SKILL-RADAR · GITHUB

Nützliche Agent Skills, nach echter Nutzung sortiert.

Vergleiche verifizierte Skills aus öffentlichen Repositories nach Aufgabe, Paketinhalt, Installationen und nachvollziehbarer Quelle.

KATALOGUMFANG
VERIFIZIERT
Skills
10.772
Repositories
1711
zuletzt synchronisiert
23.09.2026
10.772 Skills
yaklang
Community

stack-overflow-and-rop

- Stack overflow and ROP playbook. Use when exploiting buffer overflows to hijack control flow via return address overwrite, ROP chains, ret2libc, ret2csu, ret2dlresolve, or SROP on Linux userland binaries.

Installationen
2
GitHub Stars
2006
Aktualisiert
16. Juni
yaklang
Community

traffic-analysis-pcap

- Traffic analysis and PCAP forensics playbook. Use when analyzing network captures including Wireshark filters, protocol analysis (HTTP/DNS/FTP/SMTP/USB/WiFi), data extraction, covert channel detection, PCAP repair, TLS decryption, and tshark command-line analysis.

Installationen
2
GitHub Stars
2006
Aktualisiert
16. Juni
yaklang
Community

upload-insecure-files

- Insecure file upload playbook. Use when testing upload validation, storage paths, processing pipelines, preview behavior, overwrite risks, and upload-to-RCE chains.

Installationen
2
GitHub Stars
2006
Aktualisiert
16. Juni
yaklang
Community

websocket-security

- WebSocket handshake, CSWSH, tooling (wsrepl, ws-harness, Burp), and common flaws. Use when apps use real-time channels, chat, notifications, or WS-backed APIs.

Installationen
2
GitHub Stars
2006
Aktualisiert
16. Juni
yaklang
Community

windows-privilege-escalation

- Windows local privilege escalation playbook. Use when you have low-privilege shell access on Windows and need to escalate via token abuse, Potato exploits, service misconfigurations, DLL hijacking, UAC bypass, or registry autoruns.

Installationen
2
GitHub Stars
2006
Aktualisiert
16. Juni
yaklang
Community

xslt-injection

- XSLT injection testing: processor fingerprinting, XXE and document() SSRF, EXSLT write primitives, PHP/Java/.NET extension RCE surfaces. Use when user-controlled XSLT/stylesheet input or transform endpoints are in scope.

Installationen
2
GitHub Stars
2006
Aktualisiert
16. Juni
yaklang
Community

xss-cross-site-scripting

- XSS playbook. Use when user-controlled content reaches HTML, attributes, JavaScript, DOM sinks, uploads, or multi-context rendering paths.

Installationen
2
GitHub Stars
2006
Aktualisiert
16. Juni
hamen
Community

material-3

Implement Google's Material Design 3 (Material You) UI system. Primary: Jetpack Compose Material3 (MaterialTheme, components, adaptive layout). Also Flutter and limited web (@material/web, maintenance mode). Covers tokens, 30+ components, layout, theming, M3 Expressive (platform matrix), and accessibility. Use when: "material design", "MD3", "material you", "Jetpack Compose", "MaterialTheme", "material component", "md3 button".

Installationen
2
GitHub Stars
1345
Aktualisiert
15. Juli
claude-office-skills
Community

batch-convert

Batch convert documents between multiple formats using a unified pipeline

Installationen
2
GitHub Stars
430
Aktualisiert
31. Jan.
kitlangton
Community

effect

Opinionated guide for building production TypeScript applications with Effect v4. Use when implementing Effect workflows, services, layers, schemas, configuration, schedules, caches, streams, HTTP clients, or tests.

Installationen
2
GitHub Stars
316
Aktualisiert
29. Aug.
lovartai
Community

lovart-api

- Generate images, videos, and audio/music via Lovart AI. Also manages Lovart projects, threads (conversation history), and user settings. Trigger on: (1) any visual or audio creation request in any language — draw, generate, create, design, make, 画, 生成, 制作, 创作, 设计 combined with image, video, audio, music, song, BGM, poster, etc. (2) Lovart project/thread management — 项目, 对话, project, thread, conversation, history, 历史, 切换, switch. You CAN generate directly - never say you cannot.

Installationen
2
GitHub Stars
122
Aktualisiert
2. Sept.
wechat-miniprogram
Community

skyline-components

Skyline 组件开发技能。涵盖 scroll-view 及其增强模式(列表/嵌套滚动)、swiper 高级特性、表单组件、图片/文本组件、半屏可拖拽组件、共享元素动画等。适用于需要开发滚动列表、轮播、表单输入、页面过渡动画等场景。

Installationen
2
GitHub Stars
52
Aktualisiert
3. Juni
vtex
Community

architecture-well-architected-commerce

Apply when scoping, reviewing, or documenting cross-cutting VTEX commerce architecture across storefront, IO, headless, marketplace, payments, or any other VTEX module. Grounds work in the Well-Architected Commerce framework—Technical Foundation (reliability, trust, integrity; security, infrastructure, compliance), Future-proof (innovation, simplicity, efficiency; scalable and adaptable solutions), and Operational Excellence (accuracy, accountability, data-driven improvement; process and customer experience). Routes implementation detail to product tracks (IO caching and paths, Master Data strategy, marketplace integrations). Use for solution design, architecture reviews, and RFP-level technical structure.

Installationen
2
GitHub Stars
42
Aktualisiert
19. Aug.
vtex
Community

faststore-storefront

Core coding rules and workflow for developing VTEX FastStore storefronts. Use when starting any FastStore development task, writing TypeScript/React components, creating section overrides, extending the BFF, or styling. Covers all primary conventions, safety rules, and the development workflow used across every FastStore project.

Installationen
2
GitHub Stars
42
Aktualisiert
19. Aug.
vtex
Community

headless-bff-architecture

Apply when designing or modifying a BFF (Backend-for-Frontend) layer, middleware, or API proxy for a headless VTEX storefront. Covers BFF middleware architecture, public vs private API classification, VtexIdclientAutCookie management, API key protection, and secure request proxying. Use for any headless commerce project that must never expose VTEXAPPKEY or call private VTEX APIs from the browser.

Installationen
2
GitHub Stars
42
Aktualisiert
19. Aug.
vtex
Community

headless-caching-strategy

Apply when implementing caching logic, CDN configuration, or performance optimization for a headless VTEX storefront. Covers which VTEX APIs can be cached (Intelligent Search, Catalog) versus which must never be cached (Checkout, Profile, OMS), stale-while-revalidate patterns, cache invalidation, and BFF-level caching. Use for any headless project that needs TTL rules and caching strategy guidance.

Installationen
2
GitHub Stars
42
Aktualisiert
19. Aug.
vtex
Community

headless-checkout-proxy

Apply when implementing cart, checkout, or order placement logic proxied through a BFF for headless VTEX storefronts. Covers OrderForm lifecycle, cart creation, item management, profile/shipping/payment attachments, orderFormId management, and secure checkout flows. Use for any headless frontend that needs to proxy VTEX Checkout API calls through a server-side layer with proper session cookie handling.

Installationen
2
GitHub Stars
42
Aktualisiert
19. Aug.
vtex
Community

headless-intelligent-search

Apply when implementing search functionality, faceted navigation, or autocomplete in a headless VTEX storefront. Covers productsearch, autocompletesuggestions, facets, banners, correctionsearch, and topsearches endpoints, plus analytics event collection. Use for any custom frontend that integrates VTEX Intelligent Search API for product discovery and search result rendering.

Installationen
2
GitHub Stars
42
Aktualisiert
19. Aug.
vtex
Community

marketplace-catalog-sync

Apply when building catalog or SKU synchronization logic for VTEX marketplace seller connectors. Covers the changenotification endpoint, SKU suggestion lifecycle, product data mapping, price and inventory sync, and fulfillment simulation. Use for implementing seller-side catalog integration that pushes SKUs to VTEX marketplaces with proper notification handling and rate-limited batch synchronization.

Installationen
2
GitHub Stars
42
Aktualisiert
19. Aug.
vtex
Community

marketplace-fulfillment

Apply when implementing fulfillment, invoice, or tracking logic for VTEX marketplace seller connectors. Covers the External Seller fulfillment protocol: fulfillment simulation (checkout and indexation), order placement with reservation id, order dispatch (authorize fulfillment), OMS invoice and tracking APIs, and partial invoicing. Use for seller-side services that must answer within the simulation SLA and integrate with VTEX marketplace order management.

Installationen
2
GitHub Stars
42
Aktualisiert
19. Aug.
vtex
Community

marketplace-order-hook

Apply when implementing order integration hooks, feeds, or webhook handlers for VTEX marketplace connectors. Covers Feed v3 (pull) vs Hook (push), filter types (FromWorkflow and FromOrders), order status lifecycle, payload validation, and idempotent processing. Use for building order integrations between VTEX marketplaces and external systems such as ERPs, WMS, or fulfillment services.

Installationen
2
GitHub Stars
42
Aktualisiert
19. Aug.
vtex
Community

marketplace-rate-limiting

Apply when implementing retry logic, rate limit handling, or resilience patterns in VTEX API integrations. Covers VTEX rate limit headers (X-RateLimit-Remaining, X-RateLimit-Reset, Retry-After), 429 status handling, exponential backoff with jitter, circuit breaker patterns, and request queuing. Use for any VTEX marketplace integration that must gracefully handle API throttling and maintain high availability.

Installationen
2
GitHub Stars
42
Aktualisiert
19. Aug.
vtex
Community

masterdata-storage-strategy

Apply when deciding whether VTEX Master Data is the right storage for a given workload, designing JSON Schemas with v-indexed, v-cache, v-security, and v-triggers, planning entity capacity and lifecycle, or auditing existing Master Data usage. Covers when to use MD versus Catalog, OMS, VBase, or external databases, schema design best practices, indexing strategy, trigger patterns, and operational considerations. Use before creating any new Master Data entity.

Installationen
2
GitHub Stars
42
Aktualisiert
19. Aug.
vtex
Community

payment-async-flow

Apply when implementing asynchronous payment methods (Boleto, Pix, bank redirects) or working with callback URLs in payment connector code. Covers undefined status response, callbackUrl notification, X-VTEX-signature validation, sync vs async handling, correct delayToCancel configuration for each async method, and redirect-based flows where inboundRequestsUrl does not support browser GET redirects (requires custom public routes).

Installationen
2
GitHub Stars
42
Aktualisiert
19. Aug.