All authors

Claude Skills by borghei
github.com/borghei664 skills6 installs822 views
- Scrum MasterData-driven Scrum Master for sprint health scoring, Monte Carlo velocity forecasting, retrospective analysis, capacity planning, and Tuckman team coaching. Use when facilitating sprint planning, diagnosing velocity, or running retrospectives.Votes: 0GitHub stars: 847
- Senior PmSenior Project Manager for enterprise software, SaaS, and digital transformation projects. Specializes in portfolio management, quantitative risk analysis, resource optimization, stakeholder alignment, and executive reporting. Uses advanced methodologies including EMV analysis, Monte Carlo simulation, WSJF prioritization, and multi-dimensional health scoring.Votes: 0GitHub stars: 847
- Sprint RetrospectiveData-driven sprint retrospectives with velocity analytics, contributor insights, code quality trends, and actionable improvement recommendations. Analyzes git history to produce comprehensive retrospective reports with session detection, churn hotspots, work pattern analysis, and sprint-over-sprint comparison dashboards.Votes: 0GitHub stars: 847
- Ansoff MatrixAnsoff Matrix — 4-quadrant framework for growth strategy options: market penetration, market development, product development, and diversification. Use when evaluating growth bets, prioritizing investment across quadrants, and explicitly acknowledging the risk ladder from "more of what we know" to "new product in new market".Votes: 0GitHub stars: 847
- Business Model CanvasBuild, evaluate, and stress-test a Business Model Canvas (Osterwalder) across all 9 building blocks. Use when designing or refreshing a business model, auditing an existing canvas for gaps, exploring monetization alternatives, or aligning leadership on the business model assumptions that everything else depends on.Votes: 0GitHub stars: 847
- Lean CanvasLean Canvas (Ash Maurya) — startup-focused adaptation of the Business Model Canvas, optimized for capturing assumptions and unfair advantages in early-stage products. Use when at the idea, pre-PMF, or pivot stage; when BMC is too operational; when you need a 1-page model in 20 minutes.Votes: 0GitHub stars: 847
- Porters Five ForcesPorter's Five Forces — analyze the competitive intensity and attractiveness of an industry. Use when evaluating a new market entry, understanding why margins are under pressure, designing a defensive strategy, or auditing strategic positioning at industry level.Votes: 0GitHub stars: 847
- Swot AnalysisSWOT analysis (Strengths, Weaknesses, Opportunities, Threats) — the foundational strategic-positioning exercise. Use when assessing a new market entry, a strategic pivot, a competitive response, an org restructure, or as input to annual strategic planning. Includes a validator that flags generic, ungrounded, or one-sided SWOTs.Votes: 0GitHub stars: 847
- Ai Act ReadinessEU AI Act readiness assessment + sprint playbook. Use when preparing for the Aug 2026 high-risk AI system requirements deadline, when notified-body conformity assessment is scheduled, when GPAI (general-purpose AI) obligations apply, or when annual readiness assessment is due. Pairs with our deep eu-ai-act-specialist skill — that one builds the program; this one preps for the specific assessment.Votes: 0GitHub stars: 847
- Aims AuditISO 42001 AI Management System (AIMS) audit-prep playbook. Use when ISO 42001 certification audit is scheduled (Stage 1 documentation review OR Stage 2 onsite), when surveillance audit is due, when internal AIMS audit is being conducted, or when preparing AI Impact Assessment (AIIA) for new AI systems. Pairs with our iso42001-ai-management skill — that one builds the AIMS; this one preps for the certification or surveillance audit.Votes: 0GitHub stars: 847
- Compliance ReadinessCross-framework compliance readiness orchestrator. Use when preparing for multi-framework certification (SOC 2 + ISO 27001 + NIST CSF together), when building a shared-evidence strategy that satisfies multiple frameworks simultaneously, when sequencing certifications (which to do first), or when mapping a single control to its expression across multiple frameworks. Sits above the framework-specific audit-prep skills and the deep framework-specialist skills.Votes: 0GitHub stars: 847
- Fda Qsr Audit PrepFDA Quality System Regulation (21 CFR 820 / QMSR) audit-prep playbook for medical device companies. Use when an FDA inspection is announced, when preparing for the new QMSR (Quality Management System Regulation, 2026), when 483 / Warning Letter response is needed, or when annual readiness assessment surfaces gaps. Pairs with our fda-consultant-specialist for program-building; this skill is the audit-event playbook.Votes: 0GitHub stars: 847
- Gdpr Audit PrepGDPR audit-prep playbook: 4/8/12-week sprint to prepare for a supervisory authority inquiry, a customer-side DPA audit, or an internal compliance review. Use when an audit is on the calendar, when readiness assessment surfaced gaps, or when ROPA (Records of Processing Activities) needs rapid completion. Pairs with our deep gdpr-dsgvo-expert skill (the program-building one) — this is the operational audit-prep variant.Votes: 0GitHub stars: 847
- Soc2 Audit PrepSOC 2 audit-prep playbook: the 4/8/12-week sprint to get from "we have most of the controls" to "audit-ready" for a Type I or Type II observation. Use when the audit is scheduled and you need a punch list, when readiness assessment surfaced gaps and you need a sprint plan, or when evidence collection is missing or stale. Lighter operational complement to our deep soc2-compliance-expert skill — that one builds the program; this one preps for the specific audit event.Votes: 0GitHub stars: 847
- Capa OfficerCAPA system management for medical device QMS. Covers root cause analysis, corrective action planning, effectiveness verification, and CAPA metrics. Use for CAPA investigations, 5-Why analysis, fishbone diagrams, root cause determination, corrective action tracking, effectiveness verification, or CAPA program optimization.Votes: 0GitHub stars: 847
- Ccpa Cpra Privacy ExpertCCPA and CPRA privacy compliance automation. Audits organizations for California privacy law compliance, maps personal information flows, validates consumer rights readiness, and checks technical safeguards. Use for CCPA compliance assessments, CPRA readiness checks, privacy policy review, consumer rights handling, data mapping, and California privacy audits.Votes: 0GitHub stars: 847
- Dora Compliance ExpertDORA (EU 2022/2554) digital operational resilience compliance automation for financial entities. Assesses readiness against all 5 DORA pillars, classifies ICT incidents, validates third-party risk management, and generates resilience testing plans. Use for DORA compliance assessments, ICT risk management, incident classification, third-party ICT oversight, and digital operational resilience testing.Votes: 0GitHub stars: 847
- Eu Ai Act SpecialistEU AI Act (Regulation EU 2024/1689) compliance specialist. Use when classifying AI systems by risk tier, assessing provider or deployer obligations, evaluating GPAI model compliance, running conformity assessments, performing bias detection and fairness testing, building AI governance programs, or preparing for EU AI Act enforcement deadlines. Covers the full regulatory lifecycle from system inventory through post-market monitoring.Votes: 0GitHub stars: 847
- Fda Consultant SpecialistFDA regulatory consultant for medical device companies. Provides 510(k)/PMA/De Novo pathway guidance, QSR (21 CFR 820) compliance, HIPAA assessments, and device cybersecurity. Use when user mentions FDA submission, 510(k), PMA, De Novo, QSR, premarket, predicate device, substantial equivalence, HIPAA medical device, or FDA cybersecurity.Votes: 0GitHub stars: 847
- Gdpr Dsgvo ExpertGDPR and German DSGVO compliance automation. Scans codebases for privacy risks, generates DPIA documentation, tracks data subject rights requests. Use for GDPR compliance assessments, privacy audits, data protection planning, DPIA generation, and data subject rights management.Votes: 0GitHub stars: 847
- Information Security Manager Iso27001ISO 27001 ISMS implementation and cybersecurity governance for HealthTech and MedTech companies. Use for ISMS design, security risk assessment, control implementation, ISO 27001 certification, security audits, incident response, and compliance verification. Covers ISO 27001, ISO 27002, healthcare security, and medical device cybersecurity.Votes: 0GitHub stars: 847
- Infrastructure Compliance AuditorCross-cutting infrastructure security audit skill that checks cloud infrastructure, DNS, TLS, endpoints, access control, network security, containers, CI/CD pipelines, secrets management, logging, and physical security against ALL major compliance frameworks. Use for infrastructure audit, cloud security audit, infrastructure compliance, DNS security audit, TLS audit, endpoint security, access control audit, network security assessment, infrastructure security, cloud compliance, Vanta alternat...Votes: 0GitHub stars: 847
- Isms Audit ExpertInformation Security Management System auditing for ISO 27001 compliance, security control assessment, and certification support. Use when planning ISMS audit programs, executing internal or external ISO 27001 audits, testing ISO 27002 Annex A controls, managing audit findings and corrective actions, or preparing for Stage 1/Stage 2 certification and surveillance audits.Votes: 0GitHub stars: 847
- Iso42001 Ai ManagementISO 42001 AI Management System compliance automation. Assesses organizational readiness for AIMS certification, evaluates AI system impacts, validates governance structures, and checks Annex A controls. Use for ISO 42001 readiness assessments, AI governance planning, AI impact assessments, responsible AI implementation, and AIMS certification preparation.Votes: 0GitHub stars: 847
- Mdr 745 SpecialistEU MDR 2017/745 compliance specialist for medical device classification, technical documentation, clinical evidence, and post-market surveillance. Covers Annex VIII classification rules, Annex II/III technical files, Annex XIV clinical evaluation, and EUDAMED integration.Votes: 0GitHub stars: 847
- Nis2 Directive SpecialistNIS2 Directive (EU 2022/2555) compliance automation. Analyzes organizational scope, assesses compliance against all 10 minimum security measures, validates incident reporting readiness, and generates gap analysis reports. Use for NIS2 compliance assessments, critical infrastructure cybersecurity planning, supply chain security evaluation, and incident reporting preparation.Votes: 0GitHub stars: 847
- Nist Csf SpecialistNIST Cybersecurity Framework 2.0 implementation, assessment, and compliance management. Use for NIST cybersecurity framework, CSF 2.0, NIST compliance, cybersecurity risk management, NIST controls, NIST assessment, cybersecurity maturity, NIST CSF profile, cybersecurity governance, CSF gap analysis, cybersecurity program development, and cross-framework compliance mapping.Votes: 0GitHub stars: 847
- Pci Dss SpecialistPCI DSS v4.0 payment card industry data security standard compliance, assessment, and implementation. Use for PCI DSS, payment card security, cardholder data, PCI compliance, payment security, PCI assessment, SAQ, ROC, QSA, credit card security, payment processing security, PCI scoping, tokenization, payment terminal security, CDE security, and merchant compliance.Votes: 0GitHub stars: 847
- Qms Audit ExpertISO 13485 internal audit expertise for medical device QMS. Covers audit planning, execution, nonconformity classification, and CAPA verification. Use for internal audit planning, audit execution, finding classification, external audit preparation, or audit program management.Votes: 0GitHub stars: 847
- Quality Documentation ManagerDocument control system management for medical device QMS. Covers document numbering, version control, change management, and 21 CFR Part 11 compliance. Use for document control procedures, change control workflow, document numbering, version management, electronic signature compliance, or regulatory documentation review.Votes: 0GitHub stars: 847
- Quality Manager QmrSenior Quality Manager Responsible Person (QMR) for HealthTech and MedTech companies. Use when conducting management reviews, setting quality objectives, tracking quality KPIs, assessing quality culture, overseeing regulatory compliance across jurisdictions, or preparing for Notified Body and FDA inspections. Provides quality system governance and performance monitoring per ISO 13485 Clause 5.5.2.Votes: 0GitHub stars: 847
- Quality Manager Qms Iso13485ISO 13485 Quality Management System implementation and maintenance for medical device organizations. Provides QMS design, documentation control, internal auditing, CAPA management, and certification support.Votes: 0GitHub stars: 847
- Regulatory Affairs HeadSenior Regulatory Affairs Manager for HealthTech and MedTech companies. Use when developing regulatory strategy, preparing FDA 510(k)/PMA/De Novo submissions, planning EU MDR CE marking, coordinating global market access, or monitoring regulatory intelligence. Provides pathway analysis, submission management, timeline planning, and cross-functional regulatory leadership.Votes: 0GitHub stars: 847
- Risk Management SpecialistMedical device risk management specialist implementing ISO 14971 throughout product lifecycle. Provides risk analysis, risk evaluation, risk control, and post-production information analysis.Votes: 0GitHub stars: 847
- Soc2 Compliance ExpertSOC 2 Type I and Type II compliance management. Use when conducting SOC 2 readiness assessments, performing gap analysis against Trust Services Criteria, collecting audit evidence, validating infrastructure security controls, preparing for CPA firm audits, managing the observation period, or building continuous compliance programs. Covers all TSC categories (CC1-CC9, A1, PI1, C1, P1) with infrastructure validation for cloud, DNS, TLS, endpoints, and CI/CD pipelines.Votes: 0GitHub stars: 847
- DossierBuild structured intelligence dossiers on companies, people, markets, or domains. Covers dossier frameworks, source triangulation, reliability scoring, and fact/inference discipline. Use when preparing a deal-prep dossier, executive briefing, market-entry analysis, due-diligence overview, or board-ready intelligence document.Votes: 0GitHub stars: 847
- GrantsGrant writing and proposal architecture skill for researchers, founders, and nonprofits. Covers funder fit, proposal structure, budget design, narrative discipline, and success-factor scoring. Use when writing a grant proposal, evaluating funder fit before applying, auditing a draft for competitiveness, or planning a budget that survives review.Votes: 0GitHub stars: 847
- LitreviewLiterature review skill for academic, R&D, and professional research. Covers search strategy, source assessment (quality, relevance, recency), thematic synthesis, citation management, and the discipline of reproducible reviews. Use when conducting a systematic literature review, building a research bibliography, or preparing a research-grounded report.Votes: 0GitHub stars: 847
- PatentPatent research and IP landscape skill. Covers prior-art search strategy, claim mapping, landscape analysis, freedom-to-operate assessment, and patentability scoring. Use when conducting a prior-art search, mapping the IP landscape of a technology area, evaluating patentability of an invention, or running an FTO analysis before product launch.Votes: 0GitHub stars: 847
- Account ExecutiveSales execution across pipeline, discovery, demos, negotiation, and closing. Use when qualifying opportunities, running MEDDIC discovery, building account plans, handling objections, structuring proposals, or forecasting pipeline.Votes: 0GitHub stars: 847
- Sales OperationsSales operations across CRM, analytics, territory planning, and compensation. Use when building pipeline reports, designing territories, setting quotas, creating comp plans, or auditing CRM data quality.Votes: 0GitHub stars: 847
- Solutions ArchitectSolutions architecture for technical pre-sales. Use when running technical discovery, designing integration architectures, running security assessments, scoping proof-of-concepts, or writing solution architecture documents.Votes: 0GitHub stars: 847
- Channel EconomicsChannel economics: design and analyze the financial structure of go-to-market channels (direct sales, resellers, distributors, marketplaces, embedded partners, MSPs, integrators). Use when picking the right channel mix for a product, modeling partner margin / TCO, designing partner tiers with rebate structures, analyzing channel conflict, or building the financial model that justifies (or kills) a partnership. Pairs with our partnerships-architect (partnership type / strategy) and deal-desk (...Votes: 0GitHub stars: 847
- Commercial PolicyCommercial policy: the written governance framework that defines what commercial terms sales can offer, what triggers approval, and what's off-limits. Use when authoring or refreshing a company commercial-policy charter, defining discount / contract / payment / termination / liability policies, auditing existing deals for policy compliance, drafting commercial-policy training for sales, or generating a tailored policy for a new region or vertical. Sits above deal-desk (which enforces) and pri...Votes: 0GitHub stars: 847
- Deal DeskDeal desk: the cross-functional function that reviews, approves, and structures non-standard sales deals. Use when standing up a deal-desk function from scratch, defining the deal-desk charter and SLA, building approval-threshold matrices (discount %, contract length, custom terms, payment terms, custom SLAs), designing a deal-review packet template, routing deals through the right approvers, analyzing deal velocity to find bottlenecks, or auditing recent deals for policy compliance. Pairs wi...Votes: 0GitHub stars: 847
- Partnerships ArchitectDesign strategic partnerships — technology / channel / strategic / co-marketing — and the programs that scale them. Use when evaluating a potential partner, picking the right partnership type (tech integration vs reseller vs OEM vs strategic alliance), designing a partner program from scratch, structuring a specific partnership deal, modeling ROI on a partnership investment, or auditing an existing partner portfolio for ROI / strategic fit. Pairs with our channel-economics (financial mechanic...Votes: 0GitHub stars: 847
- Chief Ai Officer AdvisorAI leadership advisor for Chief AI Officers on AI strategy, governance, risk management, investment planning, organizational design, and the AI/ML talent stack. Use when defining an AI strategy, building an AI governance program, evaluating build-vs-buy for AI capability, scoring AI maturity, drafting an AI risk register, or planning AI investment across the portfolio.Votes: 0GitHub stars: 847
- Chief Customer Officer AdvisorCustomer leadership advisor for Chief Customer Officers on customer experience strategy, retention and expansion, voice-of-customer programs, CX organizational design, and customer outcomes accountability. Use when defining a CX strategy, scoring CX maturity, planning churn interventions, designing a VoC program, or preparing the customer section of a board update.Votes: 0GitHub stars: 847
- Chief Data Officer AdvisorData leadership advisor for Chief Data Officers on data strategy, governance, quality, monetization, platform decisions, and team design. Use when defining a data strategy, scoring data maturity, auditing a data governance program, evaluating a data platform stack, designing the data org, or preparing the data section of a board update.Votes: 0GitHub stars: 847
- General Counsel AdvisorLegal leadership advisor for General Counsels and senior legal leaders on legal strategy, risk management, contract and commercial governance, regulatory tracking, litigation management, and legal-team operating model. Use when defining a legal strategy, scoring legal risk, auditing the contract portfolio, building a regulatory calendar, or preparing the legal section of a board update.Votes: 0GitHub stars: 847