autohandai

72 mods across 3 repositories, 276 stars between them.

ai-image-generation

25

autohandai/community-skills

Skill Claude CodeCodex

Generate AI images with FLUX, Gemini, Grok, Seedream, Reve and 50+ models via inference.sh CLI. Models: FLUX Dev LoRA, FLUX.2 Klein LoRA, Gemini 3 Pro Image, Grok Imagine, Seedream 4.5, Reve, ImagineArt. Capabilities: text-to-image, image-to-image, inpainting, LoRA, image editing, upscaling, text rendering. Use for…

10 1mo ago A 183 tokens copy · 91% Apache-2.0

ai-video-generation

26

autohandai/community-skills

Skill Claude CodeCodex

Generate AI videos with Google Veo, Seedance, Wan, Grok and 40+ models via inference.sh CLI. Models: Veo 3.1, Veo 3, Seedance 1.5 Pro, Wan 2.5, Grok Imagine Video, OmniHuman, Fabric, HunyuanVideo. Capabilities: text-to-video, image-to-video, lipsync, avatar animation, video upscaling, foley sound. Use for: social…

10 1mo ago A 181 tokens copy · 94% Apache-2.0

algorithmic-art

27

autohandai/community-skills

Skill Claude CodeCodex

Creating algorithmic art using p5.js with seeded randomness and interactive parameter exploration. Use this when users request creating art using code, generative art, algorithmic art, flow fields, or particle systems. Create original algorithmic art rather than copying existing artists' work to avoid copyright…

10 1mo ago A 62 tokens copy · 100% Apache-2.0

analytics-tracking

28

autohandai/community-skills

Skill Claude CodeCodex

When the user wants to set up, improve, or audit analytics tracking and measurement. Also use when the user mentions "set up tracking," "GA4," "Google Analytics," "conversion tracking," "event tracking," "UTM parameters," "tag manager," "GTM," "analytics implementation," "tracking plan," "how do I measure this,"…

10 1mo ago A 134 tokens copy · 91% Apache-2.0

autohandai/community-skills

Skill Claude CodeCodex

Perform static analysis of Android APK malware samples using apktool for decompilation, jadx for Java source recovery, and androguard for permission analysis, manifest inspection, and suspicious API call detection.

10 1mo ago A 50 tokens original Apache-2.0

autohandai/community-skills

Skill Claude CodeCodex

Parses API Gateway access logs (AWS API Gateway, Kong, Nginx) to detect BOLA/IDOR attacks, rate limit bypass, credential scanning, and injection attempts. Uses pandas for statistical analysis of request patterns and anomaly detection. Use when investigating API abuse or building API-specific threat detection rules.

10 1mo ago A 72 tokens original Apache-2.0

autohandai/community-skills

Skill Claude CodeCodex

Analyze advanced persistent threat (APT) group techniques using MITRE ATT&CK Navigator to create layered heatmaps of adversary TTPs for detection gap analysis and threat-informed defense.

10 1mo ago A 48 tokens copy · 84% Apache-2.0

autohandai/community-skills

Skill Claude CodeCodex

Queries Azure Monitor activity logs and sign-in logs via azure-monitor-query to detect suspicious administrative operations, impossible travel, privilege escalation, and resource modifications. Builds KQL queries for threat hunting in Azure environments. Use when investigating suspicious Azure tenant activity or…

10 1mo ago A 68 tokens original Apache-2.0

autohandai/community-skills

Skill Claude CodeCodex

Analyzes bootkit and advanced rootkit malware that infects the Master Boot Record (MBR), Volume Boot Record (VBR), or UEFI firmware to gain persistence below the operating system. Covers boot sector analysis, UEFI module inspection, and anti-rootkit detection techniques. Activates for requests involving bootkit…

10 1mo ago A 94 tokens copy · 89% Apache-2.0

autohandai/community-skills

Skill Claude CodeCodex

Analyze Chromium-based browser artifacts using Hindsight to extract browsing history, downloads, cookies, cached content, autofill data, saved passwords, and browser extensions from Chrome, Edge, Brave, and Opera for forensic investigation.

10 1mo ago A 53 tokens copy · 88% Apache-2.0

autohandai/community-skills

Skill Claude CodeCodex

Campaign attribution analysis involves systematically evaluating evidence to determine which threat actor or group is responsible for a cyber operation. This skill covers collecting and weighting attr.

10 1mo ago A 38 tokens copy · 86% Apache-2.0

autohandai/community-skills

Skill Claude CodeCodex

Detect abnormal access patterns in AWS S3, GCS, and Azure Blob Storage by analyzing CloudTrail Data Events, GCS audit logs, and Azure Storage Analytics. Identifies after-hours bulk downloads, access from new IP addresses, unusual API calls (GetObject spikes), and potential data exfiltration using statistical baselines…

10 1mo ago A 79 tokens original Apache-2.0

autohandai/community-skills

Skill Claude CodeCodex

Parses Cobalt Strike malleable C2 profiles using pyMalleableC2 to extract beacon configuration, HTTP communication patterns, and sleep/jitter settings. Combines with JARM TLS fingerprinting to detect C2 servers on the network. Use when investigating suspected Cobalt Strike infrastructure or building detection…

10 1mo ago A 80 tokens original Apache-2.0

autohandai/community-skills

Skill Claude CodeCodex

Analyzes malware command-and-control (C2) communication protocols to understand beacon patterns, command structures, data encoding, and infrastructure. Covers HTTP, HTTPS, DNS, and custom protocol C2 analysis for detection development and threat intelligence. Activates for requests involving C2 analysis, beacon…

10 1mo ago A 80 tokens copy · 86% Apache-2.0

autohandai/community-skills

Skill Claude CodeCodex

Analyzes intrusion activity against the Lockheed Martin Cyber Kill Chain framework to identify which phases an adversary has completed, where defenses succeeded or failed, and what controls would have interrupted the attack at earlier phases. Use when conducting post-incident analysis, building prevention-focused…

10 1mo ago A 99 tokens copy · 97% Apache-2.0

autohandai/community-skills

Skill Claude CodeCodex

Analyzes DNS query logs to detect data exfiltration via DNS tunneling, DGA domain communication, and covert C2 channels using entropy analysis, query volume anomalies, and subdomain length detection in SIEM platforms. Use when SOC teams need to identify DNS-based threats that bypass traditional network security…

10 1mo ago A 73 tokens copy · 97% Apache-2.0