websiteURL should be present for marketplace readiness.
OpenCode Power Pack
Fifty-four portable development and security workflows for Codex, Claude Code, OpenCode, and Pi, with opt-in native sandbox profiles for safer command execution
wayner-barrios/opencode-power-pack · v0.5.0 · Development & Workflow
Trust Score
72
Security
64
Surfaces
55
What is OpenCode Power Pack?
OpenCode Power Pack is a published development & workflow plugin for AI coding agents in the codex ecosystem, developed by Wayner Barrios and distributed through the HOL AI plugin registry. Fifty-four portable development and security workflows for Codex, Claude Code, OpenCode, and Pi, with opt-in native sandbox profiles for safer command execution
- Canonical slug
- wayner-barrios/opencode-power-pack
- Version
- v0.5.0 · updated Oct 6, 2026
- Open data
- entity.json (JSON-LD)
Trust & Reputation
Factor Analysis
Per-metric points (0–100 each) combined via a weighted average into the overall score.
Registry Snapshot
- Publisher verification
- No
- Marketplace source
- Unknown
- Scanner
- Broker fallback
- Safety label
- caution
- Digest verified
- Yes
Trust & reputation
Trust & Reputation
Factor Analysis
Per-metric points (0–100 each) combined via a weighted average into the overall score.
Provenance
- Plugin root
- .
- Source repo
- https://github.com/waybarrios/opencode-power-pack
- Source commit
- 9dccb6de12a7…
- Publisher verified
- No
- Owner verified
- @waybarrios
Continuous scanner CI detected
No action is required. This plugin receives the full trust score.
Verified badge not detected
Add the HOL verified badge to the repository README to score +2% trust. Plugin owners can open that pull request from Guard Plugins.
Security Posture
- Provider
- registry-broker-fallback
- Grade
- D · caution
- Version
- Unknown
Findings
privacyPolicyURL should be present for marketplace readiness.
termsOfServiceURL should be present for marketplace readiness.
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
Cisco skill scanner timed out after 60000 ms
OpenCode Power Pack — Frequently asked questions
- What is OpenCode Power Pack?
- OpenCode Power Pack is an AI plugin in the HOL registry. Fifty-four portable development and security workflows for Codex, Claude Code, OpenCode, and Pi, with opt-in native sandbox profiles for safer command execution
- How do I install OpenCode Power Pack?
- Install OpenCode Power Pack in your harness: Codex — codex plugin marketplace add waybarrios/opencode-power-pack; Claude Code — /plugin marketplace add waybarrios/opencode-power-pack; OpenCode — npx skills add waybarrios/opencode-power-pack. Full step-by-step guidance is on the HOL plugin page.
- How do I install OpenCode Power Pack in Codex?
- To install OpenCode Power Pack in Codex, start with codex plugin marketplace add waybarrios/opencode-power-pack. The complete step-by-step install guide for Codex is on the HOL plugin page.
- How do I install OpenCode Power Pack in Claude Code?
- To install OpenCode Power Pack in Claude Code, start with /plugin marketplace add waybarrios/opencode-power-pack. The complete step-by-step install guide for Claude Code is on the HOL plugin page.
- How do I install OpenCode Power Pack in OpenCode?
- To install OpenCode Power Pack in OpenCode, start with npx skills add waybarrios/opencode-power-pack. The complete step-by-step install guide for OpenCode is on the HOL plugin page.
- Is OpenCode Power Pack free?
- Pricing for OpenCode Power Pack is published on its HOL plugin page when the maker schedules a launch.
- Who publishes OpenCode Power Pack?
- OpenCode Power Pack is published by Wayner Barrios and listed on HOL.
- Is OpenCode Power Pack available now?
- OpenCode Power Pack availability is listed on its HOL plugin page.
Install Guidance
Install in Claude Code
Install through the Claude Code plugin marketplace.
- 1
Add the marketplace
Run this inside a Claude Code session.
claude code - 2
Install the plugin
Use the plugin name and the marketplace name shown by the previous command.
claude code - 3
Scripted alternative
Non-interactive equivalent for scripts and CI pipelines. Add --scope project to pin the install to one repository.
shell
Plugin Manifest
{
"name": "opencode-power-pack",
"version": "0.5.0",
"description": "Fifty-five software-development workflows for Claude Code, Codex, OpenCode, and Pi.",
"author": {
"name": "Wayner Barrios",
"url": "https://github.com/waybarrios"
},
"homepage": "https://github.com/waybarrios/opencode-power-pack",
"repository": "https://github.com/waybarrios/opencode-power-pack",
"license": "MIT AND Apache-2.0",
"keywords": [
"codex",
"codex-cli",
"openai-codex",
"claude-code",
"opencode",
"pi",
"pi-coding-agent",
"skills",
"code-review",
"security-review",
"feature-development"
],
"skills": "./",
"interface": {
"displayName": "Cross-Agent Power Pack",
"developerName": "Wayner Barrios",
"shortDescription": "Fifty-five workflows for Claude Code, Codex, OpenCode, and Pi",
"longDescription": "Review code, audit security, design and implement features, build MCP servers, and maintain project guidance with reusable workflows for Claude Code, Codex, OpenCode, and Pi.",
"category": "Productivity",
"capabilities": [
"Read",
"Write"
],
"defaultPrompt": "Use the appropriate Power Pack workflow for this software-development task.",
"brandColor": "#FFD60A"
},
"holManifestOrigin": "repository",
"registryIndexVersion": 5
}Marketplace Source
- Repo URL
- https://github.com/waybarrios/opencode-power-pack
- Marketplace path
- Unknown
- Source path
- .
- Install policy
- Unspecified
Skills
55 SKILL.md files ship with this plugin. Preview, copy, or download each one, then install them with the Skills CLI.
agentic-actions-auditor
skills/agentic-actions-auditor/SKILL.md
Audit GitHub Actions that run AI agents for prompt injection, unsafe interpolation, sandbox gaps, and permissive actor rules. Use for agentic CI workflows, not general application code review.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
agents-md-improver
skills/agents-md-improver/SKILL.md
Audit and improve project-rules files (AGENTS.md, CLAUDE.md, .agents/instructions, local overrides) so the agent keeps accurate project context. Use when the user asks to check, audit, review, update, improve, or fix their AGENTS.md or CLAUDE.md, mentions "project rules maintenance" or "agent context optimization", or when the codebase has changed enough that the rules file may be stale. Scans the repository for every rules file, grades each against a quality rubric, outputs a quality report, and applies targeted edits only after user approval.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
agents-md-revise
skills/agents-md-revise/SKILL.md
Capture learnings from the current session into the project-rules file (AGENTS.md, CLAUDE.md, or local override) so future sessions benefit. Use when the user says "revise the rules", "update AGENTS.md / CLAUDE.md with what we just learned", "save this to project memory", "remember this for next time", or at the end of a productive session when valuable context has emerged that is not yet documented. This complements agents-md-improver — improver audits, while this one captures.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
ai-slop
skills/ai-slop/SKILL.md
Operational rubric that turns "don't make AI slop" into observable properties, severity levels, evidence requirements, and repair actions for interface design. Use as the reference rubric when building or reviewing marketing sites, product interfaces, dashboards, portfolios, or e-commerce pages, especially alongside frontend-design.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
code-architect
skills/code-architect/SKILL.md
Design a feature architecture by analyzing existing codebase patterns and conventions, then provide a comprehensive implementation blueprint with specific files to create or modify, component designs, data flows, and a build sequence. Use this skill when the user asks for an architecture design, an implementation plan for a non-trivial feature, or when dispatched as a sub-task during feature-dev architecture phase.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
code-explorer
skills/code-explorer/SKILL.md
Deeply analyze an existing codebase feature by tracing execution paths, mapping architecture layers, understanding patterns and abstractions, and documenting dependencies. Use this skill when you need to understand how a feature works before modifying or extending it, when dispatched as a sub-task during feature-dev exploration, or when the user asks "how does X work in this codebase".
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
code-quality
skills/code-quality/SKILL.md
Agents should invoke this skill for code reviews, linting/formatting setup, maintainability checks, complexity concerns, warning cleanup, coding standards, or quality gates in Rust, TypeScript, Python, shell, and mixed repos.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
code-review
skills/code-review/SKILL.md
Review a pull request or a set of code changes for bugs, logic errors, and project-convention violations using a confidence-filtered, multi-agent process. Use this skill when the user asks to review a PR, audit pending changes, or inspect a diff for problems before merging.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
code-reviewer
skills/code-reviewer/SKILL.md
Review code for bugs, logic errors, security vulnerabilities, code quality issues, and adherence to project conventions, using confidence-based filtering to report only high-priority issues that truly matter. Use this skill when reviewing a small set of changes locally (such as unstaged diff), when dispatched as a sub-task during feature-dev quality review, or when the user wants a critique of a specific file or function.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
codeql
skills/codeql/SKILL.md
Run CodeQL database creation and security queries, add data-extension models, or process CodeQL SARIF. Use when CodeQL is explicitly requested; use security-review for a broader manual security review.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
design-patterns
skills/design-patterns/SKILL.md
Agents should invoke this skill when choosing patterns, designing traits/interfaces/components, deciding abstraction boundaries, evaluating dependency injection/callbacks, or comparing implementation approaches in Rust, TypeScript/React, or Django/Python.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
differential-review
skills/differential-review/SKILL.md
Performs security-focused differential review of code changes (PRs, commits, diffs). Adapts analysis depth to codebase size, uses git history for context, calculates blast radius, checks test coverage, and generates comprehensive markdown reports. Automatically detects and prevents security regressions.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
feature-dev
skills/feature-dev/SKILL.md
Guide a feature implementation through a structured seven-phase workflow with deep codebase understanding, clarifying questions, parallel architecture design, and quality review. Use this skill when the user asks to build a new feature, add functionality, or wants a methodical approach to implementation rather than diving straight to code.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
fp-check
skills/fp-check/SKILL.md
Systematically verifies suspected security bugs to eliminate false positives. Produces TRUE POSITIVE or FALSE POSITIVE verdicts with documented evidence for each bug.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
frontend-design
skills/frontend-design/SKILL.md
Create distinctive, production-grade frontend interfaces with high design quality and accessible markup. Use this skill when the user asks to build or beautify web components, pages, applications, landing pages, dashboards, artifacts, or React/HTML/CSS UI. Generates creative, polished code that avoids generic AI aesthetics, then self-checks it against an objective accessibility and quality rubric.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
hf-cli
skills/hf-cli/SKILL.md
Use the `hf` CLI for Hub authentication, downloads, uploads, repositories, cache, jobs, buckets, webhooks, and endpoint administration. Use for CLI operations, not model recommendations, paper analysis, training design, or building a Space.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
hf-cloud-aws-context-discovery
skills/hf-cloud-aws-context-discovery/SKILL.md
Discover the active AWS profile, region, account, and caller identity before SageMaker or AWS work. Use when local AWS context is needed or unspecified; do not use for cloud-agnostic model planning.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
hf-cloud-python-env-setup
skills/hf-cloud-python-env-setup/SKILL.md
Create an isolated Python environment with a compatible Python version and boto3 for SageMaker or AWS automation. Use before executing AWS Python code; do not use for general Python environment setup.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
hf-cloud-sagemaker-deployment-planner
skills/hf-cloud-sagemaker-deployment-planner/SKILL.md
Plan and coordinate a model deployment to Amazon SageMaker, including serving stack and real-time versus async inference. Use as the entry point for SageMaker hosting requests, before image, IAM, and endpoint implementation skills.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
hf-cloud-sagemaker-iam-preflight
skills/hf-cloud-sagemaker-iam-preflight/SKILL.md
Verify or select a SageMaker execution role before creating models, endpoints, or training jobs. Use when a role ARN is missing or IAM access fails; inspect existing roles before proposing role creation.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
hf-cloud-sagemaker-production-defaults
skills/hf-cloud-sagemaker-production-defaults/SKILL.md
Implement a production SageMaker endpoint with autoscaling, CloudWatch alarms, and tags. Use after the serving image and IAM role are known; use the deployment planner first when architecture is undecided.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
hf-cloud-serving-image-selection
skills/hf-cloud-serving-image-selection/SKILL.md
Select and verify the current region-specific serving container URI for a SageMaker model deployment. Use after the deployment pathway is chosen and before endpoint code; never infer an image URI from memory.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
hf-mem
skills/hf-mem/SKILL.md
Hugging Face CLI to estimate the required memory to load Safetensors or GGUF model weights for inference from the Hugging Face Hub.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
huggingface-best
skills/huggingface-best/SKILL.md
Find and compare recommended Hugging Face models for a task using benchmarks, model size, and device constraints. Use for model selection questions; use huggingface-local-models for GGUF setup and hf-cli for Hub operations.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
huggingface-community-evals
skills/huggingface-community-evals/SKILL.md
Run evaluations for Hugging Face Hub models using inspect-ai and lighteval on local hardware. Use for backend selection, local GPU evals, and choosing between vLLM / Transformers / accelerate. Not for HF Jobs orchestration, model-card PRs, .eval_results publication, or community-evals automation.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
huggingface-datasets
skills/huggingface-datasets/SKILL.md
Use this skill for Hugging Face Dataset Viewer API workflows that fetch subset/split metadata, paginate rows, search text, apply filters, download parquet URLs, and read size or statistics.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
huggingface-gradio
skills/huggingface-gradio/SKILL.md
Build Gradio web UIs and demos in Python. Use when creating or editing Gradio apps, components, event listeners, layouts, or chatbots.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
huggingface-llm-trainer
skills/huggingface-llm-trainer/SKILL.md
Train or fine-tune language models with TRL or Unsloth on Hugging Face Jobs, including SFT, DPO, GRPO, reward models, and GGUF conversion. Use for cloud LLM training; use huggingface-vision-trainer for vision tasks.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
huggingface-local-models
skills/huggingface-local-models/SKILL.md
Use to select models to run locally with llama.cpp and GGUF on CPU, Mac Metal, CUDA, or ROCm. Covers finding GGUFs, quant selection, running servers, exact GGUF file lookup, conversion, and OpenAI-compatible local serving.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
huggingface-lora-space-builder
skills/huggingface-lora-space-builder/SKILL.md
Build and publish a Gradio Hugging Face Space for a user-provided image or video LoRA, including pipeline selection and model-card settings. Use for LoRA demos; use huggingface-spaces for general Space work.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
huggingface-paper-publisher
skills/huggingface-paper-publisher/SKILL.md
Publish and manage research papers on Hugging Face Hub. Supports creating paper pages, linking papers to models/datasets, claiming authorship, and generating professional markdown-based research articles.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
huggingface-papers
skills/huggingface-papers/SKILL.md
Look up and read Hugging Face paper pages in markdown, and use the papers API for structured metadata such as authors, linked models/datasets/spaces, Github repo and project page. Use when the user shares a Hugging Face paper page URL, an arXiv URL or ID, or asks to summarize, explain, or analyze an AI research paper.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
huggingface-spaces
skills/huggingface-spaces/SKILL.md
Build, deploy, debug, or maintain a Hugging Face Space using Gradio, Docker, or Static SDKs. Use for general Space hosting and configuration; use huggingface-zerogpu for ZeroGPU runtime constraints and lora-space-builder for LoRA demos.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
huggingface-tool-builder
skills/huggingface-tool-builder/SKILL.md
Use this skill when the user wants to build tool/scripts or achieve a task where using data from the Hugging Face API would help. This is especially useful when chaining or combining API calls or the task will be repeated/automated. This Skill creates a reusable script to fetch, enrich or process data.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
huggingface-trackio
skills/huggingface-trackio/SKILL.md
Track and visualize ML training experiments with Trackio. Use when logging metrics during training (Python API), firing alerts for training diagnostics, or retrieving/analyzing logged metrics (CLI). Supports real-time dashboard visualization, alerts with webhooks, HF Space syncing, and JSON output for automation.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
huggingface-vision-trainer
skills/huggingface-vision-trainer/SKILL.md
Train object-detection, image-classification, or SAM segmentation models on Hugging Face Jobs. Use for vision fine-tuning and evaluation; use huggingface-llm-trainer for language models.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
huggingface-zerogpu
skills/huggingface-zerogpu/SKILL.md
Implement or debug Hugging Face Spaces ZeroGPU code using `@spaces.GPU`, including isolation, state, duration, sizing, and CUDA-wheel constraints. Use for ZeroGPU-specific behavior; use huggingface-spaces for general hosting.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
humanizer
skills/humanizer/SKILL.md
Rewrite AI-generated copy in Spanish and English so it sounds direct, concrete and human while preserving meaning, facts and numbers exactly. Use when drafts feel robotic, verbose or translated and need short active sentences without em-dashes.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
insecure-defaults
skills/insecure-defaults/SKILL.md
Detects fail-open insecure defaults (hardcoded secrets, weak auth, permissive security) that allow apps to run insecurely in production. Use when auditing security, reviewing config management, or analyzing environment variable handling.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
mcp-builder
skills/mcp-builder/SKILL.md
Guide the creation of high-quality MCP (Model Context Protocol) servers that enable LLMs to interact with external services through well-designed tools. Use when the user wants to build an MCP server to integrate an external API or service, whether in Python (FastMCP) or Node/TypeScript (MCP SDK).
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
paper-summarizer
skills/paper-summarizer/SKILL.md
Agents should invoke this skill for academic or technical papers, arXiv/PubMed/IEEE/ACM links, PDFs, methodology review, limitations, practical implications, or extracting findings for engineering decisions.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
sarif-parsing
skills/sarif-parsing/SKILL.md
Parses and processes SARIF files from static analysis tools like CodeQL, Semgrep, or other scanners. Triggers on \"parse sarif\", \"read scan results\", \"aggregate findings\", \"deduplicate alerts\", or \"process sarif output\". Handles filtering, deduplication, format conversion, and CI/CD integration of SARIF data. Does NOT run scans — use the Semgrep or CodeQL skills for that.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
security-review
skills/security-review/SKILL.md
Perform a focused security review of pending git changes to identify high-confidence security vulnerabilities with real exploitation potential. Use this skill when the user asks for a security review, security audit, vulnerability scan, or wants to check pending changes on a branch for security issues before merging. This is NOT a general code review.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
security-threat-model
skills/security-threat-model/SKILL.md
Create a repository-grounded AppSec threat model covering assets, trust boundaries, attackers, abuse paths, and mitigations. Use only for explicit threat-modeling requests, not general architecture or code review.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
semgrep-rule-creator
skills/semgrep-rule-creator/SKILL.md
Creates custom Semgrep rules for detecting security vulnerabilities, bug patterns, and code patterns. Use when writing Semgrep rules or building custom static analysis detections.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
semgrep-rule-variant-creator
skills/semgrep-rule-variant-creator/SKILL.md
Creates language variants of existing Semgrep rules. Use when porting a Semgrep rule to specified target languages. Takes an existing rule and target languages as input, produces independent rule+test directories for each language.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
semgrep
skills/semgrep/SKILL.md
Run Semgrep static analysis across a codebase, optionally using Semgrep Pro for cross-file taint analysis. Use when Semgrep or a static-analysis scan is requested; use security-review for a manual audit.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
sharp-edges
skills/sharp-edges/SKILL.md
Identify error-prone APIs, dangerous configuration, and footgun designs that enable security mistakes. Use for API ergonomics, misuse resistance, secure defaults, or pit-of-success reviews; use code-review for general defects.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
skill-creator
skills/skill-creator/SKILL.md
Create new skills (SKILL.md files), modify and improve existing skills, and design skill descriptions for accurate triggering. Use when the user wants to create a new skill from scratch, edit an existing skill, optimize a skill's description, or convert a workflow they just demonstrated into a reusable skill.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
supply-chain-risk-auditor
skills/supply-chain-risk-auditor/SKILL.md
Identifies dependencies at heightened risk of exploitation or takeover. Use when assessing supply chain attack surface, evaluating dependency health, or scoping security engagements.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
train-sentence-transformers
skills/train-sentence-transformers/SKILL.md
Train or fine-tune SentenceTransformer bi-encoders, CrossEncoder rerankers, or SparseEncoder models, including losses, negatives, evaluation, distillation, LoRA, and Matryoshka. Use for sentence-transformers training tasks.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
transformers-js
skills/transformers-js/SKILL.md
Run Hugging Face models in JavaScript or TypeScript with Transformers.js, WebGPU, or WASM across browser, Node.js, Bun, and Deno. Use for client-side or JS-runtime inference, not Python training.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
trl-training
skills/trl-training/SKILL.md
Train and fine-tune transformer language models using TRL (Transformers Reinforcement Learning). Supports SFT, DPO, GRPO, KTO, RLOO and Reward Model training via CLI commands.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
variant-analysis
skills/variant-analysis/SKILL.md
Find similar vulnerabilities and bugs across codebases using pattern-based analysis. Use when hunting bug variants, building CodeQL/Semgrep queries, analyzing security vulnerabilities, or performing systematic code audits after finding an initial issue.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
vuln-report
skills/vuln-report/SKILL.md
Turn one confirmed security finding into a disclosure-ready GitHub advisory with root cause, proof of concept, impact, and source evidence. Use for reporting an established vulnerability, not discovering or validating one.
SKILL.md content is not in this snapshot. Open the raw file to copy it from the source repository.
File Inventory
.claude-plugin/plugin.json
file
729 bytes
8d2888661612b26d…
.codex-plugin/plugin.json
plugin-manifest
1,150 bytes
afa3ffe08aec8797…
.opencode/plugins/agent-config.js
file
1,749 bytes
1ccab247e0515268…
.opencode/plugins/opencode-power-pack.js
file
2,243 bytes
3d36288bcef968ad…
package-lock.json
file
2,523 bytes
9da97cf3ec64ab33…
package.json
file
1,890 bytes
93e27ded5edec353…
README.md
file
35,935 bytes
f584ed5b974f6f4c…
SECURITY.md
file
1,202 bytes
07134c1b26feb4f0…
skills/agentic-actions-auditor/references/action-profiles.md
skill
8,780 bytes
191aae909ac9383e…
skills/agentic-actions-auditor/references/cross-file-resolution.md
skill
10,625 bytes
c15a46bb0695ecc0…
skills/agentic-actions-auditor/references/foundations.md
skill
5,151 bytes
9e0eb90b3bfb53e1…
skills/agentic-actions-auditor/references/vector-a-env-var-intermediary.md
skill
4,482 bytes
7903992f54409760…
skills/agentic-actions-auditor/references/vector-b-direct-expression-injection.md
skill
4,541 bytes
d074c95ee282d56e…
skills/agentic-actions-auditor/references/vector-c-cli-data-fetch.md
skill
5,042 bytes
f11d2333f2b38002…
skills/agentic-actions-auditor/references/vector-d-pr-target-checkout.md
skill
5,235 bytes
fc029037bb219aed…
skills/agentic-actions-auditor/references/vector-e-error-log-injection.md
skill
5,380 bytes
2c93623d96f49c4a…
skills/agentic-actions-auditor/references/vector-f-subshell-expansion.md
skill
5,791 bytes
a9345ace4af2dd16…
skills/agentic-actions-auditor/references/vector-g-eval-of-ai-output.md
skill
5,602 bytes
b9a47a41dd1470cc…
skills/agentic-actions-auditor/references/vector-h-dangerous-sandbox-configs.md
skill
5,576 bytes
278df9befc36f231…
skills/agentic-actions-auditor/references/vector-i-wildcard-allowlists.md
skill
4,372 bytes
68a4cd774ad829e5…
skills/agentic-actions-auditor/SKILL.md
skill
20,833 bytes
aef91fc6243e2ec6…
skills/agents-md-improver/references/project-rule-resolution.md
skill
6,231 bytes
c2ce64d16598ae0b…
skills/agents-md-improver/SKILL.md
skill
10,382 bytes
85618ddb2341dde1…
skills/agents-md-revise/SKILL.md
skill
7,037 bytes
39c0fc4164652c00…
skills/ai-slop/SKILL.md
skill
14,634 bytes
ffc396010fb7ed28…
skills/code-architect/SKILL.md
skill
5,269 bytes
292461dc45c0cfb1…
skills/code-explorer/SKILL.md
skill
4,283 bytes
852cec3b2eb17766…
skills/code-quality/SKILL.md
skill
7,190 bytes
9751bcf7389805b9…
skills/code-review/agents/openai.yaml
skill
202 bytes
9cf7e0d633895641…
skills/code-review/SKILL.md
skill
13,054 bytes
763c28f26ad04d34…
skills/code-reviewer/agents/openai.yaml
skill
198 bytes
907ba98f9170b27e…
skills/code-reviewer/SKILL.md
skill
7,115 bytes
e14fcfc9aece214d…
skills/codeql/references/build-fixes.md
skill
2,636 bytes
9d74eaef2a75c1e9…
skills/codeql/references/diagnostic-query-templates.md
skill
10,039 bytes
d9f72ace8865a5b8…
skills/codeql/references/extension-yaml-format.md
skill
7,848 bytes
a263fa41dc78dd1e…
skills/codeql/references/important-only-suite.md
skill
5,777 bytes
27823a2553db1548…
skills/codeql/references/language-details.md
skill
5,091 bytes
1d6db4a45a8858fb…
skills/codeql/references/macos-arm64e-workaround.md
skill
6,824 bytes
2b4e18ae0924f18e…
skills/codeql/references/performance-tuning.md
skill
3,356 bytes
d725aef573fd7fcf…
skills/codeql/references/quality-assessment.md
skill
7,010 bytes
1dabaec584cc3ba0…
skills/codeql/references/ruleset-catalog.md
skill
1,844 bytes
43936f039aa94b3d…
skills/codeql/references/run-all-suite.md
skill
3,437 bytes
ec6d4711d9cc7f87…
skills/codeql/references/sarif-processing.md
skill
3,119 bytes
abde04ca479a372e…
skills/codeql/references/threat-models.md
skill
3,074 bytes
8855d4907b390f04…
skills/codeql/SKILL.md
skill
14,956 bytes
a41eb8e977a4d606…
skills/codeql/workflows/build-database.md
skill
9,597 bytes
7fb24c47ffe46a0d…
skills/codeql/workflows/create-data-extensions.md
skill
9,930 bytes
2210ce1466a8269c…
skills/codeql/workflows/run-analysis.md
skill
11,132 bytes
8da6023807ac9ee5…
skills/design-patterns/SKILL.md
skill
8,733 bytes
525ea19252af3cd8…
skills/differential-review/adversarial.md
skill
5,062 bytes
3cb823f38c6e551c…
skills/differential-review/methodology.md
skill
6,738 bytes
16b335d24cf2145e…
skills/differential-review/patterns.md
skill
6,999 bytes
52abb18abbc73502…
skills/differential-review/reporting.md
skill
7,006 bytes
0016876dc6f158e9…
skills/differential-review/SKILL.md
skill
6,565 bytes
8a474db58cf4c871…
skills/feature-dev/SKILL.md
skill
9,311 bytes
a26af911e4ce9bf8…
skills/fp-check/references/bug-class-verification.md
skill
7,220 bytes
a19160eeac2cbed8…
skills/fp-check/references/deep-verification.md
skill
8,749 bytes
9421691673d02596…
skills/fp-check/references/evidence-templates.md
skill
2,973 bytes
340346b9c6b3b43a…
skills/fp-check/references/false-positive-patterns.md
skill
6,700 bytes
7a24e3c8515b11b4…
skills/fp-check/references/gate-reviews.md
skill
1,936 bytes
de4fd3680496b6f6…
skills/fp-check/references/standard-verification.md
skill
4,395 bytes
0323727c88f41567…
skills/fp-check/SKILL.md
skill
6,421 bytes
cba183cdc71c3154…
skills/frontend-design/SKILL.md
skill
12,438 bytes
c14bd59559b35fde…
skills/hf-cli/SKILL.md
skill
30,862 bytes
92116e1ea2b9ffd6…
skills/hf-cloud-aws-context-discovery/SKILL.md
skill
3,632 bytes
c78191186bb5c21f…
skills/hf-cloud-python-env-setup/requirements.txt
skill
796 bytes
61b04600d7645663…
skills/hf-cloud-python-env-setup/scripts/check_versions.py
skill
740 bytes
60e5c0cdd8443d2b…
skills/hf-cloud-python-env-setup/scripts/setup_env.py
skill
5,035 bytes
2656f04db77e1f75…
skills/hf-cloud-python-env-setup/SKILL.md
skill
6,391 bytes
da34a42b94e048dd…
skills/hf-cloud-sagemaker-deployment-planner/SKILL.md
skill
6,840 bytes
9f5a8782b1f00e2c…
skills/hf-cloud-sagemaker-iam-preflight/references/minimum-permissions.json
skill
1,043 bytes
100c4dc345e69f5a…
skills/hf-cloud-sagemaker-iam-preflight/references/trust-policy.json
skill
197 bytes
bbc7c7b5775c8bb2…
skills/hf-cloud-sagemaker-iam-preflight/scripts/check_role.py
skill
6,862 bytes
567af89033ca686c…
skills/hf-cloud-sagemaker-iam-preflight/scripts/create_role.py
skill
4,129 bytes
642e0258003c9a39…
skills/hf-cloud-sagemaker-iam-preflight/SKILL.md
skill
6,444 bytes
e8424d2400457a39…
skills/hf-cloud-sagemaker-production-defaults/references/deployment-template.md
skill
3,664 bytes
c5d65eb2c667f002…
skills/hf-cloud-sagemaker-production-defaults/scripts/_common.py
skill
4,874 bytes
698f166212a005a5…
skills/hf-cloud-sagemaker-production-defaults/scripts/deploy_async.py
skill
18,430 bytes
1143cc3c5d526837…
skills/hf-cloud-sagemaker-production-defaults/scripts/deploy.py
skill
12,915 bytes
31dba6fe8ab64734…
skills/hf-cloud-sagemaker-production-defaults/scripts/invoke_endpoint.py
skill
4,514 bytes
be39b02f3ba278d3…
skills/hf-cloud-sagemaker-production-defaults/scripts/teardown.py
skill
6,401 bytes
ff7b2472fbca0f6f…
skills/hf-cloud-sagemaker-production-defaults/SKILL.md
skill
18,531 bytes
60bdeab90f2fb358…
skills/hf-cloud-serving-image-selection/references/model-to-image.md
skill
10,826 bytes
49ab6db136a53c63…
skills/hf-cloud-serving-image-selection/scripts/mirror_image.py
skill
4,803 bytes
994fb2ed93243114…
skills/hf-cloud-serving-image-selection/SKILL.md
skill
17,247 bytes
187a77cb68fd5875…
skills/hf-mem/SKILL.md
skill
3,377 bytes
331358ee0263100d…
skills/huggingface-best/SKILL.md
skill
5,523 bytes
fee078da19039da4…
skills/huggingface-community-evals/examples/USAGE_EXAMPLES.md
skill
2,062 bytes
fa467e3f597179be…
skills/huggingface-community-evals/scripts/inspect_eval_uv.py
skill
3,004 bytes
d0afcf668aa37f74…
skills/huggingface-community-evals/scripts/inspect_vllm_uv.py
skill
9,119 bytes
dd7366b3201efa05…
skills/huggingface-community-evals/scripts/lighteval_vllm_uv.py
skill
9,204 bytes
eebf5ac94c121f9f…
skills/huggingface-community-evals/SKILL.md
skill
6,698 bytes
7f8e42105c17b19f…
skills/huggingface-datasets/SKILL.md
skill
4,615 bytes
fde3aae0abfad187…
skills/huggingface-gradio/examples.md
skill
14,481 bytes
f9f229a4ec8d426a…
skills/huggingface-gradio/SKILL.md
skill
24,792 bytes
74e7be6526b53c76…
skills/huggingface-llm-trainer/references/gguf_conversion.md
skill
9,854 bytes
d341b8720e91a64e…
skills/huggingface-llm-trainer/references/hardware_guide.md
skill
6,778 bytes
01b3ba873c5a4521…
skills/huggingface-llm-trainer/references/hub_saving.md
skill
8,501 bytes
ca3aacd6bad68ab1…
skills/huggingface-llm-trainer/references/local_training_macos.md
skill
8,324 bytes
864619b791239093…
skills/huggingface-llm-trainer/references/reliability_principles.md
skill
10,867 bytes
189b40920184a641…