数据处理
数据转换、清洗与 ETL
tender-engine
walidgdg1-ai
Operate the SPM Business public-tender intelligence engine end to end: high-recall discovery, historical priors, live scoring, selective DCE retrieval, mandatory-gate verification, durable preservation, and bid/no-bid classification.
compare-test-case
tuist
Compares a single test case's behavior across two branches, analyzing pass/fail status, duration, flakiness, and failure details. Useful for investigating test regressions introduced by a feature branch.
paperclip-page
paperclipai
Publish static HTML pages and asset folders to the Paperclip S3/CloudFront page host. Use when asked to deploy, host, or share a persistent page, viewer, prototype, report, or static site without here.now.
🧠 SKILL: Automated Data Analysis Pipeline (D2P)
omosb1-sys
생성된 모든 코드는 직접 실행하여 검증한 뒤 깨끗한 상태로 전달합니다.
compare-builds
tuist
Compares two Xcode build runs to identify duration regressions, cache changes, and new issues. Can be invoked with build IDs, dashboard URLs, or branch names (e.g. tuist compare-builds --base main --head feature-branch).
live-semantic-fleet
walidgdg1-ai
Operate the Tender Engine as a backfill-once, delta-live semantic fleet using a persistent notice ledger, permissive Qwen 4B classification on parallel GitHub runners, GPT Web for high-value reasoning, SERP tools as secondary resolvers, and authoritative DCE gates for final decisions.
chuinb
Umang5848
This skill transforms users into confident industry insiders through immersive, research-driven learning experiences. It should be used when users want to quickly master an unfamiliar industry, field, skill, or domain — whether for professional networking, investment decisions, career transitions, or pure curiosity. The skill combines Feynman Technique, First Principles thinking, and 80/20 analysis with deep web research to generate beautifully formatted, media-rich learning notes with interactive flashcards and quizzes. Triggers include: "help me understand [industry]", "I need to learn about [field] quickly", "make me an insider in [domain]", "行业速成", "快速掌握", "深度学习笔记", "/chuinb", "/master", or any request to rapidly acquire domain expertise.
analyzing-malware-sandbox-evasion-techniques
mukul975
Detect sandbox evasion techniques in malware samples by analyzing timing checks, VM artifact queries, user interaction
analyzing-windows-registry-for-artifacts
mukul975
Extract and analyze Windows Registry hives to uncover user activity, installed software, autostart entries, and evidence of system compromise.
analyzing-slack-space-and-file-system-artifacts
mukul975
Examine file system slack space, MFT entries, USN journal, and alternate data streams to recover hidden data and reconstruct file activity on NTFS volumes.
analyzing-windows-lnk-files-for-artifacts
mukul975
Parse Windows LNK shortcut files to extract target paths, timestamps, volume information, and machine identifiers for forensic timeline reconstruction.
auditing-aws-s3-bucket-permissions
mukul975
Systematically audit AWS S3 bucket permissions to identify publicly accessible buckets, overly permissive ACLs, misconfigured bucket policies, and missing encryption settings using AWS CLI, S3audit, and Prowler to enforce least-privilege data access controls.
analyzing-golang-malware-with-ghidra
mukul975
Reverse engineer Go-compiled malware using Ghidra with specialized scripts for function recovery, string extraction, and type reconstruction in stripped Go binaries.
analyzing-command-and-control-communication
mukul975
Analyzes malware command-and-control (C2) communication protocols to understand beacon patterns, command structures, data encoding, and infrastructure. Covers HTTP, HTTPS, DNS, and custom protocol C2 analysis for detection development and threat intelligence. Activates for requests involving C2 analysis, beacon detection, C2 protocol reverse engineering, or command-and-control infrastructure mapping.
analyzing-linux-elf-malware
mukul975
Analyzes malicious Linux ELF (Executable and Linkable Format) binaries including botnets, cryptominers, ransomware, and rootkits targeting Linux servers, containers, and cloud infrastructure. Covers static analysis, dynamic tracing, and reverse engineering of x86_64 and ARM ELF samples. Activates for requests involving Linux malware analysis, ELF binary investigation, Linux server compromise assessment, or container malware analysis.
analyzing-malware-family-relationships-with-malpedia
mukul975
Use the Malpedia platform and API to research malware family relationships, track variant evolution, link families to threat actors, and integrate YARA rules for detection across malware lineages.
analyzing-cloud-storage-access-patterns
mukul975
Detect abnormal access patterns in AWS S3, GCS, and Azure Blob Storage by analyzing CloudTrail Data Events, GCS
analyzing-network-flow-data-with-netflow
mukul975
Parse NetFlow v9 and IPFIX records to detect volumetric anomalies, port scanning, data exfiltration, and C2 beaconing
analyzing-pdf-malware-with-pdfid
mukul975
Analyzes malicious PDF files using PDFiD, pdf-parser, and peepdf to identify embedded JavaScript, shellcode, exploits, and suspicious objects without opening the document. Determines the attack vector and extracts embedded payloads for further analysis. Activates for requests involving PDF malware analysis, malicious document analysis, PDF exploit investigation, or suspicious attachment triage.
analyzing-ransomware-leak-site-intelligence
mukul975
Monitor and analyze ransomware group data leak sites (DLS) to track victim postings, extract threat intelligence on group tactics, and assess sector-specific ransomware risk for proactive defense.
analyzing-malicious-pdf-with-peepdf
mukul975
Perform static analysis of malicious PDF documents using peepdf, pdfid, and pdf-parser to extract embedded JavaScript,
analyzing-typosquatting-domains-with-dnstwist
mukul975
Detect typosquatting, homograph phishing, and brand impersonation domains using dnstwist to generate domain permutations and identify registered lookalike domains targeting your organization.
analyzing-mft-for-deleted-file-recovery
mukul975
Analyze the NTFS Master File Table ($MFT) to recover metadata and content of deleted files by examining MFT record entries, $LogFile, $UsnJrnl, and MFT slack space using MFTECmd, analyzeMFT, and X-Ways Forensics.
analyzing-network-traffic-for-incidents
mukul975
Analyzes network traffic captures and flow data to identify adversary activity during security incidents, including command-and-control communications, lateral movement, data exfiltration, and exploitation attempts. Uses Wireshark, Zeek, and NetFlow analysis techniques. Activates for requests involving network traffic analysis, packet capture investigation, PCAP analysis, network forensics, C2 traffic detection, or exfiltration detection.