All authors
andycungkrinx91 avatar

Claude Skills by andycungkrinx91

github.com/andycungkrinx91
695 skillsA× 563B× 84C× 24D× 18F× 60 installs5 views
Performing Oauth Scope Minimization ReviewA

'Performs OAuth 2.0 scope minimization review to identify over-permissioned

securitypythonrust
0
9
Performing Paste Site Monitoring For CredentialsA

Monitor paste sites like Pastebin and GitHub Gists for leaked credentials,

securitypythongo
0
9
Performing Phishing Simulation With GophishA

GoPhish is an open-source phishing simulation framework used by security

devopspythongo
0
9
Performing Ransomware ResponseA

'Executes a structured ransomware incident response from initial detection

securitygotesting
0
9
Performing Ransomware Tabletop ExerciseA

'Plans and facilitates tabletop exercises simulating ransomware incidents

businessgotesting
0
9
Performing Red Team Phishing With GophishA

Automate GoPhish phishing simulation campaigns using the Python gophish

devopspythongo
0
9
Performing Service Account Credential RotationA

Automate credential rotation for service accounts across Active Directory,

devopspythongo
0
9
Post Exploiting Microsoft Graph With GraphrunnerA

Perform recon, persistence, privilege escalation, and data search via the Microsoft Graph API using GraphRunner.

securityshellazure
0
9
Recovering From Ransomware AttackA

'Executes structured recovery from a ransomware incident following NIST

devopsrustgo
0
9
Relaying Ntlm For Adcs Esc8A

Run ntlmrelayx into ADCS web enrollment to obtain a domain controller certificate via ESC8.

securitypythongo
0
9
Reverse Engineering Ransomware Encryption RoutineA

Reverse engineer ransomware encryption routines to identify cryptographic

securitypythongo
0
9
Scanning Iac And Images With TrivyB

Scan container images, IaC, and SBOMs for vulnerabilities and misconfigurations in CI/CD with Trivy.

devopspythongo
0
9
Securing Aws Iam PermissionsA

'This skill guides practitioners through hardening AWS Identity and Access

securitygobash
0
9
Testing Ransomware Recovery ProceduresA

Test and validate ransomware recovery procedures including backup restore

securitygobash
0
9
Tracking Threat Actor InfrastructureA

Threat actor infrastructure tracking involves monitoring and mapping

developmentpythonrust
0
9
Triaging Windows With KapeA

Run targeted forensic artifact collection and module parsing with KAPE.

devopsgitdatabase
0
9
Validating Backup Integrity For RecoveryA

Validate backup integrity through cryptographic hash verification, automated

devopspythonrust
0
9
Chunin SkillA

Standard Operating Procedures for web research, documentation lookup, evidence synthesis with citations.

researchapidocumentation
0
9
Genin SkillA

Standard Operating Procedures for read-only codebase exploration, symbol search, dependency mapping, code tracing, code review, architecture analysis, technical research, source evaluation, and evidence-based reporting.

code-qualityrustshell
0
9
Jonin SkillA

Standard Operating Procedures and router for premium UI development, design match comparison, component architecture, and 3D web experiences.

developmentgoreact
0
9
Kage SkillB

Standard Operating Procedures for architecture decisions, security audits, deep code analysis, risk assessment, and critical problem solving.

securitygorails
0
9
ReferencesC

Use when the user requests diagrams, flowcharts, architecture diagrams, ER diagrams, UML / sequence / class diagrams, SysML / MBSE diagrams (block definition, internal block, requirement, parametric), BPMN business process diagrams, swimlane / cross-functional flowcharts, network topology, cloud architecture from Terraform or Kubernetes manifests, ML/DL model figures (Transformer/CNN/LSTM), mind maps, or any visualization. Also use proactively when explaining systems with 3+ components, compl...

devopspythonrust
0
9
KonohaB

Guidelines and instructions for maintaining, extending, and debugging the Konoha MCP Tools Orchestrator, MCP middleware, and multi-archetype website builder across 7 coding clients (Antigravity IDE/CLI, Cursor, Claude Code, OpenCode, Command Code, Codex, Pi/pi.dev).

developmentjavascripttypescript
0
9
Sannin SkillA

Standard Operating Procedures and router for MCP task triage, subagent selection, and orchestration.

developmentgoreact
0
9
Tokubetsu Jonin SkillA

Standard Operating Procedures for technical writing, README creation, API specifications, runbooks, and documentation updates.

documentationpythongo
0
9
Draw Io Diagram GeneratorA

Use when creating, editing, or generating draw.io diagram files

toolspythongo
0
9
Helm Chart ScaffoldingA

Design, organize, and manage Helm charts for templating and

devopsbashkubernetes
0
9
Multi Stage DockerfileA

Create optimized multi-stage Dockerfiles for any language or framework

securitypythongo
0
9
React PatternsA

React 18/19 patterns including hooks discipline, server/client component boundaries, Suspense + error boundaries, form actions, data fetching, state management decision trees, and accessibility-first composition. Use when writing or reviewing React components.

developmentgoreact
0
9
React TestingA

React component testing with React Testing Library, Vitest/Jest, MSW for network mocking, accessibility assertions with axe, and the decision boundary between component tests and Playwright/Cypress end-to-end runs. Use when writing or fixing tests for React components, hooks, or pages.

testinggobash
0
9
Anbu SkillB

Standard Operating Procedures for backend development, bug fixing, DevOps, infrastructure deployment, and security hardening.

devopspythonrust
0
9
Abusing Dpapi For Credential AccessA

Extract DPAPI-protected secrets such as credentials and browser data offline and online.

securitypythongo
0
9
Abusing Shadow Credentials For PrivescA

Take over Active Directory user and computer accounts by writing alternate certificate keys to msDS-KeyCredentialLink (Shadow Credentials) with pyWhisker, Whisker, and Certipy, then authenticate via PKINIT.

securitypythonrust
0
9
Analyzing Certificate Transparency For PhishingA

Monitor Certificate Transparency logs using crt.sh and Certstream to

devopspythonrust
0
9
Analyzing Email Headers For Phishing InvestigationB

Parse and analyze email headers to trace the origin of phishing emails,

developmentjavascriptpython
0
9
Analyzing Indicators Of CompromiseA

'Analyzes indicators of compromise (IOCs) including IP addresses, domains,

devopspythonrust
0
9
Analyzing Linux Elf MalwareC

'Analyzes malicious Linux ELF (Executable and Linkable Format) binaries

devopspythongo
0
9
Analyzing Ransomware Encryption MechanismsA

'Analyzes encryption algorithms, key management, and file encryption

businesspythongo
0
9
Analyzing Ransomware Leak Site IntelligenceA

Monitor and analyze ransomware group data leak sites (DLS) to track victim

securitypythongit
0
9
Analyzing Ransomware Payment WalletsA

'Traces ransomware cryptocurrency payment flows using blockchain analysis

blockchainpythonreact
0
9
Analyzing Tls Certificate Transparency LogsA

'Queries Certificate Transparency logs via crt.sh and pycrtsh to detect

devopspythontesting
0
9
Analyzing Typosquatting Domains With DnstwistA

Detect typosquatting, homograph phishing, and brand impersonation domains

devopspythongo
0
9
Attacking Entra Id With RoadtoolsA

Enumerate Entra ID with ROADrecon and acquire and exchange tokens with roadtx.

securitypythonbash
0
9
Attacking Oauth With Device Code PhishingB

Run OAuth 2.0 device-code and illicit-consent phishing against Microsoft Entra ID to steal access and refresh tokens, bypass MFA, and pivot across Microsoft 365 services.

securitypythonrust
0
9
Auditing Entra Id With AadinternalsA

Run Microsoft Entra ID tenant reconnaissance, token acquisition and manipulation, and federation backdoor testing with the AADInternals PowerShell toolkit to validate identity-attack resilience.

securityrustgo
0
9
Auditing Kubernetes Cluster RbacB

'Auditing Kubernetes cluster RBAC configurations to identify overly permissive

devopspythonbash
0
9
Auditing Kubernetes Rbac Privilege EscalationC

Find over-permissive RBAC roles and service-account token abuse paths in Kubernetes using kubectl auth can-i, rbac-police, kubectl-who-can, and rakkess during authorized cluster security reviews.

securitygobash
0
9
Benchmarking Kubernetes With Kube BenchA

Run CIS Kubernetes Benchmark checks and remediate findings with kube-bench.

devopsgobash
0
9
Building C2 Redirector InfrastructureA

Architect redirectors with nginx and Apache, malleable profiles, and OPSEC

devopspythonrust
0
9
Building Identity Federation With Saml Azure AdA

Establish SAML 2.0 identity federation between on-premises Active Directory

devopsrustshell
0
9