all publishers

yanacuti1121

@yanacuti1121 source repo

1,774 published skills · page 11 of 18

  1. ▌
    Jwasham Coding Interview University · yanacuti1121
    Coding Interview University — John Washam's CS study plan để land job tại FAANG. Data structures, algorithms, system design. Checklist-based, forked 400K+. CC BY-SA 4.0.
    2 repo stars
  2. ▌
    Openai Codex Security Threat Model · yanacuti1121
    Use when Codex is already in the threat-modeling phase of a security scan, the user explicitly invokes $threat-model, or the user explicitly asks to create, update, or persist a repository threat model. Do not use as the primary trigger for full PR, commit, branch, patch, or repository scans.
    2 repo stars
  3. ▌
    Openai Superpowers Executing Plans · yanacuti1121
    Use when you have a written implementation plan to execute in a separate session with review checkpoints
    2 repo stars
  4. ▌
    Performing Container Image Hardening · yanacuti1121 bundle
    This skill covers hardening container images by minimizing attack surface, removing unnecessary packages, implementing multi-stage builds, configuring non-root users, and applying CIS Docker Benchmark recommendations to produce secure production-ready images.
    2 repo stars
  5. ▌
    Performing Firmware Malware Analysis · yanacuti1121 bundle
    Analyzes firmware images for embedded malware, backdoors, and unauthorized modifications targeting routers, IoT devices, UEFI/BIOS, and embedded systems. Covers firmware extraction, filesystem analysis, binary reverse engineering, and bootkit detection. Activates for requests involving firmware security analysis, IoT malware investigation, UEFI rootkit detection, or embedded device compromise assessment.
    2 repo stars
  6. ▌
    Performing Ioc Enrichment Automation · yanacuti1121 bundle
    Automates Indicator of Compromise (IOC) enrichment by orchestrating lookups across VirusTotal, AbuseIPDB, Shodan, MISP, and other intelligence sources to provide contextual scoring and disposition recommendations. Use when SOC analysts need rapid multi-source enrichment of IPs, domains, URLs, and file hashes during alert triage or incident investigation.
    2 repo stars
  7. ▌
    Performing JWT None Algorithm Attack · yanacuti1121 bundle
    Execute and test the JWT none algorithm attack to bypass signature verification by manipulating the alg header field in JSON Web Tokens.
    2 repo stars
  8. ▌
    Performing Privacy Impact Assessment · yanacuti1121 bundle
    Automates the Privacy Impact Assessment (PIA) workflow including data flow mapping, privacy risk scoring matrices, GDPR Article 35 DPIA and CCPA/CPRA alignment checks, data inventory cataloging, and remediation tracking. Implements the NIST Privacy Framework PRAM methodology and ICO DPIA guidance for systematic identification and mitigation of privacy risks across processing activities. Use when conducting privacy assessments for new systems, evaluating regulatory compliance posture, or building automated privacy governance programs.
    2 repo stars
  9. ▌
    Performing Sqlite Database Forensics · yanacuti1121 bundle
    Perform forensic analysis of SQLite databases to recover deleted records from freelists and WAL files, decode encoded timestamps, and extract evidence from browser history, messaging apps, and mobile device databases.
    2 repo stars
  10. ▌
    Scanning Container Images With Grype · yanacuti1121 bundle
    Scan container images for known vulnerabilities using Anchore Grype with SBOM-based matching and configurable severity thresholds.
    2 repo stars
  11. ▌
    Tracking Threat Actor Infrastructure · yanacuti1121 bundle
    Threat actor infrastructure tracking involves monitoring and mapping adversary-controlled assets including command-and-control (C2) servers, phishing domains, exploit kit hosts, bulletproof hosting, a
    2 repo stars
  12. ▌
    Deprecation And Migration · yanacuti1121
    Manages deprecation and migration. Use when removing old systems, APIs, or features. Use when migrating users from one implementation to another. Use when deciding whether to maintain or sunset existing code.
    2 repo stars
  13. ▌
    Source Driven Development · yanacuti1121
    Grounds every implementation decision in official documentation. Use when you want authoritative, source-cited code free from outdated patterns. Use when building with any framework or library where correctness matters.
    2 repo stars
  14. ▌
    Slash Command Factory · yanacuti1121
    Generate custom Claude Code slash commands through intelligent 5-7 question flow. Creates powerful commands for business research, content analysis, healthcare compliance, API integration, documentation automation, and workflow optimization. Outputs organized commands to generated-commands/ with validation and installation guidance.
    2 repo stars
  15. ▌
    Social Media Analyzer · yanacuti1121
    Analyzes social media campaign performance across platforms with engagement metrics, ROI calculations, and audience insights for data-driven marketing decisions
    2 repo stars
  16. ▌
    Analyzing Bootkit And Rootkit Samples · yanacuti1121 bundle
    Analyzes bootkit and advanced rootkit malware that infects the Master Boot Record (MBR), Volume Boot Record (VBR), or UEFI firmware to gain persistence below the operating system. Covers boot sector analysis, UEFI module inspection, and anti-rootkit detection techniques. Activates for requests involving bootkit analysis, MBR malware investigation, UEFI persistence analysis, or pre-OS malware detection.
    2 repo stars
  17. ▌
    Analyzing Powershell Empire Artifacts · yanacuti1121 bundle
    Detect PowerShell Empire framework artifacts in Windows event logs by identifying Base64 encoded launcher patterns, default user agents, staging URL structures, stager IOCs, and known Empire module signatures in Script Block Logging events.
    2 repo stars
  18. ▌
    Building Soc Metrics And Kpi Tracking · yanacuti1121 bundle
    Builds SOC performance metrics and KPI tracking dashboards measuring Mean Time to Detect (MTTD), Mean Time to Respond (MTTR), alert quality ratios, analyst productivity, and detection coverage using SIEM data. Use when SOC leadership needs operational visibility, continuous improvement tracking, or executive-level reporting on security operations effectiveness.
    2 repo stars
  19. ▌
    Building Threat Intelligence Platform · yanacuti1121 bundle
    Building a Threat Intelligence Platform (TIP) involves deploying and integrating multiple CTI tools into a unified system for collecting, analyzing, enriching, and disseminating threat intelligence. T
    2 repo stars
  20. ▌
    Conducting Phishing Incident Response · yanacuti1121 bundle
    Responds to phishing incidents by analyzing reported emails, extracting indicators, assessing credential compromise, quarantining malicious messages across the organization, and remediating affected accounts. Covers email header analysis, URL/attachment sandboxing, and mailbox-wide purge operations. Activates for requests involving phishing response, email incident, credential phishing, spear phishing investigation, or phishing remediation.
    2 repo stars
  21. ▌
    Configuring Oauth2 Authorization Flow · yanacuti1121 bundle
    Configure secure OAuth 2.0 authorization flows including Authorization Code with PKCE, Client Credentials, and Device Authorization Grant. This skill covers flow selection, PKCE implementation, token
    2 repo stars
  22. ▌
    Correlating Security Events In Qradar · yanacuti1121 bundle
    Correlates security events in IBM QRadar SIEM using AQL (Ariel Query Language), custom rules, building blocks, and offense management to detect multi-stage attacks across network, endpoint, and application log sources. Use when SOC analysts need to investigate QRadar offenses, build correlation rules, or tune detection logic for reducing false positives.
    2 repo stars
  23. ▌
    Detecting Fileless Malware Techniques · yanacuti1121 bundle
    Detects and analyzes fileless malware that operates entirely in memory using PowerShell, WMI, .NET reflection, registry-resident payloads, and living-off-the-land binaries (LOLBins) without writing traditional executable files to disk. Activates for requests involving fileless threat detection, in-memory malware investigation, LOLBin abuse analysis, or WMI persistence examination.
    2 repo stars
  24. ▌
    Detecting Lateral Movement In Network · yanacuti1121 bundle
    Identifies lateral movement techniques in enterprise networks by analyzing authentication logs, network flows, SMB traffic, and RDP sessions using Zeek, Velociraptor, and SIEM correlation rules to detect attackers moving between systems.
    2 repo stars
  25. ▌
    Detecting Living Off The Land Attacks · yanacuti1121 bundle
    Detect abuse of legitimate Windows binaries (LOLBins) used for living off the land attacks. Monitors process creation, command-line arguments, and parent-child relationships to identify suspicious LOLBin execution patterns.
    2 repo stars
  26. ▌
    Detecting Mimikatz Execution Patterns · yanacuti1121 bundle
    Detect Mimikatz execution through command-line patterns, LSASS access signatures, binary indicators, and in-memory detection of known modules.
    2 repo stars
  27. ▌
    Detecting Misconfigured Azure Storage · yanacuti1121 bundle
    Detecting misconfigured Azure Storage accounts including publicly accessible blob containers, missing encryption settings, overly permissive SAS tokens, disabled logging, and network access violations using Azure CLI, PowerShell, and Microsoft Defender for Storage.
    2 repo stars
  28. ▌
    Detecting Network Anomalies With Zeek · yanacuti1121 bundle
    Deploys and configures Zeek (formerly Bro) network security monitor to passively analyze network traffic, generate structured logs, detect anomalous behavior, and create custom detection scripts for threat hunting and incident response.
    2 repo stars
  29. ▌
    Detecting Port Scanning With Fail2ban · yanacuti1121 bundle
    Configures Fail2ban with custom filters and actions to detect port scanning activity, SSH brute force attempts, and network reconnaissance, automatically banning offending IP addresses and alerting security teams to suspicious network probing.
    2 repo stars
  30. ▌
    Detecting Process Hollowing Technique · yanacuti1121 bundle
    Detect process hollowing (T1055.012) by analyzing memory-mapped sections, hollowed process indicators, and parent-child process anomalies in EDR telemetry.
    2 repo stars
  31. ▌
    Exploiting Nopac Cve 2021 42278 42287 · yanacuti1121 bundle
    Exploit the noPac vulnerability chain (CVE-2021-42278 sAMAccountName spoofing and CVE-2021-42287 KDC PAC confusion) to escalate from standard domain user to Domain Admin in Active Directory environments.
    2 repo stars
  32. ▌
    Hardening Docker Daemon Configuration · yanacuti1121 bundle
    Harden the Docker daemon by configuring daemon.json with user namespace remapping, TLS authentication, rootless mode, and CIS benchmark controls.
    2 repo stars
  33. ▌
    Implementing Azure Defender For Cloud · yanacuti1121 bundle
    Implementing Microsoft Defender for Cloud to enable cloud security posture management, workload protection across VMs, containers, databases, and storage, configure security recommendations, and set up adaptive security controls with automated remediation.
    2 repo stars
  34. ▌
    Implementing Cloud Trail Log Analysis · yanacuti1121 bundle
    Implementing AWS CloudTrail log analysis for security monitoring, threat detection, and forensic investigation using Athena, CloudWatch Logs Insights, and SIEM integration to identify unauthorized access, privilege escalation, and suspicious API activity.
    2 repo stars
  35. ▌
    Implementing Ebpf Security Monitoring · yanacuti1121 bundle
    Implements eBPF-based security monitoring using Cilium Tetragon for real-time process execution tracking, network connection observability, file access auditing, and runtime enforcement. Covers TracingPolicy CRD authoring with kprobe/tracepoint hooks, in-kernel filtering via matchArgs/matchBinaries selectors, JSON event export, and integration with SIEM pipelines. Use when building kernel-level runtime security observability for Linux hosts or Kubernetes clusters.
    2 repo stars
  36. ▌
    Implementing GCP Binary Authorization · yanacuti1121 bundle
    Implement GCP Binary Authorization to enforce deploy-time security controls that ensure only trusted, attested container images are deployed to Google Kubernetes Engine and Cloud Run.
    2 repo stars
  37. ▌
    Implementing Ics Firewall With Tofino · yanacuti1121 bundle
    Deploy and configure Tofino industrial firewalls from Belden/Hirschmann to protect SCADA systems and PLCs using deep packet inspection for OT protocols including Modbus, EtherNet/IP, OPC, and S7comm, enforcing granular access control between ICS security zones.
    2 repo stars
  38. ▌
    Implementing Iec 62443 Security Zones · yanacuti1121 bundle
    This skill covers designing and implementing security zones and conduits for industrial automation and control systems (IACS) per IEC 62443-3-2. It addresses zone partitioning based on risk assessment, assigning Security Level targets (SL-T), designing conduit security controls, implementing microsegmentation with industrial firewalls, and validating zone architecture through traffic analysis and penetration testing against the Purdue Reference Model.
    2 repo stars
  39. ▌
    Investigating Phishing Email Incident · yanacuti1121 bundle
    Investigates phishing email incidents from initial user report through header analysis, URL/attachment detonation, impacted user identification, and containment actions using SOC tools like Splunk, Microsoft Defender, and sandbox analysis platforms. Use when a reported phishing email requires full incident investigation to determine scope and impact.
    2 repo stars
  40. ▌
    Resolving Merge Conflicts · yanacuti1121
    Use when you need to resolve an in-progress git merge/rebase conflict.
    2 repo stars
  41. ▌
    Openai Coderabbit Coderabbit Review · yanacuti1121
    Reviews code changes using CodeRabbit AI. Use when user asks for code review, PR feedback, code quality checks, security issues, or requests fix-review cycles.
    2 repo stars
  42. ▌
    Openai Codex Security Security Scan · yanacuti1121
    Use when the user asks for a repository-wide or scoped-path security scan.
    2 repo stars
  43. ▌
    Performing Container Escape Detection · yanacuti1121 bundle
    Detects container escape attempts by analyzing namespace configurations, privileged container checks, dangerous capability assignments, and host path mounts using the kubernetes Python client. Identifies CVE-2022-0492 style escapes via cgroup abuse. Use when auditing container security posture or investigating escape attempts.
    2 repo stars
  44. ▌
    Performing File Carving With Foremost · yanacuti1121 bundle
    Recover files from disk images and unallocated space using Foremost's header-footer signature carving to extract evidence regardless of file system state.
    2 repo stars
  45. ▌
    Performing GRAPHQL Depth Limit Attack · yanacuti1121 bundle
    Execute and test GraphQL depth limit attacks using deeply nested recursive queries to identify denial-of-service vulnerabilities in GraphQL APIs.
    2 repo stars
  46. ▌
    Performing Hash Cracking With Hashcat · yanacuti1121 bundle
    Hash cracking is an essential skill for penetration testers and security auditors to evaluate password strength. Hashcat is the world's fastest password recovery tool, supporting over 300 hash types w
    2 repo stars
  47. ▌
    Performing Lateral Movement Detection · yanacuti1121 bundle
    Detects lateral movement techniques including Pass-the-Hash, PsExec, WMI execution, RDP pivoting, and SMB-based spreading using SIEM correlation of Windows event logs, network flow data, and endpoint telemetry mapped to MITRE ATT&CK Lateral Movement (TA0008) techniques.
    2 repo stars
  48. ▌
    Performing Purple Team Atomic Testing · yanacuti1121 bundle
    Executes Atomic Red Team tests mapped to MITRE ATT&CK techniques, performs coverage gap analysis across the ATT&CK matrix, and runs detection validation loops to measure blue team visibility. Covers Invoke-AtomicRedTeam PowerShell execution, ATT&CK Navigator layer generation for heatmaps, Sigma rule correlation, and continuous atomic testing pipelines. Activates for requests involving purple team exercises, atomic test execution, ATT&CK coverage assessment, detection engineering validation, or adversary emulation testing.
    2 repo stars
  49. ▌
    Performing Second Order SQL Injection · yanacuti1121 bundle
    Detect and exploit second-order SQL injection vulnerabilities where malicious input is stored in a database and later executed in an unsafe SQL query during a different application operation.
    2 repo stars
  50. ▌
    Performing Web Cache Deception Attack · yanacuti1121 bundle
    Execute web cache deception attacks by exploiting path normalization discrepancies between CDN caching layers and origin servers to cache and retrieve sensitive authenticated content.
    2 repo stars
  51. ▌
    Performing Web Cache Poisoning Attack · yanacuti1121 bundle
    Exploiting web cache mechanisms to serve malicious content to other users by poisoning cached responses through unkeyed headers and parameters during authorized security tests.
    2 repo stars
  52. ▌
    Rohitg00 AI Engineering From Scratch · yanacuti1121
    Curriculum AI engineering từ toán học lên production — 503 bài học, 20 phase, 320 giờ. MIT license. Build từ first principles: backprop, transformer, LLM, agent, swarm.
    2 repo stars
  53. ▌
    Testing API Authentication Weaknesses · yanacuti1121 bundle
    Tests API authentication mechanisms for weaknesses including broken token validation, missing authentication on endpoints, weak password policies, credential stuffing susceptibility, token leakage in URLs or logs, and session management flaws. The tester evaluates JWT implementation, API key handling, OAuth flows, and session token entropy to identify authentication bypasses. Maps to OWASP API2:2023 Broken Authentication. Activates for requests involving API authentication testing, token validation assessment, credential security testing, or API auth bypass.
    2 repo stars
  54. ▌
    Incremental Implementation · yanacuti1121
    Delivers changes incrementally. Use when implementing any feature or change that touches more than one file. Use when you're about to write a large amount of code at once, or when a task feels too big to land in one step.
    2 repo stars
  55. ▌
    App Store Optimization · yanacuti1121
    Complete App Store Optimization (ASO) toolkit for researching, optimizing, and tracking mobile app performance on Apple App Store and Google Play Store
    2 repo stars
  56. ▌
    AWS Solution Architect · yanacuti1121
    Expert AWS solution architecture for startups focusing on serverless, scalable, and cost-effective cloud infrastructure with modern DevOps practices and infrastructure-as-code
    2 repo stars
  57. ▌
    Analyzing Android Malware With Apktool · yanacuti1121 bundle
    Perform static analysis of Android APK malware samples using apktool for decompilation, jadx for Java source recovery, and androguard for permission analysis, manifest inspection, and suspicious API call detection.
    2 repo stars
  58. ▌
    Analyzing Memory Dumps With Volatility · yanacuti1121 bundle
    Analyzes RAM memory dumps from compromised systems using the Volatility framework to identify malicious processes, injected code, network connections, loaded modules, and extracted credentials. Supports Windows, Linux, and macOS memory forensics. Activates for requests involving memory forensics, RAM analysis, volatile data examination, process injection detection, or memory-resident malware investigation.
    2 repo stars
  59. ▌
    Analyzing Windows Event Logs In Splunk · yanacuti1121 bundle
    Analyzes Windows Security, System, and Sysmon event logs in Splunk to detect authentication attacks, privilege escalation, persistence mechanisms, and lateral movement using SPL queries mapped to MITRE ATT&CK techniques. Use when SOC analysts need to investigate Windows-based threats, build detection queries, or perform forensic timeline analysis of Windows endpoints and domain controllers.
    2 repo stars
  60. ▌
    Analyzing Windows Prefetch With Python · yanacuti1121 bundle
    Parse Windows Prefetch files using the windowsprefetch Python library to reconstruct application execution history, detect renamed or masquerading binaries, and identify suspicious program execution patterns.
    2 repo stars
  61. ▌
    Conducting Mobile App Penetration Test · yanacuti1121 bundle
    Conducts penetration testing of iOS and Android mobile applications following the OWASP Mobile Application Security Testing Guide (MASTG) to identify vulnerabilities in data storage, network communication, authentication, cryptography, and platform-specific security controls. The tester performs static analysis of application binaries, dynamic analysis at runtime, and API security testing to evaluate the complete mobile attack surface. Activates for requests involving mobile app pentest, iOS security assessment, Android security testing, or OWASP MASTG assessment.
    2 repo stars
  62. ▌
    Deploying Active Directory Honeytokens · yanacuti1121 bundle
    Deploys deception-based honeytokens in Active Directory including fake privileged accounts with AdminCount=1, fake SPNs for Kerberoasting detection (honeyroasting), decoy GPOs with cpassword traps, and fake BloodHound paths. Monitors Windows Security Event IDs 4769, 4625, 4662, 5136 for honeytoken interaction. Use when implementing AD deception defenses for detecting lateral movement, credential theft, and reconnaissance.
    2 repo stars
  63. ▌
    Deploying Tailscale For Zero Trust Vpn · yanacuti1121 bundle
    Deploy and configure Tailscale as a WireGuard-based zero trust mesh VPN with identity-aware access controls, ACLs, and exit nodes for secure peer-to-peer connectivity.
    2 repo stars
  64. ▌
    Detecting Attacks On Historian Servers · yanacuti1121 bundle
    Detect cyber attacks targeting OT historian servers (OSIsoft PI, Ignition, Wonderware) that sit at the IT/OT boundary and serve as pivot points for lateral movement between enterprise and control networks, including data manipulation, unauthorized queries, and exploitation of historian-specific vulnerabilities.
    2 repo stars
  65. ▌
    Detecting AWS Iam Privilege Escalation · yanacuti1121 bundle
    Detect AWS IAM privilege escalation paths using boto3 and Cloudsplaining policy analysis to identify overly permissive policies, dangerous permission combinations, and least-privilege violations
    2 repo stars
  66. ▌
    Detecting Beaconing Patterns With Zeek · yanacuti1121 bundle
    Performs statistical analysis of Zeek conn.log connection intervals to detect C2 beaconing patterns. Uses the ZAT library to load Zeek logs into Pandas DataFrames, calculates inter-arrival time standard deviation, and flags periodic connections with low jitter. Use when hunting for command-and-control callbacks in network data.
    2 repo stars
  67. ▌
    Build Macos Apps · yanacuti1121
    Build professional native macOS apps in Swift with SwiftUI and AppKit. Full lifecycle - build, debug, test, optimize, ship. CLI-only, no Xcode.
    2 repo stars
  68. ▌
    Template Engine From Scratch · yanacuti1121
    Use when implementing a text/HTML template engine (lexer, parser, renderer) from first principles — not when just using Handlebars/Jinja/EJS in an app. Triggers on: 'write a template engine', 'build a templating language', 'implement mustache-style templates', 'template lexer and parser', 'safe string interpolation without eval'. Covers tokenizing, AST design, and safe (non-eval) rendering.
    2 repo stars
  69. ▌
    Agent Factory · yanacuti1121
    Claude Code agent generation system that creates custom agents and sub-agents with enhanced YAML frontmatter, tool access patterns, and MCP integration support following proven production patterns
    2 repo stars
  70. ▌
    Competitive Platform Analysis · yanacuti1121
    Use when scoping a competitive landscape — identifying, categorising, and score-filtering a competitor set before any benchmarking begins. Decides who counts as a competitor, which tier they belong to, and which sources to mine. First step in the three-skill competitive pipeline; precedes benchmark-methodology.
    2 repo stars
  71. ▌
    Deusdata Codebase Memory MCP · yanacuti1121
    How to install and use codebase-memory-mcp — a single-binary MCP server that indexes a codebase into a persistent tree-sitter + Hybrid-LSP knowledge graph (158 languages), answering structural queries (call graph, dead code, HTTP/gRPC/GraphQL route linking, ADRs, Cypher-like queries) in sub-millisecond time with ~10x fewer tokens than file-by-file grep/read exploration. Triggers on: 'index this codebase', 'codebase memory mcp', 'code knowledge graph', 'find callers of', 'call graph', 'dead code detection', 'trace HTTP route', 'cypher query codebase', 'architecture overview mcp', 'deusdata codebase-memory', 'install codebase-memory-mcp'.
    2 repo stars
  72. ▌
    Harry0703 Moneyprinter Turbo · yanacuti1121
    MoneyPrinterTurbo — AI video generator từ topic/keyword: tự viết script, lấy stock footage, tạo subtitle, thêm nhạc nền. REST API + Streamlit UI. +9174⭐/week.
    2 repo stars
  73. ▌
    Hunting For Webshell Activity · yanacuti1121 bundle
    Hunt for web shell deployments on internet-facing servers by analyzing file creation in web directories, suspicious process spawning from web servers, and anomalous HTTP patterns.
    2 repo stars
  74. ▌
    Implementing AWS Security Hub · yanacuti1121 bundle
    This skill covers deploying AWS Security Hub as a centralized cloud security posture management platform that aggregates findings from GuardDuty, Inspector, Macie, and third-party tools. It details enabling security standards like CIS AWS Foundations Benchmark, configuring automated remediation, and building executive dashboards for compliance tracking across multi-account AWS organizations.
    2 repo stars
  75. ▌
    Memory Allocator From Scratch · yanacuti1121
    Use when implementing a custom malloc/free-style memory allocator from first principles — not when just using a language's built-in allocator. Triggers on: 'write a malloc implementation', 'build a memory allocator', 'free list allocator', 'buddy allocator', 'slab allocator', 'implement my own malloc/free'. Covers free-list design, block metadata, coalescing, alignment, and allocator strategy tradeoffs.
    2 repo stars
  76. ▌
    Observability Instrumentation · yanacuti1121
    Instrument services for observability — structured logging, distributed tracing, metrics naming conventions, and the three-pillar model. Use when asked about "add logging", "structured logs", "distributed tracing", "trace ID", "metrics", "Prometheus", "OpenTelemetry", "why can't I debug production issues", or "correlate logs across services". Do NOT use for: SLO/alerting design — use `slo-design`. Do NOT use for: log storage/infrastructure provisioning.
    2 repo stars
  77. ▌
    Processor Design From Scratch · yanacuti1121
    Use when designing and simulating a simple CPU/processor from first principles — instruction set design, fetch-decode-execute cycle, a minimal assembler. Not for general low-level programming or existing CPU architecture study. Triggers on: 'design a CPU from scratch', 'build a simple processor', 'implement an instruction set', 'fetch decode execute cycle', 'write a toy CPU simulator', 'build my own assembler'. Covers ISA design, the FDE cycle, register/ALU design, and software-simulated vs HDL implementation.
    2 repo stars
  78. ▌
    Profiling Threat Actor Groups · yanacuti1121 bundle
    Develops comprehensive threat actor profiles for APT groups, criminal organizations, and hacktivist collectives by aggregating TTP documentation, historical campaign data, tooling fingerprints, and attribution indicators from multiple intelligence sources. Use when briefing executives on sector-specific threats, updating threat model assumptions, or prioritizing defensive controls against specific adversaries. Activates for requests involving MITRE ATT&CK Groups, Mandiant APT profiles, CrowdStrike adversary naming, or sector-specific threat briefings.
    2 repo stars
  79. ▌
    Securing Serverless Functions · yanacuti1121 bundle
    This skill covers security hardening for serverless compute platforms including AWS Lambda, Azure Functions, and Google Cloud Functions. It addresses least privilege IAM roles, dependency vulnerability scanning, secrets management integration, input validation, function URL authentication, and runtime monitoring to protect against injection attacks, credential theft, and supply chain compromises.
    2 repo stars
  80. ▌
    Competitive Analysis · yanacuti1121
    When the user needs to evaluate competitors, understand the competitive landscape, or position their product against alternatives.
    2 repo stars
  81. ▌
    Daily Product Digest · yanacuti1121
    When the user wants a summary of what's trending on Product Hunt, Hacker News, Indie Hackers, or other product/startup communities. Also use when the user mentions "what launched today", "trending products", "HN front page", or "keep up with the market".
    2 repo stars
  82. ▌
    Partnership Outreach · yanacuti1121
    When a founder needs to write partnership or BD emails, craft integration pitches, or create co-marketing proposals. Activate when the user mentions partnerships, business development, integration proposals, co-marketing, channel partnerships, or strategic alliances.
    2 repo stars
  83. ▌
    Sentiment Monitoring · yanacuti1121
    When the user wants to monitor reviews, mentions, and community sentiment about their own product. Also use when the user mentions "track our reviews", "what are people saying about us", "brand monitoring", "reputation management", or "review alerts".
    2 repo stars
  84. ▌
    Stefan Jansen Ml For Trading · yanacuti1121
    Machine Learning for Algorithmic Trading — complete codebase cho cuốn sách ML trading 2nd edition. 18.9K stars.
    2 repo stars
  85. ▌
    Create Slash Commands · yanacuti1121
    Expert guidance for creating Claude Code slash commands. Use when working with slash commands, creating custom commands, understanding command structure, or learning YAML configuration.
    2 repo stars
  86. ▌
    Build Iphone Apps · yanacuti1121
    Build professional native iPhone apps in Swift with SwiftUI and UIKit. Full lifecycle - build, debug, test, optimize, ship. CLI-only, no Xcode. Targets iOS 26 with iOS 18 compatibility.
    2 repo stars
  87. ▌
    Testing Cors Misconfiguration · yanacuti1121 bundle
    Identifying and exploiting Cross-Origin Resource Sharing misconfigurations that allow unauthorized cross-domain data access and credential theft during security assessments.
    2 repo stars
  88. ▌
    Venice Venice Image Generate · yanacuti1121
    Generate images with Venice. Covers POST /image/generate (Venice-native), POST /images/generations (OpenAI-compatible), GET /image/styles (style presets), request fields (prompt, dimensions, cfg_scale, seed, variants, style_preset, aspect_ratio, resolution, safe_mode, watermark), and response format
    2 repo stars
  89. ▌
    Using Agent Skills · yanacuti1121
    Discovers and invokes agent skills. Use when starting a session or when you need to discover which skill applies to the current task. This is the meta-skill that governs how all other skills are discovered and invoked.
    2 repo stars
  90. ▌
    Ashishpatel26 500 AI Projects · yanacuti1121
    Kho tổng hợp 500+ project AI/ML/DL/CV/NLP kèm code — reference nhanh khi cần implementation mẫu. Bao gồm CV, NLP, healthcare ML, time series, production ML.
    2 repo stars
  91. ▌
    Augmented Reality From Scratch · yanacuti1121
    Use when implementing the core AR pipeline (camera pose estimation, marker tracking, projection overlay) from first principles — not when just using ARKit/ARCore/Unity's AR framework as a black box. Triggers on: 'build augmented reality from scratch', 'marker-based AR tracking', 'camera pose estimation', 'implement fiducial marker detection', 'AR projection matrix math', 'markerless AR tracking'. Covers marker-based vs markerless tracking, pose estimation, and the projection math to overlay 3D content on a camera feed.
    2 repo stars
  92. ▌
    Bittorrent Client From Scratch · yanacuti1121
    Use when building a BitTorrent client or any peer-to-peer file-sharing protocol from first principles — not when integrating an existing torrent library. Triggers on: 'build a torrent client', 'implement bittorrent protocol', 'peer wire protocol', 'bencode parser', 'write a torrent tracker client', 'piece selection algorithm'. Covers bencode encoding, tracker HTTP/UDP protocol, the peer wire protocol, and piece-selection strategy.
    2 repo stars
  93. ▌
    Book Clean Architecture Full · yanacuti1121
    Clean Architecture (Robert C. Martin) — Full rules — comprehensive mandatory coding standards. Use when asked to apply Clean Architecture principles or review code against Clean Architecture standards.
    2 repo stars
  94. ▌
    Book Clean Architecture Mini · yanacuti1121
    Clean Architecture (Robert C. Martin) — Condensed rules — key principles distilled. Use when asked to apply Clean Architecture principles or review code against Clean Architecture standards.
    2 repo stars
  95. ▌
    Book Clean Architecture Nano · yanacuti1121
    Clean Architecture (Robert C. Martin) — Minimal rules — essential one-liners only. Use when asked to apply Clean Architecture principles or review code against Clean Architecture standards.
    2 repo stars
  96. ▌
    Building Soc Escalation Matrix · yanacuti1121 bundle
    Build a structured SOC escalation matrix defining severity tiers, response SLAs, escalation paths, and notification procedures for security incidents.
    2 repo stars
  97. ▌
    Detecting Shadow API Endpoints · yanacuti1121 bundle
    Discover and inventory shadow API endpoints that operate outside documented specifications using traffic analysis, code scanning, and API discovery platforms.
    2 repo stars
  98. ▌
    Everyinc Compound Engineering · yanacuti1121
    Compound Engineering plugin cho Claude Code + Cursor — 37 skills, 51 agents, triết lý 80% planning/review + 20% execution. Mỗi unit làm việc sau dễ hơn trước.
    2 repo stars
  99. ▌
    Dependency Supply Chain · yanacuti1121
    Audit and defend against malicious dependencies in npm, pnpm, PyPI, and similar ecosystems. Covers lockfile hygiene, the limits of npm audit, behavior-level scanning with socket.dev, postinstall script review, typosquat and slopsquat detection, and minimum-permission CI runs. Invoke when adding a new dependency, after a supply-chain incident, or as periodic audit.
    2 repo stars
  100. ▌
    Gdpr Technical Controls · yanacuti1121
    Implement the technical side of GDPR and EU privacy compliance. Covers data inventory, subject-access (SAR) and deletion endpoints, anonymization patterns, log scrubbing, the 72-hour breach notification path, and sub-processor (DPA / AVV) tracking. Invoke when building a product handling EU resident data, responding to a SAR, or preparing for a Datenschutz audit.
    2 repo stars