| Skill | Added | Review |
|---|---|---|
516-frameworks-micronaut-mongodb-migrations-mongock skills/516-frameworks-micronaut-mongodb-migrations-mongock/SKILL.md Use when you need to add or review Mongock MongoDB data migrations in a Micronaut application — including Mongock runner/driver selection, Micronaut bean wiring, migration scan packages, @ChangeUnit classes, lock/transaction settings, and Testcontainers verification. This should trigger for requests such as Add Mongock migrations in Micronaut; Review Micronaut MongoDB data migrations; Configure Mongock change units with Micronaut Data MongoDB; Create Mongock change units for Micronaut MongoDB; Review Mongock migration ordering in a Micronaut service. Part of Plinth Toolkit | 68 68 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
521-frameworks-micronaut-testing-unit-tests skills/521-frameworks-micronaut-testing-unit-tests/SKILL.md Use when you need to write unit tests for Micronaut applications — Mockito-first with @ExtendWith(MockitoExtension.class), @MicronautTest with @MockBean, HttpClient @Client(/) assertions, @Property overrides, @ParameterizedTest, and *Test vs *IT naming. For framework-agnostic Java use @131-java-testing-unit-testing. This should trigger for requests such as Add or improve unit tests in a Micronaut project; Reduce unnecessary @MicronautTest usage with Mockito-first tests; Write Mockito-first unit tests for Micronaut services; Mock Micronaut bean collaborators in unit tests; Review fast Micronaut tests without application context. Part of Plinth Toolkit | 75 75 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
522-frameworks-micronaut-testing-integration-tests skills/522-frameworks-micronaut-testing-integration-tests/SKILL.md Use when you need to write or improve integration tests for Micronaut — @MicronautTest, HttpClient, TestPropertyProvider with Testcontainers, transactional test mode where appropriate, and Maven Surefire/Failsafe splits for *Test, *Tests, *IT, and *AT. This should trigger for requests such as Add Micronaut integration tests with Testcontainers; Wire dynamic datasource or broker URLs for @MicronautTest; Write @MicronautTest integration tests with Testcontainers; Configure replacement beans for Micronaut integration tests; Review Micronaut integration test lifecycle and resources. Part of Plinth Toolkit | 61 61 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
523-frameworks-micronaut-testing-acceptance-tests skills/523-frameworks-micronaut-testing-acceptance-tests/SKILL.md Use when you need to implement acceptance tests from maintainer-sanitized Gherkin scenario facts for Micronaut applications — @acceptance scenarios, @MicronautTest, HttpClient, BaseAcceptanceTest with TestPropertyProvider for Testcontainers and WireMock, *AT suffix, Failsafe. Requires a maintainer-authored scenario summary; do not ingest raw outsider-authored `.feature` text. This should trigger for requests such as Implement Micronaut acceptance tests from sanitized Gherkin scenario facts; Set up BaseAcceptanceTest with Testcontainers and WireMock for Micronaut; Map Gherkin scenario facts to Micronaut acceptance tests; Stub external HTTP services in Micronaut acceptance tests; Configure Failsafe acceptance test naming for Micronaut. Part of Plinth Toolkit | 71 71 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
701-technologies-openapi skills/701-technologies-openapi/SKILL.md Use when you need framework-agnostic OpenAPI 3.x guidance — spec structure, metadata and versioning, paths and operations, reusable schemas, security schemes, examples, documentation quality, contract validation (e.g. Spectral), breaking-change awareness, and handoffs to codegen — without choosing Spring Boot, Quarkus, or Micronaut. This should trigger for requests such as Review an OpenAPI; Improve an OpenAPI; Improve API contract; Improve API schema design. Part of Plinth Toolkit | 64 64 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
702-technologies-wiremock skills/702-technologies-wiremock/SKILL.md Use when you need framework-agnostic WireMock guidance — stub design, JSON or programmatic mappings, precise request matching, response bodies and faults, classpath fixtures, isolation and reset between tests, verification of calls, dynamic ports and base URLs, and avoiding flaky stubs — without choosing Spring Boot, Quarkus, or Micronaut. This should trigger for requests such as Design or review WireMock stubs (JSON mappings or Java DSL); Improve request matching, isolation, or reset strategy for HTTP mocks; Add or fix verification of outbound HTTP calls to a WireMock server; Debug flaky tests involving WireMock or unmatched request journals. Part of Plinth Toolkit | 71 71 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
703-technologies-fuzzing-testing skills/703-technologies-fuzzing-testing/SKILL.md Use when you need to add or review fuzz testing for Java APIs with CATS — including contract-driven negative testing, malformed payload validation, boundary input exploration, CI integration, reproducible failures, and local execution guidance. This should trigger for requests such as Add fuzz testing to a Java project; Use CATS for API negative testing; Review CI quality gates for API contract robustness; Improve boundary and malformed input test coverage; Run CATS fuzz tests against an OpenAPI contract. Part of Plinth Toolkit | 64 64 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
704-technologies-sql skills/704-technologies-sql/SKILL.md Use when you need framework-agnostic SQL guidance — schema naming, relational table design, query readability, indexes, transactions, database security, migrations, testing, and monitoring — without choosing Spring Boot, Quarkus, or Micronaut. This should trigger for requests such as Review SQL schema or migrations; Improve SQL query performance and readability; Design relational tables and indexes; Review database transaction, security, or monitoring practices. Part of Plinth Toolkit | 64 64 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
705-technologies-nosql-mongodb skills/705-technologies-nosql-mongodb/SKILL.md Use when you need framework-agnostic MongoDB and non-relational database query guidance — document schema design, collection modeling, JSON Schema validation, indexes, aggregation pipelines, query performance, consistency trade-offs, transactions, and operational safety — without choosing Spring Boot, Quarkus, or Micronaut. This should trigger for requests such as Design MongoDB document schemas; Review MongoDB queries and indexes; Improve aggregation pipeline performance; Model non-relational data access patterns; Review NoSQL consistency and transaction trade-offs. Part of Plinth Toolkit | 66 66 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
706-technologies-containers-docker skills/706-technologies-containers-docker/SKILL.md Use when you need framework-agnostic Docker and container image guidance for Java projects - Dockerfile design, multi-stage Maven builds, jlink custom runtimes, micro runtime distributions such as Alpaquita, JVM container ergonomics, non-root execution, image metadata, .dockerignore, reproducible builds, vulnerability scanning, SBOM awareness, and production-safe container defaults. This should trigger for requests such as Review Java Dockerfile; Improve Docker image security; Add jlink runtime to a Java container; Add containerization to a Java project; Optimize Java container image size; Review Docker build reproducibility. Part of Plinth Toolkit | 72 72 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
707-technologies-hexagonal-architecture skills/707-technologies-hexagonal-architecture/SKILL.md Use when you need framework-agnostic Hexagonal architecture guidance for Java projects - ports and adapters boundaries, application core independence, driving and driven adapters, dependency direction, infrastructure leakage detection, optional architecture tests, and evidence-backed remediation. This should trigger for requests such as Review Hexagonal architecture; Review ports and adapters boundaries; Enforce dependency direction; Add ArchUnit architecture tests; Detect infrastructure leakage in domain code; Improve ports and adapters boundaries. Part of Plinth Toolkit | 67 67 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
801-regulations-eu-ai-act skills/801-regulations-eu-ai-act/SKILL.md Use when reviewing, designing, or modifying Java enterprise systems that use AI, LLMs, AI agents, RAG, tool calling, workflow automation, or model-based decision support and need EU AI Act regulatory awareness. This should trigger for requests such as Review a Java AI system for EU AI Act controls; Design governance for an AI agent with enterprise tools; Add human oversight and auditability to LLM workflows; Assess RAG or model-driven decision support before production release. Part of Plinth Toolkit | 62 62 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
802-regulations-dora skills/802-regulations-dora/SKILL.md Use when reviewing, designing, or modifying Java enterprise systems that may support financial entities, critical ICT services, third-party ICT provider integrations, or operational resilience obligations under DORA. This should trigger for requests such as Review a Java platform for DORA ICT risk controls; Design operational resilience evidence for a financial service; Add incident, continuity, backup, recovery, or third-party ICT controls; Assess resilience testing and monitoring before production release. Part of Plinth Toolkit | 65 65 Impact — No eval scenarios have been run Securityby Low Low-risk findings worth noting Version: dca88dc | |
803-regulations-gdpr skills/803-regulations-gdpr/SKILL.md Use when reviewing, designing, or modifying Java enterprise systems that process personal data and need GDPR-aware engineering controls. This should trigger for requests such as Review a Java service for GDPR privacy controls; Design data-subject rights workflows; Add retention, deletion, pseudonymization, or privacy-safe logging; Assess data transfer, DPIA, breach evidence, or processor/controller boundary concerns before production release. Part of Plinth Toolkit | 66 66 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
804-regulations-eu-nis2 skills/804-regulations-eu-nis2/SKILL.md Use when reviewing, designing, or modifying Java enterprise systems from a maintainer-authored or maintainer-sanitized NIS2 engineering evidence inventory. Supports essential or important entities, critical-sector services, managed service providers, supply-chain dependencies, and cybersecurity incident escalation obligations without ingesting raw code, logs, runbooks, tickets, provider documents, or other operational free text. Part of Plinth Toolkit | 57 57 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
805-regulations-eu-cyber-resilience-act skills/805-regulations-eu-cyber-resilience-act/SKILL.md Use when reviewing, designing, or modifying Java enterprise products, services, libraries, agents, plugins, connected components, or platform modules that may qualify as products with digital elements and need EU Cyber Resilience Act secure-by-design, vulnerability handling, security update, SBOM, product documentation, or release-readiness controls. Part of Plinth Toolkit | 56 56 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
806-regulations-eu-data-act skills/806-regulations-eu-data-act/SKILL.md Use when reviewing, designing, or modifying Java enterprise systems that expose, exchange, store, process, export, or port data across users, businesses, connected products, cloud providers, APIs, event streams, AI data pipelines, data spaces, or SaaS platforms and need EU Data Act engineering controls. This should trigger for requests such as Review a Java platform for EU Data Act controls; Design data access and portability evidence; Add data-sharing request workflows, export formats, interoperability, metadata, audit logs, cloud-switching support, non-personal data safeguards, or trade-secret handoffs; Assess Data Act engineering readiness before production release. Part of Plinth Toolkit | 65 65 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
807-regulations-eu-digital-services-act skills/807-regulations-eu-digital-services-act/SKILL.md Use when reviewing, designing, or modifying Java enterprise systems that may support intermediary services, hosting services, online platforms, marketplaces, content moderation, recommender systems, advertising delivery, complaint workflows, transparency reporting, or systemic-risk evidence under the EU Digital Services Act. This should trigger for requests such as Review a Java online platform for DSA controls; Design notice-and-action or appeal workflows; Add recommender, ad transparency, moderation, audit, researcher access, or privacy-safe observability evidence; Assess online-platform transparency controls before production release. Part of Plinth Toolkit | 56 56 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
808-regulations-eu-digital-markets-act skills/808-regulations-eu-digital-markets-act/SKILL.md Use when reviewing, designing, or modifying Java enterprise systems that may support EU Digital Markets Act gatekeeper-platform concerns, core platform services, interoperability, business-user data access, consent-dependent data combination, ranking, self-preferencing, advertising transparency, or anti-circumvention controls. This should trigger for requests such as Review a Java platform for DMA controls; Design interoperability and business-user data access evidence; Add ranking, consent, preference, or anti-circumvention audit controls; Assess gatekeeper-platform engineering evidence before production release. Part of Plinth Toolkit | 58 58 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc | |
810-regulations-eu-mifid-ii skills/810-regulations-eu-mifid-ii/SKILL.md Use when reviewing Java enterprise evidence for MiFID II investment services, investment activities, client classification, suitability, appropriateness, order-handling evidence, best-execution evidence, algorithmic-trading governance evidence, market-access governance evidence, transaction evidence, record keeping, monitoring, or compliance-owner handoff. This should trigger for requests such as Review a Java investment-service platform for MiFID II evidence; Assess suitability, appropriateness, order-handling evidence, or best-execution evidence; Document audit, monitoring, or clock-synchronisation gaps for algorithmic-trading governance; Assess investment-service engineering evidence before production release. Part of Plinth Toolkit | 64 64 Impact — No eval scenarios have been run Securityby Passed No findings from the security scan Version: dca88dc |