zebbern/claude-code-guide
这个仓库里有 79 个技能,GitHub 星标 ★ 4,624。
- academic-paper-reviewerSimulates academic peer review, evaluating papers across Originality, Methodolog
- active-directory-attacksThis skill should be used when the user asks to "attack Active Directory", "expl
- api-fuzzing-bug-bountyThis skill should be used when the user asks to "test API security", "fuzz APIs"
- api-shape-explorerGenerate multiple radically different interface designs for a module using paral
- audit-flowInteractive system flow tracing across CODE, API, AUTH, DATA, NETWORK layers wit
- authentication-patternsAuthentication patterns: session vs JWT vs OAuth comparison, provider selection
- aws-penetration-testingThis skill should be used when the user asks to "pentest AWS", "test AWS securit
- broken-authenticationThis skill should be used when the user asks to "test for broken authentication
- burp-suite-testingThis skill should be used when the user asks to "intercept HTTP traffic", "modif
- cachingCaching strategies — invalidation, TTL guidelines, cache keys, cache layers, and
- chart-imageGenerate publication-quality PNG chart images from data, supporting line, bar, a
- cloud-penetration-testingThis skill should be used when the user asks to "perform cloud penetration testi
- code-documenterUse when adding docstrings, creating API documentation, or building documentatio
- code-to-diagramAnalyze codebases and automatically generate architecture diagrams, flowcharts,
- code-vuln-auditScan code for security issues: dependency vulnerabilities (npm/pip audit), secre
- vercel-composition-patternsReact composition patterns that scale. Use when refactoring components with
- cross-examineInterview the user relentlessly about a plan or design until reaching shared und
- cv-tailorOptimize resumes by matching keywords to the job description, rewriting experien
- data-viz-rendererGenerate self-contained HTML/SVG infographics from JSON data, including stat car
- database-optimizerUse when investigating slow queries, analyzing execution plans, or optimizing da
- database-scoutExplore SQLite and PostgreSQL databases: list tables, inspect schemas (columns/t
- dataset-quality-auditRun comprehensive quality checks on tabular data (CSV/Excel/TSV/JSON), detecting
- deep-module-refactorExplore a codebase to find opportunities for architectural improvement, focusing
- design-system-builderExtract design systems from reference UI images and generate implementation-read
- dev-guide-generatorGenerates complete technical tutorials from prerequisites and environment setup
- ethical-hacking-methodologyThis skill should be used when the user asks to "learn ethical hacking", "unders
- file-path-traversalThis skill should be used when the user asks to "test for directory traversal",
- html-injection-testingThis skill should be used when the user asks to "test for HTML injection", "inje
- http-load-profilerRun stepped HTTP load tests with ab/wrk, ramping concurrency levels to collect p
- idor-testingThis skill should be used when the user asks to "test for insecure direct object
- linux-privilege-escalationThis skill should be used when the user asks to "escalate privileges on Linux",
- linux-shell-scriptingThis skill should be used when the user asks to "create bash scripts", "automate
- localization-toolkitThis skill should be used when setting up, auditing, or enforcing internationali
- log-error-digestAnalyze log files to troubleshoot errors, identify peak error periods, and produ
- metasploit-frameworkThis skill should be used when the user asks to "use Metasploit for penetration
- network-101This skill should be used when the user asks to "set up a web server", "configur
- nextjs-developerUse when building Next.js 14+ applications with App Router, server components, o
- pdfUse this skill whenever the user wants to do anything with PDF files. This inclu
- pentest-checklistThis skill should be used when the user asks to "plan a penetration test", "crea
- pentest-commandsThis skill should be used when the user asks to "run pentest commands", "scan wi
- pipeline-blueprintProvide CI/CD best practices and pipeline templates for GitHub Actions and GitLa
- playwright-ciProduction-ready CI/CD configurations for Playwright — GitHub Actions, GitLab CI
- playwright-coreBattle-tested Playwright patterns for E2E, API, component, visual, accessibility
- playwright-migrationStep-by-step migration guides for moving to Playwright from Cypress or Selenium/
- playwright-cliAutomates browser interactions for web testing, form filling, screenshots, and d
- playwright-pomPage Object Model patterns for Playwright — when to use POM, how to structure pa
- playwright-skillBattle-tested Playwright patterns for E2E, API, component, visual, accessibility
- privilege-escalation-methodsThis skill should be used when the user asks to "escalate privileges", "get root
- project-sizing-guideSoftware project effort estimation assistant. Outputs three-point estimates (opt
- r2-uploadUpload files to Cloudflare R2, AWS S3, or any S3-compatible storage (like MinIO)
- r3f-animationReact Three Fiber animation - useFrame, useAnimations, spring physics, keyframes
- r3f-best-practicesReact Three Fiber (R3F) and Poimandres ecosystem best practices. Use when writin
- vercel-react-best-practicesReact and Next.js performance optimization guidelines from Vercel Engineering. T
- red-team-toolsThis skill should be used when the user asks to "follow red team methodology", "
- regression-modelerRun regression analysis (OLS or logistic) on uploaded CSV/Excel data, generating
- regulatory-audit-generatorBuilds compliance checklists for business scenarios involving GDPR, PIPL, or adv
- repo-auditDeep analysis of Git history: identify frequently changed hotspot files, analyze
- route-to-openapiGenerates RESTful API documentation (OpenAPI 3.0 / Swagger spec) by scanning rou
- scanning-toolsThis skill should be used when the user asks to "perform vulnerability scanning"
- scholarly-writing-refinerPolishes academic English paragraph by paragraph, reviewing grammar, word choice
- secure-code-reviewSystematically reviews code for SQL injection, XSS, SSRF, broken access control,
- shodan-reconnaissanceThis skill should be used when the user asks to "search for exposed devices on t
- smtp-penetration-testingThis skill should be used when the user asks to "perform SMTP penetration testin
- sql-injection-testingThis skill should be used when the user asks to "test for SQL injection vulnerab
- sql-insightTranslate natural language to SQL, optimize query performance, and interpret EXP
- sqlmap-database-pentestingThis skill should be used when the user asks to "automate SQL injection testing,
- ssh-penetration-testingThis skill should be used when the user asks to "pentest SSH services", "enumera
- test-driven-devTest-driven development with red-green-refactor loop. Use when user wants to bui
- test-suite-architectThis skill should be used when establishing comprehensive QA testing processes f
- three-best-practicesThree.js performance optimization and best practices guidelines. Use when writin
- timeline-builderGenerate beautiful interactive timeline HTML pages from JSON data, with vertical
- top-web-vulnerabilitiesThis skill should be used when the user asks to "identify web application vulner
- tos-clause-scannerAudit Terms of Service, user agreements, and privacy policies for consumer risks
- typescript-proUse when building TypeScript applications requiring advanced type systems, gener
- vc-industry-researchGenerate professional primary market / venture capital industry research reports
- windows-privilege-escalationThis skill should be used when the user asks to "escalate privileges on Windows,
- wireshark-analysisThis skill should be used when the user asks to "analyze network traffic with Wi
- wordpress-penetration-testingThis skill should be used when the user asks to "pentest WordPress sites", "scan
- xss-html-injectionThis skill should be used when the user asks to "test for XSS vulnerabilities",
想一次拿到这个仓库的全部技能?
本站把开放许可(MIT / Apache 等)的仓库按整仓打包整理到网盘,点一下转存到你自己的网盘。许可未声明的仓库只给原始仓库链接,不打包。