Mobile Reverse
sickn33/agentic-awesome-skills
Authorized Android/iOS application reverse engineering and security testing: APK/IPA analysis, runtime instrumentation (Frida/Objection), SSL-pinning and jailbreak/root-detection bypass, per OWASP…
减少 LLM 常见编码错误的行为准则。在编写、审查或重构代码时使用,避免过度设计、精准修改、暴露假设、定义可验证的成功标准。
$ npx skills add index-login/MobileRE-Skill --skill karpathy-guidelines -a claude-codeProject install by default; add -g for ~/.claude/skills/.
$ gh skill install index-login/MobileRE-Skill karpathy-guidelines --agent claude-codeProject scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).
$ git clone --depth 1 https://github.com/index-login/MobileRE-Skill.git skills-src && mkdir -p .claude/skills && cp -r skills-src/.kilo/skill/karpathy-guidelines .claude/skills/karpathy-guidelines && rm -rf skills-srcUse ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.
Claude Code skills documentation · loads skills from .claude/skills/
Install the "karpathy-guidelines" agent skill from https://github.com/index-login/MobileRE-Skill/tree/main/.kilo/skill/karpathy-guidelines into .claude/skills/karpathy-guidelines/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "karpathy-guidelines", then confirm the skill loads.Claude Code copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$skill-installer install https://github.com/index-login/MobileRE-Skill/tree/main/.kilo/skill/karpathy-guidelinesType this inside Codex. $skill-installer <name> installs a curated skill from openai/skills. The installer writes to $CODEX_HOME/skills (default ~/.codex/skills). Restart Codex if the skill does not show up.
$ npx skills add index-login/MobileRE-Skill --skill karpathy-guidelines -a codexProject install goes to .agents/skills/; add -g for ~/.codex/skills/.
$ gh skill install index-login/MobileRE-Skill karpathy-guidelines --agent codexProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/index-login/MobileRE-Skill.git skills-src && mkdir -p .agents/skills && cp -r skills-src/.kilo/skill/karpathy-guidelines .agents/skills/karpathy-guidelines && rm -rf skills-srcUse ~/.agents/skills/ instead of .agents/skills for a personal install.
Codex skills documentation · loads skills from .agents/skills/
Install the "karpathy-guidelines" agent skill from https://github.com/index-login/MobileRE-Skill/tree/main/.kilo/skill/karpathy-guidelines into .agents/skills/karpathy-guidelines/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "karpathy-guidelines", then confirm the skill loads.Codex copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add index-login/MobileRE-Skill --skill karpathy-guidelines -a cursorProject install goes to .agents/skills/; add -g for ~/.cursor/skills/.
$ gh skill install index-login/MobileRE-Skill karpathy-guidelines --agent cursorProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/index-login/MobileRE-Skill.git skills-src && mkdir -p .cursor/skills && cp -r skills-src/.kilo/skill/karpathy-guidelines .cursor/skills/karpathy-guidelines && rm -rf skills-srcUse ~/.cursor/skills/ instead of .cursor/skills for a personal install.
Cursor skills documentation · loads skills from .cursor/skills/, .agents/skills/, .claude/skills/, .codex/skills/
Install the "karpathy-guidelines" agent skill from https://github.com/index-login/MobileRE-Skill/tree/main/.kilo/skill/karpathy-guidelines into .cursor/skills/karpathy-guidelines/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "karpathy-guidelines", then confirm the skill loads.Cursor copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gemini skills install https://github.com/index-login/MobileRE-Skill.git --path .kilo/skill/karpathy-guidelines--scope user (default) or --scope workspace; --path is the subfolder of the repo that holds the skill; --consent skips the security confirmation prompt.
$ npx skills add index-login/MobileRE-Skill --skill karpathy-guidelines -a gemini-cliProject install goes to .agents/skills/; add -g for ~/.gemini/skills/.
$ gh skill install index-login/MobileRE-Skill karpathy-guidelines --agent gemini-cliProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/index-login/MobileRE-Skill.git skills-src && mkdir -p .gemini/skills && cp -r skills-src/.kilo/skill/karpathy-guidelines .gemini/skills/karpathy-guidelines && rm -rf skills-srcUse ~/.gemini/skills/ instead of .gemini/skills for a personal install, then run /skills reload.
Gemini CLI skills documentation · loads skills from .gemini/skills/, .agents/skills/
Install the "karpathy-guidelines" agent skill from https://github.com/index-login/MobileRE-Skill/tree/main/.kilo/skill/karpathy-guidelines into .gemini/skills/karpathy-guidelines/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "karpathy-guidelines", then confirm the skill loads.Gemini CLI copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ gh skill install index-login/MobileRE-Skill karpathy-guidelinesInstalls for Copilot at project scope by default; add --scope user for a personal install. Preview a skill first with gh skill preview. Needs GitHub CLI 2.90.0 or later (public preview).
$ npx skills add index-login/MobileRE-Skill --skill karpathy-guidelines -a github-copilotProject install goes to .agents/skills/; add -g for ~/.copilot/skills/.
$ git clone --depth 1 https://github.com/index-login/MobileRE-Skill.git skills-src && mkdir -p .github/skills && cp -r skills-src/.kilo/skill/karpathy-guidelines .github/skills/karpathy-guidelines && rm -rf skills-srcUse ~/.copilot/skills/ instead of .github/skills for a personal install. Commit .github/skills so cloud agent and code review can use it.
GitHub Copilot skills documentation · loads skills from .github/skills/, .claude/skills/, .agents/skills/
Install the "karpathy-guidelines" agent skill from https://github.com/index-login/MobileRE-Skill/tree/main/.kilo/skill/karpathy-guidelines into .github/skills/karpathy-guidelines/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "karpathy-guidelines", then confirm the skill loads.GitHub Copilot copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
$ npx skills add index-login/MobileRE-Skill --skill karpathy-guidelines -a opencodeOpenCode documents no install command of its own. Project install goes to .agents/skills/; add -g for ~/.config/opencode/skills/.
$ gh skill install index-login/MobileRE-Skill karpathy-guidelines --agent opencodeProject scope by default (.agents/skills/); add --scope user for a personal install.
$ git clone --depth 1 https://github.com/index-login/MobileRE-Skill.git skills-src && mkdir -p .opencode/skills && cp -r skills-src/.kilo/skill/karpathy-guidelines .opencode/skills/karpathy-guidelines && rm -rf skills-srcUse ~/.config/opencode/skills/ instead of .opencode/skills for a personal install.
OpenCode skills documentation · loads skills from .opencode/skills/, .claude/skills/, .agents/skills/
Install the "karpathy-guidelines" agent skill from https://github.com/index-login/MobileRE-Skill/tree/main/.kilo/skill/karpathy-guidelines into .opencode/skills/karpathy-guidelines/ in this project. Copy the whole folder (SKILL.md and every file beside it), keep the folder name "karpathy-guidelines", then confirm the skill loads.OpenCode copies the folder itself, the same result as the manual copy. Check what it changed before you commit it.
karpathy-guidelines减少 LLM 常见编码错误的行为准则。在编写、审查或重构代码时使用,避免过度设计、精准修改、暴露假设、定义可验证的成功标准。
Karpathy Guidelines is an agent skill from index-login/MobileRE-Skill. 减少 LLM 常见编码错误的行为准则。在编写、审查或重构代码时使用,避免过度设计、精准修改、暴露假设、定义可验证的成功标准。
Its SKILL.md is about 240 tokens, which your agent loads only when the skill is triggered. It is a single SKILL.md file with no bundled scripts.
It sits in Security, covering Mobile application security and Reverse engineering and malware. It works with Model Context Protocol and Frida. The repository describes itself as: AI Agent 驱动的移动端逆向技能集:Frida hook、一键脱壳、反检测绕过、内存 DEX dump、Ghidra MCP 符号/结构恢复。AI-agent skill system for mobile reverse engineering. The licence is MIT.
4 steps, taken from the step headings in SKILL.md.
Read from SKILL.md and the folder at commit 69e7f5e. It shows what the files ask for, not the result of running them.
Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.
From allowed-tools in the SKILL.md frontmatter.
No scripts in the folder and no shell commands in SKILL.md.
From the folder's file list and the shell code blocks in SKILL.md.
No URLs in SKILL.md.
From URLs in SKILL.md, links to its own repository left out.
Names no API keys, tokens, secrets or passwords.
From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.
Karpathy Guidelines loads about 242 tokens when it runs. Until then it costs about 21 tokens; SKILL.md has 54 words of instructions outside code blocks.
Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.
The automated check found no risky patterns in SKILL.md.
Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.
The full file from index-login/MobileRE-Skill at commit 69e7f5e, republished under its MIT licence (© index-login). 54 words, ~242 tokens.
.claude/skills/karpathy-guidelines/SKILL.md (or your agent's skills folder).取舍: 这些准则偏向谨慎而非速度。对于简单任务,自行判断。
不假设,不隐藏困惑,暴露权衡。
开始实现前:
最少代码解决问题。不写投机性代码。
问自己:"资深工程师会说这过度设计吗?"如果是,简化。
只动必须动的。只清理自己造成的烂摊子。
编辑已有代码时:
当你的改动产生孤儿代码时:
检验标准:每一行改动都应直接追溯到用户的需求。
定义成功标准。循环迭代直到验证通过。
将任务转化为可验证的目标:
对于多步骤任务,先给出简要计划:
1. [步骤] → 验证: [检查项]
2. [步骤] → 验证: [检查项]
3. [步骤] → 验证: [检查项]强成功标准让你能独立迭代。弱标准("把它弄好")需要不断澄清。
© index-login, MIT. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file
Just SKILL.md in .kilo/skill/karpathy-guidelines of index-login/MobileRE-Skill.
Open the folder on GitHubat commit 69e7f5e
Karpathy Guidelines next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.
| Skill | Stars | Used in | Tokens | Auto-check | Licence | Repo updated |
|---|---|---|---|---|---|---|
| Karpathy Guidelines this skillindex-login/MobileRE-Skill | 152 | — | ~242 | Automated safety check: Pass | MIT | |
| Mobile Reversesickn33/agentic-awesome-skills | 47k | 1 repos | ~1.5k | Automated safety check: Pass | MIT | |
| Performing iOS App Security Assessmentmukul975/Anthropic-Cybersecurity-Skills | 34k | — | ~3k | Automated safety check: Pass | Apache-2.0 | |
| Rea Tool Designmorluto/rea | 55k | — | ~239 | Automated safety check: Pass | MIT | |
| Kernel Corpus Analysiskernullist/PseudoForge | 162 | — | ~3.7k | Automated safety check: Pass | MIT | |
| Tiktok Account Auditaronhy/tiktok-agent-skills | 168 | — | ~492 | Automated safety check: Pass | MIT |
sickn33/agentic-awesome-skills
Authorized Android/iOS application reverse engineering and security testing: APK/IPA analysis, runtime instrumentation (Frida/Objection), SSL-pinning and jailbreak/root-detection bypass, per OWASP…
mukul975/Anthropic-Cybersecurity-Skills
Performs comprehensive iOS application security assessments using Frida for dynamic instrumentation, Objection for runtime exploration, SSL pinning bypass for traffic interception, keychain…
morluto/rea
Design or change REA investigation tools, CLI/MCP contracts, provider capabilities, and Evidence semantics.
kernullist/PseudoForge
A skill your agent uses when answering questions about PseudoForge kernel corpus packs through MCP or local evidence packs, including kernel lifecycle, subsystem, function, callgraph, import/string…
aronhy/tiktok-agent-skills
A skill your agent uses when a user provides a TikTok profile or account link and asks for account analysis, competitor research, content or commerce performance, operational-logic research…
vw2x/Mira
Run Mira environment risk collection. An agent skill from vw2x/Mira.
index-login/MobileRE-Skill
用于 Android/iOS 移动应用安全逆向分析:Frida 动态插桩、绕过反调试/反注入/加固壳、脱壳、加密与 native SO 层 hook、运行时行为分析、jadx-mcp 静态攻击面分析、离线 SO 静态分析(ELF 侦察/字符串/交叉引用/反汇编/JNI 判型)。用户提到"绕过检测/闪退/脱壳/加密/抓包/行为摸底/内存扫描/分析 so/ELF…
index-login/MobileRE-Skill
Debug and emulate specific code fragments or functions using the Unicorn engine.
index-login/MobileRE-Skill
Root memory dump of DEX from a running Android app: no injection, no ptrace (survives ptrace-blocking anti-debug; invisible to Frida checks), twin tools cross-check each other.
Works with
Categories
减少 LLM 常见编码错误的行为准则。在编写、审查或重构代码时使用,避免过度设计、精准修改、暴露假设、定义可验证的成功标准。. Karpathy Guidelines is an agent skill from index-login/MobileRE-Skill.
Karpathy Guidelines fits situations like: tasks that involve Mobile application security; tasks that involve Reverse engineering and malware.
Run `npx skills add index-login/MobileRE-Skill --skill karpathy-guidelines -a claude-code`. Or copy the skill folder (.kilo/skill/karpathy-guidelines in index-login/MobileRE-Skill) into .claude/skills/karpathy-guidelines in your project. Claude Code loads it when a task matches its description.
Run `npx skills add index-login/MobileRE-Skill --skill karpathy-guidelines -a codex`. Or copy the skill folder (.kilo/skill/karpathy-guidelines in index-login/MobileRE-Skill) into .agents/skills/karpathy-guidelines in your project. Codex loads it when a task matches its description.
Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add index-login/MobileRE-Skill --skill karpathy-guidelines -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/karpathy-guidelines, .gemini/skills/karpathy-guidelines, .github/skills/karpathy-guidelines and .opencode/skills/karpathy-guidelines in your project.
SKILL.md names no scripts, command-line tools or credentials: Karpathy Guidelines is instructions for the agent only.
SKILL.md contains no URLs. Any network use would come from the scripts or tools the agent runs. This is read from the text; nothing was executed.
Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.
Karpathy Guidelines is published under the MIT licence (declared in SKILL.md). It allows redistribution, so the full SKILL.md is shown on this page.
About 242 tokens (SKILL.md is roughly 968 characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.
Skills that share tags, products or a category with Karpathy Guidelines: Mobile Reverse (sickn33/agentic-awesome-skills, 47k stars), Performing iOS App Security Assessment (mukul975/Anthropic-Cybersecurity-Skills, 34k stars), Rea Tool Design (morluto/rea, 55k stars) and Kernel Corpus Analysis (kernullist/PseudoForge, 162 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.
index-login (a GitHub user) maintains it in index-login/MobileRE-Skill, which has 152 GitHub stars. The repository holds 4 skills in this directory. The repository was last updated on September 30, 2026.
Source: index-login/MobileRE-Skill on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.