All authors

Claude Skills by borghei
github.com/borghei677 skills6 installs822 views
- Observability DesignerDesigns comprehensive observability strategies including SLI/SLO frameworks, alerting optimization, and dashboard generation. Use when implementing monitoring for a production service, creating or tuning alert rules, designing Grafana dashboards, defining SLOs and error budgets, or reducing alert fatigue in on-call rotations.Votes: 0GitHub stars: 847
- Performance ProfilerSystematic performance profiling for Node.js, Python, and Go applications. Covers CPU flamegraphs, memory leak detection, bundle analysis, database query optimization, N+1 detection, load testing with k6, and before/after measurement methodology. Use when diagnosing slow endpoints, memory growth, large bundles, or preparing for traffic spikes.Votes: 0GitHub stars: 847
- Playwright ProProduction-grade end-to-end testing with Playwright. Covers test generation from user stories, page object patterns, locator strategy, flaky test diagnosis, Cypress/Selenium migration, CI integration, visual regression testing, and accessibility auditing. Use when writing E2E tests, fixing flaky tests, or migrating from Cypress/Selenium.Votes: 0GitHub stars: 847
- Pr Review ExpertSystematic PR review with blast radius analysis, security scanning, breaking change detection, test coverage delta, and performance impact assessment. Produces prioritized findings with a 35+ item checklist. Use when reviewing PRs that touch shared libraries, APIs, database schemas, auth, or security-sensitive code.Votes: 0GitHub stars: 847
- Prompt Engineer ToolkitProduction prompt engineering frameworks for building, testing, versioning, and evaluating prompts. Covers chain-of-thought, few-shot design, system prompt architecture, prompt regression testing, and evaluation rubrics. Use when designing prompts for production systems, running A/B tests on prompts, building prompt libraries, or debugging prompt quality degradation.Votes: 0GitHub stars: 847
- WwasWhy-What-Acceptance backlog format that connects every work item to strategic business objectives.Votes: 0GitHub stars: 847
- Gtm StrategyGo-to-market strategy: ICP × motion × channels × messaging × success metrics × launch plan. Distinct from individual marketing or sales skills by being the integrated cross-functional strategy spanning product, marketing, sales, CS, and finance. Use when launching a new product, entering a new segment, or auditing why an existing GTM isn't working.Votes: 0GitHub stars: 847
- Ideal Customer ProfileDefine a sharp Ideal Customer Profile (ICP) — firmographics + behavioral signals + JTBD + trigger event + buyer persona — that marketing, sales, and product can all use. Use when defining a new ICP, refining an existing one based on actual closed customers, or auditing why pipeline / conversion is poor.Votes: 0GitHub stars: 847
- Jira ExpertJira expert for project setup, workflow design, JQL queries, custom fields, automation rules, dashboards, and reporting. Use for Jira configuration, advanced search, board and dashboard creation, and technical Jira operations.Votes: 0GitHub stars: 847
- Linear ExpertLinear expert for workspace/team admin, Cycles, Projects, Initiatives, Roadmaps, GraphQL API queries, triage workflows, GitHub integration, bulk operations, and Jira-to-Linear migration.Votes: 0GitHub stars: 847
- Notion PmNotion expert for product management workflows. Use for database design for PRDs/OKRs/Roadmaps/Decisions, property and view design, page architecture, Notion REST API, and sync with Jira, Linear, and GitHub.Votes: 0GitHub stars: 847
- Productboard ExpertProductboard expert for workspace setup, Insight-to-Feature triage, Driver scoring, Releases, Roadmap views, and REST API automation. Use for Productboard administration, prioritization workflows, and programmatic API operations.Votes: 0GitHub stars: 847
- Program ManagerProgram management for multi-project coordination, portfolio governance, dependency tracking, benefits realization, charters, and steering-committee reporting. Use to stand up or run a program and escalate program status.Votes: 0GitHub stars: 847
- Scrum MasterData-driven Scrum Master for sprint health scoring, Monte Carlo velocity forecasting, retrospective analysis, capacity planning, and Tuckman team coaching. Use when facilitating sprint planning, diagnosing velocity, or running retrospectives.Votes: 0GitHub stars: 847
- Senior PmSenior Project Manager for enterprise software, SaaS, and digital transformation projects. Specializes in portfolio management, quantitative risk analysis, resource optimization, stakeholder alignment, and executive reporting. Uses advanced methodologies including EMV analysis, Monte Carlo simulation, WSJF prioritization, and multi-dimensional health scoring.Votes: 0GitHub stars: 847
- Sprint RetrospectiveData-driven sprint retrospectives with velocity analytics, contributor insights, code quality trends, and actionable improvement recommendations. Analyzes git history to produce comprehensive retrospective reports with session detection, churn hotspots, work pattern analysis, and sprint-over-sprint comparison dashboards.Votes: 0GitHub stars: 847
- Ansoff MatrixAnsoff Matrix — 4-quadrant framework for growth strategy options: market penetration, market development, product development, and diversification. Use when evaluating growth bets, prioritizing investment across quadrants, and explicitly acknowledging the risk ladder from "more of what we know" to "new product in new market".Votes: 0GitHub stars: 847
- Business Model CanvasBuild, evaluate, and stress-test a Business Model Canvas (Osterwalder) across all 9 building blocks. Use when designing or refreshing a business model, auditing an existing canvas for gaps, exploring monetization alternatives, or aligning leadership on the business model assumptions that everything else depends on.Votes: 0GitHub stars: 847
- Lean CanvasLean Canvas (Ash Maurya) — startup-focused adaptation of the Business Model Canvas, optimized for capturing assumptions and unfair advantages in early-stage products. Use when at the idea, pre-PMF, or pivot stage; when BMC is too operational; when you need a 1-page model in 20 minutes.Votes: 0GitHub stars: 847
- Porters Five ForcesPorter's Five Forces — analyze the competitive intensity and attractiveness of an industry. Use when evaluating a new market entry, understanding why margins are under pressure, designing a defensive strategy, or auditing strategic positioning at industry level.Votes: 0GitHub stars: 847
- Swot AnalysisSWOT analysis (Strengths, Weaknesses, Opportunities, Threats) — the foundational strategic-positioning exercise. Use when assessing a new market entry, a strategic pivot, a competitive response, an org restructure, or as input to annual strategic planning. Includes a validator that flags generic, ungrounded, or one-sided SWOTs.Votes: 0GitHub stars: 847
- Ai Act ReadinessEU AI Act readiness assessment + sprint playbook. Use when preparing for the Aug 2026 high-risk AI system requirements deadline, when notified-body conformity assessment is scheduled, when GPAI (general-purpose AI) obligations apply, or when annual readiness assessment is due. Pairs with our deep eu-ai-act-specialist skill — that one builds the program; this one preps for the specific assessment.Votes: 0GitHub stars: 847
- Aims AuditISO 42001 AI Management System (AIMS) audit-prep playbook. Use when ISO 42001 certification audit is scheduled (Stage 1 documentation review OR Stage 2 onsite), when surveillance audit is due, when internal AIMS audit is being conducted, or when preparing AI Impact Assessment (AIIA) for new AI systems. Pairs with our iso42001-ai-management skill — that one builds the AIMS; this one preps for the certification or surveillance audit.Votes: 0GitHub stars: 847
- Compliance ReadinessCross-framework compliance readiness orchestrator. Use when preparing for multi-framework certification (SOC 2 + ISO 27001 + NIST CSF together), when building a shared-evidence strategy that satisfies multiple frameworks simultaneously, when sequencing certifications (which to do first), or when mapping a single control to its expression across multiple frameworks. Sits above the framework-specific audit-prep skills and the deep framework-specialist skills.Votes: 0GitHub stars: 847
- Fda Qsr Audit PrepFDA Quality System Regulation (21 CFR 820 / QMSR) audit-prep playbook for medical device companies. Use when an FDA inspection is announced, when preparing for the new QMSR (Quality Management System Regulation, 2026), when 483 / Warning Letter response is needed, or when annual readiness assessment surfaces gaps. Pairs with our fda-consultant-specialist for program-building; this skill is the audit-event playbook.Votes: 0GitHub stars: 847
- Gdpr Audit PrepGDPR audit-prep playbook: 4/8/12-week sprint to prepare for a supervisory authority inquiry, a customer-side DPA audit, or an internal compliance review. Use when an audit is on the calendar, when readiness assessment surfaced gaps, or when ROPA (Records of Processing Activities) needs rapid completion. Pairs with our deep gdpr-dsgvo-expert skill (the program-building one) — this is the operational audit-prep variant.Votes: 0GitHub stars: 847
- Soc2 Audit PrepSOC 2 audit-prep playbook: the 4/8/12-week sprint to get from "we have most of the controls" to "audit-ready" for a Type I or Type II observation. Use when the audit is scheduled and you need a punch list, when readiness assessment surfaced gaps and you need a sprint plan, or when evidence collection is missing or stale. Lighter operational complement to our deep soc2-compliance-expert skill — that one builds the program; this one preps for the specific audit event.Votes: 0GitHub stars: 847
- Capa OfficerCAPA system management for medical device QMS. Covers root cause analysis, corrective action planning, effectiveness verification, and CAPA metrics. Use for CAPA investigations, 5-Why analysis, fishbone diagrams, root cause determination, corrective action tracking, effectiveness verification, or CAPA program optimization.Votes: 0GitHub stars: 847
- Ccpa Cpra Privacy ExpertCCPA and CPRA privacy compliance automation. Audits organizations for California privacy law compliance, maps personal information flows, validates consumer rights readiness, and checks technical safeguards. Use for CCPA compliance assessments, CPRA readiness checks, privacy policy review, consumer rights handling, data mapping, and California privacy audits.Votes: 0GitHub stars: 847
- Dora Compliance ExpertDORA (EU 2022/2554) digital operational resilience compliance automation for financial entities. Assesses readiness against all 5 DORA pillars, classifies ICT incidents, validates third-party risk management, and generates resilience testing plans. Use for DORA compliance assessments, ICT risk management, incident classification, third-party ICT oversight, and digital operational resilience testing.Votes: 0GitHub stars: 847
- Eu Ai Act SpecialistEU AI Act (Regulation EU 2024/1689) compliance specialist. Use when classifying AI systems by risk tier, assessing provider or deployer obligations, evaluating GPAI model compliance, running conformity assessments, performing bias detection and fairness testing, building AI governance programs, or preparing for EU AI Act enforcement deadlines. Covers the full regulatory lifecycle from system inventory through post-market monitoring.Votes: 0GitHub stars: 847
- Fda Consultant SpecialistFDA regulatory consultant for medical device companies. Provides 510(k)/PMA/De Novo pathway guidance, QSR (21 CFR 820) compliance, HIPAA assessments, and device cybersecurity. Use when user mentions FDA submission, 510(k), PMA, De Novo, QSR, premarket, predicate device, substantial equivalence, HIPAA medical device, or FDA cybersecurity.Votes: 0GitHub stars: 847
- Gdpr Dsgvo ExpertGDPR and German DSGVO compliance automation. Scans codebases for privacy risks, generates DPIA documentation, tracks data subject rights requests. Use for GDPR compliance assessments, privacy audits, data protection planning, DPIA generation, and data subject rights management.Votes: 0GitHub stars: 847
- Information Security Manager Iso27001ISO 27001 ISMS implementation and cybersecurity governance for HealthTech and MedTech companies. Use for ISMS design, security risk assessment, control implementation, ISO 27001 certification, security audits, incident response, and compliance verification. Covers ISO 27001, ISO 27002, healthcare security, and medical device cybersecurity.Votes: 0GitHub stars: 847
- Infrastructure Compliance AuditorCross-cutting infrastructure security audit skill that checks cloud infrastructure, DNS, TLS, endpoints, access control, network security, containers, CI/CD pipelines, secrets management, logging, and physical security against ALL major compliance frameworks. Use for infrastructure audit, cloud security audit, infrastructure compliance, DNS security audit, TLS audit, endpoint security, access control audit, network security assessment, infrastructure security, cloud compliance, Vanta alternat...Votes: 0GitHub stars: 847
- Isms Audit ExpertInformation Security Management System auditing for ISO 27001 compliance, security control assessment, and certification support. Use when planning ISMS audit programs, executing internal or external ISO 27001 audits, testing ISO 27002 Annex A controls, managing audit findings and corrective actions, or preparing for Stage 1/Stage 2 certification and surveillance audits.Votes: 0GitHub stars: 847
- Iso42001 Ai ManagementISO 42001 AI Management System compliance automation. Assesses organizational readiness for AIMS certification, evaluates AI system impacts, validates governance structures, and checks Annex A controls. Use for ISO 42001 readiness assessments, AI governance planning, AI impact assessments, responsible AI implementation, and AIMS certification preparation.Votes: 0GitHub stars: 847
- Mdr 745 SpecialistEU MDR 2017/745 compliance specialist for medical device classification, technical documentation, clinical evidence, and post-market surveillance. Covers Annex VIII classification rules, Annex II/III technical files, Annex XIV clinical evaluation, and EUDAMED integration.Votes: 0GitHub stars: 847
- Nis2 Directive SpecialistNIS2 Directive (EU 2022/2555) compliance automation. Analyzes organizational scope, assesses compliance against all 10 minimum security measures, validates incident reporting readiness, and generates gap analysis reports. Use for NIS2 compliance assessments, critical infrastructure cybersecurity planning, supply chain security evaluation, and incident reporting preparation.Votes: 0GitHub stars: 847
- Nist Csf SpecialistNIST Cybersecurity Framework 2.0 implementation, assessment, and compliance management. Use for NIST cybersecurity framework, CSF 2.0, NIST compliance, cybersecurity risk management, NIST controls, NIST assessment, cybersecurity maturity, NIST CSF profile, cybersecurity governance, CSF gap analysis, cybersecurity program development, and cross-framework compliance mapping.Votes: 0GitHub stars: 847
- Pci Dss SpecialistPCI DSS v4.0 payment card industry data security standard compliance, assessment, and implementation. Use for PCI DSS, payment card security, cardholder data, PCI compliance, payment security, PCI assessment, SAQ, ROC, QSA, credit card security, payment processing security, PCI scoping, tokenization, payment terminal security, CDE security, and merchant compliance.Votes: 0GitHub stars: 847
- Qms Audit ExpertISO 13485 internal audit expertise for medical device QMS. Covers audit planning, execution, nonconformity classification, and CAPA verification. Use for internal audit planning, audit execution, finding classification, external audit preparation, or audit program management.Votes: 0GitHub stars: 847
- Quality Documentation ManagerDocument control system management for medical device QMS. Covers document numbering, version control, change management, and 21 CFR Part 11 compliance. Use for document control procedures, change control workflow, document numbering, version management, electronic signature compliance, or regulatory documentation review.Votes: 0GitHub stars: 847
- Quality Manager QmrSenior Quality Manager Responsible Person (QMR) for HealthTech and MedTech companies. Use when conducting management reviews, setting quality objectives, tracking quality KPIs, assessing quality culture, overseeing regulatory compliance across jurisdictions, or preparing for Notified Body and FDA inspections. Provides quality system governance and performance monitoring per ISO 13485 Clause 5.5.2.Votes: 0GitHub stars: 847
- Quality Manager Qms Iso13485ISO 13485 Quality Management System implementation and maintenance for medical device organizations. Provides QMS design, documentation control, internal auditing, CAPA management, and certification support.Votes: 0GitHub stars: 847
- Regulatory Affairs HeadSenior Regulatory Affairs Manager for HealthTech and MedTech companies. Use when developing regulatory strategy, preparing FDA 510(k)/PMA/De Novo submissions, planning EU MDR CE marking, coordinating global market access, or monitoring regulatory intelligence. Provides pathway analysis, submission management, timeline planning, and cross-functional regulatory leadership.Votes: 0GitHub stars: 847
- Risk Management SpecialistMedical device risk management specialist implementing ISO 14971 throughout product lifecycle. Provides risk analysis, risk evaluation, risk control, and post-production information analysis.Votes: 0GitHub stars: 847
- Soc2 Compliance ExpertSOC 2 Type I and Type II compliance management. Use when conducting SOC 2 readiness assessments, performing gap analysis against Trust Services Criteria, collecting audit evidence, validating infrastructure security controls, preparing for CPA firm audits, managing the observation period, or building continuous compliance programs. Covers all TSC categories (CC1-CC9, A1, PI1, C1, P1) with infrastructure validation for cloud, DNS, TLS, endpoints, and CI/CD pipelines.Votes: 0GitHub stars: 847
- DossierBuild structured intelligence dossiers on companies, people, markets, or domains. Covers dossier frameworks, source triangulation, reliability scoring, and fact/inference discipline. Use when preparing a deal-prep dossier, executive briefing, market-entry analysis, due-diligence overview, or board-ready intelligence document.Votes: 0GitHub stars: 847
- GrantsGrant writing and proposal architecture skill for researchers, founders, and nonprofits. Covers funder fit, proposal structure, budget design, narrative discipline, and success-factor scoring. Use when writing a grant proposal, evaluating funder fit before applying, auditing a draft for competitiveness, or planning a budget that survives review.Votes: 0GitHub stars: 847