All authors

Claude Skills by jmagly
github.com/jmagly837 skills58 installs3,193 views
- Orchestrate ProjectPlan iterations, delegate to SDLC agents, and compile iteration statusVotes: 0GitHub stars: 207
- Project Health CheckAnalyze overall project health and metricsVotes: 0GitHub stars: 207
- Project Timeline SimulatorSimulate project outcomes with variable modeling, risk assessment, and resource optimization scenarios.Votes: 0GitHub stars: 207
- Provenance CreateCreate a W3C PROV-compliant provenance record for an artifactVotes: 0GitHub stars: 207
- Provenance QueryQuery provenance chains to trace artifact derivation and impactVotes: 0GitHub stars: 207
- Provenance ReportGenerate provenance coverage dashboard and statisticsVotes: 0GitHub stars: 207
- Provenance ValidateValidate provenance records and chains for completeness and consistencyVotes: 0GitHub stars: 207
- Quality AssessPerform GRADE quality assessment on a research sourceVotes: 0GitHub stars: 207
- Regression CheckCompare current behavior against baseline to detect regressionsVotes: 0GitHub stars: 207
- Research CiteGenerate properly formatted citation from research corpusVotes: 0GitHub stars: 207
- Retrospective AnalyzerAnalyze team retrospectives for insightsVotes: 0GitHub stars: 207
- Security AuditPerform comprehensive security assessmentVotes: 0GitHub stars: 207
- Security GateEnforce minimum security criteria before iteration close or releaseVotes: 0GitHub stars: 207
- Setup TddOne-command TDD infrastructure setup with pre-commit hooks and CI coverage gatesVotes: 0GitHub stars: 207
- Smith AgenticdefGenerate or update the agentic environment definition for AgentSmith, SkillSmith, and CommandSmithVotes: 0GitHub stars: 207
- Smith McpdefGenerate MCP environment definition for MCPSmith with Docker and Node.js verificationVotes: 0GitHub stars: 207
- Smith SysdefGenerate system definition file for ToolSmith with tested OS commandsVotes: 0GitHub stars: 207
- Torture TestScaffold endurance, stress, and adversarial-input tests that reveal degradation rather than immediate crashesVotes: 0GitHub stars: 207
- Tot DecideEvaluate architectural decisions using Tree of Thoughts explorationVotes: 0GitHub stars: 207
- Troubleshooting GuideGenerate troubleshooting documentationVotes: 0GitHub stars: 207
- Verify CitationsVerify all citations in a document against the research corpusVotes: 0GitHub stars: 207
- Aiwg OrchestrateRoute structured artifact work to AIWG workflows via MCP with zero parent context costVotes: 0GitHub stars: 207
- Auth Factor DesignDecision aid for authentication factor architecture — have/know/are mapping, coercion resistance, FIDO2 PIN/UV policy, and PRF hot-path anti-patterns.Votes: 0GitHub stars: 207
- Banned Api AuditScan source code for banned APIs/forbidden functions per project banlist; report violations with paths, line numbers, and recommended replacementsVotes: 0GitHub stars: 207
- Binary Blob AuditScan tracked repository files for committed binary blobs and report reviewability/provenance exceptionsVotes: 0GitHub stars: 207
- Bun Release Age GateConfigure Bun's install.minimumReleaseAge gate (7-day default, 10-day high-sensitivity) for JavaScript projects on Bun. Includes Corepack-equivalent version detection and lockfile-caveat warning.Votes: 0GitHub stars: 207
- Chain Of Trust DesignDecision aid for bootstrap and verification chains — forces the 'what authenticates the authenticator' question; patterns for signed bootstrap, measured boot, recovery.Votes: 0GitHub stars: 207
- Ci Workflow AuditAudit CI workflow files for supply-chain risk — unpinned actions, unpinned container images, pull_request-triggered jobs with secret access, curl-pipe-shell installers, and bare :latest tags. Produces a structured markdown report with file:line refs.Votes: 0GitHub stars: 207
- Committer 2fa AuditAudit source-control organization settings for strong 2FA/MFA requirements across all committersVotes: 0GitHub stars: 207
- Confusable Unicode AuditDetect bidi controls, zero-width characters, mixed-script identifiers, and homoglyph risks in source and release metadataVotes: 0GitHub stars: 207
- Crypto Primitive SelectionDecision aid for choosing AEAD, KDF, MAC, and signature primitives — flags anti-patterns (CBC-without-MAC, ad-hoc KDF, key reuse, PBKDF2-on-high-entropy).Votes: 0GitHub stars: 207
- Degraded Mode DesignDecision-aid skill for fail-closed vs fail-open behavior. Forces a degraded-mode matrix and rejects "type Y to override" prompts in favor of multi-step ceremoniesVotes: 0GitHub stars: 207
- Deprecation PolicyCompare API/ABI surfaces between refs, flag incompatible changes, and generate deprecation/changelog notes for library projectsVotes: 0GitHub stars: 207
- Dfir ReadinessUse when a project needs DFIR readiness from the security-engineering side: prepare incident evidence handling, chain-of-custody expectations, IOC readiness, and handoff to forensics-complete without collecting evidence.Votes: 0GitHub stars: 207
- Fuzzing In CiDetect candidate fuzz targets and emit CI recipes for libFuzzer/AFL/cargo-fuzz/atheris/fast-check harnesses, plus OSS-Fuzz integration patternsVotes: 0GitHub stars: 207
- Npm Release Age GateConfigure and review npm min-release-age controls for JavaScript projects, including 7-day default gates, 10-day high-sensitivity profiles, npm version requirements, and safe override handling.Votes: 0GitHub stars: 207
- Npm Supply Chain AuditAudit npm projects for Shai-Hulud-class supply-chain exposure: lifecycle scripts, Git dependency prepare hooks, release-age gaps, publish-token exposure, trusted publishing, signed releases, and verifier docs.Votes: 0GitHub stars: 207
- Physical Threat ModelingThreat library for physical-access threats STRIDE and OWASP Top 10 miss — evil-maid, DMA, hostile peripheral, travel-host, coercion, cold-boot, side-channel.Votes: 0GitHub stars: 207
- Pnpm Release Age GateConfigure pnpm's minimumReleaseAge gate (7-day default, 10-day high-sensitivity) plus blockExoticSubdeps for workspace-scope dep-source enforcement. Includes Corepack detection and lockfile-caveat warning.Votes: 0GitHub stars: 207
- Sanitizer In CiDetect language/toolchain and emit CI job recipes that build with runtime sanitizers (ASan/UBSan/MSan/TSan, race detectors, faulthandler)Votes: 0GitHub stars: 207
- Secret Handling RuntimeDecision aid for runtime secret hygiene — fd passing, scratch surface, error-path safety, identifier hygiene, and avoiding the SECRETS_ENV aggregation anti-pattern.Votes: 0GitHub stars: 207
- Security Disclosure TrackTrack private vulnerability reports from triage through fix, CVE coordination, embargo, publication, and post-disclosure closureVotes: 0GitHub stars: 207
- Security Engineering QuickrefAUTO-INVOKE when user mentions cryptography, AEAD, KDF, chain of trust, signing key, auth factor, MFA, secret hygiene, supply chain trust, physical threat, DFIR readiness, or incident evidence handoff. Security-engineering quick reference — decision domains for crypto primitives, chain-of-trust, auth factors, degraded modes, supply-chain trust, physical-threat modeling, and DFIR readiness routing.Votes: 0GitHub stars: 207
- Security ReportGuide a reporter through filing a private vulnerability report and route it to the project's configured private channel — never to a public issue trackerVotes: 0GitHub stars: 207
- Strict Toolchain AuditCheck build and CI configuration for warning-as-error, strict typechecking, and language-specific compiler/linter floorsVotes: 0GitHub stars: 207
- Supply Chain Hardening QuickstartOrchestrate a pragmatic npm supply-chain hardening pass: dependency-source audit, release-age gate, lifecycle-script review, trusted publishing, signed releases, SBOM, and user verification docs.Votes: 0GitHub stars: 207
- Supply Chain TrustDecision aid for supply-chain trust beyond CVE/SBOM — pinning depth, reproducible builds, snapshot pins, firmware locking, and vendor+hash-lock for critical-path deps.Votes: 0GitHub stars: 207
- Yarn Release Age GateConfigure Yarn's npmMinimalAgeGate (7-day default, 10-day high-sensitivity) for JavaScript projects on Yarn 4.x or later. Includes Corepack detection and lockfile-caveat warning.Votes: 0GitHub stars: 207
- Agent LoopDetect requests for iterative autonomous agent loops and route to the appropriate loop executorVotes: 0GitHub stars: 207
- Infer Completion CriteriaInfer measurable completion criteria for an agent-loop task from project docs, code, and AIWG standards when the user has not supplied --completion explicitlyVotes: 0GitHub stars: 207