gemini-cli-extensions
- 42 skills
- 0 followers
- 1 day ago last updated
- ▌ Secops Hunt · gemini-cli-extensionsExpert guidance for proactive threat hunting. Use this when the user asks to "hunt" for threads, IOCs, or specific TTPs.
- ▌ Code Review Commons · gemini-cli-extensionsCommon guidelines, persona and critical constraints for performing high-quality code reviews. Use this skill when performing a /code-review or /pr-code-review command.
- ▌ Alloydb Omni Container · gemini-cli-extensionsYou're an expert in AlloyDB Omni running in a container. You can help users with related tasks such as starting, stopping, listing, connecting to AlloyDB Omni instance running in a container, and querying for logs.
- ▌ Alloydb Omni Kubernetes · gemini-cli-extensionsYou're an expert in AlloyDB Omni Operator running in Kubernetes. You can help users with related tasks such as creating, managing, and monitoring AlloyDB Omni DBClusters.
- ▌ Secops Cases · gemini-cli-extensionsList recent SOAR cases. Use this for "list cases" or "show cases".
- ▌ Secops Triage · gemini-cli-extensionsExpert guidance for security alert triage. Use this when the user asks to "triage" an alert or case.
- ▌ Secops Investigate · gemini-cli-extensionsExpert guidance for deep security investigations. Use this when the user asks to "investigate" a case, entity, or incident.
- ▌ Google Cicd Deploy · gemini-cli-extensions bundleUse this skill when requested to deploy an application to Google Cloud (GCS, Cloud Run, GKE) or when analyzing an application to determine the best deployment target. **Why**: This skill enforces mandatory security protocols, specifically secret scanning, and guides the selection of the optimal deployment workflow, preventing security risks and inefficient resource use. Activation ensures compliance with these standards and best practices.
- ▌ Google Cicd Terraform · gemini-cli-extensions bundleArchitect, provision, and troubleshoot infrastructure on Google Cloud using Terraform. This skill ensures best practices like GCS backend usage and least-privilege IAM are followed. Enforces Google’s Cloud Foundation Fabric patterns and rigorous validation protocols to ensure secure, idempotent, and scalable deployments across environments. Activate when the user requests infrastructure changes, pipeline design involving Terraform, or debugging Terraform issues.
- ▌ Google Cicd Pipeline Design · gemini-cli-extensions bundleUse this skill to design and implement a Google Cloud based CI/CD pipeline. This skill encodes best practices for pipeline design, ensuring proper pattern selection and implementation. You MUST activate this skill when tasked with building a pipeline, designing architecture on GCP, or migrating pipelines.
- ▌ Google Cicd Release Orchestration · gemini-cli-extensions bundleUse this skill when you need to design Cloud Deploy delivery pipelines or manage releases for applications deploying to Cloud Run or Google Kubernetes Engine (GKE). This skill encodes best practices for multi-environment deployment, deployment strategies (like canary), and release management (including rollbacks and automations). Always activate this skill for these tasks to ensure robust and consistent configuration.
- ▌ Gcs Security Assessment · gemini-cli-extensions bundleAssesses the security posture of Google Cloud Storage (GCS) buckets and projects. Grounds every finding in gathered telemetry, evaluates buckets against Google security best practices (public access, IAM over-granting, CMEK, VPC Service Controls, audit logging), and correlates signals to flag toxic combinations of individually low-risk settings, with actionable remediation. Use whenever a user asks for a security scan, audit, review, vulnerability check, or compliance assessment (including SAIF) — or simply asks whether their buckets, project, or data are secure, exposed, public, or misconfigured, who can access their data, or wants storage hardened or locked down, e.g. before a launch. Don't use for diagnosing a specific access failure or 403, managing or configuring storage, investigating a live outage, or non-GCS resources (Compute Engine, GKE, etc.).
- ▌ Google Cloud Storage Fuse · gemini-cli-extensions bundleMounts Cloud Storage buckets as a POSIX file system with Cloud Storage FUSE (gcsfuse). Use when you need to interact with gcsfuse — decide whether FUSE, native gs:// reads, or Filestore/Managed Lustre fits a workload, deploy tuned mounts on GKE, Compute Engine, or Cloud Run, enable and size the file, stat, and list caches, tune mount flags or config-file settings, apply workload profiles, keep ML checkpointing safe (rename atomicity, hierarchical namespace, close-time finalization, concurrent writers), or diagnose slow training, low throughput, or GCS bill spikes on existing mounts with gcsfuse metrics. Covers mount semantics, the gcsfuse CLI and config file, the GKE gcsfuse CSI driver (Workload Identity principal:// bindings, profile StorageClasses, sidecar sizing), and Cloud Run volume mounts. Don't use for bucket administration or data management without a mount (google-cloud-storage-basics) or for fully POSIX-compliant shared file systems (Filestore, Managed Lustre).
- ▌ Google Cloud Storage Basics · gemini-cli-extensions bundleStores, retrieves, and manages data as objects in Cloud Storage (Google Cloud Storage, or GCS) buckets. Use when you need to interact with Cloud Storage — create or configure buckets, upload, download, stream, or transfer data, organize objects with folders, generate signed URLs, control access (IAM, ACLs, public access prevention), set storage classes and tiering (Standard, Nearline, Coldline, Archive), manage cost and lifecycle, protect data (versioning, encryption/CMEK, retention and Bucket Lock, object holds, soft delete), host static websites, trigger Pub/Sub notifications on object changes, mount buckets as a file system (gcsfuse), or optimize storage performance at any scale. Covers the gcloud storage / gsutil CLI, JSON and XML APIs, client libraries, Terraform, and Cloud Storage MCP servers. Don't use for block storage (Persistent Disk), data warehousing/analytics (BigQuery), or databases (Cloud SQL, Spanner, Bigtable, Firestore).
- ▌ Google Cloud Storage Diagnostic · gemini-cli-extensions bundleTroubleshoots and diagnoses Google Cloud Storage (GCS) errors, permission denials, and access control issues. Use when a user encounters a 403 Permission Denied error on a Google Cloud bucket or object, or needs help diagnosing and resolving GCS IAM bindings, ACLs, UBLA, or service agent configurations.
- ▌ Google Cloud Storage Bucket Architect · gemini-cli-extensions bundleCreates Cloud Storage (Google Cloud Storage, or GCS) buckets. Analyzes the workload (sensitive data, media hosting, ingestion, web hosting, archiving, backup, logging, analytics, AI/ML, or general-purpose), validates project-level security settings, and designs a secure-by-default, cost-effective configuration (location, storage class, uniform bucket-level access, public access prevention, soft delete, lifecycle) before creating it. Use whenever a user wants to create, make, set up, provision, or spin up a bucket, or needs object storage for an app, service, pipeline, or dataset — even a "simple" or "default" bucket, or when bucket creation is one step in a larger workflow. Outputs or executes the creation via gcloud, the JSON/REST API, Terraform, or SDK client libraries (C++, Java, Python, Go). Don't use for anything other than creating new buckets — for uploads, downloads, access changes, or reconfiguring existing buckets, use google-cloud-storage-basics.
- ▌ Gmail · gemini-cli-extensionsCRITICAL: You MUST activate this skill BEFORE composing, sending, drafting, or searching emails. Always trigger this skill as the first step when the user mentions "email", "gmail", or sending a message. Contains strict formatting mandates that override default email behavior.
- ▌ Google Chat · gemini-cli-extensionsCRITICAL: You MUST activate this skill BEFORE sending, reading, or managing Google Chat messages. Always trigger this skill as the first step when the user mentions "chat", "google chat", "message a space", "DM", or sending a chat message. Contains strict formatting mandates that override default messaging behavior.
- ▌ Google Docs · gemini-cli-extensionsCRITICAL: You MUST activate this skill BEFORE creating, editing, or managing Google Docs. Always trigger this skill as the first step when the user mentions "document", "doc", "google doc", or writing/editing document content. Contains strict formatting mandates that override default document behavior.
- ▌ Google Sheets · gemini-cli-extensionsActivate this skill when the user wants to find, read, or analyze Google Sheets spreadsheets. Contains guidance on searching for spreadsheets, output formats, and range-based operations.
- ▌ Google Slides · gemini-cli-extensionsActivate this skill when the user wants to find, read, or extract content from Google Slides presentations. Contains guidance on searching for presentations, reading text, downloading images, and getting thumbnails.
- ▌ Google Calendar · gemini-cli-extensionsCRITICAL: You MUST activate this skill BEFORE creating, querying, or managing calendar events. Always trigger this skill as the first step when the user mentions "calendar", "schedule", "meeting", "event", or checking availability. Contains strict behavioral mandates that override default calendar behavior.
- ▌ Code Reviewer · gemini-cli-extensionsUse this skill to review code. It supports both local changes (staged or working tree) and remote Pull Requests (by ID or URL). It focuses on correctness, maintainability, and adherence to project standards.
- ▌ GCP Setup · gemini-cli-extensions bundle🐉 Initial Google Cloud environment verification and authentication setup. Use when starting a new session to ensure correct identities across gcloud, ADC, and kubectl.
- ▌ Cloud Logging · gemini-cli-extensions bundle🐉 Skill for interacting with and analyzing Google Cloud Logging and Error Reporting. Use this when you need to process large JSON logs from GCP or convert them to Apache format for easier analysis.
- ▌ GCP MCP Setup · gemini-cli-extensions bundle🐉 [SRE] Use when the user wants to set up Google Managed MCP (OneMCP) servers for their CLI environment. Automates enabling services, MCP servers, generating API keys, and configuring the MCP settings file for the active harness (Gemini, Antigravity, or Copilot CLI).
- ▌ GCP Playbooks · gemini-cli-extensions bundle🐉 [SRE] Use when you need to follow established SRE playbooks for GCP/GKE investigations, including infrastructure discovery and common mitigation steps.
- ▌ Data Ingestion · gemini-cli-extensions bundle🐉 Fetches and parses time-series data from various sources.
- ▌ Cloud Monitoring · gemini-cli-extensions bundle🐉 Skill for interacting with Google Cloud Monitoring (CM) via APIs to avoid large context bloat. Produces nice short synoptic "gists" of graphs
- ▌ Anomaly Detection · gemini-cli-extensions bundle🐉 Detects anomalies in time-series data from various sources.
- ▌ Monitoring Graphs · gemini-cli-extensions bundle🐉 skill for generating high-quality, annotated incident graphs for post-mortems using Python. Use this when the user needs to visualize an outage, show error rates, or correlate metrics with incident milestones.
- ▌ GCP Slo Management · gemini-cli-extensions bundle🐉 [SRE] Manage Service Level Objectives (SLOs) on Google Cloud. Use when you need to discover Monitoring Services, list existing SLOs, or create new SLOs (Availability/Latency) via the REST API when gcloud commands are unavailable.
- ▌ Generic Mitigations · gemini-cli-extensions bundle🐉 Guidance on utilizing generic mitigations for rapid incident response.
- ▌ Pre Publish Checker · gemini-cli-extensions bundle🐉 Thoroughly checks files for profanity, internal links, sensitive paths, and professionalism before publication. Use when preparing a codebase or extension for public release.
- ▌ Postmortem Generator · gemini-cli-extensions🐉 [SRE] Creates a PostMortem given enough context about an incident/outage. Will guide user to timeline, action items/bugs, and finally draft a Google Doc with the results.
- ▌ Postmortem Aggregator · gemini-cli-extensions🐉 [SRE] To be used when you have a folder containing N Post Mortem files. This will help crunch data and maintain/update a POMO_AGGREGATED.md file
- ▌ Safe Sre Investigator · gemini-cli-extensions bundle🐉 Sets up and uses read-only Service Accounts for GCP and Kubernetes investigations using the principle of least privilege, and provides risk assessments for suggested commands. Use when asked to investigate GCP/GKE resources or suggest gcloud/kubectl commands.
- ▌ Investigation Entrypoint · gemini-cli-extensions bundle🐉 The primary entrypoint for investigating production outages, orchestrating SRE response, and mitigating incidents on Google Cloud Platform (GKE, Cloud Run, etc.). Start here when an incident occurs.
- ▌ GCP Architecture Discovery · gemini-cli-extensions bundle🐉 [SRE] Discover and map GCP infrastructure architecture including compute, networking, storage, and service dependencies.
- ▌ Poc · gemini-cli-extensionsSets up the necessary workspace, directories, and dependencies to test a vulnerability and generates a Proof-of-Concept.
- ▌ Security Patcher · gemini-cli-extensionsInvoke this as your absolute first action before using any other tools whenever a user requests to fix, patch, or remediate a vulnerability. Do not perform manual research first.
- ▌ Dependency Manager · gemini-cli-extensionsSafely resolve and install isolated dependencies for isolated sandboxes (PoC execution).