All authors

Claude Skills by gaelic-ghost
github.com/gaelic-ghost277 skills0 installs344 views
- Flashrunpod-flash SDK and CLI for deploying AI workloads on Runpod serverless GPUs/CPUs.Votes: 0GitHub stars: 7
- RunpodctlRunpod CLI to manage your GPU workloads.Votes: 0GitHub stars: 7
- Explain Code SliceUse this skill when the user wants a code path, flow, pipeline, request lifecycle, trace, walkthrough, or part of a system explained step by step from start to finish. Explain where data comes from, what shape it has, who sends it, why it enters the flow, what calls what next, where branches and boundaries happen, how data transforms, and what comes out at the end. Also use this when the user asks things like “walk me through this,” “follow this through the code,” “show me the path,” “what ca...Votes: 0GitHub stars: 7
- Analyze Suspicious Script Or DocumentDecode and analyze suspicious scripts and active documents without triggering them. Use for shell, AppleScript, JavaScript, Python, PowerShell, shortcuts, Office files, PDFs, profiles, macros, embedded objects, and staged payloads.Votes: 0GitHub stars: 7
- Assess And Explain ThreatAssess whether suspicious evidence indicates a real threat and explain it plainly. Use for confidence, protective actions, uncertainty, impact, and advice after artifact, endpoint, identity, or incident evidence.Votes: 0GitHub stars: 7
- Assess Exposure And ImpactPrioritize a vulnerability using actual asset exposure and impact. Use when versions, reachability, prerequisites, privileges, data, exploit maturity, mitigations, detection, business criticality, and urgency matter beyond CVSS.Votes: 0GitHub stars: 7
- Assess Macos ThreatAssess a suspected macOS threat using exact host and artifact evidence. Use for suspicious apps, processes, downloads, profiles, extensions, alerts, persistence, privacy, or network activity while keeping protections distinct.Votes: 0GitHub stars: 7
- Author Detection ContentTurn validated security behavior into tested detection content. Use for Sigma, osquery, YARA-X, endpoint or SIEM queries, cloud detections, correlation, alert enrichment, and fixtures with explicit telemetry and false-positive controls.Votes: 0GitHub stars: 7
- Author Yara X RulesAuthor, test, tune, and document YARA-X rules from validated artifact evidence. Use when suspicious files, scripts, documents, or binary features need local detection with stable patterns, fixtures, performance checks, and regression tests.Votes: 0GitHub stars: 7
- Check Artifact ReputationCheck reputation for a suspicious artifact, signer, hash, URL, domain, certificate, package, or vendor. Use when threat intelligence informs triage while privacy, stale data, false positives, and behavior limits stay explicit.Votes: 0GitHub stars: 7
- Contain And Recover MacosContain a macOS threat and verify recovery. Use for isolation, process or service containment, credential response, persistence removal, quarantine, restore, erase/reinstall, monitoring, and return-to-service decisions.Votes: 0GitHub stars: 7
- Contain Security IncidentContain an active or credible incident across hosts, identities, applications, cloud resources, networks, or data. Use when access, execution, exfiltration, fraud, destruction, or repeated compromise needs authorized interruption.Votes: 0GitHub stars: 7
- Harden MacosReview and improve macOS defensive posture. Use for updates, XProtect and Gatekeeper, FileVault, firewall, remote access, accounts, background items, privacy, backups, credentials, and monitoring after a security assessment or incident.Votes: 0GitHub stars: 7
- Hunt Security IndicatorsHunt scoped systems and telemetry for supplied indicators or behaviors. Use for hashes, paths, domains, addresses, accounts, processes, persistence, ATT&CK behaviors, cloud events, or incident expansion with explicit scope and validation.Votes: 0GitHub stars: 7
- Inspect Macos PersistenceInspect macOS persistence and recurring execution without deleting evidence. Use for login items, launch agents or daemons, extensions, profiles, shell startup files, scheduled tasks, browser extensions, helpers, and startup behavior.Votes: 0GitHub stars: 7
- Inspect Macos Runtime ActivityCorrelate suspicious macOS process, file, network, permission, and log activity. Use for unexpected processes, downloads, open files, DNS, privacy prompts, alerts, file mutations, injected executables, and Endpoint Security evidence.Votes: 0GitHub stars: 7
- Map Malware BehaviorMap observed malicious behavior to MITRE ATT&CK techniques. Use when analysis, telemetry, incident evidence, or a report needs a behavior map for detection, response, or communication without inferring an actor or campaign.Votes: 0GitHub stars: 7
- Operate Agentic Security ToolsOperate security tools through an AI agent with explicit authority boundaries. Use when an agent may invoke CLIs, GUI apps, browser automation, MCP servers, scanners, sandboxes, or containment actions with constrained approvals and logging.Votes: 0GitHub stars: 7
- Perform Dynamic Malware AnalysisObserve suspicious content in a disposable environment. Use when execution, process ancestry, file changes, persistence, network behavior, payloads, or user interaction need measurement after static analysis with isolation and teardown.Votes: 0GitHub stars: 7
- Perform Static Malware AnalysisAnalyze a suspicious artifact without executing it. Use for binaries, apps, packages, archives, scripts, libraries, extensions, firmware, or payloads when metadata, signatures, imports, strings, resources, and obfuscation need inspection.Votes: 0GitHub stars: 7
- Prepare Isolated Analysis LabPrepare a verified disposable Linux or macOS analysis lab from an approved isolation decision. Use before active research to control host integration, networking, baseline, monitoring, evidence export, reset, and teardown.Votes: 0GitHub stars: 7
- Preserve Security EvidencePreserve security evidence before analysis, containment, or remediation changes it. Use for artifacts, volatile host state, vulnerability validation, records, logs, screenshots, commands, hashes, timelines, and reproducible handoffs.Votes: 0GitHub stars: 7
- Recover Security IncidentRecover from an incident by eradicating compromise and restoring service. Use when hosts, identities, applications, cloud resources, network controls, or data need rebuild, patching, rotation, repair, validation, and return to service.Votes: 0GitHub stars: 7
- Report Security AssessmentWrite a security assessment or penetration-test report from evidence. Use when findings, scope, methodology, limitations, impact, remediation, retest criteria, and an executive explanation need calibrated reporting.Votes: 0GitHub stars: 7
- Route Security WorkRoute an ambiguous cybersecurity request before tools run. Use for suspicious files, links, messages, host behavior, malware, vulnerability reports, authorized pentests, incidents, threat hunting, detection work, or security advice.Votes: 0GitHub stars: 7
- Scope Authorized Security TestDefine authorization, targets, rules, safety controls, and stop conditions before active security testing. Use for penetration tests, scans, exploit validation, web or API tests, network probing, bug bounty, or agent-driven testing.Votes: 0GitHub stars: 7
- Select Analysis IsolationSelect isolation before inspecting or executing untrusted content. Use for local analysis, a container, Linux or macOS VM, remote sandbox, or spare device with defined network, mounts, credentials, snapshots, evidence export, and teardown.Votes: 0GitHub stars: 7
- Test Network ServicesTest authorized network services with bounded discovery and protocol-aware validation. Use for hosts, ranges, ports, TLS, banners, versions, authentication, exposure, segmentation, configuration, packet evidence, or vulnerability checks.Votes: 0GitHub stars: 7
- Test Web And Api SecurityTest an authorized web application or API using OWASP guidance. Use for authentication, authorization, sessions, input, schemas, business logic, file handling, server-side requests, configuration, transport, errors, and data exposure.Votes: 0GitHub stars: 7
- Triage Security IncidentTriage a suspected incident across endpoints, identities, applications, cloud resources, networks, or data. Use when an alert, compromise, disruption, unauthorized access, malware, credential concern, or exposure needs scope and ownership.Votes: 0GitHub stars: 7
- Triage Suspicious ContentSafely classify suspicious files, archives, installers, packages, scripts, documents, profiles, browser extensions, URLs, QR codes, messages, and nested payloads before execution. Use when someone needs the smallest safe next analysis step.Votes: 0GitHub stars: 7
- Triage Vulnerability ReportTriage a vulnerability report, scanner result, advisory, CVE, PoC, bug bounty, ticket, or researcher note. Use when affected versions, credibility, prerequisites, evidence, applicability, validation, and exposure must be established.Votes: 0GitHub stars: 7
- Use Objective See ToolsUse installed Objective-See macOS security tools as evidence adapters. Use for KnockKnock, BlockBlock, LuLu, ProcessMonitor, FileMonitor, WhatsYourSign, TaskExplorer, or related tools with explicit permissions, limits, and ownership.Votes: 0GitHub stars: 7
- Validate VulnerabilityValidate a vulnerability claim in an authorized environment. Use for scanner candidates, advisories, CVEs, PoCs, source concerns, configuration weaknesses, or regressions with a safe proof and controls.Votes: 0GitHub stars: 7
- Aspnet Core Service WorkflowPlan, build, and validate ASP.NET Core service surfaces for F#, C#, or mixed .NET solutions using explicit project ownership, configuration, endpoints, tests, and dotnet CLI validation.Votes: 0GitHub stars: 7
- Bootstrap SolutionBootstrap or guide a reproducible .NET solution with explicit F# or C# language choice, SDK selection, project layout, test project setup, and initial validation commands.Votes: 0GitHub stars: 7
- Build Csharp ProjectBuild or modify idiomatic C# .NET projects using nullable-aware APIs, records/classes, async/task behavior, analyzer conventions, tests, and repo-local validation.Votes: 0GitHub stars: 7
- Build Dotnet Agent ServiceBuild a local-first F# or C# Semantic Kernel agent service with explicit tools, model capability checks, evaluation fixtures, and draft-before-write promotion.Votes: 0GitHub stars: 7
- Build Falco Web AppBuild or modify a Falco web application in idiomatic F#, using functional routing, request and response helpers, explicit ASP.NET Core integration, security boundaries, and focused tests.Votes: 0GitHub stars: 7
- Build Fsharp ProjectBuild or modify idiomatic F# .NET projects using explicit modules, domain types, functional data flow, file ordering, async/task interop, tests, and repo-local validation.Votes: 0GitHub stars: 7
- Build Giraffe Web AppBuild or modify a Giraffe web application in idiomatic F#, using composable HttpHandler functions, explicit ASP.NET Core integration, configuration, authentication, and focused endpoint tests.Votes: 0GitHub stars: 7
- Build Oxpecker Web AppBuild or modify an Oxpecker web application in idiomatic F#, using endpoint routing, functional EndpointHandler and EndpointMiddleware composition, ASP.NET Core metadata, and focused endpoint tests.Votes: 0GitHub stars: 7
- Choose Fsharp Web FrameworkChoose an F# web application framework before implementation, comparing ASP.NET Core Minimal APIs, Giraffe, Falco, Oxpecker, and Saturn by application shape, composition model, dependencies, testing, and deployment boundaries.Votes: 0GitHub stars: 7
- Choose Project ShapeChoose the right .NET project shape before implementation, including F# versus C# language choice, solution layout, validation commands, package boundaries, and documentation updates.Votes: 0GitHub stars: 7
- Ci WorkflowDesign and maintain .NET CI workflows for F#, C#, and mixed solutions with SDK setup, restore, build, test, format checks, package checks, caching, and matrix decisions.Votes: 0GitHub stars: 7
- Diagnose ProjectDiagnose .NET SDK, restore, build, test, package, target framework, F# compile-order, C# analyzer, and project-reference failures with concrete next checks.Votes: 0GitHub stars: 7
- Fsharp Csharp InteropDesign and maintain explicit F# and C# boundaries in mixed .NET solutions, including project references, public API shape, async/task interop, nullability, options, records, and package-facing contracts.Votes: 0GitHub stars: 7
- Package WorkflowValidate .NET package surfaces for F# and C# libraries with project metadata, dotnet pack, local package smoke checks, semantic versioning, and release-boundary guidance.Votes: 0GitHub stars: 7
- Testing WorkflowRun, filter, debug, and explain .NET tests for F#, C#, and mixed solutions using dotnet test while respecting repo-local test framework choices.Votes: 0GitHub stars: 7
- Tooling Style WorkflowAlign .NET formatting, analyzers, .editorconfig, warnings-as-errors, local tools, and validation commands for F#, C#, and mixed solutions without overriding repo-local conventions.Votes: 0GitHub stars: 7