
Claude Skills by yanacuti1121
github.com/yanacuti1121Container Network Interface (CNI) plugin patterns and Kubernetes NetworkPolicy for agent network isolation. CNI plugin structure, IPAM, namespace-level firewall rules, egress restrictions, and deny-all defaults. Sources: containernetworking/plugins (Apache-2.0).
Systematic code review checklist — correctness, security, performance, maintainability, AI-specific anti-patterns
Use when asked to understand, tour, or onboard to a codebase. Triggers on: 'onboard', 'explain codebase', 'walk me through the code', 'new to this project', 'codebase overview', 'how is this structured', 'give me a tour', 'tổng quan codebase', 'giải thích project', 'entry point', 'where to start reading'.
Code health assessment qua CodeScene MCP — đánh giá structural maintainability, detect regression trước commit/PR. Score 1-10, tích hợp Claude Code.
**Source:** SakuraByteCore/codexmate (Apache 2.0) **Stack:** Node.js, local-first, zero cloud
'Systematically collects, categorizes, and distributes indicators of
'Collects and synthesizes open-source intelligence (OSINT) about threat
MISP (Malware Information Sharing Platform) is an open-source threat
Collect volatile forensic evidence from a compromised system following
Mathematically correct color system generation. Produces WCAG-compliant palettes, dark mode pairs, gradient smoothing, and dominant color extraction using LCH/LAB color math. Sources: framer/motion-palette, hughsk/color-space, gka/chroma.js, ant-design/ant-design-colors, atlassian/colors, and 5 others.
Use when scoping a competitive landscape — identifying, categorising, and score-filtering a competitor set before any benchmarking begins. Decides who counts as a competitor, which tier they belong to, and which sources to mine. First step in the three-skill competitive pipeline; precedes benchmark-methodology.
Use after benchmark-methodology has produced scored competitor profile cards. Assembles findings into a decision-grade report: landscape map, competitor profiles, benchmarking matrix, white-space analysis, strategic recommendations, and team alignment trigger questions. Final step in the three-skill competitive pipeline.
Production-grade component layout patterns. Dashboard grids, hero sections, masonry layouts, filter systems, and CSS-only complex components. Sources: tailwindlabs/tailwindcss-ui, saas-ui, refactoringui samples, shadcn-ui/taxonomy, tabler, and 5 others.
'Conducts security testing of REST, GraphQL, and gRPC APIs to identify
'Responds to security incidents in cloud environments (AWS, Azure, GCP) by performing identity-based containment,
'This skill outlines methodologies for performing authorized penetration
Perform DCSync attacks to replicate Active Directory credentials and
'Conducts external reconnaissance using Open Source Intelligence (OSINT)
Plan and execute a comprehensive red team engagement covering reconnaissance
Execute an internal network penetration test simulating an insider threat
Conduct internal Active Directory reconnaissance using BloodHound Community
'Responds to malware infections across enterprise endpoints by identifying the malware family, determining infection
'Simulates man-in-the-middle attacks using Ettercap, mitmproxy, and Bettercap
'Performs memory forensics analysis using Volatility 3 to extract evidence
'Conducts penetration testing of iOS and Android mobile applications
'Conducts comprehensive network penetration tests against authorized
Pass-the-Ticket (PtT) is a lateral movement technique that uses stolen
'Responds to phishing incidents by analyzing reported emails, extracting
Facilitate structured post-incident reviews to identify root causes,
Design and execute a social engineering penetration test including phishing,
Plan and execute authorized vishing (voice phishing) pretext calls to
Spearphishing simulation is a targeted social engineering attack vector
'Conducts authorized wireless network penetration tests to assess the
Implement Microsoft's Enhanced Security Admin Environment (ESAE) tiered
Configure AWS Verified Access to provide VPN-less zero trust network
A Certificate Authority (CA) is the trust anchor in a PKI hierarchy,
'Configures host-based intrusion detection systems (HIDS) to monitor
Hardware Security Modules (HSMs) are tamper-resistant physical devices
'Configuring Google Cloud Identity-Aware Proxy (IAP) to enforce per-request
Harden LDAP directory services against common attacks including credential
Configure microsegmentation policies to enforce least-privilege workload-to-workload
Deploy Cisco Duo multi-factor authentication across enterprise applications,
'Designs and implements VLAN-based network segmentation on managed switches
Configure secure OAuth 2.0 authorization flows including Authorization
'Configures pfSense firewall rules, NAT policies, VPN tunnels, and traffic
'Installs, configures, and tunes Snort 3 intrusion detection system to
'Deploys and configures Suricata IDS/IPS with Emerging Threats rulesets,
TLS 1.3 (RFC 8446) is the latest version of the Transport Layer Security
'Configures Microsoft Defender for Endpoint (MDE) advanced protection
'Configures Windows Event Logging with advanced audit policies to generate