认证鉴权
认证与授权
codex
Lucklyric
This skill should be used when the user wants to invoke Codex CLI for complex coding tasks requiring high reasoning capabilities. Trigger phrases include "use codex", "ask codex", "run codex", "call codex", "codex cli", "GPT-5 reasoning", "OpenAI reasoning", or when users request complex implementation challenges, advanced reasoning, architecture design, or high-reasoning model assistance. Automatically triggers on codex-related requests and supports session continuation for iterative development.
harness-keycloak-auth
markus41
Keycloak OIDC integration with Harness pipelines, EKS IRSA, service account authentication, and realm-as-code patterns
pexpect-cli
Mic92
Persistent pexpect sessions for automating interactive terminal applications. Use when you need to control interactive programs like ssh, databases, or debuggers that require user input.
pos-sales-ui-design
peterbamuhigire
Design POS, checkout, and sales entry web UIs that are simple, accessible, and fast for all ages while integrating all backend actions strictly through APIs. Use for creating or reviewing UI patterns, layouts, components, and workflows for web-based sales recording systems.
android-biometric-login
peterbamuhigire
"Optional biometric (fingerprint/face) gate on Android app launch using AndroidX Biometric API. Covers BiometricHelper utility, splash screen integration, settings toggle with verification, EncryptedSharedPreferences storage, and graceful fallback. Use when adding biometric authentication to any Android app."
multi-tenant-saas-architecture
peterbamuhigire
"Production-grade multi-tenant SaaS platform architecture with three-panel separation, zero-trust security, strict tenant isolation, and comprehensive audit trails. Use for designing multi-tenant systems, implementing tenant-scoped permissions, ensuring data isolation, and building scalable SaaS platforms."
android-saas-planning
peterbamuhigire
"Create comprehensive planning documentation for a native Android app that integrates with an existing web-based SaaS platform. Use when building a mobile companion app for any SaaS — ERP, CRM, POS, logistics, healthcare, fintech, etc. Generates 7 production-ready planning documents: PRD, SRS, SDS, API Contract, User Journeys, Testing Strategy, and Release Plan."
dual-auth-rbac
peterbamuhigire
"Dual authentication system (Session + JWT) with role-based access control (RBAC) for multi-tenant applications. Use when implementing secure authentication across web UI and API/mobile clients, with franchise/tenant-scoped permissions. Works across languages: PHP, Node.js, Python, Go, etc."
Multi-Repo Coordination with Polygraph
nrwl
Only complete sessions when asked â Only call cloud_polygraph_complete_session when the user explicitly requests it. Do not automatically complete sessions.
nextjs-app-router
sabahattinkalkan
Next.js App Router best practices, Server Components, Server Actions, routing patterns, and data fetching strategies. Use when building Next.js applications with the App Router.
await-polygraph-ci
nrwl
Wait for CI to settle across all repos in a Polygraph session, then report results and investigate failures. USE WHEN user says "await polygraph", "wait for polygraph ci", "polygraph ci status", "check polygraph ci", "watch polygraph session", "monitor polygraph".
atelier-oracle-thinkdeep
martinffx
Extended reasoning analysis using sequential thinking. Use for deep exploration, comprehensive analysis, complex decisions, or when you need fresh perspectives on difficult problems.
launch
popmechanic
Self-contained SaaS pipeline — invoke directly, do not decompose.
standard-security-auth
salavender
Security & Authentication Specialist - Expert in JWT, cookie-based auth, MFA, and generic security patterns
session-resume
salavender
Resume context from previous session
auth-implementation-patterns
ynulihao
Master authentication and authorization patterns including JWT, OAuth2, session management, and RBAC to build secure, scalable access control systems. Use when implementing auth systems, securing APIs, or debugging security issues.
linear-config
Finesssee
Configure linear-cli. Use for auth, API keys, workspaces, and diagnostics.
phase1-lite
nguyenthienthanh
"Ultra-compact Phase 1 requirements output. HARD CAP: 500 tokens."
test-writer
nguyenthienthanh
"Write tests with TDD. Supports Jest, Cypress, Detox, PHPUnit, PyTest, Go testing."
session-continuation
nguyenthienthanh
"Manage workflow state across sessions with handoff and resume. TOON-based state persistence."
project-context-loader
nguyenthienthanh
"Load project conventions and generate session context. Use EXPLICITLY when needed, not automatically."
sequential-thinking
nguyenthienthanh
"Structured thinking process for complex analysis. Supports revision, branching, and dynamic adjustment."
secure-coding
Logos-Liber
OWASP secure coding practices, language-specific security considerations, input validation and output encoding, authentication and authorization patterns, cryptography best practices, secure API design, and common security anti-patterns
api-documentation
Logos-Liber
OpenAPI/Swagger specification standards and API documentation best practices