gaelic-ghost
- 277 skills
- 0 followers
- 17 hours ago last updated
- ▌ Correlate Apple Symbols And Crashes · gaelic-ghost bundleMatch Apple binaries, dSYMs, BCSymbolMaps when applicable, crash reports, IPS logs, panic excerpts, and static-analysis databases by UUID, architecture, load address, and exact build. Use when Codex must symbolicate or assess partial symbolication, translate crash addresses, correlate runtime frames with Mach-O functions, validate archived symbols, or hand a supported finding into Xcode or deeper reverse engineering.
- ▌ Research Apple Kernel Boot And Firmware · gaelic-ghost bundleInventory and correlate exact-build Apple kernel, kernel collection, KDK, panic, boot-chain, device-tree, IPSW, restore-image, LocalPolicy, SSV, AuxKC, personalization, and firmware artifacts. Use when Codex must compare public XNU or dyld source with shipping binaries, match KDK symbols and UUIDs, distinguish Mac restore from iPhone or iPad firmware, map Apple Silicon boot evidence, or preserve coprocessor and firmware payload metadata without assuming undocumented payload behavior.
- ▌ Use Ghidra · gaelic-ghost bundleCreate Ghidra projects for compiled artifacts. Use for import, loader and analyzer choices, listings, functions, symbols, types, references, graphs, decompiler review, scripts, headless analysis, PyGhidra, comparisons, and archives.
- ▌ Use Hopper · gaelic-ghost bundleUse Hopper on macOS for disassembly, graphs, pseudocode, Objective-C and Swift presentation, procedure and type edits, extensions, and debugging. Use for document setup, navigation, annotation, evidence, comparison, and discovery.
- ▌ Git Workflow · gaelic-ghost bundleSafely inspect and perform everyday Git work: branches, focused commits, history, integration, conflicts, worktrees, and recovery. Use for local version-control tasks that are not GitHub settings or release publication.
- ▌ Harden Macos · gaelic-ghost bundleReview and improve macOS defensive posture. Use for updates, XProtect and Gatekeeper, FileVault, firewall, remote access, accounts, background items, privacy, backups, credentials, and monitoring after a security assessment or incident.
- ▌ Build Acp Agent · gaelic-ghost bundleDesign, implement, test, and package an ACP agent/server. Use for protocol negotiation, sessions, streaming updates, tool rendering, permissions, authentication, SDK choice, and registry submission.
- ▌ Mailkit Workflow · gaelic-ghost bundleDesign macOS MailKit extensions for content blocking, message actions, compose sessions, and message security with explicit privacy, capability, target, and validation boundaries. Use when a macOS app needs to extend Apple Mail.
- ▌ Operate Zed Agent · gaelic-ghost bundleConfigure and troubleshoot Zed Agent, ACP External Agents, and Terminal Threads. Use for Zed Skills, MCP, profiles, permissions, registry installs, custom agents, and ACP logs.
- ▌ Soto AWS Workflow · gaelic-ghost bundleAdd, review, or migrate AWS integrations in server-side Swift using Soto as the standard SDK, with one shared AWSClient per application or Lambda environment and explicit single-owner shutdown.
- ▌ Connect Hopper MCP · gaelic-ghost bundleConnect an installed Hopper MCP server safely from Codex or Hermes for document navigation, assembly, pseudocode, strings, procedures, and cross-references with a private profile, read-only allowlist, approvals, and data boundaries.
- ▌ Slack App Workflow · gaelic-ghostPlan, build, and validate Slack workspace apps with OAuth, Events API, interactivity, slash commands, modals, and Socket Mode.
- ▌ Assess Macos Threat · gaelic-ghost bundleAssess a suspected macOS threat using exact host and artifact evidence. Use for suspicious apps, processes, downloads, profiles, extensions, alerts, persistence, privacy, or network activity while keeping protections distinct.
- ▌ Author Yara X Rules · gaelic-ghost bundleAuthor, test, tune, and document YARA-X rules from validated artifact evidence. Use when suspicious files, scripts, documents, or binary features need local detection with stable patterns, fixtures, performance checks, and regression tests.
- ▌ Build Falco Web App · gaelic-ghostBuild or modify a Falco web application in idiomatic F#, using functional routing, request and response helpers, explicit ASP.NET Core integration, security boundaries, and focused tests.
- ▌ Route Security Work · gaelic-ghost bundleRoute an ambiguous cybersecurity request before tools run. Use for suspicious files, links, messages, host behavior, malware, vulnerability reports, authorized pentests, incidents, threat hunting, detection work, or security advice.
- ▌ Safari MCP Workflow · gaelic-ghost bundleInspect a scoped live site in Safari through Safari Technology Preview's local MCP server. Use for Safari-specific DOM, console, network, screenshot, accessibility, performance, interaction, responsive, or print-media evidence.
- ▌ Discord App Workflow · gaelic-ghostPlan, build, and validate Discord apps, bots, commands, interactions, Gateway event handling, and Activities using current Discord documentation.
- ▌ Map Malware Behavior · gaelic-ghost bundleMap observed malicious behavior to MITRE ATT&CK techniques. Use when analysis, telemetry, incident evidence, or a report needs a behavior map for detection, response, or communication without inferring an actor or campaign.
- ▌ Operate Hermes Agent · gaelic-ghost bundleInstall, update, migrate to, configure, run, secure, and troubleshoot Hermes Agent across its CLI, TUI, desktop, dashboard, profiles, tools, skills, memory, models, goals, voice, sessions, worktrees, and terminal backends.
- ▌ Sms Mms Rcs Workflow · gaelic-ghostPlan, build, and validate consent-aware SMS, MMS, and RCS business messaging agents, including sender setup, webhooks, rich content, delivery, and fallback.
- ▌ Teams Agent Workflow · gaelic-ghostPlan, build, and validate Microsoft Teams bots and agents with Teams SDK or Microsoft 365 Agents SDK, Microsoft Entra, Adaptive Cards, and tenant deployment boundaries.
- ▌ Build Giraffe Web App · gaelic-ghostBuild or modify a Giraffe web application in idiomatic F#, using composable HttpHandler functions, explicit ASP.NET Core integration, configuration, authentication, and focused endpoint tests.
- ▌ Maintain Project Repo · gaelic-ghost bundleInstall or refresh deterministic FSX repository maintenance, maintain all four canonical project documents, validate and synchronize repository assets, and operate protected-main releases.
- ▌ Push To Talk Workflow · gaelic-ghostBuild an Apple Push to Talk channel experience with system controls, ephemeral PTT pushes, audio-session ownership, and an app-owned communication backend.
- ▌ Telegram Bot Workflow · gaelic-ghostPlan, build, and validate Telegram Bot API integrations, webhooks or polling, inline interactions, and Mini Apps.
- ▌ Test Network Services · gaelic-ghost bundleTest authorized network services with bounded discovery and protocol-aware validation. Use for hosts, ranges, ports, TLS, banners, versions, authentication, exposure, segmentation, configuration, packet evidence, or vulnerability checks.
- ▌ Build Oxpecker Web App · gaelic-ghostBuild or modify an Oxpecker web application in idiomatic F#, using endpoint routing, functional EndpointHandler and EndpointMiddleware composition, ASP.NET Core metadata, and focused endpoint tests.
- ▌ Maintain Agent Plugins · gaelic-ghost bundleCreate or align agent plugin repositories, install deterministic managed FSX plugin maintenance, and validate or apply the whole plugin set through exactly two aggregate Just commands.
- ▌ Orchestrate Agent Work · gaelic-ghost bundleCoordinate bounded worker tasks with a launch envelope, report-back, escalation, and synthesis contract. Use before spawning, resuming, steering, cancelling, or closing subagents.
- ▌ Script Hopper Analysis · gaelic-ghost bundleAutomate repeatable Hopper analysis with its installed Python SDK or extension APIs. Use for deterministic queries, controlled annotations, structured exports, or a scriptable document operation with a checkpointed evidence trail.
- ▌ Sourcekit Lsp Workflow · gaelic-ghost bundleConfigure or diagnose SourceKit-LSP across SwiftPM, compilation databases, and build servers. Use for completion, navigation, refactoring, diagnostics, semantic tokens, indexing, generated files, or editor-client failures.
- ▌ Validate Vulnerability · gaelic-ghost bundleValidate a vulnerability claim in an authorized environment. Use for scanner candidates, advisories, CVEs, PoCs, source concerns, configuration weaknesses, or regressions with a safe proof and controls.
- ▌ Benchmark Model Runtime · gaelic-ghost bundleBenchmark model runtimes across latency, throughput, memory, energy, load time, size, and stability. Use when comparing Core AI, Core ML, MLX, ExecuTorch, PyTorch, quantization, devices, or packaging.
- ▌ Build Jvm Agent Service · gaelic-ghostBuild a local-first Java or Kotlin Google ADK agent service with explicit tools, model capability checks, evaluation fixtures, and draft-before-write promotion.
- ▌ Design Model Experiment · gaelic-ghost bundleDesign a reproducible model experiment with hypotheses, controls, baselines, metrics, budgets, provenance, artifacts, and stop conditions. Use before model work whose results must support a decision.
- ▌ Evaluate Language Model · gaelic-ghost bundleDesign repeatable language-model capability, quality, behavior, regression, or safety evaluations. Use when creating cases and graders, comparing a treatment with a baseline, or deciding whether a checkpoint passes.
- ▌ Maintain Project Agents · gaelic-ghost bundleMaintain AGENTS.md as the agent-policy member of the canonical four-document repository suite.
- ▌ Maintain Project Readme · gaelic-ghost bundleMaintain README.md as the product-facing member of the canonical four-document repository suite.
- ▌ Python Testing Workflow · gaelic-ghost bundleSet up, run, and improve Python tests in uv projects and workspaces. Use for pytest configuration, focused and package-targeted runs, fixtures, parametrization, async and integration tests, coverage, CI parity, or failure triage.
- ▌ Use Objective See Tools · gaelic-ghost bundleUse installed Objective-See macOS security tools as evidence adapters. Use for KnockKnock, BlockBlock, LuLu, ProcessMonitor, FileMonitor, WhatsYourSign, TaskExplorer, or related tools with explicit permissions, limits, and ownership.
- ▌ Author Detection Content · gaelic-ghost bundleTurn validated security behavior into tested detection content. Use for Sigma, osquery, YARA-X, endpoint or SIEM queries, cloud detections, correlation, alert enrichment, and fixtures with explicit telemetry and false-positive controls.
- ▌ Fine Tune Language Model · gaelic-ghost bundlePlan supervised fine-tuning, LoRA, QLoRA, or full-parameter training with reproducible evaluation gates. Use when adapting a checkpoint or choosing precision, adapters, optimization, checkpointing, or resume behavior.
- ▌ Hunt Security Indicators · gaelic-ghost bundleHunt scoped systems and telemetry for supplied indicators or behaviors. Use for hashes, paths, domains, addresses, accounts, processes, persistence, ATT&CK behaviors, cloud events, or incident expansion with explicit scope and validation.
- ▌ Maintain Project Roadmap · gaelic-ghost bundleMaintain ROADMAP.md as the planning member of the canonical four-document repository suite.
- ▌ Triage Security Incident · gaelic-ghost bundleTriage a suspected incident across endpoints, identities, applications, cloud resources, networks, or data. Use when an alert, compromise, disruption, unauthorized access, malware, credential concern, or exposure needs scope and ownership.
- ▌ Assess And Explain Threat · gaelic-ghost bundleAssess whether suspicious evidence indicates a real threat and explain it plainly. Use for confidence, protective actions, uncertainty, impact, and advice after artifact, endpoint, identity, or incident evidence.
- ▌ Bootstrap Xcode Workspace · gaelic-ghost bundleCreate, adopt, extend, and align one Swift product workspace with app, extension, package, and service components under one permanent Xcode entrypoint.
- ▌ Check Artifact Reputation · gaelic-ghost bundleCheck reputation for a suspicious artifact, signer, hash, URL, domain, certificate, package, or vendor. Use when threat intelligence informs triage while privacy, stale data, false positives, and behavior limits stay explicit.
- ▌ Choose Model Lab Workflow · gaelic-ghost bundleRoute language-model training, data, evaluation, checkpoint, representation, steering, ablation, jailbreak, tool-calling, Apple-runtime, and benchmark requests. Use when the primary workflow or Socket owner is unclear.
- ▌ Compare Model Checkpoints · gaelic-ghost bundleCompare base, adapter, merged, quantized, converted, or intervention-derived checkpoints. Use when selecting an artifact, investigating regression, verifying packaging, or balancing quality, safety, size, and runtime.
- ▌ Contain And Recover Macos · gaelic-ghost bundleContain a macOS threat and verify recovery. Use for isolation, process or service containment, credential response, persistence removal, quarantine, restore, erase/reinstall, monitoring, and return-to-service decisions.
- ▌ Contain Security Incident · gaelic-ghost bundleContain an active or credible incident across hosts, identities, applications, cloud resources, networks, or data. Use when access, execution, exfiltration, fraud, destruction, or repeated compromise needs authorized interruption.
- ▌ Design N8n Agent Workflow · gaelic-ghostDesign safe n8n workflows with deterministic routing, credentials, idempotency, recovery, local-model checks, drafts, and exact approval gates.
- ▌ Inspect Macos Persistence · gaelic-ghost bundleInspect macOS persistence and recurring execution without deleting evidence. Use for login items, launch agents or daemons, extensions, profiles, shell startup files, scheduled tasks, browser extensions, helpers, and startup behavior.
- ▌ Recover Security Incident · gaelic-ghost bundleRecover from an incident by eradicating compromise and restoring service. Use when hosts, identities, applications, cloud resources, network controls, or data need rebuild, patching, rotation, repair, validation, and return to service.
- ▌ Select Analysis Isolation · gaelic-ghost bundleSelect isolation before inspecting or executing untrusted content. Use for local analysis, a container, Linux or macOS VM, remote sandbox, or spare device with defined network, mounts, credentials, snapshots, evidence export, and teardown.
- ▌ Test Web And API Security · gaelic-ghost bundleTest an authorized web application or API using OWASP guidance. Use for authentication, authorization, sessions, input, schemas, business logic, file handling, server-side requests, configuration, transport, errors, and data exposure.
- ▌ Triage Suspicious Content · gaelic-ghost bundleSafely classify suspicious files, archives, installers, packages, scripts, documents, profiles, browser extensions, URLs, QR codes, messages, and nested payloads before execution. Use when someone needs the smallest safe next analysis step.
- ▌ Voip Sip Calling Workflow · gaelic-ghostBuild a native Apple VoIP calling app by separating CallKit or LiveCommunicationKit, PushKit, AVFAudio, SIP or WebRTC transport, and call-state ownership.
- ▌ Assess Exposure And Impact · gaelic-ghost bundlePrioritize a vulnerability using actual asset exposure and impact. Use when versions, reachability, prerequisites, privileges, data, exploit maturity, mitigations, detection, business criticality, and urgency matter beyond CVSS.
- ▌ Build Dotnet Agent Service · gaelic-ghostBuild a local-first F# or C# Semantic Kernel agent service with explicit tools, model capability checks, evaluation fixtures, and draft-before-write promotion.
- ▌ Choose Apple Model Runtime · gaelic-ghost bundleCompare and select Core AI, Core ML, MLX, MLX Swift, MLX LM, ExecuTorch Apple delegates, or Foundation Models. Use when an Apple model workflow needs a runtime choice and implementation handoff.
- ▌ Coordinate External Agents · gaelic-ghost bundleCoordinate independently operated external agents through durable handoffs. Use when work crosses hosts, sessions, accounts, services, queues, boards, pull requests, or human-owned task systems and cannot rely on an in-run subagent result.
- ▌ Hermes Agent Compatibility · gaelic-ghost bundleAudit Socket-to-Hermes compatibility across Agent Skills, Codex plugins, MCP, hooks, apps, agents, and Hermes extension systems. Use for skill exports, config translations, and Hermes adapter decisions.
- ▌ Leaf Rendered Web Workflow · gaelic-ghostPlan, implement, test, and diagnose Leaf-rendered Vapor sites and HTML email with typed contexts, layouts, partials, custom tags, escaping, accessibility, assets, caching, and rendering tests.
- ▌ Maintain Github Repository · gaelic-ghost bundleAudit or align a GitHub repository's server-side settings, rulesets, security automation, Dependabot, and sign-off policy. Use for server-side GitHub policy work, not ordinary local Git commits, PR collaboration, or releases.
- ▌ Preserve Security Evidence · gaelic-ghost bundlePreserve security evidence before analysis, containment, or remediation changes it. Use for artifacts, volatile host state, vulnerability validation, records, logs, screenshots, commands, hashes, timelines, and reproducible handoffs.
- ▌ Report Security Assessment · gaelic-ghost bundleWrite a security assessment or penetration-test report from evidence. Use when findings, scope, methodology, limitations, impact, remediation, retest criteria, and an executive explanation need calibrated reporting.
- ▌ Use Nous Research Services · gaelic-ghost bundleUse and troubleshoot Nous Research services with Hermes Agent, including Nous Portal inference, Tool Gateway backends, Nous Chat, subscription proxy, and Hermes Cloud hosted deployment.
- ▌ Whatsapp Business Workflow · gaelic-ghostPlan and validate official WhatsApp Business messaging integrations, including onboarding, webhooks, conversation policy, templates, consent, and provider boundaries.
- ▌ Choose Fsharp Web Framework · gaelic-ghostChoose an F# web application framework before implementation, comparing ASP.NET Core Minimal APIs, Giraffe, Falco, Oxpecker, and Saturn by application shape, composition model, dependencies, testing, and deployment boundaries.
- ▌ Choose Platform Integration · gaelic-ghostChoose a supported chat, calling, business-messaging, or collaboration integration before implementation. Use for Discord, Telegram, Slack, Teams, WhatsApp Business, SMS/MMS/RCS, Google Meet, iMessage collaboration, and Apple VoIP.
- ▌ Diagnose Apple Entitlements · gaelic-ghost bundleTrace Apple entitlements across project source, account/profile authorization, final signed main or nested code, and runtime policy or consent. Use for missing or rejected entitlements, export-only failures, helpers, and re-signing.
- ▌ Evaluate Tool Calling Model · gaelic-ghost bundleEvaluate tool selection, arguments, schemas, execution, observation use, recovery, and side effects. Use when comparing tool-capable checkpoints, prompts, parsers, agent loops, function schemas, or harnesses.
- ▌ Triage Vulnerability Report · gaelic-ghost bundleTriage a vulnerability report, scanner result, advisory, CVE, PoC, bug bounty, ticket, or researcher note. Use when affected versions, credibility, prerequisites, evidence, applicability, validation, and exposure must be established.
- ▌ Webhook And Event Lifecycle · gaelic-ghostDesign and repair secure inbound events, webhooks, interactions, retries, acknowledgements, and delivery observability for messaging and collaboration platforms.