security-best-practices
Implement enterprise-grade security in Next.js systems with RBAC, CSRF protection, CSP, audit logging, and tenant isolation. Use when securing admin portals, APIs, and multi-tenant applications.
Implement enterprise-grade security in Next.js systems with RBAC, CSRF protection, CSP, audit logging, and tenant isolation. Use when securing admin portals, APIs, and multi-tenant applications.
Implement Electron desktop app patterns for PhotoVault bulk uploader. Use when working with main/renderer process communication, chunked uploads, preload scripts, protocol handlers, or auto-updater. Includes security patterns and memory management for large file uploads.
Guide for using MCPKit Swift package to build MCP (Model Context Protocol) tool servers. Use when creating new MCP servers, defining tools, or integrating MCP into Swift projects.
Backend development with tRPC v11, Prisma v6, and Neon PostgreSQL. Use when creating API routes, database operations, validation, or server logic. Triggers: "tRPC", "router", "API", "endpoint", "database", "Prisma", "query", "mutation", "backend".
Frontend-backend integration patterns, CORS configuration, API contract validation, and build hygiene for full-stack TypeScript applications. Use when integrating separate services or debugging cross-origin issues.
Advanced TypeScript development with full type safety. Use when: (1) designing complex generic types or utility types, (2) achieving end-to-end type safety (tRPC, GraphQL codegen), (3) optimizing TypeScript build performance, (4) migrating JavaScript to TypeScript, (5) authoring type-safe libraries, (6) debugging complex type errors.
Next.js 16 frontend best practices for Splits Network portal and candidate apps
Complete guide to building a voting system with Next.js, Supabase, daily vote limits, and Vercel deployment
Python full-stack with FastAPI, React, PostgreSQL, and Docker.
Build the React application and deploy to Hostinger via SSH. Use when user asks to deploy, publish, or push changes to production/hosting.
Comprehensive guide for building Django web applications following Django 5.2 standards and industry best practices. Use when developing Django projects, implementing models/views/templates, configuring settings, handling forms, ensuring security, or deploying Django applications.
Frontend model structure patterns. Use when creating a new model (e.g., user, product), adding list/detail pages, or asking about model architecture in front/src/model/.
Build robust backend systems with modern technologies (Node.js, Python, Go, Rust), frameworks (NestJS, FastAPI, Django), databases (PostgreSQL, MongoDB, Redis), APIs (REST, GraphQL, gRPC), authentication (OAuth 2.1, JWT), testing strategies, security best practices (OWASP Top 10), performance optimization, scalability patterns (microservices, caching, sharding), DevOps practices (Docker, Kubernetes, CI/CD), and monitoring. Use when designing APIs, implementing authentication, optimizing database queries, setting up CI/CD pipelines, handling security vulnerabilities, building microservices, or developing production-ready backend systems.
Ring core middleware for Clojure. Use when working with parameter parsing, sessions, cookies, flash messages, static files, or composing middleware stacks. Triggers on ring.middleware, wrap-params, wrap-session, wrap-cookies, or middleware composition questions.
Set up Hono-based type-safe IPC architecture for Electron applications. Use when implementing IPC communication, creating routes between main and renderer processes, or migrating from traditional ipcRenderer to type-safe RPC.
Understand and adhere to the project's technology stack including Laravel, PHP, React, PostgreSQL, Pest, Tailwind CSS, and all configured tools and services. Use this skill when making architectural decisions, when choosing libraries or packages, when configuring development tools, when setting up testing frameworks, when implementing authentication, when integrating third-party services, when configuring CI/CD pipelines, when setting up local development environments, or when ensuring consistency with the established tech stack across all parts of the application.
Specialized agent for BarqNet backend development. Focuses on Go backend API development, PostgreSQL database management, authentication systems, JWT tokens, OpenVPN integration, and production-ready backend architecture. Use this skill when working on server-side code, API endpoints, database migrations, or backend infrastructure.
JavaScript ES2024+ development specialist covering Node.js 22 LTS, Bun 1.x (serve, SQLite, S3, shell, test), Deno 2.x, testing (Vitest, Jest), linting (ESLint 9, Biome), and backend frameworks (Express, Fastify, Hono). Use when developing JavaScript APIs, web applications, or Node.js projects.
瞬作のWeb実装サブスキル。shunsakuから呼び出され、ハンドオフ契約に基づいてNext.js/Reactプロトタイプを実装する。直接呼び出しは非推奨(先にshunsakuで問診を完了すること)。