All authors

Claude Skills by onfire7777
github.com/onfire7777989 skills14 installs1,669 views
- Hipaa Breach NotifyImplements HIPAA breach notification requirements under 45 CFR §164.400-414. Covers individual notification within 60 days, HHS reporting thresholds (500+ immediate, under 500 annual), state attorney general notification, media notification for 500+ in a state, and breach risk assessment. Keywords: HIPAA breach notification, HHS reporting, OCR breach portal, individual notice, state attorney general.Votes: 0GitHub stars: 16
- Hipaa DeidentificationImplements HIPAA de-identification methods under 45 CFR §164.514(a)-(b). Covers expert determination method and safe harbor method with 18 identifiers removal, re-identification risk assessment, limited dataset requirements, and data use agreements. Keywords: HIPAA de-identification, safe harbor, expert determination, 18 identifiers, limited dataset, PHI.Votes: 0GitHub stars: 16
- HoneAI CLI configuration auditing and optimization agent. Collects official best practices for Codex CLI (~/.codex/), Gemini CLI (~/.gemini/), and Claude Code (~/.claude/) from the web, analyzes config.toml/settings.json/CLAUDE.md/GEMINI.md/AGENTS.md/permissions/commands/hooks/rules/MCP/extensions, and proposes improvements in Before/After diff format. Does not edit configurations directly.Votes: 0GitHub stars: 16
- Hooked UxDesign habit-forming product loops using the Hook Model (Trigger, Action, Variable Reward, Investment). Use when the user mentions "users aren't coming back", "engagement loops", "habit formation", "push notifications", or "variable rewards". Covers ethics evaluation and onboarding for habits. For friction reduction and B=MAP, see improve-retention. For viral sharing, see contagious.Votes: 0GitHub stars: 16
- HorizonDetect deprecated libraries, propose native API replacements, and create PoCs for new technologies. Used when technology stack renewal, modernization, or legacy code updates are needed.Votes: 0GitHub stars: 16
- Hr OnboardingCreate new-hire onboarding plans with first-week schedule, team map, setup checklist, goals, and support contacts.Votes: 0GitHub stars: 16
- Html Ppt Dir Key Nav MinimalCreate minimalist eight-slide keyboard-navigable keynote decks with strong monochrome pacing and sparse high-impact typography.Votes: 0GitHub stars: 16
- Html Ppt Graphify Dark GraphCreate dark knowledge-graph presentation decks with graph visuals, terminal-inspired code styling, and high-contrast technical storytelling.Votes: 0GitHub stars: 16
- Html Ppt Hermes Cyber TerminalCreate dark cyber-terminal review decks with command-line framing, alert tiers, trace views, and benchmark-friendly layouts.Votes: 0GitHub stars: 16
- Html Ppt Knowledge Arch BlueprintCreate cream-and-blueprint architecture decks with structured pipeline diagrams, callouts, and print-friendly technical layouts.Votes: 0GitHub stars: 16
- Html Ppt Obsidian Claude GradientCreate GitHub-dark gradient decks for developer workflows, agents, MCP systems, and technical tutorials.Votes: 0GitHub stars: 16
- Html Ppt Presenter Mode RevealCreate presenter-mode HTML decks with speaker notes, timer, next-slide preview, theme switching, and keyboard controls.Votes: 0GitHub stars: 16
- Html Ppt Testing Safety AlertCreate red and amber safety alert decks for security, risk, incident review, red-team, and policy-as-code topics.Votes: 0GitHub stars: 16
- Html Ppt Weekly ReportCreate weekly status decks with KPI grids, shipped work, timeline bars, risks, blockers, and next-week plans.Votes: 0GitHub stars: 16
- Html Ppt Xhs Pastel CardCreate soft pastel lifestyle carousel decks with editorial typography, card layouts, charts, and social-friendly pacing.Votes: 0GitHub stars: 16
- Html Ppt Xhs PostCreate vertical social carousel decks with square or portrait cards, warm styling, pagination, and export-ready layouts.Votes: 0GitHub stars: 16
- Html Ppt Xhs White EditorialCreate white editorial carousel or presentation decks with colorful accent bars, gradient headings, and magazine-style composition.Votes: 0GitHub stars: 16
- Html PptCreate professional static HTML presentations with templates, keyboard navigation, responsive layouts, and tasteful slide pacing.Votes: 0GitHub stars: 16
- Hundred Million OffersCreate irresistible offers using the Value Equation, bonus stacking, risk-reversing guarantees, and ethical scarcity. Use when the user mentions "pricing strategy", "irresistible offer", "bonuses and guarantees", "value-to-price ratio", or "offer naming". Covers the MAGIC naming formula and starving-crowd targeting. For product positioning, see obviously-awesome. For outbound sales, see predictable-revenue.Votes: 0GitHub stars: 16
- Hunter AutomationAutomate Hunter.io email intelligence -- search domains for email addresses, find specific contacts, verify email deliverability, manage leads, and monitor account usage -- using natural language through the Composio MCP integration.Votes: 0GitHub stars: 16
- Hypotheticals CounterfactualsUse when exploring alternative scenarios, testing assumptions through "what if" questions, understanding causal relationships, conducting pre-mortem analysis, stress testing decisions, or when user mentions counterfactuals, hypothetical scenarios, thought experiments, alternative futures, what-if analysis, or needs to challenge assumptions and explore possibilities.Votes: 0GitHub stars: 16
- Icon Set GeneratorGenerate cohesive, project-specific SVG icon sets for websites and applications. Use this skill whenever the user needs custom icons, an icon set for a website or app, icons for a client project, or mentions needing SVG icons that look consistent together. Also trigger when the user describes a project and icons would naturally be part of the deliverable — e.g. "I''m building a site for a plumber" implies they''ll need service icons. Trigger on: "icons for", "icon set", "custom icons", "SVG i...Votes: 0GitHub stars: 16
- Image To Code SkillElite website image-to-code skill for Codex. For visually important web tasks, it must first generate the design image(s) itself, deeply analyze them, then implement the website to match them as closely as possible. In Codex, it must prefer large, readable, section-specific images instead of tiny compressed boards, generate fresh standalone images for sections or detail views instead of cropping old ones, avoid lazy under-generation, avoid cards-inside-cards-inside-cards UI, and keep the hero...Votes: 0GitHub stars: 16
- ImagegenUse when the user asks to generate or edit images via the OpenAI Image API (for example: generate image, edit/inpaint/mask, background removal or replacement, transparent background, product shots, concept art, covers, or batch variants); run the bundled CLI (`scripts/image_gen.py`) and require `OPENAI_API_KEY` for live calls.Votes: 0GitHub stars: 16
- Impeccable Frontend DesignCreate distinctive, production-grade frontend interfaces with high design quality. Use this skill when the user asks to build web components, pages, artifacts, posters, or applications. Generates creative, polished code that avoids generic AI aesthetics.Votes: 0GitHub stars: 16
- ImpeccableUse when the user wants to design, redesign, shape, critique, audit, polish, clarify, distill, harden, optimize, adapt, animate, colorize, extract, or otherwise improve a frontend interface. Covers websites, landing pages, dashboards, product UI, app shells, components, forms, settings, onboarding, and empty states. Handles UX review, visual hierarchy, information architecture, cognitive load, accessibility, performance, responsive behavior, theming, anti-patterns, typography, fonts, spacing,...Votes: 0GitHub stars: 16
- Implementing Aes Encryption For Data At RestAES (Advanced Encryption Standard) is a symmetric block cipher standardized by NIST (FIPS 197) used to protect classified and sensitive data. This skill covers implementing AES-256 encryption in GCM mVotes: 0GitHub stars: 16
- Implementing Api Gateway Security ControlsImplements security controls at the API gateway layer including authentication enforcement, rate limiting, request validation, IP allowlisting, TLS termination, and threat protection. The engineer configures API gateways (Kong, AWS API Gateway, Azure APIM, Apigee) to act as a centralized security enforcement point that validates, throttles, and monitors all API traffic before it reaches backend services. Activates for requests involving API gateway security, API management security, gateway a...Votes: 0GitHub stars: 16
- Implementing Api Rate Limiting And ThrottlingImplements API rate limiting and throttling controls using token bucket, sliding window, and fixed window algorithms to protect against brute force attacks, credential stuffing, resource exhaustion, and API abuse. The engineer configures per-user, per-IP, and per-endpoint rate limits using Redis-backed counters, API gateway plugins, or application middleware, and implements proper HTTP 429 responses with Retry-After headers. Activates for requests involving rate limiting implementation, API t...Votes: 0GitHub stars: 16
- Implementing Api Security Posture ManagementImplement API Security Posture Management to continuously discover, classify, and score APIs based on risk while enforcing security policies across the API lifecycle.Votes: 0GitHub stars: 16
- Implementing Attack Surface ManagementImplements external attack surface management (EASM) using Shodan, Censys, and ProjectDiscovery tools (subfinder, httpx, nuclei) for asset discovery, subdomain enumeration, service fingerprinting, and exposure scoring. Includes a weighted risk scoring algorithm based on OWASP attack surface analysis methodology and the Relative Attack Surface Quotient (RSQ). Use when building continuous ASM programs or performing external reconnaissance for security assessments.Votes: 0GitHub stars: 16
- Implementing Aws Iam Permission BoundariesConfigure IAM permission boundaries in AWS to delegate role creation to developers while enforcing maximum privilege limits set by the security team.Votes: 0GitHub stars: 16
- Implementing Aws Security Hub ComplianceImplementing AWS Security Hub to aggregate security findings across AWS accounts, enable compliance standards like CIS AWS Foundations and PCI DSS, configure automated remediation with EventBridge and Lambda, and create custom security insights for organizational risk management.Votes: 0GitHub stars: 16
- Implementing Azure Ad Privileged Identity ManagementConfigure Microsoft Entra Privileged Identity Management to enforce just-in-time role activation, approval workflows, and access reviews for Azure AD privileged roles.Votes: 0GitHub stars: 16
- Implementing Beyondcorp Zero Trust Access ModelImplementing Google's BeyondCorp zero trust access model to eliminate implicit trust from the network perimeter, enforce identity-aware access controls using IAP, Access Context Manager, and Chrome Enterprise Premium for VPN-less secure application access.Votes: 0GitHub stars: 16
- Implementing Cloud Dlp For Data ProtectionImplementing Cloud Data Loss Prevention (DLP) using Amazon Macie, Azure Information Protection, and Google Cloud DLP API to discover, classify, and protect sensitive data across cloud storage, databases, and data pipelines.Votes: 0GitHub stars: 16
- Implementing Cloud Security Posture ManagementImplementing Cloud Security Posture Management (CSPM) to continuously monitor multi-cloud environments for misconfigurations, compliance violations, and security risks using Prowler, ScoutSuite, AWS Security Hub, Azure Defender, and GCP Security Command Center.Votes: 0GitHub stars: 16
- Implementing Cloud Waf RulesThis skill covers deploying and tuning Web Application Firewall rules on AWS WAF, Azure WAF, and Cloudflare to protect cloud-hosted applications against OWASP Top 10 attacks. It details configuring managed rule sets, creating custom rules for business logic protection, implementing rate limiting, deploying bot management, and reducing false positives through rule tuning and logging analysis.Votes: 0GitHub stars: 16
- Implementing Cloud Workload ProtectionImplements cloud workload protection using boto3 and google-cloud APIs for runtime security monitoring, process anomaly detection, and file integrity checking on EC2/GCE instances. Scans for cryptomining, reverse shells, and unauthorized binaries. Use when building runtime security controls for cloud compute workloads.Votes: 0GitHub stars: 16
- Implementing Code Signing For ArtifactsThis skill covers implementing code signing for build artifacts to ensure integrity and authenticity throughout the software supply chain. It addresses signing binaries, packages, and containers using GPG, Sigstore, and platform-specific signing tools, establishing trust chains, and verifying signatures in deployment pipelines.Votes: 0GitHub stars: 16
- Implementing Container Network Policies With CalicoEnforce Kubernetes network segmentation using Calico CNI network policies and global network policies to control pod-to-pod traffic, restrict egress, and implement zero-trust microsegmentation.Votes: 0GitHub stars: 16
- Implementing Continuous Security Validation With BasDeploy Breach and Attack Simulation tools to continuously validate security control effectiveness by safely emulating real-world attack techniques across the kill chain.Votes: 0GitHub stars: 16
- Implementing Data Minimization ArchitectureArchitecture patterns for GDPR Article 5(1)(c) data minimization and Article 25(1) data protection by design. Covers field-level encryption, data masking, aggregation, pseudonymization per Article 4(5), and anonymization per Recital 26. Includes ENISA pseudonymization techniques and a data minimization assessment matrix.Votes: 0GitHub stars: 16
- Implementing Data Protection By DefaultTechnical implementation of GDPR Article 25(2) data protection by default. Covers strictest privacy settings as default configuration, minimum data collection, limited storage duration, restricted accessibility, and opt-in rather than opt-out patterns. Includes implementation checklist and system design requirements.Votes: 0GitHub stars: 16
- Implementing Ddos Mitigation With CloudflareConfigure Cloudflare DDoS protection with managed rulesets, rate limiting, WAF rules, Bot Management, and origin protection to mitigate volumetric, protocol, and application-layer attacks.Votes: 0GitHub stars: 16
- Implementing Deception Based Detection With CanarytokenDeploy and monitor Canary Tokens via the Thinkst Canary API for deception-based breach detection using web bug tokens, DNS tokens, document tokens, and AWS key tokens.Votes: 0GitHub stars: 16
- Implementing Delinea Secret Server For PamImplements Delinea Secret Server for privileged access management (PAM) including secret vault configuration, role-based access policies, automated password rotation, session recording, and integration with Active Directory and cloud platforms. Activates for requests involving PAM deployment, privileged credential vaulting, secret server administration, or password rotation automation.Votes: 0GitHub stars: 16
- Implementing Devsecops Security ScanningIntegrates Static Application Security Testing (SAST), Dynamic Application Security Testing (DAST), and Software Composition Analysis (SCA) into CI/CD pipelines using open-source tools. Covers Semgrep for SAST, Trivy for SCA and container scanning, OWASP ZAP for DAST, and Gitleaks for secrets detection. Activates for requests involving DevSecOps pipeline setup, automated security scanning in CI/CD, SAST/DAST/SCA integration, or shift-left security implementation.Votes: 0GitHub stars: 16
- Implementing Diamond Model AnalysisThe Diamond Model of Intrusion Analysis provides a structured framework for analyzing cyber intrusions by examining four core features - Adversary, Capability, Infrastructure, and Victim. This skill covers implementing the Diamond Model programmatically to classify and correlate intrusion events, build activity threads, and generate pivot-ready intelligence.Votes: 0GitHub stars: 16
- Implementing Digital Signatures With Ed25519Ed25519 is a high-performance digital signature algorithm using the Edwards curve Curve25519. It provides 128-bit security with 64-byte signatures and 32-byte keys, offering significant advantages oveVotes: 0GitHub stars: 16