thedixitjain
- 10k skills
- 0 followers
- 2 repo stars
- 2 weeks ago last updated
- ▌ Jpsp Open Science And Transparency · thedixitjainUse when meeting the Journal of Personality and Social Psychology (JPSP) transparency requirements — TOP Guidelines at Level 2, JARS reporting, data/code/materials disclosure to a trusted repository, preregistration status, and Registered Reports. Guides compliance; it does not create data or post your files for you.
- ▌ Psci Open Science And Transparency · thedixitjainUse when meeting Psychological Science's open-science requirements. For submissions on or after 1 January 2024 the journal requires open data and materials (case-by-case exemptions), a Research Transparency Statement placed between the Introduction and Methods, persistent identifiers for shared content, and treats transparency limits and preregistration quality as factors in editorial decisions. Prepares compliance; it does not waive requirements.
- ▌ Usenix Annual Technical Conference · thedixitjainUse when targeting USENIX Annual Technical Conference (USENIX ATC) or deciding whether a computer-science manuscript fits this venue. Encodes conference fit, framing, evidence bar, submission-cycle checks, rebuttal posture, and desk-reject risks for systems.
- ▌ Analyzing PDF Malware With Pdfid · thedixitjain bundle'Analyzes malicious PDF files using PDFiD, pdf-parser, and peepdf to identify embedded JavaScript, shellcode, exploits, and suspicious objects without opening the document. Determines the attack vector and extracts embedded payloads for further analysis. Activates for requests involving PDF malware analysis, malicious document analysis, PDF exploit investigation, or suspicious attachment triage. '
- ▌ Deobfuscating Javascript Malware · thedixitjain bundle'Deobfuscates malicious JavaScript code used in web-based attacks, phishing pages, and dropper scripts by reversing encoding layers, eval chains, string manipulation, and control flow obfuscation to reveal the original malicious logic. Activates for requests involving JavaScript malware analysis, script deobfuscation, web skimmer analysis, or obfuscated dropper investigation. '
- ▌ Dependency Management Deps Audit · thedixitjain bundleYou are a dependency security expert specializing in vulnerability scanning, license compliance, and supply chain security. Analyze project dependencies for known vulnerabilities, licensing issues, outdated packages, and provide actionable remediation strategies.
- ▌ Dependency Vulnerability Checker · thedixitjain'Validate dependency vulnerability checker operations. Auto-activating skill for Security Fundamentals. Triggers on: dependency vulnerability checker, dependency vulnerability checker Part of the Security Fundamentals skill category. Use when working with dependency vulnerability checker functionality. Trigger with phrases like "dependency vulnerability checker", "dependency checker", "dependency". '
- ▌ Detecting Malicious NPM Packages · thedixitjain bundleTriage npm packages for install-script malware, exfiltration, and worming behavior.
- ▌ Hunting For Shadow Copy Deletion · thedixitjain bundleHunt for Volume Shadow Copy deletion activity that indicates ransomware preparation or anti-forensics by monitoring vssadmin, wmic, and PowerShell shadow copy commands.
- ▌ Insecure Deserialization Checker · thedixitjain'Validate insecure deserialization checker operations. Auto-activating skill for Security Fundamentals. Triggers on: insecure deserialization checker, insecure deserialization checker Part of the Security Fundamentals skill category. Use when working with insecure deserialization checker functionality. Trigger with phrases like "insecure deserialization checker", "insecure checker", "insecure". '
- ▌ Performing Osint With Spiderfoot · thedixitjain bundleAutomate OSINT collection using SpiderFoot REST API and CLI for target profiling, module-based reconnaissance, and structured result analysis across 200+ data sources
- ▌ Performing Service Account Audit · thedixitjain bundleAudit service accounts across enterprise infrastructure to identify orphaned, over-privileged, and non-compliant accounts. This skill covers discovery of service accounts in Active Directory, cloud pl
- ▌ Responding To Security Incidents · thedixitjain bundle'Analyze and guide security incident response, investigation, and remediation processes. Use when you need to handle security breaches, classify incidents, develop response playbooks, gather forensic evidence, or coordinate remediation efforts. Trigger with phrases like "security incident response", "ransomware attack response", "data breach investigation", "incident playbook", or "security forensics". '
- ▌ Reverse Engineering Rust Malware · thedixitjain bundleReverse engineer Rust-compiled malware using IDA Pro and Ghidra with techniques for handling non-null-terminated strings, crate dependency extraction, and Rust-specific control flow analysis.
- ▌ Scanning For Data Privacy Issues · thedixitjain bundleScan for data privacy issues and sensitive information exposure. Use when reviewing data handling practices. Trigger with 'scan privacy issues', 'check sensitive data', or 'validate data protection'.
- ▌ Detection Engineering Coverage Evaluation · thedixitjain>- Automates the end-to-end detection engineering workflow in Google SecOps using MCP tools. Use when fetching threat intelligence from blogs, generating Threat Detection Opportunities (TDOs), simulating attacker behavior with synthetic UDM events, evaluating rule coverage, generating new YARA-L 2.0 rules to close coverage gaps, and with user approval, deploy them to SecOps. Don't use when asked to perform threat hunting actions, and SOC investigative actions.
- ▌ Performing Arp Spoofing Attack Simulation · thedixitjain bundle'Simulates ARP spoofing attacks in authorized lab or pentest environments using arpspoof, Ettercap, and Scapy to demonstrate man-in-the-middle risks, test network detection capabilities, and validate ARP inspection countermeasures. '
- ▌ Testing For Open Redirect Vulnerabilities · thedixitjain bundleIdentify and test open redirect vulnerabilities in web applications by analyzing URL redirection parameters, bypass techniques, and exploitation chains for phishing and token theft.
- ▌ Testing For XML Injection Vulnerabilities · thedixitjain bundleTest web applications for XML injection vulnerabilities including XXE, XPath injection, and XML entity attacks to identify data exposure and server-side request forgery risks.
- ▌ Testing For Xxe Injection Vulnerabilities · thedixitjain bundleDiscovering and exploiting XML External Entity injection vulnerabilities to read server files, perform SSRF, and exfiltrate data during authorized penetration tests.
- ▌ LLM Application Dev Langchain Agent · thedixitjainYou are an expert LangChain agent developer specializing in production-grade AI systems using LangChain 0.1+ and LangGraph.
- ▌ Securing Agentic AI Tool Invocation · thedixitjain bundleApply least-privilege tool allowlisting, identity binding, and human-in-the-loop controls for agent tool calls.
- ▌ Analyzing Network Flow Data With Netflow · thedixitjain bundleParse NetFlow v9 and IPFIX records to detect volumetric anomalies, port scanning, data exfiltration, and C2 beaconing patterns. Uses the Python netflow library to decode flow records, builds traffic baselines, and applies statistical analysis to identify flows with abnormal byte counts, connection durations, and periodic timing patterns.
- ▌ Azure Resource Manager Postgresql Dotnet · thedixitjain| Azure PostgreSQL Flexible Server SDK for .NET. Database management for PostgreSQL Flexible Server deployments. Use for creating servers, databases, firewall rules, configurations, backups, and high availability. Triggers: "PostgreSQL", "PostgreSqlFlexibleServer", "PostgreSQL Flexible Server", "Azure Database for PostgreSQL", "PostgreSQL database management", "PostgreSQL firewall", "PostgreSQL backup", "Postgres".
- ▌ Database Schema Designer · thedixitjain bundleUse when the user asks to create ERD diagrams, normalize database schemas, design table relationships, or plan schema migrations.
- ▌ Exploiting API Injection Vulnerabilities · thedixitjain bundle'Tests APIs for injection vulnerabilities including SQL injection, NoSQL injection, OS command injection, LDAP injection, and Server-Side Request Forgery (SSRF) through API parameters, headers, and request bodies. The tester crafts malicious payloads targeting different backend technologies and injection contexts to extract data, execute commands, or access internal services. Maps to OWASP API8:2023 Security Misconfiguration and API7:2023 SSRF. Activates for requests involving API injection testing, SQLi in APIs, NoSQL injection, SSRF testing, or API input validation assessment. '
- ▌ Exploiting SQL Injection Vulnerabilities · thedixitjain bundle'Identifies and exploits SQL injection vulnerabilities in web applications during authorized penetration tests using manual techniques and automated tools like sqlmap. The tester detects injection points through error-based, union-based, blind boolean, and time-based blind techniques across all major database engines (MySQL, PostgreSQL, MSSQL, Oracle) to demonstrate data extraction, authentication bypass, and potential remote code execution. Activates for requests involving SQL injection testing, SQLi exploitation, database security assessment, or injection vulnerability verification. '
- ▌ Hunting For Data Exfiltration Indicators · thedixitjain bundleHunt for data exfiltration through network traffic analysis, detecting unusual data flows, DNS tunneling, cloud storage uploads, and encrypted channel abuse.
- ▌ Implementing Taxii Server With Opentaxii · thedixitjain bundleDeploy and configure an OpenTAXII server to share and consume STIX-formatted cyber threat intelligence using the TAXII 2.1 protocol for automated indicator exchange between organizations.
- ▌ Accounting Organizations And Society · thedixitjainUse when targeting Accounting, Organizations and Society (AOS) or deciding whether an accounting manuscript fits this venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Gtm Board And Investor Communication · thedixitjainBoard meeting preparation, investor updates, and executive communication. Use when preparing board decks, writing investor updates, handling bad news with the board, structuring QBRs, or building board-level metric discipline. Includes the "Three Things" narrative model, the 4-tier metric hierarchy, and the pre-brief pattern that prevents board surprises.
- ▌ Configuring AWS Verified Access For Ztna · thedixitjain bundleConfigure AWS Verified Access to provide VPN-less zero trust network access to internal applications using identity and device posture verification with Cedar policy language.
- ▌ Exploiting Bgp Hijacking Vulnerabilities · thedixitjain bundle'Analyzes and simulates BGP hijacking scenarios in authorized lab environments to assess route origin validation, RPKI deployment, and BGP monitoring defenses against prefix hijacking and route leak attacks on internet routing infrastructure. '
- ▌ Implementing Log Forwarding With Fluentd · thedixitjain bundleConfigure Fluentd and Fluent Bit for centralized log aggregation, routing, filtering, and enrichment across distributed infrastructure
- ▌ Implementing Scim Provisioning With Okta · thedixitjain bundleImplement automated user provisioning and deprovisioning using SCIM 2.0 protocol with Okta as the identity provider.
- ▌ Performing Cloud Forensics Investigation · thedixitjain bundleConduct forensic investigations in cloud environments by collecting and analyzing logs, snapshots, and metadata from AWS, Azure, and GCP services.
- ▌ Performing Privilege Escalation On Linux · thedixitjain bundleLinux privilege escalation involves elevating from a low-privilege user account to root access on a compromised system. Red teams exploit misconfigurations, vulnerable services, kernel exploits, and w
- ▌ Configuration Reference Generator · thedixitjain'Generate configuration reference generator operations. Auto-activating skill for Technical Documentation. Triggers on: configuration reference generator, configuration reference generator Part of the Technical Documentation skill category. Use when configuring systems or services. Trigger with phrases like "configuration reference generator", "configuration generator", "configuration". '
- ▌ Obsidian Clipper Template Creator · thedixitjain bundleGuide for creating templates for the Obsidian Web Clipper. Use when you want to create a new clipping template, understand available variables, or format clipped content.
- ▌ Analyzing Network Traffic With Wireshark · thedixitjain bundle'Captures and analyzes network packet data using Wireshark and tshark to identify malicious traffic patterns, diagnose protocol issues, extract artifacts, and support incident response investigations on authorized network segments. '
- ▌ Conducting Post Incident Lessons Learned · thedixitjain bundleFacilitate structured post-incident reviews to identify root causes, document what worked and failed, and produce actionable recommendations to improve future incident response.
- ▌ Copilot Instructions Blueprint Generator · thedixitjainTechnology-agnostic blueprint generator for creating comprehensive copilot-instructions.md files that guide GitHub Copilot to produce code consistent with project standards, architecture patterns, and exact technology versions by analyzing existing codebase patterns and avoiding assumptions.
- ▌ Implementing Network Segmentation For Ot · thedixitjain bundle'This skill covers implementing network segmentation in Operational Technology environments using VLANs, industrial firewalls, data diodes, and software-defined networking. It addresses the Purdue Model-based segmentation strategy, migration from flat networks to segmented architectures without disrupting operations, configuring OT-aware firewalls with industrial protocol deep packet inspection, and validating segmentation effectiveness through traffic analysis. '
- ▌ Testing For System Prompt Leakage · thedixitjain bundleExtract and defend system prompts plus embedded secrets and routing logic.
- ▌ Qdrant Search Quality Diagnosis · thedixitjainDiagnoses Qdrant search quality issues. Use when someone reports 'results are bad', 'wrong results', 'not relevant results', 'missing matches', 'recall is low', 'approximate search worse than exact', 'which embedding model', or 'quality dropped after quantization'. Also use when search quality degrades without obvious changes.
- ▌ Annual Review Of Plant Biology · thedixitjainUse when targeting Annual Review of Plant Biology or deciding whether a plant-biology review proposal fits this invited-review venue. Encodes the journal's fit, the authoritative-synthesis and invited-article bar, evidence and balance expectations, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Coordination Chemistry Reviews · thedixitjainUse when targeting Coordination Chemistry Reviews (CCR) or deciding whether a review fits this Elsevier venue for coordination, inorganic, and organometallic chemistry. Encodes the journal's fit, framing, evidence bar, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Demog Data And Reproducibility · thedixitjainUse when preparing the data-availability statement and reproducibility materials for a Demography (PAA / Duke University Press) manuscript. Demography requires a data availability statement at acceptance with persistent identifiers and encourages reproducible, commented code; it hosts no repository, so authors deposit in a FAIR repository. Covers restricted-data exemptions. Prepares the materials; it does not waive requirements.
- ▌ Devpsych Theory And Hypotheses · thedixitjainUse when stating the developmental theory and age-graded hypotheses for a Developmental Psychology (APA) manuscript. The journal rewards hypotheses that are explicitly about change (age effects, within-person trajectories, mechanisms) and a clean confirmatory/exploratory split under JARS. Structures the argument; it does not run analyses.
- ▌ East China Economic Management · thedixitjainUse when targeting 《华东经济管理》(East China Economic Management — 中共安徽省委党校主办的经济管理综合月刊, 安徽合肥, CSSCI) or deciding whether a Chinese econ/management manuscript fits this venue. Encodes the journal's fit, framing, review timeline, house style, official-submission re-check, and desk-reject heuristics.
- ▌ En Humanities Journal Workflow · thedixitjainUse when deciding which English humanities journal skill to invoke next, comparing fit across the 36-journal humanities roadmap, or routing a manuscript before venue-specific re-framing. Routes by sub-field (history / philosophy / literary studies / classics / art history / religion / linguistics / musicology), contribution type (argument, interpretation, theory, edition), and the venue's house style and review norms.
- ▌ Issues In Agricultural Economy · thedixitjainUse when targeting 《农业经济问题》(Issues in Agricultural Economy — 中国农业经济学会与中国农业科学院农业经济与发展研究所主办、农业农村部主管的农经综合月刊, 1980 年创刊, 双向匿名、收审稿费, iaecn.cn 投稿) or deciding whether a Chinese 三农/农经 manuscript fits this venue. Encodes the journal's fit, framing, fee/review policy, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Jedpsych Theory And Hypotheses · thedixitjainUse when stating the learning/motivation theory and hypotheses for a Journal of Educational Psychology manuscript. JEP expects a clear psychological mechanism, directional hypotheses tied to that theory, and an honest separation of confirmatory (ideally preregistered) from exploratory analyses. Structures the argument; it does not run analyses.
- ▌ Jep Evidence Without Equations · thedixitjainUse when presenting empirical or theoretical evidence credibly in a Journal of Economic Perspectives (JEP) article with minimal math — intuition, examples, well-chosen numbers, and honest caveats. Handles how evidence is conveyed in prose; defer figures/tables to jep-exhibits-for-general-readers and fairness across studies to jep-balance-and-objectivity.
- ▌ Journal Of Accounting Research · thedixitjainUse when targeting Journal of Accounting Research (JAR) or deciding whether an accounting manuscript fits this venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Journal Of Consumer Psychology · thedixitjainUse when targeting Journal of Consumer Psychology (JCP) or deciding whether a consumer-psychology manuscript fits this venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Journal Of Economic Literature · thedixitjainUse when targeting Journal of Economic Literature (JEL) or deciding whether a survey/review article fits this venue. Encodes the journal's fit, framing, contribution bar, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Journal Of High Energy Physics · thedixitjainUse when targeting Journal of High Energy Physics (JHEP) or deciding whether a high-energy physics manuscript fits this author-formatted, open-access SISSA/Springer venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Journal Of International Trade · thedixitjainUse when targeting 《国际贸易问题》(Journal of International Trade — 对外经济贸易大学主办、国家社科基金首批资助、不收费的国际贸易核心刊) or deciding whether a Chinese trade/open-economy manuscript fits this venue. Encodes the journal's fit, fee-free policy, online-only submission, house style, official re-check, and desk-reject heuristics.
- ▌ Nature Reviews Methods Primers · thedixitjainUse when targeting Nature Reviews Methods Primers (Nat Rev Methods Primers) or deciding whether a cross-disciplinary methods "Primer" proposal fits this commissioned Springer Nature venue. Encodes the journal's fit, framing, methods-and-reproducibility bar, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Progress In Aerospace Sciences · thedixitjainUse when targeting Progress in Aerospace Sciences or deciding whether an aerospace review article fits this venue. Encodes the journal's fit as a review venue, the comprehensive-survey and synthesis bar, the not-primary-research scope, official-submission re-check, and desk-reject heuristics.
- ▌ Quarterly Journal Of Economics · thedixitjainUse when targeting Quarterly Journal of Economics (QJE) or deciding whether an economics manuscript fits this venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Reports On Progress In Physics · thedixitjainUse when targeting Reports on Progress in Physics (RoPP) or deciding whether a physics review manuscript fits this IOP authoritative progress-report venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Science Translational Medicine · thedixitjainUse when targeting Science Translational Medicine (Sci Transl Med) or deciding whether a translational medicine manuscript fits this venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
- ▌ Scientific Management Research · thedixitjainUse when targeting 《科学管理研究》(Scientific Management Research — 内蒙古自治区软科学研究会主办的科学管理/科技政策双月刊) or deciding whether a Chinese S&T-management/policy manuscript fits this venue. Encodes the journal's fit, framing, bilingual abstract house style, official-submission re-check, and desk-reject heuristics.
- ▌ The American Historical Review · thedixitjainUse when targeting The American Historical Review (AHR) or deciding whether a history manuscript fits this venue. Encodes the journal's fit, the broad-significance argument bar, primary-source and historiographical expectations, Chicago house style and double-blind norms, official-submission re-check, and desk-reject heuristics.
- ▌ The Lancet Infectious Diseases · thedixitjainUse when targeting The Lancet Infectious Diseases or deciding whether an infectious diseases manuscript fits this venue. Encodes the journal's fit, framing, method-and-evidence bar, house style, official-submission re-check, and desk-reject heuristics.
- ▌ The William And Mary Quarterly · thedixitjainUse when targeting The William and Mary Quarterly or deciding whether an early-American or Atlantic-world history manuscript fits this venue. Encodes the journal's fit, its primary-source and historiographical bar for "vast early America," Chicago house style and double-blind norms, official-submission re-check, and desk-reject heuristics.
- ▌ Auditing GCP Iam Permissions · thedixitjain bundle'Auditing Google Cloud Platform IAM permissions to identify overly permissive bindings, primitive role usage, service account key proliferation, and cross-project access risks using gcloud CLI, Policy Analyzer, and IAM Recommender. '
- ▌ Auth Implementation Patterns · thedixitjain bundleBuild secure, scalable authentication and authorization systems using industry-standard patterns and modern best practices.
- ▌ Container Security Hardening · thedixitjain bundle> Harden Docker/container images and runtime deployments with secure base images, non-root users, CVE scanning, SBOM/signing, seccomp/AppArmor, and Kubernetes pod security controls. Use for Dockerfile security reviews, container CVEs, image scanning, distroless images, or production hardening.
- ▌ Correlating Threat Campaigns · thedixitjain bundle'Correlates disparate security incidents, IOCs, and adversary behaviors across time and organizations to identify unified threat campaigns, attribute them to common threat actors, and extract shared indicators for improved detection. Use when multiple incidents exhibit overlapping indicators, when sector-wide attack campaigns require cross-organizational analysis, or when building campaign-level intelligence products. Activates for requests involving campaign analysis, incident clustering, cross-organizational IOC correlation, or MISP correlation engine. '
- ▌ Cosmos Vulnerability Scanner · thedixitjain bundleScans Cosmos SDK blockchain modules and CosmWasm contracts for consensus-critical vulnerabilities — chain halts, fund loss, state divergence. 25 core + 16 IBC + 10 EVM + 3 CosmWasm patterns. Use when auditing custom x/ modules, reviewing IBC integrations, or assessing pre-launch chain security. Updated for SDK v0.53.x.
- ▌ Exploiting Adcs With Certipy · thedixitjain bundleEnumerate and exploit Active Directory Certificate Services ESC1 through ESC16 misconfigurations with Certipy, including SAN abuse, NTLM relay to web enrollment (ESC8), and golden certificate forgery.
- ▌ Github Codespaces Efficiency · thedixitjain bundleAudit and improve GitHub Codespaces efficiency. Use this skill when a user wants faster Codespaces startup, lower Codespaces spend, slim devcontainers, right-size machines, tune idle timeout, or scope prebuilds to branches with sustained usage.
- ▌ Integrating Secrets Managers · thedixitjain bundle'Manage this skill enables AI assistant to seamlessly integrate with various secrets managers like hashicorp vault and aws secrets manager. it generates configurations and setup code, ensuring best practices for secure credential management. use this skill when... Use when appropriate context detected. Trigger with relevant phrases based on skill purpose. '
- ▌ Privilege Escalation Methods · thedixitjainProvide comprehensive techniques for escalating privileges from a low-privileged user to root/administrator access on compromised Linux and Windows systems. Essential for penetration testing post-exploitation phase and red team operations.
- ▌ Quality Manager Qms Iso13485 · thedixitjain bundleISO 13485 Quality Management System implementation and maintenance for medical device organizations. Provides QMS design, documentation control, internal auditing, CAPA management, and certification support. Use when working with medical device quality systems, preparing for ISO 13485 audits, managing regulatory compliance documentation, setting up corrective actions, or building audit preparation programs. Useful for quality management, audit preparation, regulatory compliance, medical device documentation, and corrective action workflows.
- ▌ Scanning For Gdpr Compliance · thedixitjain bundleScan for GDPR compliance issues in data handling and privacy practices. Use when ensuring EU data protection compliance. Trigger with 'scan GDPR compliance', 'check data privacy', or 'validate GDPR'.
- ▌ Scanning For Vulnerabilities · thedixitjain bundle'Execute this skill enables comprehensive vulnerability scanning using the vulnerability-scanner plugin. it identifies security vulnerabilities in code, dependencies, and configurations, including cve detection. use this skill when the user asks to scan fo... Use when appropriate context detected. Trigger with relevant phrases based on skill purpose. '
- ▌ Securing AWS Iam Permissions · thedixitjain bundle'This skill guides practitioners through hardening AWS Identity and Access Management configurations to enforce least privilege access across cloud accounts. It covers IAM policy scoping, permission boundaries, Access Analyzer integration, and credential rotation strategies to reduce the blast radius of compromised identities. '
- ▌ Solana Vulnerability Scanner · thedixitjain bundleScans Solana programs for 6 critical vulnerabilities including arbitrary CPI, improper PDA validation, missing signer/ownership checks, and sysvar spoofing. Use when auditing Solana/Anchor programs.
- ▌ Arpsych Comprehensiveness And Balance · thedixitjainUse when checking that an Annual Review of Psychology (ARPsych) review covers the literature even-handedly — across labs, paradigms, and rival theories — weighs evidence by credibility, and avoids self-promotion. Audits coverage and fairness; it does not build the search (arpsych-literature-synthesis) or design the spine (arpsych-organizing-framework).
- ▌ Azure Microsoft Playwright Testing TS · thedixitjainRun Playwright tests at scale using Azure Playwright Workspaces (formerly Microsoft Playwright Testing). Use when scaling browser tests across cloud-hosted browsers, integrating with CI/CD pipelines, or publishing test results to the Azure portal.
- ▌ Performing Purple Team Atomic Testing · thedixitjain bundle'Executes Atomic Red Team tests mapped to MITRE ATT&CK techniques, performs coverage gap analysis across the ATT&CK matrix, and runs detection validation loops to measure blue team visibility. Covers Invoke-AtomicRedTeam PowerShell execution, ATT&CK Navigator layer generation for heatmaps, Sigma rule correlation, and continuous atomic testing pipelines. Activates for requests involving purple team exercises, atomic test execution, ATT&CK coverage assessment, detection engineering validation, or adversary emulation testing. '
- ▌ Performing Web Cache Poisoning Attack · thedixitjain bundleExploiting web cache mechanisms to serve malicious content to other users by poisoning cached responses through unkeyed headers and parameters during authorized security tests.
- ▌ Testing API Authentication Weaknesses · thedixitjain bundle'Tests API authentication mechanisms for weaknesses including broken token validation, missing authentication on endpoints, weak password policies, credential stuffing susceptibility, token leakage in URLs or logs, and session management flaws. The tester evaluates JWT implementation, API key handling, OAuth flows, and session token entropy to identify authentication bypasses. Maps to OWASP API2:2023 Broken Authentication. Activates for requests involving API authentication testing, token validation assessment, credential security testing, or API auth bypass. '
- ▌ Artbull Structure And Exposition · thedixitjainUse when organizing an Art Bulletin article so the argument unfolds clearly and the figures are integrated at the right moments within the ~16,000-word limit including endnotes. Art-historical exposition must move the reader through the objects, not around them. Shapes structure; it does not write the prose or do the analysis.
- ▌ Jep Exhibits For General Readers · thedixitjainUse when designing figures and tables for a Journal of Economic Perspectives (JEP) article aimed at a broad audience — clarity over density, self-explanatory exhibits. Handles exhibit design; defer prose evidence to jep-evidence-without-equations and overall structure to jep-narrative-arc.
- ▌ Mermaid Sequence Diagram Creator · thedixitjain'Create mermaid sequence diagram creator operations. Auto-activating skill for Visual Content. Triggers on: mermaid sequence diagram creator, mermaid sequence diagram creator Part of the Visual Content skill category. Use when working with mermaid sequence diagram creator functionality. Trigger with phrases like "mermaid sequence diagram creator", "mermaid creator", "mermaid". '
- ▌ Azure AI Agents Persistent Java · thedixitjain bundle| Azure AI Agents Persistent SDK for Java. Low-level SDK for creating and managing AI agents with threads, messages, runs, and tools. Triggers: "PersistentAgentsClient", "persistent agents java", "agent threads java", "agent runs java", "streaming agents java".
- ▌ Fleet Hunting With Velociraptor · thedixitjain bundleDeploy a Velociraptor server and agents and write VQL hunts across a fleet.
- ▌ Foundry Hosted Agent Copilotkit · thedixitjain bundleOngoing development guidance for agentic web apps that pair a CopilotKit frontend with Microsoft Agent Framework agents on Azure AI Foundry hosted agents over the AG-UI protocol - add and gate agent tools, wire human-in-the-loop approvals, build generative UI and shared state, debug the event stream, upgrade pre-1.0 packages safely, and deploy hosted agent updates.
- ▌ Workflow Orchestration Patterns · thedixitjainMaster workflow orchestration architecture with Temporal, covering fundamental design decisions, resilience patterns, and best practices for building reliable distributed systems.
- ▌ Data Engineering Data Driven Feature · thedixitjainBuild features guided by data insights, A/B testing, and continuous measurement using specialized agents for analysis, implementation, and experimentation.
- ▌ Data Quality Auditor · thedixitjain bundleAudit datasets for completeness, consistency, accuracy, and validity. Profile data distributions, detect anomalies and outliers, surface structural issues, and produce an actionable remediation plan. Use when the user asks to check data quality, profile a dataset, hunt outliers or missing values, or validate data before analysis or model training.
- ▌ Detecting SQL Injection Via Waf Logs · thedixitjain bundleAnalyze WAF (ModSecurity/AWS WAF/Cloudflare) logs to detect SQL injection attack campaigns. Parses ModSecurity audit logs and JSON WAF event logs to identify SQLi patterns (UNION SELECT, OR 1=1, SLEEP(), BENCHMARK()), tracks attack sources, correlates multi-stage injection attempts, and generates incident reports with OWASP classification.
- ▌ Ectheory Replication And Data Policy · thedixitjainUse to handle reproducibility and the supplementary-material file for an Econometric Theory (ET) paper — ET has no mandatory data/code archive (theory journal); the relevant policy is the voluntary online Supplementary Material for already-reviewed proofs, derivations, and simulation evidence.
- ▌ Exploiting SQL Injection With Sqlmap · thedixitjain bundleDetecting and exploiting SQL injection vulnerabilities using sqlmap to extract database contents during authorized penetration tests.
- ▌ Implementing Pam For Database Access · thedixitjain bundleDeploy privileged access management for database systems including Oracle, SQL Server, PostgreSQL, and MySQL. Covers session proxy configuration, credential vaulting, query auditing, dynamic credentia