Loading...
Loading...
Found 1,001 Skills
Tomba.io platform help — domain search, email finder, email verifier, enrichment, author finder, LinkedIn finder, phone finder, bulk operations, browser extensions, API, integrations. Use when asking 'how do I do X in Tomba', finding emails with Tomba, verifying emails in Tomba, enriching contacts with Tomba, using the Tomba API, setting up Tomba integrations, or managing Tomba leads/lists. Do NOT use for enrichment strategy across tools (use /sales-enrich), building prospect lists (use /sales-prospect-list), cross-platform deliverability (use /sales-deliverability), or connecting tools generically (use /sales-integration).
Analyze a user's codebase to verify it can use Runway's public API (server-side requirement)
Review Express.js security audit patterns for middleware and routes. Use for auditing Helmet.js, CORS, body-parser limits, and auth middleware. Use proactively when reviewing Express.js apps. Examples: - user: "Secure my Express app" → add Helmet.js and disable x-powered-by - user: "Check Express CORS config" → verify origin allowlists and credentials - user: "Review Express auth middleware" → check route order and coverage - user: "Scan for Express path traversal" → verify path normalization and validation - user: "Audit Express session config" → check secure, httpOnly, and sameSite flags
Headless browser testing via persistent Bun.WebView session. Use when testing frontend UI, verifying page content, filling forms, clicking buttons, taking screenshots, or interacting with local or staging web applications. Triggers on phrases like "test the page", "check the UI", "browse to", "fill the form", "click the button", "take a screenshot".
Runs the Metabase semantic checker against a tree of Representation Format YAML files to verify that all references resolve — cross-entity references (collection_id, dashboard_id, parent_id, parameter source cards, snippet references, transform tags, etc.) and references to columns inside MBQL and native queries. Use when the user asks to "semantic check", "check references", "validate queries against the schema", or diagnose a broken reference. Requires database metadata on disk (by default `.metabase/metadata.json`).
Build and test iOS apps on simulator using XcodeBuildMCP. Use after making iOS code changes, before creating a PR, or when verifying app behavior and checking for crashes on simulator.
Launch and verify Dream local resources by hostname using hosts mappings and universe/substrate ports.
Must be used when users explicitly request "recommend submission journals", "help me choose SCI journals for my paper", "which journals is this manuscript suitable for", "journal matching/journal selection/submission suggestions". Applicable to scenarios where users provide full text, abstracts, Markdown, LaTeX, PDF, Word, or mixed materials; This skill will first use the built-in `2023IF.xlsx` to perform minimum hard filtering to generate a candidate pool based on the manuscript and user preferences, then the host model will independently plan Set1/Set2/Set3, verify the scope / quality / PubMed papers of the last 3 months via the internet, and finally output a Markdown journal selection report sorted by recommendation level. ⚠️ Not applicable: Users only want to polish papers, only want to translate abstracts, or only ask about the official website information of a single journal without needing systematic journal selection.
Replicate and validate a GitHub issue by spinning up Archon, analyzing the issue, and systematically testing all described symptoms using browser automation. Use when: User wants to reproduce a bug, validate a GitHub issue, confirm a reported problem, or investigate whether an issue is real before working on a fix. Triggers: "replicate issue", "reproduce issue", "validate issue", "confirm bug", "test issue", "can you reproduce", "try to replicate", "verify the bug". Capability: Checks out main, pulls latest, starts Archon, reads the GitHub issue, then uses agent-browser to systematically test every symptom and produce a findings report. NOT for: Fixing issues (use /archon or /exp-piv-loop:fix-issue), general UI testing (use /validate-ui).
Create git commits in Conventional Commits format. Estimate type/scope from staged changes, detect breaking changes and secret leaks (such as .env files). Must pass pre-commit hooks (`--no-verify` is not allowed). Use with instructions like "commit", "git commit", "record changes".
Eight-axis judgment code review for the current diff — Correctness, Simplification, Tests, Documentation, Style, Intent, Design/API, Performance (+ Coherence on metadata changes). Five-phase pipeline scope → deterministic tool battery (npx/uvx-preferred, zero-install for the JS + Python majority) → 8 parallel LLM axis reviewers → Haiku validators on sub-80 findings (verbatim rubric, ≥80 threshold) → synthesis with no-silent-drop + Conventional Comments JSONL. Every report closes with "What I did NOT check" (security → /security-review, runtime perf, flaky detection). Opt-in flags `--verify-build`, `--mutation-test`, `--reconcile`, `--apply-safe`. Public-skill posture — zero auto-install, graceful skip on missing native tools.
Volcengine Doubao Search API (formerly Web Search/Fused Information Search), returns web page/image results. Prioritize using this skill for web search scenarios. Trigger words include: Doubao Search, check/search/find, is it true/reliable/confirm/verify, recent/today/latest/recent period, source/origin/link, Agent Plan, Fused Information Search, Harness, what are there/recommendations, price/policy/exchange rate/market trend, comparison/difference/which is better, I heard/said/not sure, hot search/popular/trending, help me look/understand, verify/rumor refutation, is it worth it/should I. Prioritize use when tasks rely on online facts or timeliness. If the answer may depend on external facts, call this skill first before answering.