github.com/alirezarezvani/claude-skills
| Skill | Added | Review |
|---|---|---|
security-pen-testing engineering-team/skills/security-pen-testing/SKILL.md Use when the user asks to perform security audits, penetration testing, vulnerability scanning, OWASP Top 10 checks, or offensive security assessments. Covers static analysis, dependency scanning, secret detection, API security testing, and pen test report generation. | 68 68 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
red-team engineering-team/skills/red-team/SKILL.md Use when planning or executing authorized red team engagements, attack path analysis, or offensive security simulations. Covers MITRE ATT&CK kill-chain planning, technique scoring, choke point identification, OPSEC risk assessment, and crown jewel targeting. | 72 72 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
named-persona-adversarial-review engineering-team/skills/named-persona-adversarial-review/SKILL.md Code review through the lens of real engineers' documented philosophies (Torvalds, Thompson, Carmack, Kent Beck, Jobs, Cagan). Complements abstract-role adversarial review with named, sourced perspectives. Use when automated review findings feel generic, when a PR has architectural or UX impact, or when the author wants pre-submit hardening beyond standard checks. | 68 68 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
ms365-tenant-manager engineering-team/skills/ms365-tenant-manager/SKILL.md Microsoft 365 tenant administration for Global Administrators. Automate M365 tenant setup, Office 365 admin tasks, Azure AD user management, Exchange Online configuration, Teams administration, and security policies. Generate PowerShell scripts for bulk operations, Conditional Access policies, license management, and compliance reporting. Use for M365 tenant manager, Office 365 admin, Azure AD users, Global Administrator, tenant configuration, or Microsoft 365 automation. | 73 73 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
incident-response engineering-team/skills/incident-response/SKILL.md Use when a security incident has been detected or declared and needs classification, triage, escalation path determination, and forensic evidence collection. Covers SEV1-SEV4 classification, false positive filtering, incident taxonomy, and NIST SP 800-61 lifecycle. | 72 72 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
incident-commander engineering-team/skills/incident-commander/SKILL.md Comprehensive incident response framework from detection through resolution and post-incident review. Battle-tested SRE/DevOps practices: severity classification, timeline reconstruction, structured post-incident analysis. Use when declaring an incident, coordinating multi-team response during an outage, leading a post-mortem, or setting up on-call practices for a new service. | 59 59 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
gcp-cloud-architect engineering-team/skills/gcp-cloud-architect/SKILL.md Design GCP architectures for startups and enterprises. Use when asked to design Google Cloud infrastructure, deploy to GKE or Cloud Run, configure BigQuery pipelines, optimize GCP costs, or migrate to GCP. Covers Cloud Run, GKE, Cloud Functions, Cloud SQL, BigQuery, and cost optimization. | 72 72 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
epic-design engineering-team/skills/epic-design/SKILL.md Build immersive, cinematic 2.5D interactive websites using scroll storytelling, parallax depth, text animations, and premium scroll effects — no WebGL required. Use this skill for any web design task: landing pages, product sites, hero sections, scroll animations, parallax, sticky sections, section overlaps, floating products between sections, clip-path reveals, text that flies in from sides, words that light up on scroll, curtain drops, iris opens, card stacks, bleed typography, and any site that should feel cinematic or premium. Trigger on phrases like "make it feel alive", "Apple-style animation", "sections that overlap", "product rises between sections", "immersive", "scrollytelling", or any scroll-driven visual effect. Covers 45+ techniques across 8 categories. Always inspects, judges, and plans assets before coding. Use aggressively for ANY web design task. | 72 72 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
engineering-skills engineering-team/skills/engineering-skills/SKILL.md Index of the engineering-team skills bundle for Claude Code, Codex, Gemini CLI, Cursor, OpenClaw, and 6 more tools. Architecture, frontend, backend, QA, DevOps, security, AI/ML, data engineering, Playwright, Stripe, AWS, MS365 (stdlib-only Python tools). Use when browsing or choosing among engineering-team role skills — load only the one specialist SKILL.md you need, never bulk-load the bundle. | 63 63 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
embedded-iot-mentor engineering-team/skills/embedded-iot-mentor/SKILL.md Mentor for embedded and IoT hardware projects. Helps select MCUs, dev boards, and toolchains, decides where sensor readings end up (phone, PC, dashboard, or alert), and gives time/cost estimates and a phased build plan from breadboard MVP to production PCB. Use when the user mentions embedded, IoT, microcontroller, ESP32, STM32, Arduino, Raspberry Pi Pico, firmware, PCB, KiCad, EasyEDA, PlatformIO, MQTT, Home Assistant, ESPHome, Grafana, an IoT dashboard, seeing sensor data on a phone, or asks for hardware tool recommendations, project planning, or cost/time estimates for an electronics project. | 75 75 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
email-template-builder engineering-team/skills/email-template-builder/SKILL.md Build complete transactional email systems: React Email templates, provider integration (Resend, Postmark, SendGrid, AWS SES), preview server, i18n support, dark mode, spam optimization, analytics tracking. Use when adding transactional email to a new product, migrating between email providers, refactoring legacy email templates for accessibility, or adding internationalization to existing templates. | 64 64 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
code-reviewer engineering-team/skills/code-reviewer/SKILL.md Code review automation for TypeScript, JavaScript, Python, Go, Swift, Kotlin, C#, .NET, Java, C, C++, Rust, Ruby, PHP, and Dart/Flutter. Analyzes PRs for complexity and risk, checks code quality for SOLID violations and code smells, generates review reports. Use when reviewing pull requests, analyzing code quality, identifying issues, generating review checklists. | 66 66 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
cloud-security engineering-team/skills/cloud-security/SKILL.md Use when assessing cloud infrastructure for security misconfigurations, IAM privilege escalation paths, S3 public exposure, open security group rules, or IaC security gaps. Covers AWS, Azure, and GCP posture assessment with MITRE ATT&CK mapping. | 75 75 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
azure-cloud-architect engineering-team/skills/azure-cloud-architect/SKILL.md Design Azure architectures for startups and enterprises. Use when asked to design Azure infrastructure, create Bicep/ARM templates, optimize Azure costs, set up Azure DevOps pipelines, or migrate to Azure. Covers AKS, App Service, Azure Functions, Cosmos DB, and cost optimization. | 69 69 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
aws-solution-architect engineering-team/skills/aws-solution-architect/SKILL.md Design AWS architectures for startups using serverless patterns and IaC templates. Use when asked to design serverless architecture, create CloudFormation templates, optimize AWS costs, set up CI/CD pipelines, or migrate to AWS. Covers Lambda, API Gateway, DynamoDB, ECS, Aurora, and cost optimization. | 84 84 1.24x Agent success vs baseline Impact 81% 1.24xAverage score across 6 eval scenarios Securityby — The risk profile of this skill Reviewed: Version: 19392f7 | |
ai-security engineering-team/skills/ai-security/SKILL.md Use when assessing AI/ML systems for prompt injection, jailbreak vulnerabilities, model inversion risk, data poisoning exposure, or agent tool abuse. Covers MITRE ATLAS technique mapping, injection signature detection, and adversarial robustness scoring. | 71 71 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
adversarial-reviewer engineering-team/skills/adversarial-reviewer/SKILL.md Adversarial code review that breaks the self-review monoculture. Use when you want a genuinely critical review of recent changes, before merging a PR, or when you suspect Claude is being too agreeable about code quality. Forces perspective shifts through hostile reviewer personas that catch blind spots the author's mental model shares with the reviewer. | 66 66 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
self-improving-agent engineering-team/self-improving-agent/skills/self-improving-agent/SKILL.md Curate Claude Code's auto-memory into durable project knowledge. Analyze MEMORY.md for patterns, promote proven learnings to CLAUDE.md and .claude/rules/, extract recurring solutions into reusable skills. Use when: (1) reviewing what Claude has learned about your project, (2) graduating a pattern from notes to enforced rules, (3) turning a debugging solution into a skill, (4) checking memory health and capacity. | 60 60 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
remember engineering-team/self-improving-agent/skills/remember/SKILL.md Explicitly save important knowledge to auto-memory with timestamp and context. Use when a discovery is too important to rely on auto-capture. | 62 62 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
promote engineering-team/self-improving-agent/skills/promote/SKILL.md Graduate a proven pattern from auto-memory (MEMORY.md) to CLAUDE.md or .claude/rules/ for permanent enforcement. Use when the user runs /si:promote or asks to make a learned behavior permanent. | 68 68 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
memory-status engineering-team/self-improving-agent/skills/memory-status/SKILL.md Memory health dashboard showing line counts, topic files, capacity, stale entries, and recommendations. Use when the user runs /si:memory-status or asks how full or healthy the agent memory is. | 68 68 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
memory-review engineering-team/self-improving-agent/skills/memory-review/SKILL.md Analyze auto-memory for promotion candidates, stale entries, consolidation opportunities, and health metrics. Use when the user runs /si:memory-review or asks what has been learned and what should be promoted or pruned. | 69 69 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
extract engineering-team/self-improving-agent/skills/extract/SKILL.md Turn a proven pattern or debugging solution into a standalone reusable skill with SKILL.md, reference docs, and examples. Use when the user runs /si:extract or asks to package a recurring solution from memory into a skill. | 68 68 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
testrail engineering-team/playwright-pro/skills/testrail/SKILL.md Sync tests with TestRail. Use when user mentions "testrail", "test management", "test cases", "test run", "sync test cases", "push results to testrail", or "import from testrail". | 68 68 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 | |
report engineering-team/playwright-pro/skills/report/SKILL.md Generate test report. Use when user says "test report", "results summary", "test status", "show results", "test dashboard", or "how did tests go". | 62 62 Impact — No eval scenarios have been run Securityby — The risk profile of this skill Version: 19392f7 |