Queries Certificate Transparency logs via crt.sh and pycrtsh to detect phishing domains, unauthorized certificate issuance, and shadow IT. Monitors newly issued certificates for typosquatting and brand impersonation using Levenshtein distance. Use for proactive phishing domain detection and certificate monitoring.
Detect typosquatting, homograph phishing, and brand impersonation domains using dnstwist to generate domain permutations and identify registered lookalike domains targeting your organization.
Investigate USB device connection history from Windows registry, event logs, and setupapi logs to track removable media usage and potential data exfiltration.
Parse Apache and Nginx access logs to detect SQL injection attempts, local file inclusion, directory traversal, web scanner fingerprints, and brute-force patterns. Uses regex-based pattern matching against OWASP attack signatures, GeoIP enrichment for source attribution, and statistical anomaly detection for request…
Parse and analyze Windows Amcache.hve registry hive to extract program execution evidence, file metadata, SHA-1 hashes, and device connection history for digital forensics and incident response investigations.
Analyzes Windows Security, System, and Sysmon event logs in Splunk to detect authentication attacks, privilege escalation, persistence mechanisms, and lateral movement using SPL queries mapped to MITRE ATT&CK techniques. Use when SOC analysts need to investigate Windows-based threats, build detection queries, or…
Parse Windows LNK shortcut files to extract target paths, timestamps, volume information, and machine identifiers for forensic timeline reconstruction.
Parse Windows Prefetch files using the windowsprefetch Python library to reconstruct application execution history, detect renamed or masquerading binaries, and identify suspicious program execution patterns.
Analyze Windows Shellbag registry artifacts to reconstruct folder browsing activity, detect access to removable media and network shares, and establish user interaction with directories even after deletion using SBECmd and ShellBags Explorer.
Real-time monitoring of the parallel ANIMA build. Run this in Terminal 0 (supervisor terminal) on main branch. Shows all 5 builder lanes, PRD progress, test status, conflicts, and suggests next actions.
Purpose: Hand off coding tasks to OpenAI Codex for parallel execution. Use when you need a second implementation pass, deeper root-cause analysis, or want to offload substantial coding work.
Create a single-file hero.html marketing banner for any RobotFlow Labs repository. Industrial Cyberpunk design. Output: {repo}/assets/hero.html. Works for MLX ports, ANIMA modules, research projects — anything in the org.
Add the standardized ANIMA Docker serving setup to any module repository. This creates the files needed to serve the module as a Docker container with ROS2 node (primary) + FastAPI (secondary), auto-downloading weights from HuggingFace.
ANIMA Manifest Designer — Designs, validates, and evolves the three core YAML standards that define the ANIMA ecosystem: animamodule.yaml, animastack.yaml, animaprogram.yaml. This is the "npm package.json of robotics" — whoever defines this standard owns the ecosystem. Modes: MODULE (design module manifest), STACK…
Use this skill when: you need to convert a trained ANIMA module's model to Apple MLX format for on-device inference on Apple Silicon. Runs on Mac (NOT server).
Purpose: Package and push datasets to HuggingFace under ilessio-aiflowlab org. Creates proper dataset cards, splits, and metadata for public or private release.
Every ANIMA module must be a ROS2 node. This skill analyzes an existing module, builds the ROS2 layer (messages, node, Docker, launch file), and validates everything works. Based on the MONAD reference implementation (D-034).
Purpose: Launch, monitor, and send messages to Claude agents running in tmux sessions on the GPU server.
★not rated 2 5mo agoC0 tokens
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: