Security

Security scanning and vulnerability detection

Showing 289-312 of 2236 skills
Mindrally

bash-scripting

by Mindrally

Bash scripting guidelines covering security, portability, error handling, and automation best practices for DevOps.

CLI Tools 193 5mo ago
proffesor-for-testing

/a11y-ally - Comprehensive Accessibility Audit

by proffesor-for-testing

Agentic QE Fleet is an open-source AI-powered quality engineering platform designed for use with Claude Code, featuring specialized agents and skills to support testing activities for a product at any stage of the SDLC. Free to use, fork, build, and contribute. Based on the Agentic QE Framework created by Dragan Spiridonov.

Accessibility 418 5mo ago
vstorm-co

code-review

by vstorm-co

Review Python code for quality, security, and best practices

Code Review 984 7mo ago
mono

security-audit

by mono

Audit SkiaSharp's native dependencies for security vulnerabilities and CVEs. Read-only investigation that produces a status report with recommendations. Use when user asks to: - Audit security issues or CVEs - Check CVE status across dependencies - Find security-related issues and their PR coverage - Get an overview of open vulnerabilities - See what security work is pending Triggers: "security audit", "audit CVEs", "CVE status", "what security issues are open", "check vulnerability status", "security overview", "what CVEs need fixing". This skill is READ-ONLY. To actually fix issues, use the native-dependency-update skill.

Analytics 5.5K 5mo ago
awslabs

deploy

by awslabs

"Deploy applications to AWS. Triggers on phrases like: deploy to AWS, host on AWS, run this on AWS, AWS architecture, estimate AWS cost, generate infrastructure. Analyzes any codebase and deploys to optimal AWS services."

CI/CD 843 5mo ago
DragonJAR

android-apk-audit

by DragonJAR

Comprehensive Android APK security audit with static analysis, dynamic instrumentation, source-to-sink tracing, IPC/component abuse analysis, and CVSS 4.0 reporting. Covers decompilation, manifest analysis, deep links and intent injection, secrets detection, crypto analysis, Frida/Objection integration, and APK repackaging. Use when user says "audit APK", "analyze android app", "mobile pentest", "APK security", "decompile APK", "android vulnerability assessment", "reverse engineer android", "modify APK", "intent injection", "deep link abuse", "bypass SSL pinning", "bypass root detection", or provides an APK for security review, decompiled Android sources, or decoded resources.

CLI Tools 321 3mo ago
partme-ai

cloud-aliyun-ecs

by partme-ai

Provides comprehensive guidance for Alibaba Cloud ECS including instance creation, configuration, security groups, and ECS management. Use when the user asks about Alibaba Cloud ECS, needs to create ECS instances, configure ECS, or manage Alibaba Cloud compute resources.

Code Gen 576 6mo ago
HoangNguyen0403

Android Security

by HoangNguyen0403

Standards for Data Encryption, Network Security, and Permissions

API Dev 533 6mo ago
HoangNguyen0403

Security Standards

by HoangNguyen0403

Universal security protocols for building safe and resilient software.

Auth 533 5mo ago
OneWave-AI

brand-consistency-checker

by OneWave-AI

Scan documents and slides for off-brand colors, fonts, and logos. Validate against brand guidelines and suggest corrections.

Code Gen 224 9mo ago
OneWave-AI

code-review-pro

by OneWave-AI

Comprehensive code review covering security vulnerabilities, performance bottlenecks, best practices, and refactoring opportunities. Use when user requests code review, security audit, or performance analysis.

Code Review 224 9mo ago
whawkinsiv

secure

by whawkinsiv

"Use this skill when the user needs to secure their SaaS app, implement authentication, protect user data, secure APIs, or check for vulnerabilities. Covers OWASP Top 10, auth best practices, data protection, and security checklists for apps built with AI tools."

API Dev 227 5mo ago
whawkinsiv

optimize

by whawkinsiv

"Use this skill when the user's app feels slow, the codebase feels bloated, or after significant development work. Optimizes across four dimensions: Speed (page load, API response), Code (unused files, dead code), Database (orphaned data, schema hygiene), and Dependencies (package bloat, bundle size)."

Code Review 227 5mo ago
wdm0006

auditing-python-security

by wdm0006

Audits Python libraries for security vulnerabilities using Bandit, pip-audit, Semgrep, and detect-secrets. Identifies SQL injection, command injection, hardcoded credentials, weak cryptography, and insecure deserialization. Use when reviewing library security, setting up security scanning in CI, or implementing secure coding patterns.

CLI Tools 66 5mo ago
jamditis

security-checklist

by jamditis

Pre-deployment security audit for web applications. Use when reviewing code before shipping, auditing an existing application, or when users mention "security review," "ready to deploy," "going to production," or express concern about vulnerabilities. Covers authentication, input validation, secrets management, database security, and compliance basics.

Auth 335 6mo ago
itsmostafa

ec2

by itsmostafa

AWS EC2 virtual machine management for instances, AMIs, and networking. Use when launching instances, configuring security groups, managing key pairs, troubleshooting connectivity, or automating instance lifecycle.

CLI Tools 1.1K 6mo ago
Automattic

wp-plugin-development

by Automattic

"Use when developing WordPress plugins: architecture and hooks, activation/deactivation/uninstall, admin UI and Settings API, data storage, cron/tasks, security (nonces/capabilities/sanitization/escaping), and release packaging."

API Dev 208 6mo ago
codewithmukesh

security-scan

by codewithmukesh

Deep security scanning for .NET applications across 6 layers: vulnerable packages, secrets detection, OWASP code patterns, auth configuration, CORS policy, and data protection. Produces severity-rated findings with specific remediation steps. Load this skill when: "security scan", "security audit", "check for vulnerabilities", "find secrets", "OWASP", "auth review", "CORS check", "security review", "penetration test prep", "CVE check", "vulnerability scan", "hardcoded password", "data protection", "security posture".

Auth 562 4mo ago
markdown-viewer

network

by markdown-viewer

Create network topology diagrams using PlantUML syntax with industry-standard device icons. Best for LAN/WAN diagrams, enterprise networks, cloud infrastructure, and vendor-specific diagrams (Cisco, Citrix, etc.). Uses mxgraph stencil icons for network devices with auto-layout. NOT for abstract dependency graphs (use graphviz) or simple flowcharts (use mermaid).

Docs Gen 3.1K 3mo ago
proffesor-for-testing

code-review-quality

by proffesor-for-testing

"Conduct context-driven code reviews focusing on quality, testability, and maintainability. Use when reviewing code, providing feedback, or establishing review practices."

Code Review 418 5mo ago
proffesor-for-testing

DDD Domain Mapping (from QCSD-AGENTIC-QE-MAPPING-FRAMEWORK.md)

by proffesor-for-testing

Agentic QE Fleet is an open-source AI-powered quality engineering platform designed for use with Claude Code, featuring specialized agents and skills to support testing activities for a product at any stage of the SDLC. Free to use, fork, build, and contribute. Based on the Agentic QE Framework created by Dragan Spiridonov.

Automation 418 5mo ago
JoelLewis

privacy-data-security

by JoelLewis

"Privacy and data security compliance: Reg S-P, Reg S-ID Red Flags Rule, SEC cybersecurity rules, state privacy laws, vendor management, incident response, data governance."

Processing 153 5mo ago
JoelLewis

pre-trade-compliance

by JoelLewis

"Automated pre-trade compliance: rule engines, concentration limits, restricted lists, hard and soft blocks, regulatory limits, client-specific restrictions, and compliance rule configuration."

Finance 153 5mo ago
Jeffallan

java-architect

by Jeffallan

Use when building enterprise Java applications with Spring Boot 3.x, microservices, or reactive programming. Invoke for WebFlux, JPA optimization, Spring Security, cloud-native patterns.

Processing 10.7K 5mo ago