
Claude Skills by yanacuti1121
github.com/yanacuti1121Multi-agent orchestration for Claude Code — automatic task decomposition via Opus 4.6, parallel execution with dependency-aware scheduling, file conflict prevention, quality gate, and cost control. Use for complex tasks that benefit from parallelism (refactors, feature builds, audits across many files).
Use when asked to manage ClaudeKit projects via CLI, install/migrate skills to other coding agents (Cursor, Codex), run Claude hook diagnostics, set up a ClaudeKit web dashboard, or automate skill distribution across AI editors. Triggers on: 'claudekit', 'claudekit-cli', 'ck cli', 'install claudekit skills', 'migrate claudekit', 'claude hook diagnostics', 'skill manager cli', 'quản lý skill claude code', 'ck config', 'claudekit dashboard'.
Hệ thống bộ nhớ 7 lớp chạy local dành cho AI agent — SQLite + Qdrant + Fabric, zero cloud dependency. Agent nhớ project, decision, reasoning pattern xuyên session.
Hierarchical JSON config persistence for CLI agent tools. sindresorhus/conf patterns, schema validation, encryption for secrets, config migration, and XDG-compliant storage paths. Sources: sindresorhus/conf.
Reduce cloud spend — rightsizing, spot/preemptible instances, reserved capacity, storage lifecycle, idle resource cleanup, autoscaling tuning, and cost anomaly alerting. Use when asked to "reduce cloud costs", "AWS bill too high", "rightsizing", "spot instances", "reserved instances", "savings plan", "idle resources", "cost anomaly", "FinOps", or "infracost". Covers AWS primarily; GCP/Azure patterns noted where they differ. Do NOT use for: application-level performance optimization — see web-...
Vinext — Next.js API trên Vite, deploy tới Cloudflare Workers. 94% Next.js 16 API coverage, App Router + RSC, Cloudflare Bindings (D1/R2/KV/AI). Builds nhanh hơn.
Container Network Interface (CNI) plugin patterns and Kubernetes NetworkPolicy for agent network isolation. CNI plugin structure, IPAM, namespace-level firewall rules, egress restrictions, and deny-all defaults. Sources: containernetworking/plugins (Apache-2.0).
Systematic code review checklist — correctness, security, performance, maintainability, AI-specific anti-patterns
Use when asked to understand, tour, or onboard to a codebase. Triggers on: 'onboard', 'explain codebase', 'walk me through the code', 'new to this project', 'codebase overview', 'how is this structured', 'give me a tour', 'tổng quan codebase', 'giải thích project', 'entry point', 'where to start reading'.
Code health assessment qua CodeScene MCP — đánh giá structural maintainability, detect regression trước commit/PR. Score 1-10, tích hợp Claude Code.
**Source:** SakuraByteCore/codexmate (Apache 2.0) **Stack:** Node.js, local-first, zero cloud
'Systematically collects, categorizes, and distributes indicators of
'Collects and synthesizes open-source intelligence (OSINT) about threat
MISP (Malware Information Sharing Platform) is an open-source threat
Collect volatile forensic evidence from a compromised system following
Mathematically correct color system generation. Produces WCAG-compliant palettes, dark mode pairs, gradient smoothing, and dominant color extraction using LCH/LAB color math. Sources: framer/motion-palette, hughsk/color-space, gka/chroma.js, ant-design/ant-design-colors, atlassian/colors, and 5 others.
Use when scoping a competitive landscape — identifying, categorising, and score-filtering a competitor set before any benchmarking begins. Decides who counts as a competitor, which tier they belong to, and which sources to mine. First step in the three-skill competitive pipeline; precedes benchmark-methodology.
Use after benchmark-methodology has produced scored competitor profile cards. Assembles findings into a decision-grade report: landscape map, competitor profiles, benchmarking matrix, white-space analysis, strategic recommendations, and team alignment trigger questions. Final step in the three-skill competitive pipeline.
Production-grade component layout patterns. Dashboard grids, hero sections, masonry layouts, filter systems, and CSS-only complex components. Sources: tailwindlabs/tailwindcss-ui, saas-ui, refactoringui samples, shadcn-ui/taxonomy, tabler, and 5 others.
'Conducts security testing of REST, GraphQL, and gRPC APIs to identify
'Responds to security incidents in cloud environments (AWS, Azure, GCP) by performing identity-based containment,
'This skill outlines methodologies for performing authorized penetration
Perform DCSync attacks to replicate Active Directory credentials and
'Conducts external reconnaissance using Open Source Intelligence (OSINT)
Plan and execute a comprehensive red team engagement covering reconnaissance
Execute an internal network penetration test simulating an insider threat
Conduct internal Active Directory reconnaissance using BloodHound Community
'Responds to malware infections across enterprise endpoints by identifying the malware family, determining infection
'Simulates man-in-the-middle attacks using Ettercap, mitmproxy, and Bettercap
'Performs memory forensics analysis using Volatility 3 to extract evidence
'Conducts penetration testing of iOS and Android mobile applications
'Conducts comprehensive network penetration tests against authorized
Pass-the-Ticket (PtT) is a lateral movement technique that uses stolen
'Responds to phishing incidents by analyzing reported emails, extracting
Facilitate structured post-incident reviews to identify root causes,
Design and execute a social engineering penetration test including phishing,
Plan and execute authorized vishing (voice phishing) pretext calls to
Spearphishing simulation is a targeted social engineering attack vector
'Conducts authorized wireless network penetration tests to assess the
Implement Microsoft's Enhanced Security Admin Environment (ESAE) tiered
Configure AWS Verified Access to provide VPN-less zero trust network
A Certificate Authority (CA) is the trust anchor in a PKI hierarchy,
'Configures host-based intrusion detection systems (HIDS) to monitor
Hardware Security Modules (HSMs) are tamper-resistant physical devices
'Configuring Google Cloud Identity-Aware Proxy (IAP) to enforce per-request
Harden LDAP directory services against common attacks including credential
Configure microsegmentation policies to enforce least-privilege workload-to-workload
Deploy Cisco Duo multi-factor authentication across enterprise applications,
'Designs and implements VLAN-based network segmentation on managed switches
Configure secure OAuth 2.0 authorization flows including Authorization