all publishers

thedixitjain

@thedixitjain source repo

10,417 published skills · page 21 of 105

  1. ▌
    Jpsp Open Science And Transparency · thedixitjain
    Use when meeting the Journal of Personality and Social Psychology (JPSP) transparency requirements — TOP Guidelines at Level 2, JARS reporting, data/code/materials disclosure to a trusted repository, preregistration status, and Registered Reports. Guides compliance; it does not create data or post your files for you.
    2 repo stars
  2. ▌
    Psci Open Science And Transparency · thedixitjain
    Use when meeting Psychological Science's open-science requirements. For submissions on or after 1 January 2024 the journal requires open data and materials (case-by-case exemptions), a Research Transparency Statement placed between the Introduction and Methods, persistent identifiers for shared content, and treats transparency limits and preregistration quality as factors in editorial decisions. Prepares compliance; it does not waive requirements.
    2 repo stars
  3. ▌
    Usenix Annual Technical Conference · thedixitjain
    Use when targeting USENIX Annual Technical Conference (USENIX ATC) or deciding whether a computer-science manuscript fits this venue. Encodes conference fit, framing, evidence bar, submission-cycle checks, rebuttal posture, and desk-reject risks for systems.
    2 repo stars
  4. ▌
    Analyzing PDF Malware With Pdfid · thedixitjain bundle
    'Analyzes malicious PDF files using PDFiD, pdf-parser, and peepdf to identify embedded JavaScript, shellcode, exploits, and suspicious objects without opening the document. Determines the attack vector and extracts embedded payloads for further analysis. Activates for requests involving PDF malware analysis, malicious document analysis, PDF exploit investigation, or suspicious attachment triage. '
    2 repo stars
  5. ▌
    Deobfuscating Javascript Malware · thedixitjain bundle
    'Deobfuscates malicious JavaScript code used in web-based attacks, phishing pages, and dropper scripts by reversing encoding layers, eval chains, string manipulation, and control flow obfuscation to reveal the original malicious logic. Activates for requests involving JavaScript malware analysis, script deobfuscation, web skimmer analysis, or obfuscated dropper investigation. '
    2 repo stars
  6. ▌
    Dependency Management Deps Audit · thedixitjain bundle
    You are a dependency security expert specializing in vulnerability scanning, license compliance, and supply chain security. Analyze project dependencies for known vulnerabilities, licensing issues, outdated packages, and provide actionable remediation strategies.
    2 repo stars
  7. ▌
    Dependency Vulnerability Checker · thedixitjain
    'Validate dependency vulnerability checker operations. Auto-activating skill for Security Fundamentals. Triggers on: dependency vulnerability checker, dependency vulnerability checker Part of the Security Fundamentals skill category. Use when working with dependency vulnerability checker functionality. Trigger with phrases like "dependency vulnerability checker", "dependency checker", "dependency". '
    2 repo stars
  8. ▌
    Detecting Malicious NPM Packages · thedixitjain bundle
    Triage npm packages for install-script malware, exfiltration, and worming behavior.
    2 repo stars
  9. ▌
    Hunting For Shadow Copy Deletion · thedixitjain bundle
    Hunt for Volume Shadow Copy deletion activity that indicates ransomware preparation or anti-forensics by monitoring vssadmin, wmic, and PowerShell shadow copy commands.
    2 repo stars
  10. ▌
    Insecure Deserialization Checker · thedixitjain
    'Validate insecure deserialization checker operations. Auto-activating skill for Security Fundamentals. Triggers on: insecure deserialization checker, insecure deserialization checker Part of the Security Fundamentals skill category. Use when working with insecure deserialization checker functionality. Trigger with phrases like "insecure deserialization checker", "insecure checker", "insecure". '
    2 repo stars
  11. ▌
    Performing Osint With Spiderfoot · thedixitjain bundle
    Automate OSINT collection using SpiderFoot REST API and CLI for target profiling, module-based reconnaissance, and structured result analysis across 200+ data sources
    2 repo stars
  12. ▌
    Performing Service Account Audit · thedixitjain bundle
    Audit service accounts across enterprise infrastructure to identify orphaned, over-privileged, and non-compliant accounts. This skill covers discovery of service accounts in Active Directory, cloud pl
    2 repo stars
  13. ▌
    Responding To Security Incidents · thedixitjain bundle
    'Analyze and guide security incident response, investigation, and remediation processes. Use when you need to handle security breaches, classify incidents, develop response playbooks, gather forensic evidence, or coordinate remediation efforts. Trigger with phrases like "security incident response", "ransomware attack response", "data breach investigation", "incident playbook", or "security forensics". '
    2 repo stars
  14. ▌
    Reverse Engineering Rust Malware · thedixitjain bundle
    Reverse engineer Rust-compiled malware using IDA Pro and Ghidra with techniques for handling non-null-terminated strings, crate dependency extraction, and Rust-specific control flow analysis.
    2 repo stars
  15. ▌
    Scanning For Data Privacy Issues · thedixitjain bundle
    Scan for data privacy issues and sensitive information exposure. Use when reviewing data handling practices. Trigger with 'scan privacy issues', 'check sensitive data', or 'validate data protection'.
    2 repo stars
  16. ▌
    Detection Engineering Coverage Evaluation · thedixitjain
    >- Automates the end-to-end detection engineering workflow in Google SecOps using MCP tools. Use when fetching threat intelligence from blogs, generating Threat Detection Opportunities (TDOs), simulating attacker behavior with synthetic UDM events, evaluating rule coverage, generating new YARA-L 2.0 rules to close coverage gaps, and with user approval, deploy them to SecOps. Don't use when asked to perform threat hunting actions, and SOC investigative actions.
    2 repo stars
  17. ▌
    Performing Arp Spoofing Attack Simulation · thedixitjain bundle
    'Simulates ARP spoofing attacks in authorized lab or pentest environments using arpspoof, Ettercap, and Scapy to demonstrate man-in-the-middle risks, test network detection capabilities, and validate ARP inspection countermeasures. '
    2 repo stars
  18. ▌
    Testing For Open Redirect Vulnerabilities · thedixitjain bundle
    Identify and test open redirect vulnerabilities in web applications by analyzing URL redirection parameters, bypass techniques, and exploitation chains for phishing and token theft.
    2 repo stars
  19. ▌
    Testing For XML Injection Vulnerabilities · thedixitjain bundle
    Test web applications for XML injection vulnerabilities including XXE, XPath injection, and XML entity attacks to identify data exposure and server-side request forgery risks.
    2 repo stars
  20. ▌
    Testing For Xxe Injection Vulnerabilities · thedixitjain bundle
    Discovering and exploiting XML External Entity injection vulnerabilities to read server files, perform SSRF, and exfiltrate data during authorized penetration tests.
    2 repo stars
  21. ▌
    LLM Application Dev Langchain Agent · thedixitjain
    You are an expert LangChain agent developer specializing in production-grade AI systems using LangChain 0.1+ and LangGraph.
    2 repo stars
  22. ▌
    Securing Agentic AI Tool Invocation · thedixitjain bundle
    Apply least-privilege tool allowlisting, identity binding, and human-in-the-loop controls for agent tool calls.
    2 repo stars
  23. ▌
    Analyzing Network Flow Data With Netflow · thedixitjain bundle
    Parse NetFlow v9 and IPFIX records to detect volumetric anomalies, port scanning, data exfiltration, and C2 beaconing patterns. Uses the Python netflow library to decode flow records, builds traffic baselines, and applies statistical analysis to identify flows with abnormal byte counts, connection durations, and periodic timing patterns.
    2 repo stars
  24. ▌
    Azure Resource Manager Postgresql Dotnet · thedixitjain
    | Azure PostgreSQL Flexible Server SDK for .NET. Database management for PostgreSQL Flexible Server deployments. Use for creating servers, databases, firewall rules, configurations, backups, and high availability. Triggers: "PostgreSQL", "PostgreSqlFlexibleServer", "PostgreSQL Flexible Server", "Azure Database for PostgreSQL", "PostgreSQL database management", "PostgreSQL firewall", "PostgreSQL backup", "Postgres".
    2 repo stars
  25. ▌
    Database Schema Designer · thedixitjain bundle
    Use when the user asks to create ERD diagrams, normalize database schemas, design table relationships, or plan schema migrations.
    2 repo stars
  26. ▌
    Exploiting API Injection Vulnerabilities · thedixitjain bundle
    'Tests APIs for injection vulnerabilities including SQL injection, NoSQL injection, OS command injection, LDAP injection, and Server-Side Request Forgery (SSRF) through API parameters, headers, and request bodies. The tester crafts malicious payloads targeting different backend technologies and injection contexts to extract data, execute commands, or access internal services. Maps to OWASP API8:2023 Security Misconfiguration and API7:2023 SSRF. Activates for requests involving API injection testing, SQLi in APIs, NoSQL injection, SSRF testing, or API input validation assessment. '
    2 repo stars
  27. ▌
    Exploiting SQL Injection Vulnerabilities · thedixitjain bundle
    'Identifies and exploits SQL injection vulnerabilities in web applications during authorized penetration tests using manual techniques and automated tools like sqlmap. The tester detects injection points through error-based, union-based, blind boolean, and time-based blind techniques across all major database engines (MySQL, PostgreSQL, MSSQL, Oracle) to demonstrate data extraction, authentication bypass, and potential remote code execution. Activates for requests involving SQL injection testing, SQLi exploitation, database security assessment, or injection vulnerability verification. '
    2 repo stars
  28. ▌
    Hunting For Data Exfiltration Indicators · thedixitjain bundle
    Hunt for data exfiltration through network traffic analysis, detecting unusual data flows, DNS tunneling, cloud storage uploads, and encrypted channel abuse.
    2 repo stars
  29. ▌
    Implementing Taxii Server With Opentaxii · thedixitjain bundle
    Deploy and configure an OpenTAXII server to share and consume STIX-formatted cyber threat intelligence using the TAXII 2.1 protocol for automated indicator exchange between organizations.
    2 repo stars
  30. ▌
    Accounting Organizations And Society · thedixitjain
    Use when targeting Accounting, Organizations and Society (AOS) or deciding whether an accounting manuscript fits this venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  31. ▌
    Gtm Board And Investor Communication · thedixitjain
    Board meeting preparation, investor updates, and executive communication. Use when preparing board decks, writing investor updates, handling bad news with the board, structuring QBRs, or building board-level metric discipline. Includes the "Three Things" narrative model, the 4-tier metric hierarchy, and the pre-brief pattern that prevents board surprises.
    2 repo stars
  32. ▌
    Configuring AWS Verified Access For Ztna · thedixitjain bundle
    Configure AWS Verified Access to provide VPN-less zero trust network access to internal applications using identity and device posture verification with Cedar policy language.
    2 repo stars
  33. ▌
    Exploiting Bgp Hijacking Vulnerabilities · thedixitjain bundle
    'Analyzes and simulates BGP hijacking scenarios in authorized lab environments to assess route origin validation, RPKI deployment, and BGP monitoring defenses against prefix hijacking and route leak attacks on internet routing infrastructure. '
    2 repo stars
  34. ▌
    Implementing Log Forwarding With Fluentd · thedixitjain bundle
    Configure Fluentd and Fluent Bit for centralized log aggregation, routing, filtering, and enrichment across distributed infrastructure
    2 repo stars
  35. ▌
    Implementing Scim Provisioning With Okta · thedixitjain bundle
    Implement automated user provisioning and deprovisioning using SCIM 2.0 protocol with Okta as the identity provider.
    2 repo stars
  36. ▌
    Performing Cloud Forensics Investigation · thedixitjain bundle
    Conduct forensic investigations in cloud environments by collecting and analyzing logs, snapshots, and metadata from AWS, Azure, and GCP services.
    2 repo stars
  37. ▌
    Performing Privilege Escalation On Linux · thedixitjain bundle
    Linux privilege escalation involves elevating from a low-privilege user account to root access on a compromised system. Red teams exploit misconfigurations, vulnerable services, kernel exploits, and w
    2 repo stars
  38. ▌
    Configuration Reference Generator · thedixitjain
    'Generate configuration reference generator operations. Auto-activating skill for Technical Documentation. Triggers on: configuration reference generator, configuration reference generator Part of the Technical Documentation skill category. Use when configuring systems or services. Trigger with phrases like "configuration reference generator", "configuration generator", "configuration". '
    2 repo stars
  39. ▌
    Obsidian Clipper Template Creator · thedixitjain bundle
    Guide for creating templates for the Obsidian Web Clipper. Use when you want to create a new clipping template, understand available variables, or format clipped content.
    2 repo stars
  40. ▌
    Analyzing Network Traffic With Wireshark · thedixitjain bundle
    'Captures and analyzes network packet data using Wireshark and tshark to identify malicious traffic patterns, diagnose protocol issues, extract artifacts, and support incident response investigations on authorized network segments. '
    2 repo stars
  41. ▌
    Conducting Post Incident Lessons Learned · thedixitjain bundle
    Facilitate structured post-incident reviews to identify root causes, document what worked and failed, and produce actionable recommendations to improve future incident response.
    2 repo stars
  42. ▌
    Copilot Instructions Blueprint Generator · thedixitjain
    Technology-agnostic blueprint generator for creating comprehensive copilot-instructions.md files that guide GitHub Copilot to produce code consistent with project standards, architecture patterns, and exact technology versions by analyzing existing codebase patterns and avoiding assumptions.
    2 repo stars
  43. ▌
    Implementing Network Segmentation For Ot · thedixitjain bundle
    'This skill covers implementing network segmentation in Operational Technology environments using VLANs, industrial firewalls, data diodes, and software-defined networking. It addresses the Purdue Model-based segmentation strategy, migration from flat networks to segmented architectures without disrupting operations, configuring OT-aware firewalls with industrial protocol deep packet inspection, and validating segmentation effectiveness through traffic analysis. '
    2 repo stars
  44. ▌
    Testing For System Prompt Leakage · thedixitjain bundle
    Extract and defend system prompts plus embedded secrets and routing logic.
    2 repo stars
  45. ▌
    Qdrant Search Quality Diagnosis · thedixitjain
    Diagnoses Qdrant search quality issues. Use when someone reports 'results are bad', 'wrong results', 'not relevant results', 'missing matches', 'recall is low', 'approximate search worse than exact', 'which embedding model', or 'quality dropped after quantization'. Also use when search quality degrades without obvious changes.
    2 repo stars
  46. ▌
    Annual Review Of Plant Biology · thedixitjain
    Use when targeting Annual Review of Plant Biology or deciding whether a plant-biology review proposal fits this invited-review venue. Encodes the journal's fit, the authoritative-synthesis and invited-article bar, evidence and balance expectations, house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  47. ▌
    Coordination Chemistry Reviews · thedixitjain
    Use when targeting Coordination Chemistry Reviews (CCR) or deciding whether a review fits this Elsevier venue for coordination, inorganic, and organometallic chemistry. Encodes the journal's fit, framing, evidence bar, house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  48. ▌
    Demog Data And Reproducibility · thedixitjain
    Use when preparing the data-availability statement and reproducibility materials for a Demography (PAA / Duke University Press) manuscript. Demography requires a data availability statement at acceptance with persistent identifiers and encourages reproducible, commented code; it hosts no repository, so authors deposit in a FAIR repository. Covers restricted-data exemptions. Prepares the materials; it does not waive requirements.
    2 repo stars
  49. ▌
    Devpsych Theory And Hypotheses · thedixitjain
    Use when stating the developmental theory and age-graded hypotheses for a Developmental Psychology (APA) manuscript. The journal rewards hypotheses that are explicitly about change (age effects, within-person trajectories, mechanisms) and a clean confirmatory/exploratory split under JARS. Structures the argument; it does not run analyses.
    2 repo stars
  50. ▌
    East China Economic Management · thedixitjain
    Use when targeting 《华东经济管理》(East China Economic Management — 中共安徽省委党校主办的经济管理综合月刊, 安徽合肥, CSSCI) or deciding whether a Chinese econ/management manuscript fits this venue. Encodes the journal's fit, framing, review timeline, house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  51. ▌
    En Humanities Journal Workflow · thedixitjain
    Use when deciding which English humanities journal skill to invoke next, comparing fit across the 36-journal humanities roadmap, or routing a manuscript before venue-specific re-framing. Routes by sub-field (history / philosophy / literary studies / classics / art history / religion / linguistics / musicology), contribution type (argument, interpretation, theory, edition), and the venue's house style and review norms.
    2 repo stars
  52. ▌
    Issues In Agricultural Economy · thedixitjain
    Use when targeting 《农业经济问题》(Issues in Agricultural Economy — 中国农业经济学会与中国农业科学院农业经济与发展研究所主办、农业农村部主管的农经综合月刊, 1980 年创刊, 双向匿名、收审稿费, iaecn.cn 投稿) or deciding whether a Chinese 三农/农经 manuscript fits this venue. Encodes the journal's fit, framing, fee/review policy, house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  53. ▌
    Jedpsych Theory And Hypotheses · thedixitjain
    Use when stating the learning/motivation theory and hypotheses for a Journal of Educational Psychology manuscript. JEP expects a clear psychological mechanism, directional hypotheses tied to that theory, and an honest separation of confirmatory (ideally preregistered) from exploratory analyses. Structures the argument; it does not run analyses.
    2 repo stars
  54. ▌
    Jep Evidence Without Equations · thedixitjain
    Use when presenting empirical or theoretical evidence credibly in a Journal of Economic Perspectives (JEP) article with minimal math — intuition, examples, well-chosen numbers, and honest caveats. Handles how evidence is conveyed in prose; defer figures/tables to jep-exhibits-for-general-readers and fairness across studies to jep-balance-and-objectivity.
    2 repo stars
  55. ▌
    Journal Of Accounting Research · thedixitjain
    Use when targeting Journal of Accounting Research (JAR) or deciding whether an accounting manuscript fits this venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  56. ▌
    Journal Of Consumer Psychology · thedixitjain
    Use when targeting Journal of Consumer Psychology (JCP) or deciding whether a consumer-psychology manuscript fits this venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  57. ▌
    Journal Of Economic Literature · thedixitjain
    Use when targeting Journal of Economic Literature (JEL) or deciding whether a survey/review article fits this venue. Encodes the journal's fit, framing, contribution bar, house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  58. ▌
    Journal Of High Energy Physics · thedixitjain
    Use when targeting Journal of High Energy Physics (JHEP) or deciding whether a high-energy physics manuscript fits this author-formatted, open-access SISSA/Springer venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  59. ▌
    Journal Of International Trade · thedixitjain
    Use when targeting 《国际贸易问题》(Journal of International Trade — 对外经济贸易大学主办、国家社科基金首批资助、不收费的国际贸易核心刊) or deciding whether a Chinese trade/open-economy manuscript fits this venue. Encodes the journal's fit, fee-free policy, online-only submission, house style, official re-check, and desk-reject heuristics.
    2 repo stars
  60. ▌
    Nature Reviews Methods Primers · thedixitjain
    Use when targeting Nature Reviews Methods Primers (Nat Rev Methods Primers) or deciding whether a cross-disciplinary methods "Primer" proposal fits this commissioned Springer Nature venue. Encodes the journal's fit, framing, methods-and-reproducibility bar, house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  61. ▌
    Progress In Aerospace Sciences · thedixitjain
    Use when targeting Progress in Aerospace Sciences or deciding whether an aerospace review article fits this venue. Encodes the journal's fit as a review venue, the comprehensive-survey and synthesis bar, the not-primary-research scope, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  62. ▌
    Quarterly Journal Of Economics · thedixitjain
    Use when targeting Quarterly Journal of Economics (QJE) or deciding whether an economics manuscript fits this venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  63. ▌
    Reports On Progress In Physics · thedixitjain
    Use when targeting Reports on Progress in Physics (RoPP) or deciding whether a physics review manuscript fits this IOP authoritative progress-report venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  64. ▌
    Science Translational Medicine · thedixitjain
    Use when targeting Science Translational Medicine (Sci Transl Med) or deciding whether a translational medicine manuscript fits this venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  65. ▌
    Scientific Management Research · thedixitjain
    Use when targeting 《科学管理研究》(Scientific Management Research — 内蒙古自治区软科学研究会主办的科学管理/科技政策双月刊) or deciding whether a Chinese S&T-management/policy manuscript fits this venue. Encodes the journal's fit, framing, bilingual abstract house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  66. ▌
    The American Historical Review · thedixitjain
    Use when targeting The American Historical Review (AHR) or deciding whether a history manuscript fits this venue. Encodes the journal's fit, the broad-significance argument bar, primary-source and historiographical expectations, Chicago house style and double-blind norms, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  67. ▌
    The Lancet Infectious Diseases · thedixitjain
    Use when targeting The Lancet Infectious Diseases or deciding whether an infectious diseases manuscript fits this venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  68. ▌
    The William And Mary Quarterly · thedixitjain
    Use when targeting The William and Mary Quarterly or deciding whether an early-American or Atlantic-world history manuscript fits this venue. Encodes the journal's fit, its primary-source and historiographical bar for "vast early America," Chicago house style and double-blind norms, official-submission re-check, and desk-reject heuristics.
    2 repo stars
  69. ▌
    Auditing GCP Iam Permissions · thedixitjain bundle
    'Auditing Google Cloud Platform IAM permissions to identify overly permissive bindings, primitive role usage, service account key proliferation, and cross-project access risks using gcloud CLI, Policy Analyzer, and IAM Recommender. '
    2 repo stars
  70. ▌
    Auth Implementation Patterns · thedixitjain bundle
    Build secure, scalable authentication and authorization systems using industry-standard patterns and modern best practices.
    2 repo stars
  71. ▌
    Container Security Hardening · thedixitjain bundle
    > Harden Docker/container images and runtime deployments with secure base images, non-root users, CVE scanning, SBOM/signing, seccomp/AppArmor, and Kubernetes pod security controls. Use for Dockerfile security reviews, container CVEs, image scanning, distroless images, or production hardening.
    2 repo stars
  72. ▌
    Correlating Threat Campaigns · thedixitjain bundle
    'Correlates disparate security incidents, IOCs, and adversary behaviors across time and organizations to identify unified threat campaigns, attribute them to common threat actors, and extract shared indicators for improved detection. Use when multiple incidents exhibit overlapping indicators, when sector-wide attack campaigns require cross-organizational analysis, or when building campaign-level intelligence products. Activates for requests involving campaign analysis, incident clustering, cross-organizational IOC correlation, or MISP correlation engine. '
    2 repo stars
  73. ▌
    Cosmos Vulnerability Scanner · thedixitjain bundle
    Scans Cosmos SDK blockchain modules and CosmWasm contracts for consensus-critical vulnerabilities — chain halts, fund loss, state divergence. 25 core + 16 IBC + 10 EVM + 3 CosmWasm patterns. Use when auditing custom x/ modules, reviewing IBC integrations, or assessing pre-launch chain security. Updated for SDK v0.53.x.
    2 repo stars
  74. ▌
    Exploiting Adcs With Certipy · thedixitjain bundle
    Enumerate and exploit Active Directory Certificate Services ESC1 through ESC16 misconfigurations with Certipy, including SAN abuse, NTLM relay to web enrollment (ESC8), and golden certificate forgery.
    2 repo stars
  75. ▌
    Github Codespaces Efficiency · thedixitjain bundle
    Audit and improve GitHub Codespaces efficiency. Use this skill when a user wants faster Codespaces startup, lower Codespaces spend, slim devcontainers, right-size machines, tune idle timeout, or scope prebuilds to branches with sustained usage.
    2 repo stars
  76. ▌
    Integrating Secrets Managers · thedixitjain bundle
    'Manage this skill enables AI assistant to seamlessly integrate with various secrets managers like hashicorp vault and aws secrets manager. it generates configurations and setup code, ensuring best practices for secure credential management. use this skill when... Use when appropriate context detected. Trigger with relevant phrases based on skill purpose. '
    2 repo stars
  77. ▌
    Privilege Escalation Methods · thedixitjain
    Provide comprehensive techniques for escalating privileges from a low-privileged user to root/administrator access on compromised Linux and Windows systems. Essential for penetration testing post-exploitation phase and red team operations.
    2 repo stars
  78. ▌
    Quality Manager Qms Iso13485 · thedixitjain bundle
    ISO 13485 Quality Management System implementation and maintenance for medical device organizations. Provides QMS design, documentation control, internal auditing, CAPA management, and certification support. Use when working with medical device quality systems, preparing for ISO 13485 audits, managing regulatory compliance documentation, setting up corrective actions, or building audit preparation programs. Useful for quality management, audit preparation, regulatory compliance, medical device documentation, and corrective action workflows.
    2 repo stars
  79. ▌
    Scanning For Gdpr Compliance · thedixitjain bundle
    Scan for GDPR compliance issues in data handling and privacy practices. Use when ensuring EU data protection compliance. Trigger with 'scan GDPR compliance', 'check data privacy', or 'validate GDPR'.
    2 repo stars
  80. ▌
    Scanning For Vulnerabilities · thedixitjain bundle
    'Execute this skill enables comprehensive vulnerability scanning using the vulnerability-scanner plugin. it identifies security vulnerabilities in code, dependencies, and configurations, including cve detection. use this skill when the user asks to scan fo... Use when appropriate context detected. Trigger with relevant phrases based on skill purpose. '
    2 repo stars
  81. ▌
    Securing AWS Iam Permissions · thedixitjain bundle
    'This skill guides practitioners through hardening AWS Identity and Access Management configurations to enforce least privilege access across cloud accounts. It covers IAM policy scoping, permission boundaries, Access Analyzer integration, and credential rotation strategies to reduce the blast radius of compromised identities. '
    2 repo stars
  82. ▌
    Solana Vulnerability Scanner · thedixitjain bundle
    Scans Solana programs for 6 critical vulnerabilities including arbitrary CPI, improper PDA validation, missing signer/ownership checks, and sysvar spoofing. Use when auditing Solana/Anchor programs.
    2 repo stars
  83. ▌
    Arpsych Comprehensiveness And Balance · thedixitjain
    Use when checking that an Annual Review of Psychology (ARPsych) review covers the literature even-handedly — across labs, paradigms, and rival theories — weighs evidence by credibility, and avoids self-promotion. Audits coverage and fairness; it does not build the search (arpsych-literature-synthesis) or design the spine (arpsych-organizing-framework).
    2 repo stars
  84. ▌
    Azure Microsoft Playwright Testing TS · thedixitjain
    Run Playwright tests at scale using Azure Playwright Workspaces (formerly Microsoft Playwright Testing). Use when scaling browser tests across cloud-hosted browsers, integrating with CI/CD pipelines, or publishing test results to the Azure portal.
    2 repo stars
  85. ▌
    Performing Purple Team Atomic Testing · thedixitjain bundle
    'Executes Atomic Red Team tests mapped to MITRE ATT&CK techniques, performs coverage gap analysis across the ATT&CK matrix, and runs detection validation loops to measure blue team visibility. Covers Invoke-AtomicRedTeam PowerShell execution, ATT&CK Navigator layer generation for heatmaps, Sigma rule correlation, and continuous atomic testing pipelines. Activates for requests involving purple team exercises, atomic test execution, ATT&CK coverage assessment, detection engineering validation, or adversary emulation testing. '
    2 repo stars
  86. ▌
    Performing Web Cache Poisoning Attack · thedixitjain bundle
    Exploiting web cache mechanisms to serve malicious content to other users by poisoning cached responses through unkeyed headers and parameters during authorized security tests.
    2 repo stars
  87. ▌
    Testing API Authentication Weaknesses · thedixitjain bundle
    'Tests API authentication mechanisms for weaknesses including broken token validation, missing authentication on endpoints, weak password policies, credential stuffing susceptibility, token leakage in URLs or logs, and session management flaws. The tester evaluates JWT implementation, API key handling, OAuth flows, and session token entropy to identify authentication bypasses. Maps to OWASP API2:2023 Broken Authentication. Activates for requests involving API authentication testing, token validation assessment, credential security testing, or API auth bypass. '
    2 repo stars
  88. ▌
    Artbull Structure And Exposition · thedixitjain
    Use when organizing an Art Bulletin article so the argument unfolds clearly and the figures are integrated at the right moments within the ~16,000-word limit including endnotes. Art-historical exposition must move the reader through the objects, not around them. Shapes structure; it does not write the prose or do the analysis.
    2 repo stars
  89. ▌
    Jep Exhibits For General Readers · thedixitjain
    Use when designing figures and tables for a Journal of Economic Perspectives (JEP) article aimed at a broad audience — clarity over density, self-explanatory exhibits. Handles exhibit design; defer prose evidence to jep-evidence-without-equations and overall structure to jep-narrative-arc.
    2 repo stars
  90. ▌
    Mermaid Sequence Diagram Creator · thedixitjain
    'Create mermaid sequence diagram creator operations. Auto-activating skill for Visual Content. Triggers on: mermaid sequence diagram creator, mermaid sequence diagram creator Part of the Visual Content skill category. Use when working with mermaid sequence diagram creator functionality. Trigger with phrases like "mermaid sequence diagram creator", "mermaid creator", "mermaid". '
    2 repo stars
  91. ▌
    Azure AI Agents Persistent Java · thedixitjain bundle
    | Azure AI Agents Persistent SDK for Java. Low-level SDK for creating and managing AI agents with threads, messages, runs, and tools. Triggers: "PersistentAgentsClient", "persistent agents java", "agent threads java", "agent runs java", "streaming agents java".
    2 repo stars
  92. ▌
    Fleet Hunting With Velociraptor · thedixitjain bundle
    Deploy a Velociraptor server and agents and write VQL hunts across a fleet.
    2 repo stars
  93. ▌
    Foundry Hosted Agent Copilotkit · thedixitjain bundle
    Ongoing development guidance for agentic web apps that pair a CopilotKit frontend with Microsoft Agent Framework agents on Azure AI Foundry hosted agents over the AG-UI protocol - add and gate agent tools, wire human-in-the-loop approvals, build generative UI and shared state, debug the event stream, upgrade pre-1.0 packages safely, and deploy hosted agent updates.
    2 repo stars
  94. ▌
    Workflow Orchestration Patterns · thedixitjain
    Master workflow orchestration architecture with Temporal, covering fundamental design decisions, resilience patterns, and best practices for building reliable distributed systems.
    2 repo stars
  95. ▌
    Data Engineering Data Driven Feature · thedixitjain
    Build features guided by data insights, A/B testing, and continuous measurement using specialized agents for analysis, implementation, and experimentation.
    2 repo stars
  96. ▌
    Data Quality Auditor · thedixitjain bundle
    Audit datasets for completeness, consistency, accuracy, and validity. Profile data distributions, detect anomalies and outliers, surface structural issues, and produce an actionable remediation plan. Use when the user asks to check data quality, profile a dataset, hunt outliers or missing values, or validate data before analysis or model training.
    2 repo stars
  97. ▌
    Detecting SQL Injection Via Waf Logs · thedixitjain bundle
    Analyze WAF (ModSecurity/AWS WAF/Cloudflare) logs to detect SQL injection attack campaigns. Parses ModSecurity audit logs and JSON WAF event logs to identify SQLi patterns (UNION SELECT, OR 1=1, SLEEP(), BENCHMARK()), tracks attack sources, correlates multi-stage injection attempts, and generates incident reports with OWASP classification.
    2 repo stars
  98. ▌
    Ectheory Replication And Data Policy · thedixitjain
    Use to handle reproducibility and the supplementary-material file for an Econometric Theory (ET) paper — ET has no mandatory data/code archive (theory journal); the relevant policy is the voluntary online Supplementary Material for already-reviewed proofs, derivations, and simulation evidence.
    2 repo stars
  99. ▌
    Exploiting SQL Injection With Sqlmap · thedixitjain bundle
    Detecting and exploiting SQL injection vulnerabilities using sqlmap to extract database contents during authorized penetration tests.
    2 repo stars
  100. ▌
    Implementing Pam For Database Access · thedixitjain bundle
    Deploy privileged access management for database systems including Oracle, SQL Server, PostgreSQL, and MySQL. Covers session proxy configuration, credential vaulting, query auditing, dynamic credentia
    2 repo stars