JustineDevs/premortem

An agentic system that performs swarm-style repository audits and synthesizes structured GitLab/Github issues.

2Stars on the repository
200Mods indexed here, across every type
1mo agoLast push, which is what freshness is scored on
Apache-2.0Licence, which decides whether bodies are shown

legal-risk-assessment

121

JustineDevs/premortem

Skill Claude CodeCodex

Assess and classify legal risks using a severity-by-likelihood framework with escalation criteria. Use when evaluating contract risk, assessing deal exposure, classifying issues by severity, or determining whether a matter needs senior counsel or outside legal review.

not rated 2 1mo ago A 50 tokens copy · 100% Apache-2.0

linux-security-bypass

122

JustineDevs/premortem

Skill Claude CodeCodex needs its repo

Linux security mechanism bypass playbook. Use when facing restricted bash/rbash, read-only or noexec filesystems, AppArmor, SELinux, seccomp filters, or audit logging that must be evaded during post-exploitation.

not rated 2 1mo ago C 51 tokens copy · 100% Apache-2.0

invariant-guardrails

123

JustineDevs/premortem

Skill Claude CodeCodex

Invariant Guardrails for agent trace policies, tool-call rules, and MCP/LLM proxy guardrails. Use when designing rule-based guardrails beyond @premortem/security string checks, or when scoping Invariant Gateway integration.

not rated 2 1mo ago A 52 tokens original Apache-2.0

promptfoo-evals

124

JustineDevs/premortem

Skill Claude CodeCodex

Write, refine, run, and QA promptfoo evaluation suites for Premortem: promptfooconfig.yaml, providers, vars, tests, assertions, and CI gates. Use for canonical prompt regression in @premortem/evals. Do not use for adversarial redteam plugin setup (see security/llm-security).

not rated 2 1mo ago A 71 tokens copy · 88% Apache-2.0

llm-prompt-injection

125

JustineDevs/premortem

Skill Claude CodeCodex

LLM prompt injection playbook. Use when testing AI/LLM applications for direct injection, indirect injection via RAG/browsing, tool abuse, data exfiltration, MCP security risks, and defense bypass techniques.

not rated 2 1mo ago D 52 tokens copy · 100% Apache-2.0

JustineDevs/premortem

Skill Claude CodeCodex

Skill "macos-process-injection" from JustineDevs/premortem, covering skill: macos process injection — expert attack playbook, 0. related routing, advanced reference, 1. dyldinsertlibraries injection and 1.1 requirements and restrictions.

not rated 2 1mo ago A 53 tokens copy · 100% Apache-2.0

JustineDevs/premortem

Skill Claude CodeCodex

Memory forensics playbook using Volatility 2/3. Use when analyzing memory dumps for malware analysis, credential extraction, process investigation, code injection detection, and incident response timeline reconstruction.

not rated 2 1mo ago A 44 tokens copy · 100% Apache-2.0

JustineDevs/premortem

Skill Claude CodeCodex

Migrates Nango syncs from deleteRecordsFromPreviousExecutions()/trackDeletes to trackDeletesStart/trackDeletesEnd for automated deletion detection (including checkpoint-based full refresh). Use when updating existing createSync code.

not rated 2 1mo ago A 53 tokens original Apache-2.0

JustineDevs/premortem

Skill Claude CodeCodex

Migrates existing Nango TypeScript createSync implementations from nango.lastSyncDate, legacy incremental syncType, and non-resumable full refreshes to checkpoint-based syncs. Use when updating customer Nango sync code to define checkpoint schemas, call getCheckpoint/saveCheckpoint/clearCheckpoint after every…

not rated 2 1mo ago A 94 tokens original Apache-2.0

JustineDevs/premortem

Skill Claude CodeCodex needs its repo

Manually migrates legacy nango.yaml Nango projects to Zero YAML TypeScript by generating models.ts, index.ts, package/tsconfig scaffolding, and wrapping legacy scripts in createSync(), createAction(), or createOnEvent(). Use when a Nango repo still has nango.yaml and needs manual Zero YAML migration.

not rated 2 1mo ago A 85 tokens original Apache-2.0

JustineDevs/premortem

Skill Claude CodeCodex

Mobile SSL pinning bypass playbook. Use when intercepting HTTPS traffic from mobile applications that implement certificate pinning, public key pinning, or SPKI hash pinning on Android and iOS, including React Native, Flutter, and Xamarin frameworks.

not rated 2 1mo ago B 58 tokens copy · 100% Apache-2.0

nango-toolbox

132

JustineDevs/premortem

Skill Claude CodeCodex

Universal gateway for any third-party API or SaaS (Google Calendar, Gmail, Slack, Notion, Linear, HubSpot, etc.). TRIGGER on any request to read or modify data in an external product, even when no matching MCP tool is loaded.

not rated 2 1mo ago A 57 tokens original Apache-2.0

JustineDevs/premortem

Skill Claude CodeCodex

Network protocol attack playbook. Use when exploiting layer 2/3 protocols including ARP spoofing, LLMNR/NBT-NS/mDNS poisoning, WPAD abuse, DHCPv6 attacks, VLAN hopping, STP manipulation, DNS spoofing, IPv6 attacks, and IDS/IPS evasion.

not rated 2 1mo ago A 69 tokens copy · 100% Apache-2.0

nosql-injection

134

JustineDevs/premortem

Skill Claude CodeCodex

NoSQL injection playbook. Use when MongoDB-style operators, JSON query objects, flexible search filters, or backend query DSLs may allow data or logic abuse.

not rated 2 1mo ago A 38 tokens copy · 100% Apache-2.0

ntlm-relay-coercion

135

JustineDevs/premortem

Skill Claude CodeCodex

NTLM relay and authentication coercion playbook. Use when capturing and relaying NTLM authentication to escalate privileges via SMB, LDAP, HTTP, or MSSQL relay targets, combined with PetitPotam, PrinterBug, and other coercion methods.

not rated 2 1mo ago A 58 tokens copy · 100% Apache-2.0

JustineDevs/premortem

Skill Claude CodeCodex

OAuth and OIDC misconfiguration testing playbook. Use when reviewing redirect URI handling, state and nonce validation, PKCE, token audience, callback binding, and identity-provider trust flaws.

not rated 2 1mo ago A 45 tokens copy · 100% Apache-2.0

open-redirect

137

JustineDevs/premortem

Skill Claude CodeCodex

Open redirect playbook. Use when URL parameters, form actions, or JavaScript sinks control navigation targets and may redirect users to attacker-controlled destinations.

not rated 2 1mo ago C 33 tokens copy · 100% Apache-2.0

JustineDevs/premortem

Skill Claude CodeCodex

Automatically add PostHog analytics instrumentation to code. Triggers when user asks to add tracking, instrument events, add analytics, or implement feature flags in their codebase.

not rated 2 1mo ago A 40 tokens copy · 100% Apache-2.0

privacy-policy

139

JustineDevs/premortem

Skill Claude CodeCodex

Draft a detailed privacy policy covering data types, jurisdiction, GDPR and compliance considerations, and clauses needing legal review. Use when creating a privacy policy, updating data protection documentation, or preparing for compliance.

not rated 2 1mo ago A 42 tokens copy · 100% Apache-2.0

grill-me

140

JustineDevs/premortem

Skill Claude CodeCodex

Interview the user relentlessly about a plan or design until reaching shared understanding, resolving each branch of the decision tree. Use when user wants to stress-test a plan, get grilled on their design, or mentions "grill me".

not rated 2 1mo ago A 49 tokens copy · 92% Apache-2.0

JustineDevs/premortem

Skill Claude Code

Sets up an ## Agent skills block in AGENTS.md/CLAUDE.md and docs/agents/ so the engineering skills know this repo's issue tracker (GitHub or local markdown), triage label vocabulary, and domain doc layout. Run before first use of to-issues, to-prd, triage, diagnose, tdd, improve-codebase-architecture, or zoom-out — or…

not rated 2 1mo ago A 124 tokens copy · 97% Apache-2.0

programmatic-seo

142

JustineDevs/premortem

Skill Claude CodeCodex

When the user wants to create SEO-driven pages at scale using templates and data. Also use when the user mentions "programmatic SEO," "template pages," "pages at scale," "directory pages," "location pages," "[keyword] + [city] pages," "comparison pages," "integration pages," "building many pages for SEO," "pSEO,"…

not rated 2 1mo ago A 132 tokens copy · 100% Apache-2.0

JustineDevs/premortem

Skill Claude CodeCodex needs its repo

Advanced prototype pollution playbook — server-side RCE, client-side gadgets, filter bypasses, and detection techniques. Companion to ../prototype-pollution/ for basics. Use when you've confirmed pollution and need to escalate to code execution or find framework-specific gadgets.

not rated 2 1mo ago A 59 tokens copy · 100% Apache-2.0

prototype-pollution

144

JustineDevs/premortem

Skill Claude CodeCodex

Prototype pollution testing for JavaScript stacks. Use when user input is merged into objects (query parsers, JSON bodies, deep assign), when configuring libraries via untrusted keys, or when hunting RCE gadgets via polluted Object.prototype in Node or the browser.

not rated 2 1mo ago A 56 tokens copy · 100% Apache-2.0

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: