NEW Browse AI tools across categories — updated daily. See what's new →

Building Incident Timeline With Timesketch

Build collaborative forensic incident timelines using Timesketch to ingest, normalize, and analyze multi-source

Authormukul975
Version1.0.0
LicenseMIT
Token count~77
UpdatedJun 5, 2026

Install

Quick install

via npx skills · works with 57+ agents
npx skills add https://github.com/google/timesketch
Or pick agent:
npx skills add google/timesketch --agent claude-code
npx skills add google/timesketch --agent cursor
npx skills add google/timesketch --agent codex
npx skills add google/timesketch --agent opencode
npx skills add google/timesketch --agent github-copilot
npx skills add google/timesketch --agent windsurf
More install options

Shorthand — useful for multi-skill repos:

npx skills add google/timesketch

Manual — clone the repo and drop the folder into your agent's skills directory:

git clone https://github.com/google/timesketch.git
cp -r timesketch ~/.claude/skills/
How to use: Once installed, ask your agent to "use the Building Incident Timeline With Timesketch skill" or describe what you want (e.g. "Build collaborative forensic incident timelines using Timesketch to ingest, norm"). Requires Node.js 18+.

Building Incident Timeline With Timesketch

Build collaborative forensic incident timelines using Timesketch to ingest, normalize, and analyze multi-source

---

Source: https://github.com/google/timesketch.git
Author: mukul975
Discovered via: skillsdirectory.com
Genre: testing-security

SKILL.md source

---
name: Building Incident Timeline With Timesketch
description: Build collaborative forensic incident timelines using Timesketch to ingest, normalize, and analyze multi-source
---

# Building Incident Timeline With Timesketch

Build collaborative forensic incident timelines using Timesketch to ingest, normalize, and analyze multi-source

---

**Source**: https://github.com/google/timesketch.git
**Author**: mukul975
**Discovered via**: skillsdirectory.com
**Genre**: testing-security

Related skills 6

caveman

★ Featured

Ultra-compressed communication mode. Cuts token usage ~75% by speaking like caveman while keeping full technical accuracy. Supports intensity levels: lite, full (default), ultra, wenyan-lite, wenyan-full, wenyan-ultra. Use when user says "caveman mode", "talk like caveman", "use caveman", "less tokens", "be brief", or invokes /caveman. Also auto-triggers when token efficiency is requested.

juliusbrussee 167k
Development

secure-linux-web-hosting

★ Featured

Use when setting up, hardening, or reviewing a cloud server for self-hosting, including DNS, SSH, firewalls, Nginx, static-site hosting, reverse-proxying an app, HTTPS with Let's Encrypt or ACME clients, safe HTTP-to-HTTPS redirects, or optional post-launch network tuning such as BBR.

xixu-me 155k
Development

readme-i18n

★ Featured

Use when the user wants to translate a repository README, make a repo multilingual, localize docs, add a language switcher, internationalize the README, or update localized README variants in a GitHub-style repository.

xixu-me 155k
Development

lark-shared

★ Featured

Use when first setting up lark-cli, running auth login, switching user/bot identity (--as), handling permission denied or scope errors, needing to update lark-cli, or seeing _notice in JSON output.

larksuite 155k
Development

improve-codebase-architecture

★ Featured

Find deepening opportunities in a codebase, informed by the domain language in CONTEXT.md and the decisions in docs/adr/. Use when the user wants to improve architecture, find refactoring opportunities, consolidate tightly-coupled modules, or make a codebase more testable and AI-navigable.

mattpocock 151k
Development

paper-context-resolver

★ Featured

Optional RigorPilot helper for README-first deep learning repo reproduction. Use only when the README and repository files leave a narrow reproduction-critical gap and the task is to resolve a specific paper detail such as dataset split, preprocessing, evaluation protocol, checkpoint mapping, or runtime assumption from primary paper sources while recording conflicts. Do not use for general paper summary, repo scanning, environment setup, command execution, title-only paper lookup, or replacin...

lllllllama 127k
Development