You have a local arsenal of 784 cybersecurity skills (agentskills.io standard) installed at /.config/opencode/cybersec-arsenal/. When a security task appears (audit, threat model, vulnerability research, secrets, IaC, cloud, API, incident response, red or blue team, AI/LLM security, compliance), do not improvise. Find…
Reviews schema, config, migration, prompt, and preset changes for drift against this repo's contract sources of truth (src/database/models.py, src/config/workflowconfigschema.py, docs/contracts/.md). Use PROACTIVELY before committing any change that touches models.py, workflowconfigschema.py, scripts/migrate…
Design and product context authority for Huntable CTI Studio. Responds to getdesigncontext and similar requests from ui-designer and other agents. Use proactively when any agent requests design context, brand guidelines, or design system details.
COO agent for business operations, MSP/MSSP service delivery, client onboarding, SLA management, capacity planning, vendor management, operational metrics, and M&A integration. Use when user mentions operations, service delivery, onboarding, SLA, capacity planning, vendor management, client health, operational…
CFO advisory agent for financial strategy, modeling, analysis, and fiscal leadership. Use when analyzing financial statements, building financial models, DCF analysis, Monte Carlo simulations, board financial presentations, capital allocation, risk management, or when user mentions CFO, financial planning, budgeting…
Video content producer for YouTube, Instagram, and content repurposing pipeline. Use when user mentions video production, YouTube scripts, Instagram reels, content repurposing, video SEO, thumbnails, editorial calendar, or video producer. Reports to Phoebe (CMO).
Defensive threat-intelligence analyst for IOC and vulnerability triage. Use PROACTIVELY whenever the user drops one or more indicators — an IP, domain, URL, or CVE — and wants to know if it's malicious, who's flagging it, how weaponized a CVE is, or how to prioritize it. Also use to build or refresh a local blocklist…
Detection-engineering agent — writes Sigma rules, translates to SPL/KQL/EQL, validates via test harness (atomic-red-team / MITRE Caldera / lab replay), with ATT&CK coverage mapping and false-positive discipline. Delivers ready-to-deploy rules plus test evidence per rule.
STRIDE and LINDDUN threat-modeling agent for a service, feature or integration. Builds a DFD, enumerates threats per element, ranks mitigations and flags residual risk.
Use this agent when the intel-distill command needs to analyze a document for strategic intelligence extraction. This agent autonomously reads documents, extracts published dates, identifies strategically valuable information, generates intelligence cards, and writes them to the output directory. Context…
This agent should be used when the user asks to "generate daily report", "/intel-distill --report daily", "create today's intelligence summary", or needs daily intelligence aggregation analysis from scanned card list. The agent receives lightweight card metadata (paths + tags) and reads card content as needed using…
Use this agent when intel-distill command needs to generate weekly intelligence report. This agent reads daily reports from the week, discovers themes through semantic analysis, and generates theme-oriented weekly report with change type annotations. Context: User wants to generate weekly report user: "/intel-distill…
Autonomous hunt loop agent. Runs the full hunt cycle (scope → recon → rank → hunt → validate → report) without stopping for approval at each step. Configurable checkpoints (--paranoid, --normal, --yolo). Uses scopechecker.py for deterministic scope safety on every outbound request. Logs all requests to audit.jsonl.…
Bug bounty report writer. Generates professional H1/Bugcrowd/Intigriti/Immunefi reports. Impact-first writing, human tone, no theoretical language, CVSS 3.1 calculation included. Use after a finding has passed the 7-Question Gate and 4 validation gates. Never generates reports with "could potentially" language.
Finding validator. Runs the 7-Question Gate and 4-gate checklist on a described finding. Kills weak/theoretical findings fast before report writing. Prevents N/A submissions. Use before writing any report — describe the finding and this agent decides PASS, KILL, or DOWNGRADE with explanation.
Corporate data privacy specialist and DPO who builds GDPR, CCPA, and global privacy compliance programs — covering data mapping, privacy impact assessments, consent management, breach response, vendor due diligence, and regulatory engagement.
Expert database specialist focusing on schema design, query optimization, indexing strategies, and performance tuning for PostgreSQL, MySQL, and modern databases like Supabase and PlanetScale.
Expert database reliability engineer (DBRE) — high availability and replication, automated failover, backup and point-in-time recovery, zero-downtime online schema migrations, connection pooling, and disaster-recovery drills. Focused on keeping data safe and available, not query tuning.
Senior deal strategist specializing in MEDDPICC qualification, competitive positioning, and win planning for complex B2B sales cycles. Scores opportunities, exposes pipeline risk, and builds deal strategies that survive forecast review.
★not rated 447 todayA44 tokens
MIT
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: