Skills
Each entry shows what its maintainer published and when the project was last touched. Where a repository has been deleted or archived, that is stated on the entry instead of being quietly left out.
Worked on in the last 90 days (54)
Someone pushed a commit recently. This is the shortlist worth trying first.
-
phuryn-pm-skills-sprint-plan
— last commit 2026-07-03
Plan a sprint with capacity estimation, story selection, dependency mapping, and risk identification. Use when preparing for sprint plannin…
-
phuryn-pm-skills-sql-queries
— last commit 2026-07-03
Generate SQL queries from natural language descriptions. Supports BigQuery, PostgreSQL, MySQL, and other dialects. Reads database schemas f…
-
phuryn-pm-skills-stakeholder-map
— last commit 2026-07-03
Build a stakeholder map using a power/interest grid, identify communication strategies per quadrant, and generate a communication plan. Use…
-
phuryn-pm-skills-strategy-red-team
— last commit 2026-07-03
Red-team a PRD, roadmap, or strategy by attacking its load-bearing assumptions before reality does. Steelmans then attacks each claim, rank…
-
phuryn-pm-skills-summarize-meeting
— last commit 2026-07-03
Summarize a meeting transcript into structured notes with date, participants, topic, key decisions, summary points, and action items. Use w…
-
phuryn-pm-skills-test-scenarios
— last commit 2026-07-03
Create comprehensive test scenarios from user stories with test objectives, starting conditions, user roles, step-by-step actions, and expe…
-
phuryn-pm-skills-user-stories
— last commit 2026-07-03
Create user stories following the 3 C's (Card, Conversation, Confirmation) and INVEST criteria with descriptions, design links, and accepta…
-
phuryn-pm-skills-wwas
— last commit 2026-07-03
Create product backlog items in Why-What-Acceptance format — independent, valuable, testable items with strategic context. Use when writing…
-
hypnguyen1209-offensive-claude-active-directory-attack
— last commit 2026-07-03
Use when attacking a Windows Active Directory domain — Kerberos roasting/delegation, coercion + NTLM/Kerberos relay (CVE-2025-33073), ADCS…
-
hypnguyen1209-offensive-claude-ai-agent-redteam
— last commit 2026-07-03
Use when red-teaming an agentic AI / LLM application — indirect & zero-click prompt injection, MCP tool poisoning, persistent memory poison…
-
hypnguyen1209-offensive-claude-ai-security
— last commit 2026-07-03
Use when attacking an AI/ML system or model — prompt injection & jailbreaks (Crescendo, Skeleton Key, Best-of-N), RAG/vector poisoning, age…
-
hypnguyen1209-offensive-claude-browser-exploitation
— last commit 2026-07-03
Use when building a client-side browser exploit — V8/JSC JIT type confusion to renderer R/W, V8 heap-sandbox escape, renderer-to-browser sa…
-
hypnguyen1209-offensive-claude-cicd-supply-chain
— last commit 2026-07-03
Use when attacking or auditing a CI/CD pipeline or software supply chain — pwn requests, poisoned pipeline execution, compromised/mutable-t…
-
hypnguyen1209-offensive-claude-cloud-security
— last commit 2026-07-03
Use when attacking AWS/Azure/GCP cloud — IAM/identity privilege escalation, IMDS/metadata SSRF, Entra device-code & PRT theft, GCP imperson…
-
hypnguyen1209-offensive-claude-coding-mastery
— last commit 2026-07-03
Use when writing security tooling, exploits, scanners, or C2 in Python/C/Go/Rust/ASM — systems & network programming, automation, cryptogra…
-
hypnguyen1209-offensive-claude-container-k8s-escape
— last commit 2026-07-03
Use when breaking out of a container or escalating inside Kubernetes — runc/BuildKit CVEs, privileged/capability/cgroup misconfig escapes,…
-
hypnguyen1209-offensive-claude-crypto-analysis
— last commit 2026-07-03
Use when assessing cryptography — TLS/PKI auditing, RSA/ECC key attacks, ECDSA nonce lattice recovery, symmetric/AEAD misuse, JWT/JOSE forg…
-
hypnguyen1209-offensive-claude-edr-evasion
— last commit 2026-07-03
Use when bypassing EDR/AV to run a payload — hook unhooking, direct/indirect syscalls, PPID spoofing, process injection, AMSI bypass, ETW p…
-
hypnguyen1209-offensive-claude-engagement-flow
— last commit 2026-07-03
Use when starting, planning, or running a multi-phase pentest or red-team engagement — to sequence the Cyber Kill Chain phases with quality…
-
hypnguyen1209-offensive-claude-engagement-memory
— last commit 2026-07-03
Use when recalling prior techniques at recon/weaponize, or recording a confirmed finding at report — cross-engagement pattern memory ranked…
-
hypnguyen1209-offensive-claude-exploit-development
— last commit 2026-07-03
Use when turning a memory-corruption bug into a working PoC — stack/ROP, glibc heap & FSOP, format strings, browser/JIT type confusion & UA…
-
hypnguyen1209-offensive-claude-finding-discipline
— last commit 2026-07-03
Use when about to record, claim, rate the severity of, or report any security finding — before marking anything [CONFIRMED] or writing it i…
-
hypnguyen1209-offensive-claude-incident-response
— last commit 2026-07-03
Use when responding to or forensically investigating an incident — triage acquisition (Velociraptor/KAPE), Volatility 3 memory forensics, C…
-
hypnguyen1209-offensive-claude-initial-access
— last commit 2026-07-03
Use when gaining initial access to a target — phishing, payload delivery, HTML smuggling, ISO/IMG/MOTW bypass, supply-chain, credential stu…
-
hypnguyen1209-offensive-claude-malware-analysis
— last commit 2026-07-03
Use when reverse-engineering or detecting malware — static triage + capa/YARA-X, emulation/DBI/.NET unpacking, dynamic/fileless/Volatility…
-
hypnguyen1209-offensive-claude-mobile-pentest
— last commit 2026-07-03
Use when pentesting an Android/iOS app — Frida 17 instrumentation, SSL-pinning & root/jailbreak bypass, Android 14/15 CA injection, exporte…
-
hypnguyen1209-offensive-claude-network-attack
— last commit 2026-07-03
Use when attacking a network or moving laterally — L2/L3 poisoning (LLMNR/mDNS, ARP/DHCP, mitm6), coercion + NTLM relay (CVE-2025-33073), T…
-
hypnguyen1209-offensive-claude-opsec-discipline
— last commit 2026-07-03
Use when about to take any outward or offensive action (request, payload, persistence, lateral movement, exfil, or feeding captured traffic…
-
hypnguyen1209-offensive-claude-privesc-linux
— last commit 2026-07-03
Use when escalating privileges on a Linux host — SUID/SGID & GTFOBins, sudo LPE (CVE-2025-32462/32463), capabilities & LD_PRELOAD, kernel L…
-
hypnguyen1209-offensive-claude-privesc-windows
— last commit 2026-07-03
Use when escalating privileges on a Windows host — SeImpersonate Potato chains (GodPotato/PrintNotifyPotato), service & DLL hijacking, UAC…
-
hypnguyen1209-offensive-claude-recon-osint
— last commit 2026-07-03
Use when mapping a target's external attack surface or gathering OSINT — subdomain enumeration, attack-surface mapping (httpx/katana/JS sec…
-
hypnguyen1209-offensive-claude-red-team-ops
— last commit 2026-07-03
Use when running a full red-team engagement end-to-end — initial access, persistence, privilege escalation, defense evasion, C2 infrastruct…
-
hypnguyen1209-offensive-claude-reverse-engineering
— last commit 2026-07-03
Use when reverse-engineering a binary or firmware — static triage + decompilation (Ghidra/IDA/Binary Ninja), dynamic instrumentation (GDB/F…
-
hypnguyen1209-offensive-claude-scope-discipline
— last commit 2026-07-03
Use when about to send a request to, scan, enumerate, exploit, or otherwise interact with any host, IP, URL, or asset — before the first pa…
-
hypnguyen1209-offensive-claude-shellcode-dev
— last commit 2026-07-03
Use when writing position-independent shellcode or a loader — PEB walking, API hashing, null-byte avoidance, encoders, loaders, PE-to-shell…
-
hypnguyen1209-offensive-claude-threat-hunting
— last commit 2026-07-03
Use when hunting threats or engineering detections — ATT&CK Detection-Strategies, Sigma + correlation with Detection-as-Code CI, Windows en…
-
antonbabenko-terraform-skill-terraform-skill
— last commit 2026-07-03
Use when writing, reviewing, or debugging Terraform/OpenTofu modules, tests, CI, scans, or state ops - diagnoses failure mode (identity chu…
-
open-gitagent-opengap-code-review
— last commit 2026-07-02
Reviews code diffs and files for security vulnerabilities (OWASP Top 10), error handling, complexity, naming conventions, and performance i…
-
open-gitagent-opengap-create-agent
— last commit 2026-07-02
Creates and configures agent.yaml files, writes SOUL.md personality definitions, and sets up agent directory structures with skills, tools,…
-
open-gitagent-opengap-document-review
— last commit 2026-07-02
Reviews financial documents (prospectuses, ADVs, marketing materials) for FINRA 2210 compliance, required disclosures, and balanced present…
-
open-gitagent-opengap-export-agent
— last commit 2026-07-02
Converts agent definitions between frameworks — exports to Claude Code, OpenAI, CrewAI, Lyzr, and GitHub Models formats, and imports from C…
-
open-gitagent-opengap-get-started
— last commit 2026-07-02
Guides installation of gitagent and creation of first agent with scaffolding, configuration, and validation. Use when the user is new to gi…
-
open-gitagent-opengap-knowledge-retrieval
— last commit 2026-07-02
Semantic search over ingested documents using RAG (LlamaIndex/ChromaDB or Foundational RAG)
-
open-gitagent-opengap-manage-skills
— last commit 2026-07-02
Searches the SkillsMP registry, installs skills locally or globally, creates custom skills with SKILL.md frontmatter, and manages the skill…
-
open-gitagent-opengap-paper-search
— last commit 2026-07-02
Academic paper search via Google Scholar using Serper API
-
open-gitagent-opengap-regulatory-analysis
— last commit 2026-07-02
Analyzes documents and processes against FINRA, SEC, Federal Reserve, and CFPB regulatory frameworks. Identifies compliance gaps, classifie…
-
open-gitagent-opengap-research
— last commit 2026-07-02
Researches a topic by breaking it into subtopics, gathering factual information with reasoning, and producing a structured summary with key…
-
open-gitagent-opengap-run-agent
— last commit 2026-07-02
Configures and runs agents with different adapters including Claude, OpenAI, CrewAI, Lyzr, and GitHub Models. Supports local execution, rem…
-
open-gitagent-opengap-web-search
— last commit 2026-07-02
Advanced web search using Tavily API for current information retrieval
-
open-gitagent-opengap-wiki-ingest
— last commit 2026-07-02
Ingest a raw source document into the wiki. Reads the source, extracts key information, creates or updates wiki pages, maintains cross-refe…
-
open-gitagent-opengap-wiki-lint
— last commit 2026-07-02
Health-check the wiki for contradictions, stale claims, orphan pages, missing cross-references, and knowledge gaps. Use periodically or whe…
-
open-gitagent-opengap-wiki-query
— last commit 2026-07-02
Query the wiki to answer questions. Searches wiki pages, synthesizes answers with citations, and optionally files valuable answers back as…
-
jpeetz-agent-skills-app-discovery-scrutiny
— last commit 2026-07-02
Use this skill when the user wants to evaluate a mobile app idea for commercial viability — whether it's a clone opportunity, a market gap,…
-
jpeetz-agent-skills-app-scaffolding
— last commit 2026-07-02
Use this skill when the user has decided to build a mobile app and needs a complete production blueprint — not brainstorming, not feature i…
Page 46 of 50
How this page is ordered
Entries are grouped by whether anyone is still working on them, using the date of the most recent push to the repository. They are not ordered by stars, because a star is a bookmark somebody left once and never took back.
Where we have not checked an entry yet, it says so rather than being mixed in with the verified ones.