- AnswersUSE FOR AI-grounded answers via OpenAI-compatible /chat/completions. Two modes: single-search (fast) or deep research (enable_research=true, thorough multi-search). Streaming/blocking. Citations.brave/brave-search-skills174
- BxUSE FOR web search, research, RAG, grounding, browse, find, lookups, fact-checking, documentation, agentic AI. All-in-one, optimized for AI agents. Pre-extracted, token-budgeted web content, deep research, news, images, videos, places, custom rankingbrave/brave-search-skills174
- Bx SearchWeb search using the Brave Search CLI (`bx`). Use for ALL web search requests — including "search for", "look up", "find", "what is", "how do I", "google this", and any request needing current or external information. Prefer this over the built-in web_search tool whenever bx is available. Also use for: documentation lookup, troubleshooting research, RAG grounding, news, images, videos, local places, and AI-synthesized answers.brave/brave-search-skills174
- Images SearchUSE FOR image search. Returns images with title, source URL, thumbnail. Supports SafeSearch filter. Up to 200 results.brave/brave-search-skills174
- Llm ContextUSE FOR RAG/LLM grounding. Returns pre-extracted web content (text, tables, code) optimized for LLMs. GET + POST. Adjust max_tokens/count based on complexity. Supports Goggles, local/POI. For AI answers use answers. Recommended for anyone building AI/agentic applications.brave/brave-search-skills174
- Local DescriptionsUSE FOR getting AI-generated POI text descriptions. Requires POI IDs from local-place-search, or from web-search with result_filter=locations. Returns markdown descriptions grounded in web search context. Max 20 IDs per request.brave/brave-search-skills174
- Local Place SearchUSE FOR finding places in the physical world - businesses, POIs, street addresses, cities and streets. Results carry address, coordinates, rating, opening hours and phone, so basic details need no follow-up call. Standalone - no POI IDs or prior web search required; the IDs it returns work with local-pois and local-descriptions. Locate by coordinates or a location string, or omit both to search globally. Omit the query to browse an area. Max 100 results.brave/brave-search-skills174
- Local PoisUSE FOR getting local business/POI details. Requires POI IDs from local-place-search, or from web-search with result_filter=locations. Returns full business information including ratings, hours, contact info. Max 20 IDs.brave/brave-search-skills174
- News SearchUSE FOR news search. Returns news articles with title, URL, description, age, thumbnail, profile. Supports freshness and date range filtering, SafeSearch filter and Goggles for custom ranking.brave/brave-search-skills174
- SpellcheckUSE FOR spell correction. Returns corrected query if misspelled. Most search endpoints have spellcheck built-in; use this only for pre-search query cleanup or "Did you mean?" UI.brave/brave-search-skills174
- SuggestUSE FOR query autocomplete/suggestions. Fast (<100ms). Returns suggested queries as user types. Supports rich suggestions with entity info. Typo-resilient.brave/brave-search-skills174
- Videos SearchUSE FOR video search. Returns videos with title, URL, thumbnail, duration, view count, creator. Supports freshness filters, SafeSearch, pagination.brave/brave-search-skills174
- Web SearchUSE FOR web search. Returns ranked results with snippets, URLs, thumbnails. Supports freshness filters, SafeSearch, Goggles for custom ranking, pagination. Primary search endpoint.brave/brave-search-skills174
- Add Maintainer PropertyAuto-detect top maintainers for each repo in an org and set the maintainers custom property via the GitHub API. Use when the user wants to populate or update maintainer metadata.brave/security-action22
- Check Rule MetadataValidate metadata fields (author, source, category) in opengrep/semgrep YAML rule files. Use when the user wants to lint or check rule quality.brave/security-action22
- Cleanup Slack MessagesClean up stale security-action Slack messages based on review signals (reactions, label removal, resolved threads). Use when the user wants to clean old notifications from a Slack channel.brave/security-action22
- Delete Slack MessagesDelete Slack messages from a channel filtered by bot username and repository names. Use when the user wants to bulk-delete bot messages for specific repos.brave/security-action22
- Dependabot DismissAuto-dismiss Dependabot alerts matching configurable hotwords (e.g. DoS) or a GHSA/CVE dismiss list. Use when the user wants to bulk-dismiss low-priority Dependabot alerts.brave/security-action22
- Dependabot NudgeScan org repos for open Dependabot alerts at or above a severity threshold and build notification messages for maintainers. Use when the user wants to check or nudge about Dependabot vulnerabilities.brave/security-action22
- Get ConfigFetch and parse a JSON config file from a GitHub repository. Use when the user wants to read a configuration file from a remote repo.brave/security-action22
- Get MaintainersList all repositories in a GitHub org with their maintainers custom property. Use when the user wants to see who maintains each repo.brave/security-action22
- Get PropertiesFetch custom properties for a GitHub repository. Use when the user wants to inspect repo metadata like runtime, maintainers, or other custom properties.brave/security-action22
- Match CodeownersMatch a list of changed file paths against a CODEOWNERS file to determine code ownership. Use when the user wants to find who owns specific files or directories.brave/security-action22
- Opengrep CompareCompare opengrep scan findings between current and base branch rules to detect new/removed findings. Use when the user wants to evaluate the impact of rule changes.brave/security-action22
- Renovate Sanity CheckCheck all repos in a GitHub org for Renovate config compliance (must extend the shared org config). Use when the user wants to audit Renovate adoption.brave/security-action22
- Send Slack MessageSend a message to a Slack channel with markdown support, colored attachments, and deduplication. Use when the user wants to post notifications or alerts to Slack.brave/security-action22
- Check SpecCheck that the implementation matches docs/specs, clause by clause. Runs the mechanical pass (clause numbering, verified-by resolution, governs, guards, the README table) and then a conformance review of the governed code, then drafts one issue per finding for a person to confirm before any of them is posted. Triggers on: check spec, /check-spec, make check-spec, does the code match the spec, spec conformance, spec drift, file issues for spec gaps.brave/bravebot2
- Hackerone TriageReview a HackerOne report against the code and the tracker, decide whether it should be awarded, and file an issue assigned to the configured git author when it is a valid problem nobody knew about. Known, fixed, or already-posted problems are not awarded. Triggers on: /hackerone-triage <paste>, HackerOne report, H1 report, bug bounty report, should this be awarded, review this bounty submission.brave/bravebot2
- RebaseRebase a brave/bravebot pull request onto the latest base in a worktree of its own, resolve the conflicts, and push it back with a lease. Works from a direct clone or a fork clone. Triggers on: /rebase <pr>, rebase this PR, PR has bitrot, PR has conflicts.brave/bravebot2
- Release NotesWrite the release notes for a version: one section per version, always added first, then changed, then fixed, and only the things a person using bravebot would notice. Reads the commits since the last release tag, or since the last version bump when there is no tag. Triggers on: release notes, changelog, notes for v1.2.3, what changed since the last release, /release-notes.brave/bravebot2
- Security AuditAudit this repository against the rule that untrusted content never enters the driver or the planner. Enumerates the label surface mechanically, then reads the code in eight lanes, tries to disprove every candidate, and files one issue per finding that survives, skipping anything the tracker already holds. Triggers on: security audit, /security-audit, make check-security, find security issues, audit the trust boundary, is the rule still holding, prompt injection review, file security issues.brave/bravebot2
- Testing PreflightPlan and review Bravebot tests before changing behaviour or adding, removing, or weakening assertions. Check that tests distinguish plausible regressions, cover changed execution paths, and include the required repository checks.brave/bravebot2
- Triage IssuesGo through the open issues and decide, against the code, which are already fixed, which have gone stale, and which still stand. Closes the fixed ones citing the commit that fixed them, and labels every issue that stays open with an importance, an urgency and a size. Triggers on: triage issues, go through all open issues, which issues are already fixed, are these issues still valid, close stale issues, label the issues, importance and urgency labels, issue backlog.brave/bravebot2
- Update DocsBring the documentation site under docs/website/ up to date with bravebot. Picks up from the commit recorded in docs/docs-updated-to-sha, or reviews an explicit span of commits, folds the user-facing behaviour into the pages it belongs on, records how far it got, and builds the site cleanly. Triggers on: update docs, /update-docs, sync docs with specs, docs drift.brave/bravebot2