving With Foremost · gabrielmoreira bundleRecovers files from disk images and unallocated space using Foremost's header-footer signature carving, extracting evidence independent of the file system's state. Use during digital forensics investigations to carve deleted or fragmented files, such as documents, images, and archives, from raw disk images or unallocated space.
- ▌ Performing Hash Cracking With Hashcat · gabrielmoreira bundleCracks password hashes with Hashcat, covering hash-type identification, dictionary/brute-force/rule-based attack modes, custom rule creation, GPU benchmarking, and password-strength/compliance reporting. Use for authorized penetration testing or security audits that need to evaluate password strength or crack captured hashes.
- ▌ Performing Lateral Movement Detection · gabrielmoreira bundleDetects lateral movement techniques including Pass-the-Hash, PsExec, WMI execution, RDP pivoting, and SMB-based spreading by correlating Windows Security/Sysmon event logs, network flow data (NetFlow/Zeek), and endpoint telemetry in a SIEM, mapped to MITRE ATT&CK Lateral Movement (TA0008) techniques with sample SPL detection queries. Use when a SOC team needs to detect attackers pivoting between internal systems after initial compromise, trace an attacker's movement path during an incident investigation, or build detection engineering rules for TA0008; not for detecting initial access or external attacks.
- ▌ Performing Purple Team Atomic Testing · gabrielmoreira bundleExecutes Atomic Red Team tests mapped to MITRE ATT&CK via Invoke-AtomicRedTeam PowerShell, generates ATT&CK Navigator coverage heatmaps, correlates results against Sigma rules, and runs detection validation loops to measure blue team visibility. Use for purple team exercises, atomic test execution, ATT&CK coverage assessment, or detection engineering validation.
- ▌ Performing Web Cache Deception Attack · gabrielmoreira bundleExecutes web cache deception attacks by exploiting path normalization discrepancies between CDN/reverse-proxy caching layers (Cloudflare, Akamai, Varnish, Nginx) and origin servers to cache and retrieve sensitive authenticated content. Use when testing applications behind CDNs for cache-key misconfigurations, during bug bounty hunting on aggressively cached sites, or when assessing sensitive data exposure through cache layer misconfiguration.
- ▌ Observability Design · gabrielmoreiraMaking multi-agent workflows visible and debuggable for designers and developers.
- ▌ Progressive Disclosure · gabrielmoreiraRevealing AI capability gradually to match user mental models.
- ▌ Review Hog Perspective Contracts Security · gabrielmoreiraThe Contracts & Security review perspective for PostHog Review. Verifies that changed code is safe and maintains compatibility: API contracts and breaking changes, injection / authz / data exposure, input validation, and schema / interface alignment. Reports security and contract issues only.
- ▌ Planning Voice Agent User Interviews · gabrielmoreiraPlan a round of user interviews conducted by PostHog's AI voice agent (a "robo interviewer") — the automated voice-agent interview product. Captures a UserInterviewTopic (who to target, what to ask, framing context, question list) and calls user-interview-topics-create. ONLY trigger when the user clearly wants an AI voice agent to actually run the interview calls (e.g. "set up robo user interviews", "have the voice agent interview these users"). Do NOT trigger for ordinary user research that does not involve the voice agent — finding or shortlisting users to talk to ("who'd be a good fit to interview about Y"), planning questions for a human-run interview, or analysing feedback are audience discovery, handled with normal data queries, not this skill. Also do NOT trigger for uploading a recorded interview audio file or browsing topics with user-interview-topics-list. When intent is ambiguous, first confirm what kind of research it is and whether they want an AI voice agent to conduct it (see Step 0).
- ▌ Setting Up A Data Warehouse Source · gabrielmoreiraGuide the user through connecting a new data warehouse source — Postgres, MySQL, Stripe, Hubspot, MongoDB, Salesforce, BigQuery, Snowflake, and so on. Use when the user wants to "connect Stripe", "import data from Postgres", "add a new data source", "sync my warehouse tables", or wants to pick sync methods for each table. Walks through source-type discovery, credential validation, table discovery, per-table sync_type selection, and the final create call. Also covers picking a good prefix and what to do right after creation.
- ▌ Run Skill · gabrielmoreiraRun a named muapi multi-step recipe (UGC ad, storyboard, brand kit, product video, social carousel…). Use when the brief matches a known workflow. Delegates to the creative-specialist subagent.
- ▌ Threejs Procedural Vegetation · gabrielmoreira bundleGenerate authored procedural trees, grass, ivy, flowers, and vegetation in Three.js or raw WebGPU. Use for surface-following vines, painted ivy paths, stylized or GPU grass, GPU-culled virtual flower fields, trunks, recursive branches, roots, canopies, leaf cards, species presets, deterministic growth, distance-tiered plant geometry, and rooted blade, stem, or petiole-hinge wind.
- ▌ Ietf Rfc Authoring · gabrielmoreiraWrite documentation in the IETF RFC style/format (for internal specs and protocol documents), using kramdown-rfc (Markdown to RFC XML v3). Use when asked to write a spec in IETF/RFC style, format a document like an RFC, produce an RFC-style protocol or format specification, apply RFC 2119 (BCP 14) keywords, or render Markdown to RFC-looking text/HTML with kramdown-rfc / kdrfc / xml2rfc. This is about producing RFC-STYLE documents, NOT submitting Internet-Drafts to the IETF.
- ▌ Copilot Usage Report · gabrielmoreiraGenerate a Copilot CLI usage style report from session history. Use when asked to analyze usage patterns, generate a usage report, review prompting style, or summarize how Copilot is being used.
- ▌ Msix Store Submission · gabrielmoreiraMicrosoft Store submission for MSIX apps — Partner Center identity, signing, self-contained packaging, manifest alignment, and CI/CD for Store uploads
- ▌ Liveagent Code Review · gabrielmoreiraReview an open GitHub pull request or the current local branch and working tree with parallel, independent reviewers and evidence-based validation. Use when the user asks for code review, invokes the Code Review action from Git Review, or explicitly mentions this skill.
- ▌ Syncfusion Maui Toolkit Calendar · gabrielmoreira bundleImplements and customize Syncfusion .NET MAUI Calendar (SfCalendar) control. Use when implementing calendar functionality, date selection (single, multiple, range), or calendar views (month, year, decade, century). Covers date restrictions (min/max dates, EnablePastDates, SelectableDayPredicate), calendar customization, events (ViewChanged, SelectionChanged, Tapped), and header/footer customization.
- ▌ Syncfusion Maui Toolkit Expander · gabrielmoreira bundleImplements the Syncfusion .NET MAUI Expander (SfExpander) control for collapsible and expandable content sections. Use when working with expanders, collapsible sections, accordions, expandable panels, or expand/collapse functionality in .NET MAUI applications. Covers space-efficient layouts, header customization and expand/collapse animations.
- ▌ Syncfusion Maui Date Time Range Selector · gabrielmoreira bundleImplements Syncfusion .NET MAUI DateTime Range Selector (SfDateTimeRangeSelector) for interactive date/time range selection with chart integration. Use when working with range selectors, date range pickers, time range selection, chart range filtering, or interactive range controls. Covers range selection UI, filtering chart data by date range, and selecting time periods.
- ▌ Testing Handbook Generator · gabrielmoreira bundleGenerates Claude Code skills from the Trail of Bits Testing Handbook (appsec.guide), analyzing handbook pages and emitting SKILL.md files with the structure each skill type requires. Use when creating or refreshing a skill from handbook content, or when the user names the testing handbook or appsec.guide. Not for answering security testing questions — the generated skills cover those.
- ▌
- ▌ Competitor Launch Monitor · gabrielmoreira bundleWhen the user wants to track a named competitor's launch or announcement and the public reaction to it across X, LinkedIn, YouTube, Reddit, and news. Also use on "competitor launch monitor," "what did [competitor] just ship," "track [competitor]'s announcement," "how is [competitor]'s launch landing," "competitor product launch," "monitor competitor news," "watch a competitor," "competitor reaction," or "is [competitor]'s launch working." For a full standing profile of the competitor, see competitor-profiling.
- ▌ AI Distributed Training · gabrielmoreiraGuides multi-GPU pre-training: DDP, FSDP2, ZeRO, tensor/pipeline/expert parallelism, fp8/Muon. Use when scaling a run, training MoE, or reproducing GPT-2 on rented GPUs.
- ▌ Dev Context Engineering · gabrielmoreiraContext-driven AI development with AGENTS.md, repo knowledge bases, Claude Code, Codex, and Copilot. Use when adopting repo-native AI workflows or multi-repo setups.
- ▌ Foundations Game Theory · gabrielmoreiraGame-theory primitives for strategic decision systems, auctions, mechanism design, incentives, attribution, negotiation, debate, and trust. Use when modeling strategic play.
- ▌ Foundations Team Theory · gabrielmoreiraTeam-theory primitives for cooperative multi-agent decisions, subagent allocation, communication value, Dec-POMDPs, and decentralized control. Use when organizing agents.
- ▌ Software Csharp Backend · gabrielmoreiraApplies C# and .NET backend standards. Use when shaping API boundaries, data access, resilience, observability, or security defaults.
- ▌ Proof Orchestrator · gabrielmoreira bundleManage a stateful, run-directory-based proof project with Codex: continuation across runs, run-local source bookkeeping, manual GPT Pro handoff packages when a local attempt stalls, and an optional DeepSeek second opinion as additional evidence only. Use when the user asks for proof-run orchestration, a GPT Pro handoff, or cross-run proof continuation — use /proof-writer for ordinary proof drafting and /proof-checker for rigorous verification or submission acceptance.
- ▌ React Native Architecture · gabrielmoreiraBuild production React Native apps with Expo, navigation, native modules, offline sync, and cross-platform patterns. Use when developing mobile apps, implementing native integrations, or architecting React Native projects.
- ▌ Exploiting AI Model File Rce · gabrielmoreiraTesting machine-learning model files and model-loading services for remote code execution caused by insecure deserialization (pickle/PyTorch), unsafe config instantiation (Hydra), archive path traversal, and dangerous layer types during authorized penetration tests of AI/ML pipelines.
- ▌ Competition Lsass Ticket Material · gabrielmoreiraInternal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for LSASS-resident secrets, Windows logon sessions, Kerberos ticket caches, DPAPI-backed material, SSP artifacts, and replayable credential extraction. Use when the user asks to inspect LSASS memory, recover tickets or logon sessions, trace DPAPI or SSP material, distinguish which credential artifacts are replayable, or connect host-resident credential material to an accepted pivot or privilege edge. Use only after `$ctf-sandbox-orchestrator` has already established sandbox assumptions and routed here.
- ▌ Agui Dotnet Client Tools · gabrielmoreiraExpose client-side (frontend) tools to an AG-UI agent with the AG-UI .NET SDK — C# functions that run in the CLIENT app (read local state, GPS, UI, device APIs), where the client executes the call and returns the result so the run continues. USE FOR: declaring an AIFunction in the client and passing it via ChatOptions.Tools to AGUIChatClient; having the client execute a tool the model requested and feed the result back automatically; understanding why no UseFunctionInvocation is needed on the client (AGUIChatClient already invokes functions); what the server must do (UseFunctionInvocation + TerminateOnUnknownCalls) so it forwards an unknown/client tool instead of erroring. DO NOT USE FOR: tools that run on the server/backend (use agui-dotnet-server-tools); pausing for human approval/input before acting (interrupts / human-in-the-loop); plain chat (use agui-dotnet-streaming-chat); shared state, generative UI, multimodal, or protobuf.
- ▌ Agui Dotnet Server Tools · gabrielmoreiraExpose server-side (backend) tools an AG-UI agent can call with the AG-UI .NET SDK — C# functions that run on the server, where the server executes the call and feeds the result back to the model. USE FOR: defining an AIFunction with AIFunctionFactory.Create and registering it on the server's IChatClient via ConfigureOptions + UseFunctionInvocation; making the model call your backend function during a run; AOT-safe tool arguments/results (registering a JsonSerializerContext for complex tool parameter types); parallel/concurrent backend tool calls (AllowConcurrentInvocation); TerminateOnUnknownCalls behavior. DO NOT USE FOR: tools that run in the client/frontend (use agui-dotnet-client-tools); pausing a tool for human approval or input (interrupts / human-in-the-loop); plain streaming chat with no tools (use agui-dotnet-streaming-chat); shared state, generative UI, multimodal, or protobuf.
- ▌ Agui Dotnet Shared State · gabrielmoreiraShare structured, evolving state between an AG-UI agent and its client with the AG-UI .NET SDK — the client seeds state on the request, the server reads it, mutates it, and streams the updated state back as snapshots or deltas alongside the chat. USE FOR: sending initial/working state from the client via ChatOptions.RawRepresentationFactory -> RunAgentInput.State; reading inbound state on the server with ChatOptions.TryGetRunAgentInput and RunAgentInput.State; emitting a full state object as a StateSnapshotEvent (or incremental JSON-Patch changes as a StateDeltaEvent) from a DelegatingChatClient via ChatResponseUpdate.RawRepresentation; reading state back on the client from update.RawRepresentation as StateSnapshotEvent. DO NOT USE FOR: passing one-off tool arguments (use agui-dotnet-server-tools); rendering UI components from tool calls (use agui-dotnet-generative-ui); plain chat (use agui-dotnet-streaming-chat); approvals/interrupts, multimodal, or protobuf.
- ▌ Agui Dotnet Troubleshoot · gabrielmoreiraDiagnose and fix problems in an AG-UI .NET app built on the AG-UI SDK — when streaming chat, tools, state, interrupts, or the transport misbehave. USE FOR: the agent forgetting earlier turns / history truncated; update.ConversationId always null; state or lifecycle updates that never arrive; a tool throwing at runtime or producing AOT/trim warnings; an unknown-tool error mid-run; 406 Not Acceptable from the endpoint; an interrupt or approval that won't resume; and inspecting the raw AG-UI event stream (curl SSE frames, RawEvent on ChatResponseUpdate.RawRepresentation) to see what's actually on the wire. DO NOT USE FOR: first-time setup or the happy path (use agui-dotnet-streaming-chat); implementing a specific feature cleanly (use the matching agui-dotnet-* skill).
- ▌ Visual Asset Design · gabrielmoreira为角色/场景/道具设计视觉资产、编写或修复 VisualVariant 与阵容图的生成 Prompt 时使用。涵盖参考图布局(艺术身份板/序列关键帧/场景锚点/道具英雄 视图)、构图与镜头语言、图片审核误判规避、实体 continuity 与跨 Variant 身份稳定性。不用于视频 Prompt 编译(见 professional-media-prompts)、 纯素材剪辑或只评价已生成产物。
- ▌ Abstract Summarizer · gabrielmoreiraTransform lengthy academic papers into concise, structured 250-word abstracts.
- ▌ Anatomy Quiz Master · gabrielmoreiraGenerate interactive anatomy quizzes for medical education with multiple.
- ▌ Grant Mock Reviewer · gabrielmoreiraSimulate structured grant peer review for biomedical proposals; use when stress-testing significance, innovation, approach, feasibility, and reviewer-facing weaknesses before submission.
- ▌ D Molecule Ray Tracer · gabrielmoreiraGenerate photorealistic rendering scripts for PyMOL and UCSF ChimeraX.
- ▌ Crispr Screen Analyzer · gabrielmoreiraProcess CRISPR screening data to identify essential genes and hit candidates. Performs quality control, statistical analysis (RRA), and hit calling for pooled CRISPR screens including viability screens and drug resistance/sensitivity studies.
- ▌ Meta Forest Model Plot · gabrielmoreiraGenerate forest plots for meta-analysis of survival data. Input is a CSV file containing study names, HR and 95% confidence intervals, output forest plot PNG and data table CSV. Supports both R and Python scripts.
- ▌ Bio Ontology Mapper · gabrielmoreiraMap unstructured biomedical text to standardized ontologies (SNOMED CT.
- ▌ Result Figure Consistencycheck · gabrielmoreiraChecks consistency between paper result descriptions and figure legends (text-only) when the input is a PDF-to-Markdown full text containing page breaks (e.g., `## Page XX`) and legend text; outputs a Markdown consistency report and a UTF-8 CSV issue list.
- ▌ Meta Protocol Writer · gabrielmoreiraGenerates a PROSPERO-compliant Meta-analysis protocol based on Title and PICOS. Use when the user wants to write a protocol for a systematic review or meta-analysis.
- ▌ Design Systems · gabrielmoreiraBold aesthetic direction guidance for web design. Use when making creative decisions about typography, color, motion, spatial composition, and overall visual style. Helps avoid generic "AI slop" aesthetics.
- ▌ S3 Files · gabrielmoreira bundleUpload and share files via Amazon S3 with time-limited pre-signed URLs. Generate download links, create upload pages for receiving files, and manage secure file sharing without exposing S3 buckets publicly.
- ▌ AWS Cost Optimization · gabrielmoreiraReduce AWS spend with rightsizing, autoscaling, commitment planning, and storage lifecycle policies. Use when running FinOps reviews, lowering cloud bills, or improving cost-per-request metrics.
- ▌ Firebase App Platform · gabrielmoreiraBuild and operate apps on Firebase using Auth, Firestore, Cloud Functions, and Hosting. Use when building mobile/web backends with managed services, real-time data sync, or serverless APIs.
- ▌ Supply Chain Attack Response · gabrielmoreiraDetect, respond to, and prevent software supply chain attacks on package registries, container images, and CI/CD pipelines with lockfile auditing, provenance verification, and emergency response playbooks.
- ▌ Reporting And Figure Export · gabrielmoreira bundleWorkflow for packaging analysis outputs into reproducible reports, clean tables, and publication-ready figure exports.
- ▌ Bio Atac Seq Allele Specific Accessibility · gabrielmoreira bundleDetect allele-specific chromatin accessibility from ATAC-seq using WASP, GATK ASEReadCounter, or RASQUAL. Use when mapping cis-regulatory genetic variants from heterozygous SNPs, separating cis from trans regulation, building chromatin QTL (caQTL) maps, validating GWAS variant function with allelic imbalance, or detecting reference allele mapping bias before downstream analysis.
- ▌ Clinicaltrials Database Search · gabrielmoreiraQuery ClinicalTrials.gov API v2 for trial data. Search by condition, drug/intervention, location, sponsor, or phase; fetch details by NCT ID; filter by status; paginate; export CSV. For clinical research, patient matching, and trial portfolio analysis.
- ▌ Deseq2 Differential Expression · gabrielmoreiraBulk RNA-seq DE with R/Bioconductor DESeq2. Negative binomial GLM, empirical Bayes shrinkage, Wald/LRT tests, multi-factor designs, Salmon tximeta import, apeglm LFC shrinkage, MA/volcano/heatmap viz. R gold standard. Use pydeseq2-differential-expression for Python; use edgeR for TMM normalization.
- ▌ Matplotlib Scientific Plotting · gabrielmoreiraLow-level Python plotting for scientific figures: publication-quality line, scatter, bar, heatmap, contour, 3D; multi-panel layouts; fine control of every element. PNG/PDF/SVG export. Use seaborn for quick stats, plotly for interactive.
- ▌ Viennarna Structure Prediction · gabrielmoreiraPredict RNA secondary structure, MFE folding, base-pair probabilities, RNA-RNA interactions via ViennaRNA Python bindings. Pipeline: sequence → MFE → partition function and pair-probability matrix → dot-bracket → duplex. Use for siRNA/sgRNA targeting, ribozyme design, RNA accessibility. Use RNAfold CLI for batch use without Python.
- ▌
- ▌
- ▌ Suggest Awesome Github Copilot Prompts · gabrielmoreiraSuggest relevant GitHub Copilot prompt files from the awesome-copilot repository based on current repository context and chat history, avoiding duplicates with existing prompts in this repository, and identifying outdated prompts that need updates.
- ▌ Changelog Scan · gabrielmoreiraScan recent merges to main (and noteworthy direct commits) since a given window (last tag or date in state). Extract titles, labels, types, linked issues, and signals for breaking changes or security. Produces structured input for a release notes drafter. Use in changelog-drafter loops.
- ▌ Authentication Authorization · gabrielmoreiraJWT, OAuth2, SAML, session management, RBAC, ABAC, and MFA implementation
- ▌ Documentation Generation · gabrielmoreiraEffective technical documentation strategies, API docs, README patterns, and doc generation workflows
- ▌ Assessment Design · gabrielmoreiraFormative vs summative, rubric design, authentic assessment, competency-based evaluation, and feedback
- ▌ Presentation Automation · gabrielmoreiraPresentation Automation: python-pptx, Google Slides API, automated slide generation from data and templates
- ▌ Agent Observability Experiment Analyzer · gabrielmoreiraAnalyze LLM experiment results. Handles single or comparative experiments, exploratory or Q&A modes. Use when user says "analyze experiment", "compare experiments", "analyze against baseline", or provides one or two experiment IDs for analysis.
- ▌ Doc Chaser Lite · gabrielmoreiraFree lite skill — drafts one friendly (level-1) client document-request email for a single tax client from a short brief plus the practice profile. A strict subset of client-doc-chaser (no batch, no escalation levels 2/3), carrying the pack's full guard. Use to try the kit before buying, or as the directory-published funnel skill. Triggers - "client document request email", "chase a client's documents", "free document request writer", "doc-chaser-lite".
- ▌ UI UX Polish · gabrielmoreiraIterative UI/UX polishing workflow for web applications. The exact prompt and methodology for achieving Stripe-level visual polish through multiple passes.
- ▌
- ▌ Evaluate Plugin · gabrielmoreiraEvaluate plugin quality. Use when user says "evaluate plugin", "review plugin quality", "score my plugin", "check plugin", "rate plugin".
- ▌ Act Pass · gabrielmoreiraRun the 7-step Artificial Critical Thinking pass — Materiality → Hypothesise → Alternatives → Disconfirmers → Audit priors → Severity → Commit-with-marker
- ▌ Dx Project Create · gabrielmoreiraScaffold a brand-new Salesforce DX project from scratch — pick a template, generate the project, relocate this session into it, authenticate an org, set it as default, and enable source tracking. TRIGGER when the user asks to 'create a new Salesforce project', 'create a new project for me', 'start a new Salesforce project', 'new SFDX project', 'scaffold a project', 'sf project generate', or 'set up a new org project from scratch'. DO NOT TRIGGER for: validating tools on an existing project (use platform-environment-validate or /salesforce-development:setup), org authentication on a project that already exists (use /salesforce-development:login), showing an existing project's metadata stats (use /salesforce-development:project), or creating scratch orgs in an existing project (use dx-org-manage).
- ▌ Creating Oracle To Postgres Migration Integration Tests · gabrielmoreiraCreates integration test cases targeting Oracle for .NET data access artifacts. Tests capture Oracle expected behavior as the authoritative baseline; they are written once and later ported to PostgreSQL by migrating the test project in Phase 6. Use only during Phase 3, before any PostgreSQL migration work has begun. Do not invoke during Phase 6 or against a project that has already been migrated.