50 skills
security-review
Passed all 3 security checksUse this skill when adding authentication, handling user input, working with secrets, creating API endpoints, or implementing payment/sensitive features. Provides comprehensive security checklist and patterns.
·0↓9.9k
golang-patterns
Passed all 3 security checksIdiomatic Go patterns, best practices, and conventions for building robust, efficient, and maintainable Go applications.
·0↓9k
coding-standards
Passed all 3 security checksBaseline cross-project coding conventions for naming, readability, immutability, and code-quality review. Use detailed frontend or backend skills for framework-specific patterns.
·0↓8k
frontend-patterns
Passed all 3 security checksFrontend development patterns for React, Next.js, state management, performance optimization, and UI best practices.
·0↓7.9k
backend-patterns
Passed all 3 security checksBackend architecture patterns, API design, database optimization, and server-side best practices for Node.js, Express, and Next.js API routes.
·0↓7.9k
golang-testing
Passed all 3 security checksGo testing patterns including table-driven tests, subtests, benchmarks, fuzzing, and test coverage. Follows TDD methodology with idiomatic Go practices.
·0↓7.6k
springboot-patterns
Passed all 3 security checksSpring Boot architecture patterns, REST API design, layered services, data access, caching, async processing, and logging. Use for Java Spring Boot backend work.
·0↓7k
continuous-learning-v2
Passed all 3 security checksInstinct-based learning system that observes sessions via hooks, creates atomic instincts with confidence scoring, and evolves them into skills/commands/agents. v2.1 adds project-scoped instincts to prevent cross-project contamination.
·0↓6.7k
postgres-patterns
Passed all 3 security checksPostgreSQL database patterns for query optimization, schema design, indexing, and security. Based on Supabase best practices.
·0↓6.4k
api-design
Passed all 3 security checksREST API design patterns including resource naming, status codes, pagination, filtering, error responses, versioning, and rate limiting for production APIs.
·0↓6.2k
python-patterns
Passed all 3 security checksPythonic idioms, PEP 8 standards, type hints, and best practices for building robust, efficient, and maintainable Python applications.
·0↓6.2k
tdd-workflow
Passed all 3 security checksUse this skill when writing new features, fixing bugs, or refactoring code. Enforces test-driven development with 80%+ coverage including unit, integration, and E2E tests.
·0↓6.2k
django-patterns
Passed all 3 security checksDjango architecture patterns, REST API design with DRF, ORM best practices, caching, signals, middleware, and production-grade Django apps.
·0↓6.1k
frontend-slides
Passed all 3 security checksCreate stunning, animation-rich HTML presentations from scratch or by converting PowerPoint files. Use when the user wants to build a presentation, convert a PPT/PPTX to web, or create slides for a talk/pitch. Helps non-designers discover their aesthetic through visual exploration rather than abstract choices.
·0↓6.1k
java-coding-standards
Passed all 3 security checksJava coding standards for Spring Boot and Quarkus services: naming, immutability, Optional usage, streams, exceptions, generics, CDI, reactive patterns, and project layout. Automatically applies framework-specific conventions.
·0↓6k
docker-patterns
Passed all 3 security checksDocker and Docker Compose patterns for local development, container security, networking, volume strategies, and multi-service orchestration.
·0↓5.9k
python-testing
Passed all 3 security checksPython testing strategies using pytest, TDD methodology, fixtures, mocking, parametrization, and coverage requirements.
·0↓5.8k
springboot-security
Passed all 3 security checksSpring Security best practices for authn/authz, validation, CSRF, secrets, headers, rate limiting, and dependency security in Java Spring Boot services.
·0↓5.8k
django-security
Passed all 3 security checksDjango security best practices, authentication, authorization, CSRF protection, SQL injection prevention, XSS prevention, and secure deployment configurations.
·0↓5.8k
video-editing
Passed all 3 security checksAI-assisted video editing workflows for cutting, structuring, and augmenting real footage. Covers the full pipeline from raw capture through FFmpeg, Remotion, ElevenLabs, fal.ai, and final polish in Descript or CapCut. Use when the user wants to edit video, cut footage, create vlogs, or build video content.
·0↓5.6k
strategic-compact
Passed all 3 security checksSuggests manual context compaction at logical intervals to preserve context through task phases rather than arbitrary auto-compaction.
·0↓5.5k
jpa-patterns
Passed all 3 security checksJPA/Hibernate patterns for entity design, relationships, query optimization, transactions, auditing, indexing, pagination, and pooling in Spring Boot.
·0↓5.2k
eval-harness
Passed all 3 security checksFormal evaluation framework for Claude Code sessions implementing eval-driven development (EDD) principles
·0↓5.2k
android-clean-architecture
Passed all 3 security checksClean Architecture patterns for Android and Kotlin Multiplatform projects — module structure, dependency rules, UseCases, Repositories, and data layer patterns.
·0↓5.1k
swift-concurrency-6-2
Passed all 3 security checksSwift 6.2 Approachable Concurrency — single-threaded by default, @concurrent for explicit background offloading, isolated conformances for main actor types.
·0↓4.4k
kotlin-patterns
Passed all 3 security checksIdiomatic Kotlin patterns, best practices, and conventions for building robust, efficient, and maintainable Kotlin applications with coroutines, null safety, and DSL builders.
·0↓4.4k
rust-patterns
Passed all 3 security checksIdiomatic Rust patterns, ownership, error handling, traits, concurrency, and best practices for building safe, performant applications.
·0↓4.3k
bun-runtime
Passed all 3 security checksBun as runtime, package manager, bundler, and test runner. When to choose Bun vs Node, migration notes, and Vercel support.
·0↓4.3k
customs-trade-compliance
Passed all 3 security checks>
·0↓4.2k
everything-claude-code-conventions
Passed all 3 security checksDevelopment conventions and patterns for everything-claude-code. JavaScript project with conventional commits.
·0↓4.2k
enterprise-agent-ops
Passed all 3 security checksOperate long-lived agent workloads with observability, security boundaries, and lifecycle management.
·0↓4.2k
ai-regression-testing
Passed all 3 security checksRegression testing strategies for AI-assisted development. Sandbox-mode API testing without database dependencies, automated bug-check workflows, and patterns to catch AI blind spots where the same model writes and reviews code.
·0↓4.2k
exa-search
Passed all 3 security checksNeural search via Exa MCP for web, code, and company research. Use when the user needs web search, code examples, company intel, people lookup, or AI-powered deep research with Exa's neural search engine.
·0↓4.2k
architecture-decision-records
Passed all 3 security checksCapture architectural decisions made during Claude Code sessions as structured ADRs. Auto-detects decision moments, records context, alternatives considered, and rationale. Maintains an ADR log so future developers understand why the codebase is shaped the way it is.
·0↓4.2k
ralphinho-rfc-pipeline
Passed all 3 security checksRFC-driven multi-agent DAG execution pattern with quality gates, merge queues, and work unit orchestration.
·0↓4.2k
dmux-workflows
Passed all 3 security checksMulti-agent orchestration using dmux (tmux pane manager for AI agents). Patterns for parallel agent workflows across Claude Code, Codex, OpenCode, and other harnesses. Use when running multiple agent sessions in parallel or coordinating multi-agent development workflows.
·0↓4k
perl-security
Passed all 3 security checksComprehensive Perl security covering taint mode, input validation, safe process execution, DBI parameterized queries, web security (XSS/SQLi/CSRF), and perlcritic security policies.
·0↓4k
perl-testing
Passed all 3 security checksPerl testing patterns using Test2::V0, Test::More, prove runner, mocking, coverage with Devel::Cover, and TDD methodology.
·0↓4k
agent-eval
Passed all 3 security checksHead-to-head comparison of coding agents (Claude Code, Aider, Codex, etc.) on custom tasks with pass rate, cost, time, and consistency metrics
·0↓4k
claude-devfleet
Passed all 3 security checksOrchestrate multi-agent coding tasks via Claude DevFleet — plan projects, dispatch parallel agents in isolated worktrees, monitor progress, and read structured reports.
·0↓4k
team-builder
Passed all 3 security checksInteractive agent picker for composing and dispatching parallel teams
·0↓4k
git-workflow
Passed all 3 security checksGit workflow patterns including branching strategies, commit conventions, merge vs rebase, conflict resolution, and collaborative development best practices for teams of all sizes.
·0↓3.7k
santa-method
Passed all 3 security checksMulti-agent adversarial verification with convergence loop. Two independent review agents must both pass before output ships.
·0↓3.6k
laravel-verification
Passed all 3 security checksVerification loop for Laravel projects: env checks, linting, static analysis, tests with coverage, security scans, and deployment readiness.
·0↓3.5k
nestjs-patterns
Passed all 3 security checksNestJS architecture patterns for modules, controllers, providers, DTO validation, guards, interceptors, config, and production-grade TypeScript backends.
·0↓3.4k
safety-guard
Passed all 3 security checksUse this skill to prevent destructive operations when working on production systems or running agents autonomously.
·0↓3.4k
laravel-plugin-discovery
Passed all 3 security checksDiscover and evaluate Laravel packages via LaraPlugins.io MCP. Use when the user wants to find plugins, check package health, or assess Laravel/PHP compatibility.
·0↓3.4k
code-tour
Passed all 3 security checks·0↓3k
accessibility
Passed all 3 security checksDesign, implement, and audit inclusive digital products using WCAG 2.2 Level AA
·0↓3k
everything-claude-code
Passed all 3 security checksDevelopment conventions and patterns for everything-claude-code. JavaScript project with conventional commits.
·0↓2.1k