All authors

Claude Skills by plurigrid
github.com/plurigrid2,535 skills6 installs3,507 views
- Braindance WorldsGF(3)-conserved distribution of Claude threads across Aptos worldsVotes: 0GitHub stars: 61
- Brand GuidelinesApply brand colors and typography to artifacts. Use when brand colors,Votes: 0GitHub stars: 61
- Browser History AcsetBrowser History ACSetVotes: 0GitHub stars: 61
- Buberian RelationsBuberian Relations SkillVotes: 0GitHub stars: 61
- Building Adversary Infrastructure Tracking SystemBuild an automated system to track adversary infrastructure using passive DNS, certificate transparency, WHOIS data, and IP enrichment to map and monitor threat actor command-and-control networks.Votes: 0GitHub stars: 61
- Building Attack Pattern Library From Cti ReportsExtract and catalog attack patterns from cyber threat intelligence reports into a structured STIX-based library mapped to MITRE ATT&CK for detection engineering and threat-informed defense.Votes: 0GitHub stars: 61
- Building Automated Malware Submission PipelineBuilds an automated malware submission and analysis pipeline that collects suspicious files from endpoints and email gateways, submits them to sandbox environments and multi-engine scanners, and generates verdicts with IOCs for SIEM integration. Use when SOC teams need to scale malware analysis beyond manual sandbox submissions for high-volume alert triage.Votes: 0GitHub stars: 61
- Building C2 Infrastructure With Sliver FrameworkBuild and configure a resilient command-and-control infrastructure using BishopFox's Sliver C2 framework with redirectors, HTTPS listeners, and multi-operator support for authorized red team engagements.Votes: 0GitHub stars: 61
- Building Cloud Siem With SentinelThis skill covers deploying Microsoft Sentinel as a cloud-native SIEM and SOAR platform for centralized security operations. It details configuring data connectors for multi-cloud log ingestion, writing KQL detection queries, building automated response playbooks with Logic Apps, and leveraging the Sentinel data lake for petabyte-scale threat hunting across AWS, Azure, and GCP security telemetry.Votes: 0GitHub stars: 61
- Building Detection Rule With Splunk SplBuild effective detection rules using Splunk Search Processing Language (SPL) correlation searches to identify security threats in SOC environments.Votes: 0GitHub stars: 61
- Building Detection Rules With SigmaBuilds vendor-agnostic detection rules using the Sigma rule format for threat detection across SIEM platforms including Splunk, Elastic, and Microsoft Sentinel. Use when creating portable detection logic from threat intelligence, mapping rules to MITRE ATT&CK techniques, or converting community Sigma rules into platform-specific queries using sigmac or pySigma backends.Votes: 0GitHub stars: 61
- Building Devsecops Pipeline With Gitlab CiDesign and implement a comprehensive DevSecOps pipeline in GitLab CI/CD integrating SAST, DAST, container scanning, dependency scanning, and secret detection.Votes: 0GitHub stars: 61
- Building Identity Federation With Saml Azure AdEstablish SAML 2.0 identity federation between on-premises Active Directory and Azure AD (Microsoft Entra ID) for seamless cross-domain authentication and SSO to cloud applications.Votes: 0GitHub stars: 61
- Building Identity Governance Lifecycle ProcessBuilds comprehensive identity governance and lifecycle management processes including joiner-mover-leaver automation, role mining, access request workflows, periodic recertification, and orphaned account remediation using IGA platforms. Activates for requests involving identity lifecycle management, JML processes, role-based access provisioning, or identity governance program design.Votes: 0GitHub stars: 61
- Building Incident Response DashboardBuilds real-time incident response dashboards in Splunk, Elastic, or Grafana to provide SOC analysts and leadership with situational awareness during active incidents, tracking affected systems, containment status, IOC spread, and response timeline. Use when IR teams need unified visibility during incident coordination and post-incident reporting.Votes: 0GitHub stars: 61
- Building Incident Response PlaybookDesigns and documents structured incident response playbooks that define step-by-step procedures for specific incident types aligned with NIST SP 800-61r3 and SANS PICERL frameworks. Covers playbook structure, decision trees, escalation criteria, RACI matrices, and integration with SOAR platforms. Activates for requests involving IR playbook creation, incident response procedure documentation, response runbook development, or SOAR playbook design.Votes: 0GitHub stars: 61
- Building Incident Timeline With TimesketchBuild collaborative forensic incident timelines using Timesketch to ingest, normalize, and analyze multi-source event data for attack chain reconstruction and investigation documentation.Votes: 0GitHub stars: 61
- Building Ioc Defanging And Sharing PipelineBuild an automated pipeline to defang indicators of compromise (URLs, IPs, domains, emails) for safe sharing and distribute them in STIX format through TAXII feeds and threat intelligence platforms.Votes: 0GitHub stars: 61
- Building Ioc Enrichment Pipeline With OpenctiOpenCTI is an open-source platform for managing cyber threat intelligence knowledge, built on STIX 2.1 as its native data model. This skill covers building an automated IOC enrichment pipeline using OVotes: 0GitHub stars: 61
- Building Malware Incident Communication TemplateBuild structured communication templates for malware incidents including stakeholder notifications, executive briefings, technical advisories, and regulatory disclosures with severity-based escalation procedures.Votes: 0GitHub stars: 61
- Building Patch Tuesday Response ProcessEstablish a structured operational process to triage, test, and deploy Microsoft Patch Tuesday security updates within risk-based remediation SLAs.Votes: 0GitHub stars: 61
- Building Phishing Reporting Button WorkflowImplement a phishing report button in email clients with automated triage workflow that analyzes user-reported suspicious emails and provides feedback to reporters.Votes: 0GitHub stars: 61
- Building Ransomware Playbook With Cisa FrameworkBuilds a structured ransomware incident response playbook aligned with the CISA StopRansomware Guide and NIST Cybersecurity Framework. Covers preparation, detection, containment, eradication, recovery, and post-incident phases with actionable checklists. Activates for requests involving ransomware response planning, CISA compliance, incident response playbook creation, or ransomware preparedness assessment.Votes: 0GitHub stars: 61
- Building Red Team C2 Infrastructure With HavocDeploy and configure the Havoc C2 framework with teamserver, HTTPS listeners, redirectors, and Demon agents for authorized red team operations.Votes: 0GitHub stars: 61
- Building Role Mining For Rbac OptimizationApply bottom-up and top-down role mining techniques to discover optimal RBAC roles from existing user-permission assignments, reducing role explosion and enforcing least privilege.Votes: 0GitHub stars: 61
- Building Soc Escalation MatrixBuild a structured SOC escalation matrix defining severity tiers, response SLAs, escalation paths, and notification procedures for security incidents.Votes: 0GitHub stars: 61
- Building Soc Metrics And Kpi TrackingBuilds SOC performance metrics and KPI tracking dashboards measuring Mean Time to Detect (MTTD), Mean Time to Respond (MTTR), alert quality ratios, analyst productivity, and detection coverage using SIEM data. Use when SOC leadership needs operational visibility, continuous improvement tracking, or executive-level reporting on security operations effectiveness.Votes: 0GitHub stars: 61
- Building Soc Playbook For RansomwareBuilds a structured SOC incident response playbook for ransomware attacks covering detection, containment, eradication, and recovery phases with specific SIEM queries, isolation procedures, and decision trees. Use when SOC teams need formalized response procedures for ransomware incidents aligned to NIST SP 800-61 and MITRE ATT&CK ransomware techniques.Votes: 0GitHub stars: 61
- Building Threat Actor Profile From OsintBuild comprehensive threat actor profiles using open-source intelligence (OSINT) techniques to document adversary motivations, capabilities, infrastructure, and TTPs for proactive defense.Votes: 0GitHub stars: 61
- Building Threat Feed Aggregation With MispDeploy MISP (Malware Information Sharing Platform) to aggregate, correlate, and distribute threat intelligence feeds from multiple sources for centralized IOC management and automated SIEM integration.Votes: 0GitHub stars: 61
- Building Threat Hunt Hypothesis FrameworkBuild a systematic threat hunt hypothesis framework that transforms threat intelligence, attack patterns, and environmental data into testable hunting hypotheses.Votes: 0GitHub stars: 61
- Building Threat Intelligence Enrichment In SplunkBuild automated threat intelligence enrichment pipelines in Splunk Enterprise Security using lookup tables, modular inputs, and the Threat Intelligence Framework.Votes: 0GitHub stars: 61
- Building Threat Intelligence Feed IntegrationBuilds automated threat intelligence feed integration pipelines connecting STIX/TAXII feeds, open-source threat intel, and commercial TI platforms into SIEM and security tools for real-time IOC matching and alerting. Use when SOC teams need to operationalize threat intelligence by automating feed ingestion, normalization, scoring, and distribution to detection systems.Votes: 0GitHub stars: 61
- Building Threat Intelligence PlatformBuilding a Threat Intelligence Platform (TIP) involves deploying and integrating multiple CTI tools into a unified system for collecting, analyzing, enriching, and disseminating threat intelligence. TVotes: 0GitHub stars: 61
- Building Vulnerability Aging And Sla TrackingImplement a vulnerability aging dashboard and SLA tracking system to measure remediation performance against severity-based timelines and drive accountability.Votes: 0GitHub stars: 61
- Building Vulnerability Dashboard With DefectdojoDeploy DefectDojo as a centralized vulnerability management dashboard with scanner integrations, deduplication, metrics tracking, and Jira ticketing workflows.Votes: 0GitHub stars: 61
- Building Vulnerability Exception Tracking SystemBuild a vulnerability exception and risk acceptance tracking system with approval workflows, compensating controls documentation, and expiration management.Votes: 0GitHub stars: 61
- Building Vulnerability Scanning WorkflowBuilds a structured vulnerability scanning workflow using tools like Nessus, Qualys, and OpenVAS to discover, prioritize, and track remediation of security vulnerabilities across infrastructure. Use when SOC teams need to establish recurring vulnerability assessment processes, integrate scan results with SIEM alerting, and build remediation tracking dashboards.Votes: 0GitHub stars: 61
- Bumpus NarrativesSheaves on time categories for compositional temporal reasoning. BumpusVotes: 0GitHub stars: 61
- Burp SuiteWeb application security testing with Burp Suite.Votes: 0GitHub stars: 61
- Burpsuite Project ParserSearches and explores Burp Suite project files (.burp) from the command line. Use when searching response headers or bodies with regex patterns, extracting security audit findings, dumping proxy history or site map data, or analyzing HTTP traffic captured in a Burp project.Votes: 0GitHub stars: 61
- Bypassing Authentication With Forced BrowsingDiscovering and accessing unprotected pages, APIs, and administrative interfaces by enumerating URLs and bypassing authentication controls during authorized security assessments.Votes: 0GitHub stars: 61
- Cairo Vulnerability ScannerScans Cairo/StarkNet smart contracts for 6 critical vulnerabilities including felt252 arithmetic overflow, L1-L2 messaging issues, address conversion problems, and signature replay. Use when auditing StarkNet projects. (project, gitignored)Votes: 0GitHub stars: 61
- Calendar AcsetGoogle Calendar management via CalendarACSet. Transforms scheduling operations into GF(3)-typed Interactions, routes to triadic queues, detects saturation for balanced-calendar-as-condensed-state.Votes: 0GitHub stars: 61
- Canvas DesignCreate beautiful visual art in .png and .pdf documents using design philosophy.Votes: 0GitHub stars: 61
- CaptpCapTP: Capability Transfer ProtocolVotes: 0GitHub stars: 61
- Cargo FuzzRust fuzzing with cargo-fuzz (libFuzzer).Votes: 0GitHub stars: 61
- CargoRust package manager (36 subcommands).Votes: 0GitHub stars: 61
- Catcat Skill: Derivational Pipe ChainingVotes: 0GitHub stars: 61
- Catcolab Causal LoopCatColab Causal Loop Diagrams - systems dynamics modeling with reinforcing (R) and balancing (B) feedback loops, delays, and Lotka-Volterra semantics for strategic analysis.Votes: 0GitHub stars: 61