DanDye
Community@dandye · Tampa, FL
AI Engineer at Google Cloud Security; Pythonista; Djangster
Agent Skills by DanDye
Showing 32 vetted skills indexed across 1 GitHub repositories.
respond-compromised-account
Coordinate PICERL-based incident response to detect, contain, eradicate, and recover compromised accounts.
pivot-on-ioc
Pivot on an IOC to discover related GTI entities and relationships.
close-case-artifact
Close cases or alerts with closure reason, root cause, and justification comment.
design-metadata-schema
Define Dublin Core-aligned metadata schemas for content assets in JSON-schema, XML, or Markdown with validation rules and mappings.
enrich-ioc
Enrich IOC indicators with GTI and Chronicle SIEM context to output threat findings and summaries.
triage-suspicious-login
Triages suspicious login alerts and outputs LOGIN_VERDICT with risk scores.
respond-phishing
Guide phishing incident response through a PICERL workflow across mail gateways and SIEM.
inventory-content
Catalog information assets and extract metadata across a path into JSON, CSV, or Markdown.
confirm-action
Prompts users for confirmation before irreversible automated actions are executed.
generate-taxonomy
Generate a hierarchical taxonomy with facets and a TAXONOMY_DEFINITION document.
generate-sitemap
Generate hierarchical sitemaps from a site path in Mermaid, XML, SVG, or Markdown formats.
audit-content
Audit documentation quality, freshness, and structure into a CONTENT_AUDIT_REPORT markdown.
triage-malware
Triage malware hashes with GTI and SIEM enrichment for classification and containment.
generate-thesaurus
Extract frequently used terms from content and structure them into a controlled vocabulary thesaurus.
check-duplicates
Compare CASE_ID against ALERT_GROUP_IDENTIFIERS to detect duplicate cases.
respond-ransomware
Coordinate ransomware response phases using the PICERL framework.
hunt-ioc
Parse IOC lists, query SIEMs, and enrich matched indicators.
correlate-ioc
Correlate IOC lists against SIEM alerts and SOAR cases.
deep-dive-ioc
Aggregate GTI reports, SIEM findings, and related entities for a single IOC.
hunt-credential-access
Hunt credential access techniques across SIEM telemetry using MITRE IDs and threat intel.
generate-report
Creates timestamped, type-labeled Markdown reports in ./reports from provided content and labels.
cluster-documents
Group documents by content similarity and topic using NLP vectorization and labeling.
triage-alert
Triage security alerts to distinguish real threats from false positives.
analyze-content-gaps
Compare documentation against user needs and benchmarks to generate a prioritized gap analysis report.