Agent skills
Skills you can use with AI coding agents, indexed from public GitHub repositories.
-
security-scan-trivy
Trivyで依存関係/コンテナの脆弱性をスキャンし、重大度順に潰す。リリース前チェックで使う。
majiayu000/claude-skill-registry 163
-
audit-style
Audit and refactor CSS to comply with Game Loopers design system and BEM methodology
majiayu000/claude-skill-registry 163
-
auth-provider
认证提供商统一接口,支持 Supabase Auth、Clerk、Firebase Auth 等主流认证服务。
提供用户注册、登录、OAuth、会话管理、权限验证等功能。
majiayu000/claude-skill-registry 163
-
analyzing-system-throughput
Analyze and optimize system throughput including request handling, data processing, and resource utilization. Use when identifying capacity limits or evaluating scaling strategies. Trigger with phrases like "analyze throughput", "optimize capacity", or "identify bottlenecks".
majiayu000/claude-skill-registry 163
-
dast-zap
Dynamic application security testing (DAST) using OWASP ZAP (Zed Attack Proxy) with passive and active scanning, API testing, and OWASP Top 10 vulnerability detection. Use when: (1) Performing runtime security testing of web applications and APIs, (2) Detecting vulnerabilities like XSS, SQL injection, and authentication flaws in deployed applications, (3) Automating security scans in CI/CD pipelines with Docker containers, (4) Conducting authenticated testing with session management, (5) Generating security reports with OWASP and CWE mappings for compliance.
majiayu000/claude-skill-registry 163
-
circleci-config-generator
Generate CircleCI configuration files with workflows, orbs, and deployment. Triggers on "create circleci config", "generate circleci configuration", "circleci pipeline", "circle ci setup".
majiayu000/claude-skill-registry 163
-
deployment-validator
Validates application readiness for Render/production deployment. Auto-runs when user mentions deployment. Prevents "works locally, fails in production" issues. Always run this BEFORE any deployment.
majiayu000/claude-skill-registry 163
-
translation-sync
Expert assistant for managing Finnish/English content translations in the KR92 Bible Voice project. Use when syncing topic translations, managing translation cache, validating translation completeness, or importing/exporting CSV translations.
majiayu000/claude-skill-registry 163
-
Cross-Site Scripting and HTML Injection Testing
This skill should be used when the user asks to "test for XSS vulnerabilities", "perform cross-site scripting attacks", "identify HTML injection flaws", "exploit client-side injection vulnerabilities", "steal cookies via XSS", or "bypass content security policies". It provides comprehensive techniques for detecting, exploiting, and understanding XSS and HTML injection attack vectors in web applications.
majiayu000/claude-skill-registry 163
-
malware-analysis
Professional malware analysis workflow for PE executables and suspicious files. Triggers on file uploads with requests like "analyze this malware", "analyze this sample", "what does this executable do", "check this file for malware", or any request to examine suspicious files. Performs static analysis, threat intelligence triage, behavioral inference, and produces analyst-grade reports with reasoned conclusions.
majiayu000/claude-skill-registry 163
-
faq-schema-generator
Generate FAQ sections with proper FAQPage schema markup for therapy pages. Creates 10-12 therapy-specific questions, 50-100 word answers, and valid JSON-LD schema. Optimized for Google rich snippets (health websites still eligible). Includes CRPO-compliant language and Ontario-specific content. Use when user says "add FAQ", "FAQ schema", "improve rich snippets", or when creating/updating therapy pages.
majiayu000/claude-skill-registry 163
-
blackbox
Use when restoring previous file versions, querying file modification history, recovering from accidental edits, or understanding how blackbox flight recorder works for file snapshots and disaster recovery
majiayu000/claude-skill-registry 163
-
qaw-facilitation
Quality Attribute Workshop (QAW) facilitation for eliciting and prioritizing NFRs
majiayu000/claude-skill-registry 163
-
docker-local-env
Check and manage .env configuration for docker-local projects - conflict detection, unique IDs, isolation settings
majiayu000/claude-skill-registry 163
-
llamaguard
Meta's 7-8B specialized moderation model for LLM input/output filtering. 6 safety categories - violence/hate, sexual content, weapons, substances, self-harm, criminal planning. 94-95% accuracy. Deploy with vLLM, HuggingFace, Sagemaker. Integrates with NeMo Guardrails.
majiayu000/claude-skill-registry 163
-
pyramid-principle
Hierarchical content structure - answer first, then supporting arguments, then details
majiayu000/claude-skill-registry 163
-
hubspot-crm
Use when syncing contacts or lists to HubSpot CRM. Automatically uses HUBSPOT_API_TOKEN from environment.
majiayu000/claude-skill-registry 163
-
aws-ec2-deployment
Launch, configure, and manage EC2 instances with best practices
majiayu000/claude-skill-registry 163
-
flow-nexus-platform
Comprehensive Flow Nexus platform management - authentication, sandboxes, app deployment, payments, and challenges
majiayu000/claude-skill-registry 163
-
lxc-service-deployment
Standardized deployment procedure for services in LXC containers on the Proxmox HA cluster. Use when deploying a new service, creating LXC containers, configuring DHCP reservations (Kea), DNS rewrites (AdGuard), reverse proxy routes (Traefik), or integrating with monitoring (Uptime Kuma) and dashboard (Homepage). Triggers on phrases like "deploy a new service", "create container for", "set up DHCP", "add Traefik route", "configure DNS rewrite", or any homelab infrastructure deployment.
majiayu000/claude-skill-registry 163
-
iac-checkov
Infrastructure as Code (IaC) security scanning using Checkov with 750+ built-in policies for Terraform, CloudFormation, Kubernetes, Dockerfile, and ARM templates. Use when: (1) Scanning IaC files for security misconfigurations and compliance violations, (2) Validating cloud infrastructure against CIS, PCI-DSS, HIPAA, and SOC2 benchmarks, (3) Detecting secrets and hardcoded credentials in IaC, (4) Implementing policy-as-code in CI/CD pipelines, (5) Generating compliance reports with remediation guidance for cloud security posture management.
majiayu000/claude-skill-registry 163
-
ci-cd-implement
Analyze a project and implement CI/CD pipelines tailored to its tech stack and deployment target. This skill should be used when a project is ready for automated testing and/or deployment. Generates GitHub Actions workflows, deployment scripts, and secrets documentation. Works as a standalone utility on any project.
majiayu000/claude-skill-registry 163
-
Testing web apps with Playwright
Test EventOS web application end-to-end using Playwright browser automation via MCP. Use PROACTIVELY for smoke tests after deployments, validating user flows (booking, event creation, dashboard), debugging production issues, and verifying RLS policies. Supports accessibility-based interactions, network monitoring, and multi-browser testing.
majiayu000/claude-skill-registry 163
-
reference-class-forecasting
Use when starting a forecast to establish a statistical baseline (base rate) before analyzing specifics. Invoke when need to anchor predictions in historical reality, avoid "this time is different" bias, or establish outside view before inside view analysis. Use when user mentions base rates, reference classes, outside view, or starting a new prediction.
majiayu000/claude-skill-registry 163