Salesforce AppExchange Security Review patterns for 2GP managed packages — what manual reviewers accept/reject, anti-patterns to avoid, fix recipes.
Configure AppFolio Stack API authentication with OAuth 2.0. Use when setting up property management API access, registering as an AppFolio Stack partner, or configuring client…
Comprehensive guide for Apple-platform data persistence: SwiftData, Core Data, CloudKit, UserDefaults, FileManager, and Keychain with migrations, sync patterns, and security.
Plan and safely automate officially supported Apple Developer provisioning and CloudKit workflows through the App Store Connect REST API, Xcode-aware local discovery, cktool, and…
Apple firmware and binary reverse engineering with the `ipsw` CLI: IPSW/kernelcache download/extraction, dyld_shared_cache disassembly, private headers, entitlements, Mach-O…
Query the local Apple Mail (Mail.app) database on macOS to list, search, count, or extract content from emails.
Fast Apple Mail search via SQLite on macOS. Search emails by subject, sender, date, attachments - results in ~50ms vs 8+ minutes with AppleScript.
Export Apple Mail conversation threads from a given sender into one markdown file per thread, with an incremental manifest so re-runs only write new or changed threads.
Export and convert Apple Notes to Markdown, JSON, HTML, and SQLite. Use when backing up notes, exporting to other apps, converting HTML to Markdown, or building searchable note…
Apply security best practices for Apple Notes automation scripts. Trigger: "apple notes security".
Tailor and optimize academic application documents — CV, resume, statement of purpose (SOP), and personal statement — for a specific PhD opportunity.
Secure applications against common vulnerabilities. Use when reviewing code for security, implementing security controls, or hardening applications. Covers OWASP Top 10.
Use when a task needs the judgment of an Application Security Engineer — checking whether an endpoint verifies object-level authorization (not just authentication), running threat…
USE FOR: Data security and information security formalization — CIA triad, access control models (BLP, RBAC, ABAC), information flow, cryptographic primitives, privacy…
USE FOR: Legal reasoning formalization — statutory interpretation, case-based reasoning, argumentation frameworks, defeasible rules, deontic norms, regulatory compliance, and…
Use when MAP milestones may require legal, security, procurement, implementation, finance, or executive review before customer sharing.
Use when a security questionnaire question can be answered from vetted language while preserving caveats, confidence, and approval status.
Skills para trabalho de AppSec defensivo ponta-a-ponta. Inclui intake, threat modeling, code review, testes de seguranca, correcoes e entrega de relatorios.
Elite Application Security engineer specializing in secure SDLC, OWASP Top 10 2025, SAST/DAST/SCA integration, threat modeling (STRIDE), and vulnerability remediation.
Set up App Store Connect bundle IDs, capabilities, certificates, provisioning profiles, local profile install, and encrypted signing sync with `asc`.
Use when the user wants to audit Aptos Move smart contracts, scan Aptos-specific patterns including global storage model, resource accounts, or coin modules, review Aptos DeFi…
Phishing am Arbeitsplatz: Arbeitnehmer-Haftung für durch Phishing verursachten Schaden. Innerbetriebliche Schadensausgleichung (BAG-Rechtsprechung), gestufte Haftung.
Patentanwälte: arbeitnehmererfinder und verschwiegenheit - Rechtsprechungscheck, stärkste Gegenansicht und Red-Team-Korrektur; mit Live-Normencheck, Kammerlogik,…
Prüft Beschäftigtenüberwachung durch IT-Security-Maßnahmen im Nis2 Cybersecurity Compliance.
Arbeitsunfall/Berufskrankheit melden: Drei-Tage-Regel, Unfallanzeige, Betriebsrat, Fachkraft, Berufsgenossenschaft und Dokumentation im Berichtspflichten.
Schreibt arc42 Sektion 8 (Querschnittliche Konzepte): Übergreifende Lösungsansätze, Muster, Regeln, Domänenmodelle, technische Konzepte.
Author and refresh the arc42 sections arc42 owns as prose (per ADR-0004 — arc42 owns ALL narrative; arch-c4 only emits diagram + DSL-derived table blocks in §3/§5/§7).
Use when reviewing code for security vulnerabilities, implementing authorization, or ensuring data protection. — from security/security-misc
Use when reviewing code for security vulnerabilities, implementing authorization, or ensuring data protection. — from security/security-misc
Create professional architecture, workflow, sequence, data-flow, and lifecycle/state diagrams as standalone HTML files with SVG graphics, a built-in dark/light theme toggle, and…
Run 5 critique axes on an ARCHITECTURE.md — NFR-architecture fit, failure modes, cost stress-test, security posture, operability. Reports severity-tagged findings.
Use when the user asks for a diagram of a system, integration, flow, state, data model, or deployment topology.
Design comprehensive security architectures using defense-in-depth, zero trust principles, threat modeling (STRIDE, PASTA), and control frameworks (NIST CSF, CIS Controls, ISO…
Ensure every project remains compliant with these standards, use the built-in `linter` tool. It scans codebase for violations of the architecture rules using AST parsing.
Strategic agentic instruction set for elite system architecture and enterprise-grade security, focused on autonomous problem-solving and proactive verification.
灾备恢复演练系统 - 定期的备份恢复测试与改进: 1. 全局考虑:覆盖演练计划、执行、评估、改进全流程 2. 系统考虑:计划→执行→验证→报告→改进闭环 3. 迭代机制:根据演练结果优化灾备策略 4. Skill化:标准接口,可按层级独立演练 5. 流程自动化:定时自动执行恢复演练
Core Archon DID toolkit - identity management, verifiable credentials, encrypted messaging (dmail), Nostr integration, file encryption/signing, aliasing, authorization…
[COMMUNITY] Generate a Canada Charter rights design review — s.2 (expression and association), s.7 (life, liberty, security of person), s.8 (search and seizure), s.15 (equality) —…
[COMMUNITY] Generate a Canada Security of Information Act handling plan — Special Operational Information (SOI) register, marking and handling matrix, transmission channels,…
[COMMUNITY] Assess compliance with ANSSI security recommendations — Guide d''hygiène informatique (42 measures) and cloud security recommendations
[COMMUNITY] Generate an Information System Security Policy (PSSI) for French public or private organisations — security objectives, principles, organisational structure, and…
Use when a task needs the judgment of an Area, Ethnic, or Cultural Studies Professor — designing a joint-appointment course load across two departments, prepping a tenure or…
Verbessert prozessuale Argumentation in Klage, Erwiderung, Replik, Berufung, Eilantrag oder Mandatsmemo.
Use when calibrating completeness vs. selectivity and ensuring fairness across theoretical schools, methods, authors, and debates in an Annual Review of Sociology (ARSoc) review —…
Use when working with the Annual Review of Sociology (ARSoc) Editorial Committee and Annual Reviews production team — negotiating the commissioned scope, anticipating what review…
Use when systematically gathering, reading, and synthesizing a large body of sociological research for an Annual Review of Sociology (ARSoc) review — coverage discipline and…
Use when imposing an analytical structure or taxonomy on a sociology literature for an Annual Review of Sociology (ARSoc) review — the "spine" that turns a reading list into an…
Use when getting a review topic in front of the Annual Review of Sociology (ARSoc) Editorial Committee or shaping an accepted invitation — the invited/commissioning intake route,…
Use when responding to Editorial Committee and referee feedback on an Annual Review of Sociology (ARSoc) review — coverage gaps, balance/accuracy complaints, framework/st — from…
Use when running the final delivery preflight for a commissioned Annual Review of Sociology (ARSoc) review via the Annual Reviews production system — disclosure statement — from…
Use when building exhibits for an Annual Review of Sociology (ARSoc) review — summary "who-found-what" tables, the conceptual/framework figure, and meta-evidence exhibits that…
Use when judging whether a sociology literature is an Annual Review of Sociology (ARSoc)-scale review topic — mature, broadly important, and genuinely in need of an authoritative…
Use when documenting the coverage account of an Annual Review of Sociology (ARSoc) review and the transparency obligations of any systematic-review search or meta-analysis the…
Use when deciding which arsoc-* sub-skill to invoke next, or when sequencing an invited review article from topic through revision for an Annual Review of Sociology (ARSoc)…
Use when revising an Annual Review of Sociology (ARSoc) review for the ARSoc voice — authoritative, accessible to sociologists outside the subfield, signposted, with a strong…
Produces build artifacts with Software Bill of Materials (SBOM) and supply chain metadata for security and compliance.
Produces build artifacts with Software Bill of Materials (SBOM) and supply chain metadata for security and compliance.
Set up bundle IDs, capabilities, signing certificates, provisioning profiles, and encrypted signing sync with the asc cli.
Generate ASCII-only MOTD / SSH login banner / shell profile welcome messages (short/long variants, quiet mode guidance, security notices).
Use when shaping the prose and structure of an ASE (IEEE/ACM Automated Software Engineering) research paper, covering the automation-first first-page arc, stating the automated…