.fyi
SkillsMCPPluginsSubagents

Browse by category

DevOps & CI/CD SkillsProductivity & Workflow SkillsOther SkillsProduct & Project Management SkillsDocumentation & Knowledge SkillsCode Review & Refactor SkillsBackend & APIs SkillsAgent Meta & Communication SkillsResearch SkillsSecurity SkillsUX UI & Design SkillsTesting & QA SkillsSee all →

Every Claude Code skill, MCP server, plugin and subagent in one directory. Searchable, comparable, and one command from installed. Live stats from GitHub, npm and PyPI.

We're on Product HuntYour agent's app storeCheck it out →
Agent SkillsMCP ServersPluginsSubagentsCoding Agents
CollectionsOfficial publishersGlossaryFAQBlogSearchSavedFeedback
PrivacyTermsllms.txtSitemap

made with ♥ · © 2026 aaaa.fyi

Independent project · real data from public registries

…/microsoft/hve-core
home/skills/microsoft/hve-core
microsoft avatar

microsoft/hve-core

54 skills · 555 total installs

View on GitHub
$npx skills add microsoft/hve-core
SkillInstalls
powerpointPowerPoint slide deck generation and management using python-pptx with YAML-driven content and styling316owasp-top-10OWASP Top 10 for Web Applications (2025) knowledge base for identifying, assessing, and remediating web application security risks.180owasp-agenticOWASP Agentic Security Top 10 knowledge base for identifying, assessing, and remediating AI agent system security risks.59accessibilityConsolidated accessibility skill entrypoint for WCAG 2.2, ARIA Authoring Practices, cognitive accessibility, Section 508, EN 301 549, and the Accessibility…—adr-authorAuthoring skill for Architecture Decision Records (ADRs) supporting capture, from-planner-handoff, and adopt-template entry modes with selectable Y-Statement…—architecture-diagramsArchitecture diagram authoring for cloud infrastructure: parse Azure IaC, map relationships, and render either ASCII block diagrams or Mermaid flowcharts based…—backlog-templatesShared work-item templates and conventions for ADO and GitHub backlog handoff across the RAI, Security, SSSC, Accessibility, and Privacy planners—cavemanUltra-compressed response style that reduces output token count while preserving technical accuracy, with intensity levels and auto-clarity safety rules—code-reviewReview code changes from multiple perspectives with context bootstrap, depth-tier rigor, and structured findings output.—customer-card-renderGenerate customer-card PowerPoint content YAML from Design Thinking canonical artifacts and build using the shared PowerPoint skill pipeline—documentationCanonical documentation capability for audit, drift, validate, and author modes in hve-core.—dt-coaching-foundationDesign Thinking coaching foundation knowledge: coach identity and philosophy, quality and fidelity constraints, method sequencing, coaching state schema, and…—dt-curriculumDesign Thinking learning curriculum covering nine progressive modules across the full Problem, Solution, and Implementation Space methods plus a shared…—dt-methodsDesign Thinking method coaching knowledge across all nine methods including per-method techniques, deep expertise, and industry context (energy, financial…—dt-rpi-integrationDesign Thinking handoff knowledge for research-ready rpi-research inputs and DT-aware rpi-plan, rpi-implement, and rpi-review context—gh-code-scanningRetrieves and groups GitHub code scanning alerts by rule and severity using the gh CLI—gitlabManage GitLab merge requests and pipelines with a Python CLI—hve-builderAuthor, review, or validate Copilot prompt-engineering artifacts through independent review, behavior testing, and host checks.—hve-builder-testerTest HVE artifact behavior with black-box scenarios, contained simulation or approved native execution, independent grading, and evidence reports.—hve-core-installerDecision-driven HVE-Core installer with multiple clone-based and extension install methods, environment detection, and agent customization—jiraJira issue workflows for search, issue updates, transitions, comments, and field discovery via the Jira REST API.—muralMural workspace, room, mural, and widget workflows via the Mural REST API exposed through a Python CLI.—owasp-cicdOWASP CI/CD Top 10 knowledge base for identifying, assessing, and remediating CI/CD pipeline security risks.—owasp-dockerOWASP Docker Top 6 knowledge base for identifying, assessing, and remediating Docker container security risks.—owasp-infrastructureOWASP Infrastructure Top 10 knowledge base for identifying, assessing, and remediating internal IT infrastructure security risks.—owasp-llmOWASP Top 10 for LLM Applications (2025) knowledge base for identifying, assessing, and remediating large language model security risks.—owasp-mcpOWASP MCP Top 10 knowledge base for identifying, assessing, and remediating Model Context Protocol security risks.—pr-referenceGenerates PR reference XML with commit history and unified diffs between branches, with extension and path filtering.—privacy-standardsPrivacy planning reference for data-flow reasoning, standards mapping, and DPIA thresholds—prompt-analyzeCompatibility alias for read-only prompt artifact review. Routes static and behavior analysis to hve-builder review mode.—prompt-builderCompatibility alias for legacy prompt-building requests. Routes creation and improvement to the hve-builder skill.—prompt-refactorCompatibility alias for behavior-preserving prompt artifact cleanup. Routes refactoring to hve-builder refactor mode.—python-foundationalFoundational Python best practices, idioms, and code quality fundamentals—rai-plannerOn-demand RAI planner reference pack covering Phase 1 capture, Phase 2 risk classification, Phase 5 impact assessment, and Phase 6 review and backlog handoff.—rai-standardsConsolidated Responsible AI standards reference: NIST AI RMF 1.0, AI STRIDE threat-modeling overlay, EU AI Act risk tiers, and an open-standards catalog with…—requirements-authorRequirements authoring guide for BRD and PRD across Discover, Define, and Govern with canonical templates and handoff contracts—rpi-challengerChallenge a confirmed task, decision, plan, or artifact through adaptive skeptical questions. Use when you need to expose assumptions before acting.—rpi-implementExecute an approved RPI plan, maintain current planning state, and record implementation evidence. Use when implementation is ready to begin or resume.—rpi-planCreate evidence-based RPI plans and phase details from supplied context, research, drafts, and decisions. Use when implementation planning is needed.—rpi-plan-critiqueIndependently critique an RPI plan and phase details against supplied evidence without editing plan sources.—rpi-quickSequence Research, Plan, Implement, Review, and Follow-up for an RPI task. Use when one workflow should coordinate the full delivery lifecycle.—rpi-researchResearch-only RPI playbook that gathers task evidence, writes dated research artifacts under .copilot-tracking/research/, and hands off planning-ready…—rpi-reviewCompare RPI planning and implementation evidence, record review findings, and route follow-up work. Use when an implementation needs acceptance review.—rpi-walkthroughGuided, conversational walkthrough that explains code, UI, UX, features, or .copilot-tracking artifacts with navigable evidence links, deep subagent review,…—secure-by-designSecure by Design principles knowledge base for assessing security-first design, development, and deployment across the software lifecycle.—security-planningSecurity planning reference set for operational buckets, STRIDE analysis, standards mapping, NIST control families, and backlog scaffolding.—security-reviewer-formatsFormat specifications and data contracts for the security reviewer orchestrator and its subagents.—supply-chain-securitySoftware supply chain security reference for OpenSSF Scorecard, SLSA, Sigstore, SBOM, and posture/backlog taxonomies.—telemetry-foundationsDeclarative OpenTelemetry-aligned telemetry vocabulary and instrumentation conventions for traces, metrics, logs, and PII handling—tts-voiceoverText-to-speech voice-over generation from YAML speaker notes using Azure Speech SDK with SSML pronunciation control—vally-testsAuthors Vally conformance tests for prompts, instructions, agents, and skills, including refusals for jailbreak, prompt-injection, harmful-elicitation, TOS,…—vexOpenVEX v0.2.0 specification reference plus VEX management playbooks - Brought to you by microsoft/hve-core.—video-to-gifVideo-to-GIF conversion with FFmpeg two-pass optimization—vscode-playwrightVS Code screenshot capture using Playwright MCP with serve-web for slide decks and documentation—