all publishers

gabrielmoreira

@gabrielmoreira source repo

21,231 published skills · page 96 of 213

  1. ▌
    Windsurf Refactoring Large · gabrielmoreira bundle
    Manage large-scale refactoring with Cascade coordination. Activate when users mention "large refactoring", "codebase migration", "architecture refactor", "major refactoring", or "system-wide changes". Handles complex refactoring operations. Use when working with windsurf refactoring large functionality. Trigger with phrases like "windsurf refactoring large", "windsurf large", "windsurf".
    17 repo stars
  2. ▌
    Windsurf Upgrade Migration · gabrielmoreira
    Upgrade Windsurf IDE, migrate settings from VS Code or Cursor, and handle breaking changes. Use when upgrading Windsurf versions, migrating from another editor, or handling configuration changes after updates. Trigger with phrases like "upgrade windsurf", "windsurf update", "migrate to windsurf", "windsurf from cursor", "windsurf from vscode".
    17 repo stars
  3. ▌
    Bash Script Helper · gabrielmoreira
    Configure with bash script helper operations. Auto-activating skill for DevOps Basics. Triggers on: bash script helper, bash script helper Part of the DevOps Basics skill category. Use when working with bash script helper functionality. Trigger with phrases like "bash script helper", "bash helper", "bash".
    17 repo stars
  4. ▌
    Makefile Generator · gabrielmoreira
    Generate makefile generator operations. Auto-activating skill for DevOps Basics. Triggers on: makefile generator, makefile generator Part of the DevOps Basics skill category. Use when working with makefile generator functionality. Trigger with phrases like "makefile generator", "makefile generator", "makefile".
    17 repo stars
  5. ▌
    React Context Setup · gabrielmoreira
    Configure react context setup operations. Auto-activating skill for Frontend Development. Triggers on: react context setup, react context setup Part of the Frontend Development skill category. Use when working with react context setup functionality. Trigger with phrases like "react context setup", "react setup", "react".
    17 repo stars
  6. ▌
    Go Handler Generator · gabrielmoreira
    Generate go handler generator operations. Auto-activating skill for Backend Development. Triggers on: go handler generator, go handler generator Part of the Backend Development skill category. Use when working with go handler generator functionality. Trigger with phrases like "go handler generator", "go generator", "go".
    17 repo stars
  7. ▌
    22 Personal Brand Context · gabrielmoreira
    Dung khi bat dau xay thuong hieu CA NHAN cho mot con nguoi cu the — founder, coach, creator: skill nay tao file .agents/personal-brand-context.md gom dinh vi ca nhan, niche, story arc, content pillar, chan dung nguoi theo doi, brand voice, visual identity va kho anh reference. Chay MOT LAN truoc moi skill personal brand 23-28. Kich hoat khi user nhac 'thuong hieu ca nhan', 'personal brand', 'ho so ca nhan', 'founder context', 'coach context', 'creator context', 'muon xay hinh anh ca nhan', 'bat dau lam personal brand'. Khong dung cho — thuong hieu DOANH NGHIEP hoac san pham thi dung skill product-marketing-context; dinh vi cong ty tren thi truong thi dung skill 58-positioning.
    17 repo stars
  8. ▌
    Agency Agentic Identity Trust Architect · gabrielmoreira
    Designs identity, authentication, and trust verification systems for autonomous AI agents operating in multi-agent environments. Ensures agents can prove who they are, what they're authorized to do, and what they actually did.
    17 repo stars
  9. ▌
    Agency Cultural Intelligence Strategist · gabrielmoreira
    CQ specialist that detects invisible exclusion, researches global context, and ensures software resonates authentically across intersectional identities.
    17 repo stars
  10. ▌
    Analyzing Bootkit And Rootkit Samples · gabrielmoreira bundle
    Analyzes bootkit and advanced rootkit malware infecting the Master Boot Record (MBR), Volume Boot Record (VBR), or UEFI firmware for below-OS persistence, covering boot sector analysis, UEFI module inspection, and anti-rootkit detection. Use when compromise survives OS reinstallation or antivirus/EDR fails to detect malware despite clear infection signs.
    17 repo stars
  11. ▌
    Analyzing Powershell Empire Artifacts · gabrielmoreira bundle
    Detect PowerShell Empire post-exploitation framework artifacts in Windows Script Block Logging (Event ID 4104) and Module Logging (Event ID 4103), including the default launcher string, Base64-encoded WebClient/FromBase64String payloads, known module invocations (Invoke-Mimikatz, Invoke-Kerberoast), and staging URL patterns. Use when hunting for or confirming Empire C2 activity in Windows event logs.
    17 repo stars
  12. ▌
    Building C2 Redirector Infrastructure · gabrielmoreira bundle
    Build dumb-pipe and traffic-filtering C2 redirectors with nginx (proxy_pass) and Apache (mod_rewrite), deriving filter rules from a Malleable C2 profile, layering Let's Encrypt TLS, and applying OPSEC controls like domain fronting and UA/geo filtering. Use when standing up red-team C2 that must survive blue-team triage or ensuring only profile-matching implant traffic reaches the hidden team server.
    17 repo stars
  13. ▌
    Building Threat Intelligence Platform · gabrielmoreira bundle
    Design and deploy a Threat Intelligence Platform (TIP) by integrating open-source CTI tools (MISP, OpenCTI, TheHive, Cortex) into a unified system with feed ingestion pipelines, enrichment workflows, STIX/TAXII interoperability, and analyst dashboards. Use when architecting or standing up a centralized CTI platform to collect, analyze, and disseminate threat intelligence across a security team.
    17 repo stars
  14. ▌
    Conducting Gdpr Compliance Assessment · gabrielmoreira bundle
    Conduct comprehensive GDPR compliance assessments by evaluating data processing activities against EU Regulation 2016/679, including Article 30 records of processing, lawful basis validation, data subject rights implementation, Data Protection Impact Assessments (DPIAs) under Article 35, breach notification procedures, international transfer safeguards (SCCs, adequacy decisions), and technical/organizational measures under Article 32. Use when processing personal data of EU residents, preparing for supervisory authority audits, implementing privacy-by-design for new systems, scoping compliance gaps for M&A due diligence, assessing third-party processors, or responding to data subject access requests at scale. Incorporates 2026 guidance from ICO, EDPB, and post-Data (Use and Access) Act 2025 UK-GDPR considerations. Do not use for implementing specific Article 32 controls — use implementing-gdpr-data-protection-controls; or for DSAR automation — use implementing-gdpr-data-subject-access-request.
    17 repo stars
  15. ▌
    Conducting Phishing Incident Response · gabrielmoreira bundle
    Respond to phishing incidents by analyzing reported emails, extracting indicators, sandboxing URLs/attachments, assessing credential compromise, quarantining malicious messages organization-wide, and remediating affected accounts. Use when investigating a reported phishing or credential-phishing email, a suspected spearphishing incident, or when a mailbox-wide purge and account remediation is needed.
    17 repo stars
  16. ▌
    Configuring Oauth2 Authorization Flow · gabrielmoreira bundle
    Configures secure OAuth 2.0 authorization flows, including Authorization Code with PKCE, Client Credentials, and Device Authorization Grant, covering flow selection, PKCE implementation, token lifecycle management, and scope design per OAuth 2.1. Use when implementing or hardening OAuth 2.0 authentication/authorization for web, mobile, SPA, or machine-to-machine clients.
    17 repo stars
  17. ▌
    Detecting Fileless Malware Techniques · gabrielmoreira bundle
    Detects and analyzes fileless malware that operates entirely in memory using PowerShell, WMI, .NET reflection, registry-resident payloads, and living-off-the-land binaries (LOLBins) without writing traditional executable files to disk. Use for requests involving fileless threat detection, in-memory malware investigation, LOLBin abuse analysis, or WMI persistence examination.
    17 repo stars
  18. ▌
    Detecting Mimikatz Execution Patterns · gabrielmoreira bundle
    Detect Mimikatz credential-dumping activity via command-line pattern matching, LSASS access signatures, binary/hash indicators, and in-memory detection of known Mimikatz modules. Use when threat hunting for T1003 credential access, triaging EDR/SIEM alerts on LSASS access, scoping compromise during incident response, or validating detection coverage in a purple team exercise.
    17 repo stars
  19. ▌
    Detecting Misconfigured Azure Storage · gabrielmoreira bundle
    Audit Azure Storage accounts for public blob containers, missing encryption, overly permissive SAS tokens, disabled logging, and network access violations using Azure CLI, PowerShell, and Microsoft Defender for Storage. Use for storage security audits across subscriptions, responding to Defender for Storage anonymous-access alerts, verifying compliance controls, or setting security baselines when onboarding a subscription.
    17 repo stars
  20. ▌
    Detecting Network Anomalies With Zeek · gabrielmoreira bundle
    Deploy and configure Zeek (formerly Bro) to passively analyze network traffic, generate structured connection/DNS/HTTP/SSL/file logs, detect anomalous behavior, and write custom scripts for organization-specific threats. Use for passive monitoring at network choke points, feeding SIEM/threat hunting with protocol metadata, or retrospective log analysis during incident response; not a substitute for inline IDS/IPS or host agents.
    17 repo stars
  21. ▌
    Detecting Process Hollowing Technique · gabrielmoreira bundle
    Detect process hollowing (MITRE T1055.012) by analyzing memory-mapped sections, hollowed process indicators, and parent-child anomalies using EDR telemetry, Volatility's malfind plugin, pe-sieve, Hollows Hunter, and Sysmon Event ID 25. Use when investigating a legitimate-looking process (svchost.exe, explorer.exe, rundll32.exe) suspected of hosting injected code via NtUnmapViewOfSection.
    17 repo stars
  22. ▌
    Exploiting Nopac Cve 2021 42278 42287 · gabrielmoreira bundle
    Exploits the noPac Active Directory privilege-escalation chain (CVE-2021-42278 sAMAccountName spoofing plus CVE-2021-42287 KDC PAC confusion) using Impacket and secretsdump.py to escalate from a standard domain user to Domain Admin. Use when red-teaming or pentesting Active Directory to validate machine-account impersonation and DCSync-based credential dumping.
    17 repo stars
  23. ▌
    Hardening Docker Daemon Configuration · gabrielmoreira bundle
    Hardens the Docker daemon (dockerd) through /etc/docker/daemon.json with user namespace remapping, TLS client authentication, seccomp profiles, and CIS Docker Benchmark controls such as icc, no-new-privileges, and live-restore. Use when securing a Docker host's daemon to prevent privilege escalation, breakout, or lateral movement, or when auditing daemon settings against CIS requirements. Keywords: dockerd, daemon.json, userns-remap, no-new-privileges, icc, live-restore, TLS socket. Do not use for hardening images and per-container runtime flags - use hardening-docker-containers-for-production.
    17 repo stars
  24. ▌
    Implementing Azure Defender For Cloud · gabrielmoreira bundle
    Enable Microsoft Defender for Cloud (CSPM + CWPP) across VMs, containers, SQL, storage, and Key Vault, using Azure Policy for evaluation, Log Analytics for telemetry, Azure Arc for hybrid coverage, and Logic Apps for automated response. Use for Azure security monitoring, adaptive remediation, or regulatory compliance assessment; not for non-Azure-only protection or identity defense (Defender for Identity).
    17 repo stars
  25. ▌
    Implementing GCP Binary Authorization · gabrielmoreira bundle
    Implements GCP Binary Authorization end to end, including creating KMS-backed attestors, Container Analysis notes, deploy-time policies, and signing image attestations, so that only trusted, verified images deploy to GKE and Cloud Run. Use when enforcing container supply-chain integrity or deploy-time attestation checks on GCP.
    17 repo stars
  26. ▌
    Implementing Ics Firewall With Tofino · gabrielmoreira bundle
    Deploys and configures Tofino industrial firewalls (Belden/Hirschmann) to protect SCADA systems and PLCs, using deep packet inspection of OT protocols (Modbus, EtherNet/IP, OPC, S7comm) to enforce access control between ICS zones. Use when deploying zone-level firewall protection in front of PLCs/RTUs, enforcing IEC 62443 zone/conduit boundaries, or adding compensating controls for unpatchable legacy PLCs.
    17 repo stars
  27. ▌
    Implementing Iec 62443 Security Zones · gabrielmoreira bundle
    Designs security zones and conduits for industrial control systems (IACS) per IEC 62443-3-2 — risk-based zone partitioning, Security Level target (SL-T) assignment, conduit controls, and firewall microsegmentation validated against the Purdue Reference Model. Use when designing OT network zones for a new facility, retrofitting zones into a flat OT network, or upgrading VLAN-only segmentation for IEC 62443-3-2 compliance.
    17 repo stars
  28. ▌
    Performing Container Escape Detection · gabrielmoreira bundle
    Audits container and pod configuration for escape-enabling misconfiguration using the Kubernetes Python client - privileged flags, dangerous capability grants, host path mounts, shared namespaces, and CVE-2022-0492 style cgroup abuse. Use when sweeping a cluster for workloads that could break out, producing a posture report, or checking configuration before enforcement is switched on. Keywords: privileged, hostPath, hostPID, capabilities, CVE-2022-0492, cgroup, kubernetes python client, posture audit. Do not use for runtime syscall-based detection - use detecting-container-escape-attempts. '
    17 repo stars
  29. ▌
    Performing File Carving With Foremost · gabrielmoreira bundle
    Recovers files from disk images and unallocated space using Foremost's header-footer signature carving, extracting evidence independent of the file system's state. Use during digital forensics investigations to carve deleted or fragmented files, such as documents, images, and archives, from raw disk images or unallocated space.
    17 repo stars
  30. ▌
    Performing Hash Cracking With Hashcat · gabrielmoreira bundle
    Cracks password hashes with Hashcat, covering hash-type identification, dictionary/brute-force/rule-based attack modes, custom rule creation, GPU benchmarking, and password-strength/compliance reporting. Use for authorized penetration testing or security audits that need to evaluate password strength or crack captured hashes.
    17 repo stars
  31. ▌
    Performing Lateral Movement Detection · gabrielmoreira bundle
    Detects lateral movement techniques including Pass-the-Hash, PsExec, WMI execution, RDP pivoting, and SMB-based spreading by correlating Windows Security/Sysmon event logs, network flow data (NetFlow/Zeek), and endpoint telemetry in a SIEM, mapped to MITRE ATT&CK Lateral Movement (TA0008) techniques with sample SPL detection queries. Use when a SOC team needs to detect attackers pivoting between internal systems after initial compromise, trace an attacker's movement path during an incident investigation, or build detection engineering rules for TA0008; not for detecting initial access or external attacks.
    17 repo stars
  32. ▌
    Performing Purple Team Atomic Testing · gabrielmoreira bundle
    Executes Atomic Red Team tests mapped to MITRE ATT&CK via Invoke-AtomicRedTeam PowerShell, generates ATT&CK Navigator coverage heatmaps, correlates results against Sigma rules, and runs detection validation loops to measure blue team visibility. Use for purple team exercises, atomic test execution, ATT&CK coverage assessment, or detection engineering validation.
    17 repo stars
  33. ▌
    Performing Web Cache Deception Attack · gabrielmoreira bundle
    Executes web cache deception attacks by exploiting path normalization discrepancies between CDN/reverse-proxy caching layers (Cloudflare, Akamai, Varnish, Nginx) and origin servers to cache and retrieve sensitive authenticated content. Use when testing applications behind CDNs for cache-key misconfigurations, during bug bounty hunting on aggressively cached sites, or when assessing sensitive data exposure through cache layer misconfiguration.
    17 repo stars
  34. ▌
    Observability Design · gabrielmoreira
    Making multi-agent workflows visible and debuggable for designers and developers.
    17 repo stars
  35. ▌
    Progressive Disclosure · gabrielmoreira
    Revealing AI capability gradually to match user mental models.
    17 repo stars
  36. ▌
    Review Hog Perspective Contracts Security · gabrielmoreira
    The Contracts & Security review perspective for PostHog Review. Verifies that changed code is safe and maintains compatibility: API contracts and breaking changes, injection / authz / data exposure, input validation, and schema / interface alignment. Reports security and contract issues only.
    17 repo stars
  37. ▌
    Planning Voice Agent User Interviews · gabrielmoreira
    Plan a round of user interviews conducted by PostHog's AI voice agent (a "robo interviewer") — the automated voice-agent interview product. Captures a UserInterviewTopic (who to target, what to ask, framing context, question list) and calls user-interview-topics-create. ONLY trigger when the user clearly wants an AI voice agent to actually run the interview calls (e.g. "set up robo user interviews", "have the voice agent interview these users"). Do NOT trigger for ordinary user research that does not involve the voice agent — finding or shortlisting users to talk to ("who'd be a good fit to interview about Y"), planning questions for a human-run interview, or analysing feedback are audience discovery, handled with normal data queries, not this skill. Also do NOT trigger for uploading a recorded interview audio file or browsing topics with user-interview-topics-list. When intent is ambiguous, first confirm what kind of research it is and whether they want an AI voice agent to conduct it (see Step 0).
    17 repo stars
  38. ▌
    Setting Up A Data Warehouse Source · gabrielmoreira
    Guide the user through connecting a new data warehouse source — Postgres, MySQL, Stripe, Hubspot, MongoDB, Salesforce, BigQuery, Snowflake, and so on. Use when the user wants to "connect Stripe", "import data from Postgres", "add a new data source", "sync my warehouse tables", or wants to pick sync methods for each table. Walks through source-type discovery, credential validation, table discovery, per-table sync_type selection, and the final create call. Also covers picking a good prefix and what to do right after creation.
    17 repo stars
  39. ▌
    Run Skill · gabrielmoreira
    Run a named muapi multi-step recipe (UGC ad, storyboard, brand kit, product video, social carousel…). Use when the brief matches a known workflow. Delegates to the creative-specialist subagent.
    17 repo stars
  40. ▌
    Threejs Procedural Vegetation · gabrielmoreira bundle
    Generate authored procedural trees, grass, ivy, flowers, and vegetation in Three.js or raw WebGPU. Use for surface-following vines, painted ivy paths, stylized or GPU grass, GPU-culled virtual flower fields, trunks, recursive branches, roots, canopies, leaf cards, species presets, deterministic growth, distance-tiered plant geometry, and rooted blade, stem, or petiole-hinge wind.
    17 repo stars
  41. ▌
    Ietf Rfc Authoring · gabrielmoreira
    Write documentation in the IETF RFC style/format (for internal specs and protocol documents), using kramdown-rfc (Markdown to RFC XML v3). Use when asked to write a spec in IETF/RFC style, format a document like an RFC, produce an RFC-style protocol or format specification, apply RFC 2119 (BCP 14) keywords, or render Markdown to RFC-looking text/HTML with kramdown-rfc / kdrfc / xml2rfc. This is about producing RFC-STYLE documents, NOT submitting Internet-Drafts to the IETF.
    17 repo stars
  42. ▌
    Copilot Usage Report · gabrielmoreira
    Generate a Copilot CLI usage style report from session history. Use when asked to analyze usage patterns, generate a usage report, review prompting style, or summarize how Copilot is being used.
    17 repo stars
  43. ▌
    Msix Store Submission · gabrielmoreira
    Microsoft Store submission for MSIX apps — Partner Center identity, signing, self-contained packaging, manifest alignment, and CI/CD for Store uploads
    17 repo stars
  44. ▌
    Liveagent Code Review · gabrielmoreira
    Review an open GitHub pull request or the current local branch and working tree with parallel, independent reviewers and evidence-based validation. Use when the user asks for code review, invokes the Code Review action from Git Review, or explicitly mentions this skill.
    17 repo stars
  45. ▌
    Syncfusion Maui Toolkit Calendar · gabrielmoreira bundle
    Implements and customize Syncfusion .NET MAUI Calendar (SfCalendar) control. Use when implementing calendar functionality, date selection (single, multiple, range), or calendar views (month, year, decade, century). Covers date restrictions (min/max dates, EnablePastDates, SelectableDayPredicate), calendar customization, events (ViewChanged, SelectionChanged, Tapped), and header/footer customization.
    17 repo stars
  46. ▌
    Syncfusion Maui Toolkit Expander · gabrielmoreira bundle
    Implements the Syncfusion .NET MAUI Expander (SfExpander) control for collapsible and expandable content sections. Use when working with expanders, collapsible sections, accordions, expandable panels, or expand/collapse functionality in .NET MAUI applications. Covers space-efficient layouts, header customization and expand/collapse animations.
    17 repo stars
  47. ▌
    Syncfusion Maui Date Time Range Selector · gabrielmoreira bundle
    Implements Syncfusion .NET MAUI DateTime Range Selector (SfDateTimeRangeSelector) for interactive date/time range selection with chart integration. Use when working with range selectors, date range pickers, time range selection, chart range filtering, or interactive range controls. Covers range selection UI, filtering chart data by date range, and selecting time periods.
    17 repo stars
  48. ▌
    Testing Handbook Generator · gabrielmoreira bundle
    Generates Claude Code skills from the Trail of Bits Testing Handbook (appsec.guide), analyzing handbook pages and emitting SKILL.md files with the structure each skill type requires. Use when creating or refreshing a skill from handbook content, or when the user names the testing handbook or appsec.guide. Not for answering security testing questions — the generated skills cover those.
    17 repo stars
  49. ▌
    Mcp2skill · gabrielmoreira
    将 MCP Server 的工具列表转换为 Skill 格式的结构化 Markdown 文档
    17 repo stars
  50. ▌
    Competitor Launch Monitor · gabrielmoreira bundle
    When the user wants to track a named competitor's launch or announcement and the public reaction to it across X, LinkedIn, YouTube, Reddit, and news. Also use on "competitor launch monitor," "what did [competitor] just ship," "track [competitor]'s announcement," "how is [competitor]'s launch landing," "competitor product launch," "monitor competitor news," "watch a competitor," "competitor reaction," or "is [competitor]'s launch working." For a full standing profile of the competitor, see competitor-profiling.
    17 repo stars
  51. ▌
    AI Distributed Training · gabrielmoreira
    Guides multi-GPU pre-training: DDP, FSDP2, ZeRO, tensor/pipeline/expert parallelism, fp8/Muon. Use when scaling a run, training MoE, or reproducing GPT-2 on rented GPUs.
    17 repo stars
  52. ▌
    Dev Context Engineering · gabrielmoreira
    Context-driven AI development with AGENTS.md, repo knowledge bases, Claude Code, Codex, and Copilot. Use when adopting repo-native AI workflows or multi-repo setups.
    17 repo stars
  53. ▌
    Foundations Game Theory · gabrielmoreira
    Game-theory primitives for strategic decision systems, auctions, mechanism design, incentives, attribution, negotiation, debate, and trust. Use when modeling strategic play.
    17 repo stars
  54. ▌
    Foundations Team Theory · gabrielmoreira
    Team-theory primitives for cooperative multi-agent decisions, subagent allocation, communication value, Dec-POMDPs, and decentralized control. Use when organizing agents.
    17 repo stars
  55. ▌
    Software Csharp Backend · gabrielmoreira
    Applies C# and .NET backend standards. Use when shaping API boundaries, data access, resilience, observability, or security defaults.
    17 repo stars
  56. ▌
    Proof Orchestrator · gabrielmoreira bundle
    Manage a stateful, run-directory-based proof project with Codex: continuation across runs, run-local source bookkeeping, manual GPT Pro handoff packages when a local attempt stalls, and an optional DeepSeek second opinion as additional evidence only. Use when the user asks for proof-run orchestration, a GPT Pro handoff, or cross-run proof continuation — use /proof-writer for ordinary proof drafting and /proof-checker for rigorous verification or submission acceptance.
    17 repo stars
  57. ▌
    React Native Architecture · gabrielmoreira
    Build production React Native apps with Expo, navigation, native modules, offline sync, and cross-platform patterns. Use when developing mobile apps, implementing native integrations, or architecting React Native projects.
    17 repo stars
  58. ▌
    Exploiting AI Model File Rce · gabrielmoreira
    Testing machine-learning model files and model-loading services for remote code execution caused by insecure deserialization (pickle/PyTorch), unsafe config instantiation (Hydra), archive path traversal, and dangerous layer types during authorized penetration tests of AI/ML pipelines.
    17 repo stars
  59. ▌
    Competition Lsass Ticket Material · gabrielmoreira
    Internal downstream skill for ctf-sandbox-orchestrator. CTF-sandbox workflow for LSASS-resident secrets, Windows logon sessions, Kerberos ticket caches, DPAPI-backed material, SSP artifacts, and replayable credential extraction. Use when the user asks to inspect LSASS memory, recover tickets or logon sessions, trace DPAPI or SSP material, distinguish which credential artifacts are replayable, or connect host-resident credential material to an accepted pivot or privilege edge. Use only after `$ctf-sandbox-orchestrator` has already established sandbox assumptions and routed here.
    17 repo stars
  60. ▌
    Agui Dotnet Client Tools · gabrielmoreira
    Expose client-side (frontend) tools to an AG-UI agent with the AG-UI .NET SDK — C# functions that run in the CLIENT app (read local state, GPS, UI, device APIs), where the client executes the call and returns the result so the run continues. USE FOR: declaring an AIFunction in the client and passing it via ChatOptions.Tools to AGUIChatClient; having the client execute a tool the model requested and feed the result back automatically; understanding why no UseFunctionInvocation is needed on the client (AGUIChatClient already invokes functions); what the server must do (UseFunctionInvocation + TerminateOnUnknownCalls) so it forwards an unknown/client tool instead of erroring. DO NOT USE FOR: tools that run on the server/backend (use agui-dotnet-server-tools); pausing for human approval/input before acting (interrupts / human-in-the-loop); plain chat (use agui-dotnet-streaming-chat); shared state, generative UI, multimodal, or protobuf.
    17 repo stars
  61. ▌
    Agui Dotnet Server Tools · gabrielmoreira
    Expose server-side (backend) tools an AG-UI agent can call with the AG-UI .NET SDK — C# functions that run on the server, where the server executes the call and feeds the result back to the model. USE FOR: defining an AIFunction with AIFunctionFactory.Create and registering it on the server's IChatClient via ConfigureOptions + UseFunctionInvocation; making the model call your backend function during a run; AOT-safe tool arguments/results (registering a JsonSerializerContext for complex tool parameter types); parallel/concurrent backend tool calls (AllowConcurrentInvocation); TerminateOnUnknownCalls behavior. DO NOT USE FOR: tools that run in the client/frontend (use agui-dotnet-client-tools); pausing a tool for human approval or input (interrupts / human-in-the-loop); plain streaming chat with no tools (use agui-dotnet-streaming-chat); shared state, generative UI, multimodal, or protobuf.
    17 repo stars
  62. ▌
    Agui Dotnet Shared State · gabrielmoreira
    Share structured, evolving state between an AG-UI agent and its client with the AG-UI .NET SDK — the client seeds state on the request, the server reads it, mutates it, and streams the updated state back as snapshots or deltas alongside the chat. USE FOR: sending initial/working state from the client via ChatOptions.RawRepresentationFactory -> RunAgentInput.State; reading inbound state on the server with ChatOptions.TryGetRunAgentInput and RunAgentInput.State; emitting a full state object as a StateSnapshotEvent (or incremental JSON-Patch changes as a StateDeltaEvent) from a DelegatingChatClient via ChatResponseUpdate.RawRepresentation; reading state back on the client from update.RawRepresentation as StateSnapshotEvent. DO NOT USE FOR: passing one-off tool arguments (use agui-dotnet-server-tools); rendering UI components from tool calls (use agui-dotnet-generative-ui); plain chat (use agui-dotnet-streaming-chat); approvals/interrupts, multimodal, or protobuf.
    17 repo stars
  63. ▌
    Agui Dotnet Troubleshoot · gabrielmoreira
    Diagnose and fix problems in an AG-UI .NET app built on the AG-UI SDK — when streaming chat, tools, state, interrupts, or the transport misbehave. USE FOR: the agent forgetting earlier turns / history truncated; update.ConversationId always null; state or lifecycle updates that never arrive; a tool throwing at runtime or producing AOT/trim warnings; an unknown-tool error mid-run; 406 Not Acceptable from the endpoint; an interrupt or approval that won't resume; and inspecting the raw AG-UI event stream (curl SSE frames, RawEvent on ChatResponseUpdate.RawRepresentation) to see what's actually on the wire. DO NOT USE FOR: first-time setup or the happy path (use agui-dotnet-streaming-chat); implementing a specific feature cleanly (use the matching agui-dotnet-* skill).
    17 repo stars
  64. ▌
    Visual Asset Design · gabrielmoreira
    为角色/场景/道具设计视觉资产、编写或修复 VisualVariant 与阵容图的生成 Prompt 时使用。涵盖参考图布局(艺术身份板/序列关键帧/场景锚点/道具英雄 视图)、构图与镜头语言、图片审核误判规避、实体 continuity 与跨 Variant 身份稳定性。不用于视频 Prompt 编译(见 professional-media-prompts)、 纯素材剪辑或只评价已生成产物。
    17 repo stars
  65. ▌
    Abstract Summarizer · gabrielmoreira
    Transform lengthy academic papers into concise, structured 250-word abstracts.
    17 repo stars
  66. ▌
    Anatomy Quiz Master · gabrielmoreira
    Generate interactive anatomy quizzes for medical education with multiple.
    17 repo stars
  67. ▌
    Grant Mock Reviewer · gabrielmoreira
    Simulate structured grant peer review for biomedical proposals; use when stress-testing significance, innovation, approach, feasibility, and reviewer-facing weaknesses before submission.
    17 repo stars
  68. ▌
    D Molecule Ray Tracer · gabrielmoreira
    Generate photorealistic rendering scripts for PyMOL and UCSF ChimeraX.
    17 repo stars
  69. ▌
    Crispr Screen Analyzer · gabrielmoreira
    Process CRISPR screening data to identify essential genes and hit candidates. Performs quality control, statistical analysis (RRA), and hit calling for pooled CRISPR screens including viability screens and drug resistance/sensitivity studies.
    17 repo stars
  70. ▌
    Meta Forest Model Plot · gabrielmoreira
    Generate forest plots for meta-analysis of survival data. Input is a CSV file containing study names, HR and 95% confidence intervals, output forest plot PNG and data table CSV. Supports both R and Python scripts.
    17 repo stars
  71. ▌
    Bio Ontology Mapper · gabrielmoreira
    Map unstructured biomedical text to standardized ontologies (SNOMED CT.
    17 repo stars
  72. ▌
    Result Figure Consistencycheck · gabrielmoreira
    Checks consistency between paper result descriptions and figure legends (text-only) when the input is a PDF-to-Markdown full text containing page breaks (e.g., `## Page XX`) and legend text; outputs a Markdown consistency report and a UTF-8 CSV issue list.
    17 repo stars
  73. ▌
    Meta Protocol Writer · gabrielmoreira
    Generates a PROSPERO-compliant Meta-analysis protocol based on Title and PICOS. Use when the user wants to write a protocol for a systematic review or meta-analysis.
    17 repo stars
  74. ▌
    Design Systems · gabrielmoreira
    Bold aesthetic direction guidance for web design. Use when making creative decisions about typography, color, motion, spatial composition, and overall visual style. Helps avoid generic "AI slop" aesthetics.
    17 repo stars
  75. ▌
    S3 Files · gabrielmoreira bundle
    Upload and share files via Amazon S3 with time-limited pre-signed URLs. Generate download links, create upload pages for receiving files, and manage secure file sharing without exposing S3 buckets publicly.
    17 repo stars
  76. ▌
    AWS Cost Optimization · gabrielmoreira
    Reduce AWS spend with rightsizing, autoscaling, commitment planning, and storage lifecycle policies. Use when running FinOps reviews, lowering cloud bills, or improving cost-per-request metrics.
    17 repo stars
  77. ▌
    Firebase App Platform · gabrielmoreira
    Build and operate apps on Firebase using Auth, Firestore, Cloud Functions, and Hosting. Use when building mobile/web backends with managed services, real-time data sync, or serverless APIs.
    17 repo stars
  78. ▌
    Supply Chain Attack Response · gabrielmoreira
    Detect, respond to, and prevent software supply chain attacks on package registries, container images, and CI/CD pipelines with lockfile auditing, provenance verification, and emergency response playbooks.
    17 repo stars
  79. ▌
    Reporting And Figure Export · gabrielmoreira bundle
    Workflow for packaging analysis outputs into reproducible reports, clean tables, and publication-ready figure exports.
    17 repo stars
  80. ▌
    Bio Atac Seq Allele Specific Accessibility · gabrielmoreira bundle
    Detect allele-specific chromatin accessibility from ATAC-seq using WASP, GATK ASEReadCounter, or RASQUAL. Use when mapping cis-regulatory genetic variants from heterozygous SNPs, separating cis from trans regulation, building chromatin QTL (caQTL) maps, validating GWAS variant function with allelic imbalance, or detecting reference allele mapping bias before downstream analysis.
    17 repo stars
  81. ▌
    Clinicaltrials Database Search · gabrielmoreira
    Query ClinicalTrials.gov API v2 for trial data. Search by condition, drug/intervention, location, sponsor, or phase; fetch details by NCT ID; filter by status; paginate; export CSV. For clinical research, patient matching, and trial portfolio analysis.
    17 repo stars
  82. ▌
    Deseq2 Differential Expression · gabrielmoreira
    Bulk RNA-seq DE with R/Bioconductor DESeq2. Negative binomial GLM, empirical Bayes shrinkage, Wald/LRT tests, multi-factor designs, Salmon tximeta import, apeglm LFC shrinkage, MA/volcano/heatmap viz. R gold standard. Use pydeseq2-differential-expression for Python; use edgeR for TMM normalization.
    17 repo stars
  83. ▌
    Matplotlib Scientific Plotting · gabrielmoreira
    Low-level Python plotting for scientific figures: publication-quality line, scatter, bar, heatmap, contour, 3D; multi-panel layouts; fine control of every element. PNG/PDF/SVG export. Use seaborn for quick stats, plotly for interactive.
    17 repo stars
  84. ▌
    Viennarna Structure Prediction · gabrielmoreira
    Predict RNA secondary structure, MFE folding, base-pair probabilities, RNA-RNA interactions via ViennaRNA Python bindings. Pipeline: sequence → MFE → partition function and pair-probability matrix → dot-bracket → duplex. Use for siRNA/sgRNA targeting, ribozyme design, RNA accessibility. Use RNAfold CLI for batch use without Python.
    17 repo stars
  85. ▌
    Yao Codereview Hskill · gabrielmoreira
    提供专业的代码审查服务,检查代码质量、安全漏洞、性能问题和最佳实践。支持多种编程语言和框架。
    17 repo stars
  86. ▌
    Yao Techselect Hskill · gabrielmoreira
    帮助开发团队进行技术选型决策,提供框架对比、架构评估和最佳实践建议。适用于需要在多个技术方案中做出选择的场景。
    17 repo stars
  87. ▌
    Suggest Awesome Github Copilot Prompts · gabrielmoreira
    Suggest relevant GitHub Copilot prompt files from the awesome-copilot repository based on current repository context and chat history, avoiding duplicates with existing prompts in this repository, and identifying outdated prompts that need updates.
    17 repo stars
  88. ▌
    Changelog Scan · gabrielmoreira
    Scan recent merges to main (and noteworthy direct commits) since a given window (last tag or date in state). Extract titles, labels, types, linked issues, and signals for breaking changes or security. Produces structured input for a release notes drafter. Use in changelog-drafter loops.
    17 repo stars
  89. ▌
    Authentication Authorization · gabrielmoreira
    JWT, OAuth2, SAML, session management, RBAC, ABAC, and MFA implementation
    17 repo stars
  90. ▌
    Documentation Generation · gabrielmoreira
    Effective technical documentation strategies, API docs, README patterns, and doc generation workflows
    17 repo stars
  91. ▌
    Assessment Design · gabrielmoreira
    Formative vs summative, rubric design, authentic assessment, competency-based evaluation, and feedback
    17 repo stars
  92. ▌
    Presentation Automation · gabrielmoreira
    Presentation Automation: python-pptx, Google Slides API, automated slide generation from data and templates
    17 repo stars
  93. ▌
    Agent Observability Experiment Analyzer · gabrielmoreira
    Analyze LLM experiment results. Handles single or comparative experiments, exploratory or Q&A modes. Use when user says "analyze experiment", "compare experiments", "analyze against baseline", or provides one or two experiment IDs for analysis.
    17 repo stars
  94. ▌
    Doc Chaser Lite · gabrielmoreira
    Free lite skill — drafts one friendly (level-1) client document-request email for a single tax client from a short brief plus the practice profile. A strict subset of client-doc-chaser (no batch, no escalation levels 2/3), carrying the pack's full guard. Use to try the kit before buying, or as the directory-published funnel skill. Triggers - "client document request email", "chase a client's documents", "free document request writer", "doc-chaser-lite".
    17 repo stars
  95. ▌
    UI UX Polish · gabrielmoreira
    Iterative UI/UX polishing workflow for web applications. The exact prompt and methodology for achieving Stripe-level visual polish through multiple passes.
    17 repo stars
  96. ▌
    Workspace Guide · gabrielmoreira
    Workspace guide to introduce OpenWork and onboard new users.
    17 repo stars
  97. ▌
    Evaluate Plugin · gabrielmoreira
    Evaluate plugin quality. Use when user says "evaluate plugin", "review plugin quality", "score my plugin", "check plugin", "rate plugin".
    17 repo stars
  98. ▌
    Act Pass · gabrielmoreira
    Run the 7-step Artificial Critical Thinking pass — Materiality → Hypothesise → Alternatives → Disconfirmers → Audit priors → Severity → Commit-with-marker
    17 repo stars
  99. ▌
    Dx Project Create · gabrielmoreira
    Scaffold a brand-new Salesforce DX project from scratch — pick a template, generate the project, relocate this session into it, authenticate an org, set it as default, and enable source tracking. TRIGGER when the user asks to 'create a new Salesforce project', 'create a new project for me', 'start a new Salesforce project', 'new SFDX project', 'scaffold a project', 'sf project generate', or 'set up a new org project from scratch'. DO NOT TRIGGER for: validating tools on an existing project (use platform-environment-validate or /salesforce-development:setup), org authentication on a project that already exists (use /salesforce-development:login), showing an existing project's metadata stats (use /salesforce-development:project), or creating scratch orgs in an existing project (use dx-org-manage).
    17 repo stars
  100. ▌
    Creating Oracle To Postgres Migration Integration Tests · gabrielmoreira
    Creates integration test cases targeting Oracle for .NET data access artifacts. Tests capture Oracle expected behavior as the authoritative baseline; they are written once and later ported to PostgreSQL by migrating the test project in Phase 6. Use only during Phase 3, before any PostgreSQL migration work has begun. Do not invoke during Phase 6 or against a project that has already been migrated.
    17 repo stars