Documentation

Specialized Plugins: scope and review

The repository currently defines 21 specialized plugins, each with 5–10 skills. These are curated instruction bundles for concrete jobs. They do not install service accounts, browsers, cloud infrastructure or authenticated connectors, and they do not require every included framework to be used on every task.

Canonical definitions

The source definitions, generated plugin manifests and published release are separate states. Updating this shortlist does not publish a release or update installed copies. See the plugin installation guide.

Reviewed product scope — 2026-09-05

This pass checked the 21 compositions against the current 2,113-entry catalog and sharpened their descriptions, starter briefs and adjacent-product boundaries. It is an editorial and packaging review, not proof that every included procedure has been executed successfully in every environment. The internal tier labels are historical prioritization, not reliability grades.

PluginSkillsIntended result
AAS Web App Builder10Implement a React/Next.js user journey with responsive UI, accessibility checks and browser verification.
AAS Product Design Studio10Turn a product brief into a coherent visual direction, responsive interface and actionable design review.
AAS Security Engineer10Assess explicitly authorized targets and produce reproducible findings, remediation priorities and retest steps.
AAS Secure App Builder9Implement authentication, access control and data protection with negative tests and a focused security review.
AAS Documents & Presentations9Produce editable office files and PDFs, with content checks and rendered output review.
AAS Data Analytics10Validate source data, write analytical queries and produce a dashboard or experiment readout with traceable definitions.
AAS Agent & MCP Builder10Build a bounded agent or MCP tool with explicit interfaces, failure handling and behavioral evaluation.
AAS QA & Test Automation10Reproduce failures, add meaningful regression coverage and stabilize browser or service tests.
AAS DevOps & Cloud10Prepare infrastructure and delivery changes with validation, rollback steps and explicit deployment boundaries.
AAS Marketing, SEO & Growth10Create an acquisition plan and channel assets grounded in the supplied audience, product and search evidence.
AAS Automation Builder10Design an automation with explicit triggers, mappings, retries and a reviewable test run.
AAS Observability IR10Connect logs, metrics and traces to incident diagnosis, recovery checks and a documented follow-up.
AAS Python API Builder10Implement Python service endpoints with schema validation, async boundaries and automated tests.
AAS Mobile App Builder10Implement a mobile feature in the chosen stack and prepare platform-specific build and release checks.
AAS Accessibility & Inclusive UX8Find and fix accessibility barriers with keyboard, automated and screen-reader checks appropriate to the interface.
AAS API Platform Builder10Define and implement API contracts, authorization, documentation and service verification across languages.
AAS SaaS Launch & Revenue10Connect MVP scope, pricing, payments and launch assets into a concrete launch-readiness review.
AAS AI Product & Evaluation Ops10Define AI feature success criteria, representative evaluation cases and a decision-ready error analysis.
AAS Data Engineering Platform10Build ingestion and transformation pipelines with data contracts, quality checks and recovery planning.
AAS Privacy & Compliance Engineering5Map data flows to engineering controls and evidence gaps for a scoped privacy or compliance review.
AAS Localization & International Growth10Prepare locale-aware interfaces and content with language, routing and international SEO checks.

Composition changes

Choosing between related plugins

DecisionChoose
Implement a web user journey / develop visual directionWeb App Builder / Product Design Studio
Implement defensive controls / conduct an authorized security assessmentSecure App Builder / Security Engineer
Interpret business data / build production ingestion and transformationsData Analytics / Data Engineering Platform
Build an agent or MCP tool / decide how to evaluate an AI featureAgent & MCP Builder / AI Product & Evaluation Ops
Implement a Python service / design framework-neutral API contractsPython API Builder / API Platform Builder
Prepare deployments / diagnose an operational incidentDevOps & Cloud / Observability IR
Prepare pricing, payment and launch readiness / produce acquisition assetsSaaS Launch & Revenue / Marketing, SEO & Growth

Use and verification

Open the complete included-skill list before installation. The first starter prompt specifies an input and deliverable; adapt it to the actual project and available tools. For multi-framework plugins, use the existing project stack rather than installing all alternatives. For Google Workspace, Composio-backed automations, cloud tooling and model providers, configure the separately required access before live operations.

Review scope, actual checks and omissions in the result. Browser checks do not prove all accessibility requirements, an evaluation plan is not a completed evaluation, and a control checklist is not legal certification. Publishing, sending messages, active security testing and production changes need the authorization applicable to the task.

Maintainer verification

Run skill validation, reference validation, docs security, the specialized-plugin source/packaging regression, bundle generation/checks, and the web tests/build. Verify complete web membership, expanded skill links, scope/brief visibility, filtering and release-bound links. Reject stale counts in the live-verifier fixture and inspect the built /plugins/ title and JSON-LD before any separately approved deployment.

Resolved skill-content findings — follow-up

A scan of explicit local references/ and resources/ links in the selected skill entrypoints found 30 distinct missing targets across 23 skills. These were existing content defects, not missing files introduced by bundle generation. The follow-up supplies all 30 targets and the formerly selected hardening checklist. It also replaces unsupported template/script promises with actual inline procedures or available-integration workflows. The regression now checks prose-declared resources, references, assets and scripts across every selected entrypoint and verifies resource bytes in specialized distributions. Fenced application paths are excluded because they may belong to the target project; this is not a claim that every example has been run against live services.

SkillMissing targets
backend-security-coderresources/implementation-playbook.md
business-analystresources/implementation-playbook.md
devops-troubleshooterresources/implementation-playbook.md
distributed-tracingreferences/jaeger-setup.md, resources/implementation-playbook.md, references/instrumentation.md
django-proresources/implementation-playbook.md
embedding-strategiesresources/implementation-playbook.md
fastapi-proresources/implementation-playbook.md
frontend-security-coderresources/implementation-playbook.md
github-actions-templatesreferences/common-workflows.md, resources/implementation-playbook.md
grafana-dashboardsreferences/dashboard-design.md, resources/implementation-playbook.md
incident-responderresources/implementation-playbook.md
ios-developerresources/implementation-playbook.md
kpi-dashboard-designresources/implementation-playbook.md
mobile-developerresources/implementation-playbook.md
multi-platform-apps-multi-platformresources/implementation-playbook.md
observability-and-instrumentationreferences/observability-checklist.md
pci-complianceresources/implementation-playbook.md
postmortem-writingresources/implementation-playbook.md
secrets-managementreferences/github-secrets.md, references/vault-setup.md
seo-content-plannerresources/implementation-playbook.md
seo-content-writerresources/implementation-playbook.md
slo-implementationreferences/slo-definitions.md, resources/implementation-playbook.md, references/error-budget.md
vector-database-engineerresources/implementation-playbook.md

Follow-up verification scope

Expanding the same scan to prose-declared assets and scripts found 51 missing targets across 28 skill entrypoints, including the original 30. All are now supplied or replaced with an actual inline/available-tool workflow. Added companion documents are locally authored procedures, not claimed recoveries of upstream files.