brand-design
Pick a brand name, color palette, or typography for a Sui product. Use when the user wants to name or brand a Sui project.
Run a CSO-style customer signal review on a Sui product. Use when the user wants a CSO or customer signal review.
$ npx -y skills add pivyme/suiperpower --skill cso --agent claude-codeHow it fires
How this skill gets triggered: by you, by Claude, or both.
/csoContext preview
The summary Claude sees to decide when to auto-load this skill.
Run a CSO-style customer signal review on a Sui product. Use when the user wants a CSO or customer signal review.
name: cso description: Run a CSO-style customer signal review on a Sui product. Use when the user wants a CSO or customer signal review.
# Suiperpower telemetry. Routes through the CLI so projects.json + Convex stay in sync. # Silent on failure so the skill never blocks. Opt out: SUIPERPOWER_TELEMETRY=off. # # AGENT NOTE: when this skill finishes, run the matching completion command: # suiperpower track cso build completed # Or use "failed" / "aborted" if it ended that way. command -v suiperpower >/dev/null 2>&1 && suiperpower track cso build started >/dev/null 2>&1 & true
If `TEL_PROMPTED` is `no`, before doing real work, ask the user:
> Help suiperpower get better. We track which skills get used and how long they take. No code, no file paths, no PII. Change anytime in `~/.suiperpower/config.json`. > > A) Sure, anonymous > B) No thanks
Write the answer to `~/.suiperpower/config.json` `telemetryTier` field and create `~/.suiperpower/.telemetry-prompted`. Then continue.
Runs a structured infrastructure security audit on a Sui project. Walks through STRIDE threat modeling, OWASP-mapped checks, dependency supply chain verification, RPC/API hardening, key management, and frontend security. Produces a findings report with severity ratings and a remediation plan. Every P0 finding must have a fix or an accepted-risk decision before the audit is declared complete.
If you activated this and the user actually wants something else, consult `skills/SKILL_ROUTER.md` and hand off.
If the project scope is unclear, interview the user for:
## cso session, <timestamp> - scope: <components audited> - findings: P0=<n> P1=<n> P2=<n> P3=<n> - P0 findings resolved: <yes | no, list remaining> - threat model: STRIDE completed for <components> - supply chain: <clean | issues found> - open issues: <list>
For each component, walk through the six STRIDE categories. See `references/security-checklist.md` for the Sui-specific STRIDE table.
| Category | Question | |---|---| | **S**poofing | Can an attacker impersonate a user or admin? | | **T**ampering | Can an attacker modify on-chain state, PTBs, or API requests? | | **R**epudiation | Can actions be denied without audit trail? | | **I**nformation disclosure | Can sensitive data leak from Move objects, RPC responses, or frontend state? | | **D**enial of service | Can an attacker exhaust shared object contention, rate limits, or gas? | | **E**levation of privilege | Can a user escalate to admin via capability leaks or missing auth checks? |
Document findings per component. Assign severity.
Build something meaningful, on Sui. A superpower for AI coding agents to ship real products on Sui. Your AI coding agent has never written Move before. Suiperpower fixes that.
Repo: pivyme/suiperpower
Pick a brand name, color palette, or typography for a Sui product. Use when the user wants to name or brand a Sui project.
Build an AI agent that signs Sui transactions or runs onchain actions. Use when the user wants an AI agent on Sui.
Build a Sui data indexer or analytics pipeline. Use when the user wants to index Sui events, build a pipeline, or query Sui RPC data.
Build a mobile Sui app with React Native or the Sui Mobile SDK. Use when the user wants iOS, Android, or mobile Sui flows.
Pair with a coding agent to build a Sui MVP step by step. Use when the user wants to build the MVP iteratively with an agent.
Author Sui Move modules and packages with a senior Move dev as your pair. Use when the user wants to write, build, author, add, or scaffold Move code, smart…