Security

Security scanning and vulnerability detection

Showing 337-360 of 2236 skills
levnikolaevich

ln-620-codebase-auditor

by levnikolaevich

"Coordinates 9 specialized audit workers (security, build, architecture, code quality, dependencies, dead code, observability, concurrency, lifecycle). Researches best practices, delegates parallel audits, aggregates results into docs/project/codebase_audit.md."

Code Review 520 5mo ago
flpbalada

what-not-to-do-as-product-manager

by flpbalada

Anti-patterns and mistakes to avoid as a product manager. Use when evaluating

Code Gen 279 6mo ago
bahayonghang

paper-audit

by bahayonghang

Unified paper audit skill supporting Chinese & English academic papers. Supports LaTeX (.tex), Typst (.typ), and PDF (.pdf) input formats. Three modes: self-check (pre-submission), review (peer review simulation), gate (quality gate pass/fail). Use when user mentions: audit, review, check paper, paper quality, pre-submission check, score paper, or any paper auditing task.

Academic 395 4mo ago
jezweb

gemini-peer-review

by jezweb

"Get a second opinion from Gemini on code, architecture, debugging, or security. Uses gemini-coach CLI with AI-to-AI prompting for clear, actionable analysis. Trigger with 'ask gemini', 'gemini review', 'second opinion', 'peer review', or 'consult gemini'."

CLI Tools 935 5mo ago
xu-xiang

security-review

by xu-xiang

当添加身份认证(authentication)、处理用户输入、使用凭据(secrets)、创建 API 端点或实现支付/敏感功能时,请使用此技能。提供全面的安全检查清单和模式。

Debugging 1.7K 5mo ago
prompt-security

clawsec-feed

by prompt-security

Security advisory feed with automated NVD CVE polling for OpenClaw-related vulnerabilities. Updated daily.

Processing 1.1K 4mo ago
gmh5225

llvm-learning

by gmh5225

Comprehensive learning resources and tutorials for LLVM, Clang, and compiler development. Use this skill when helping users learn LLVM internals, find educational resources, or understand compiler concepts.

Debugging 854 5mo ago
romiluz13

code-review-patterns

by romiluz13

"Internal skill. Use cc10x-router for all development tasks."

Code Review 155 4mo ago
exceptionless

Security Principles

by exceptionless

Security best practices for the Exceptionless codebase. Secrets management, input validation, secure defaults, and avoiding common vulnerabilities. Keywords: security, secrets, encryption, PII, logging, input validation, secure defaults, environment variables, OWASP, cryptography

Processing 2.5K 6mo ago
xu-xiang

django-security

by xu-xiang

Django 安全最佳实践,涵盖身份认证、授权、CSRF 防护、SQL 注入预防、XSS 预防以及安全的部署配置。

Auth 1.7K 5mo ago
softaworks

dependency-updater

by softaworks

Smart dependency management for any language. Auto-detects project type, applies safe updates automatically, prompts for major versions, diagnoses and fixes dependency issues.

CLI Tools 2.2K 6mo ago
mohitmishra786

static-analysis

by mohitmishra786

Static analysis skill for C/C++ codebases. Use when hardening code quality, triaging noisy builds, running clang-tidy, cppcheck, or scan-build, interpreting check categories, suppressing false positives, or integrating static analysis into CI. Activates on queries about clang-tidy checks, cppcheck, scan-build, compile_commands.json, code hardening, or static analysis warnings.

Processing 141 5mo ago
refly-ai

ai-readability-audit

by refly-ai

AI可读性审计工具,模拟AI爬虫视角评估网站对大语言模型的友好程度,分析结构化数据、语义HTML和Meta信息

Code Review 195 5mo ago
boshu2

security

by boshu2

'Continuous repository security scanning and release gating. Triggers: "security scan", "security audit", "pre-release security", "run scanners", "check vulnerabilities".'

Code Review 414 5mo ago
xu-xiang

django-verification

by xu-xiang

Django 项目的验证循环(Verification loop):包含数据库迁移、代码检查、带覆盖率的测试、安全扫描,以及在发布或 PR 前的部署就绪检查。

CLI Tools 1.7K 5mo ago
getsentry

warden-sweep

by getsentry

Full-repository code sweep. Scans every file with warden, verifies findings via deep tracing, creates draft PRs for validated issues. Use when asked to "sweep the repo", "scan everything", "find all bugs", "full codebase review", "batch code analysis", or run warden across the entire repository.

Code Review 353 4mo ago
RTGS2017

verify-authenticity

by RTGS2017

"真实性验证技能。分析用户提供的信息、消息、图片或内容,判断其真实性和可信度,识别虚假信息、AI生成内容或伪造内容。"

Security 1.5K 5mo ago
xu-xiang

springboot-security

by xu-xiang

Spring Boot 服务中关于身份认证/授权(authn/authz)、校验、CSRF、密钥管理、响应头、限流及依赖安全的 Spring Security 最佳实践。

API Dev 1.7K 5mo ago
nimrodfisher

data-quality-audit

by nimrodfisher

Comprehensive data quality assessment against defined business rules and constraints. Use when validating data against expected schemas, checking referential integrity across tables, or auditing data pipeline outputs before production use.

Code Review 311 6mo ago
rohitg00

k8s-service-mesh

by rohitg00

Manage Istio service mesh for traffic management, security, and observability. Use for traffic shifting, canary releases, mTLS, and service mesh troubleshooting.

Code Review 931 5mo ago
kostja94

gtm-strategy

by kostja94

When the user wants to plan go-to-market strategy, GTM framework, or market entry. Also use when the user mentions "GTM," "go-to-market," "market entry," "new market," "repositioning," "PLG," "sales-led," "product-led," "marketing-led," "ICP," "buyer persona," "GTM motion," or "market expansion."

Code Gen 751 4mo ago
prompt-security

soul-guardian

by prompt-security

Drift detection + baseline integrity guard for agent workspace files with automatic alerting support

Code Review 1.1K 5mo ago
prompt-security

clawsec-clawhub-checker

by prompt-security

ClawHub reputation checker for ClawSec suite. Enhances guarded skill installer with VirusTotal Code Insight reputation scores and additional safety checks.

CLI Tools 1.1K 4mo ago
trailofbits

wooyun-legacy

by trailofbits

Provides web vulnerability testing methodology distilled from 88,636 real-world cases from the WooYun vulnerability database (2010-2016). Use when performing penetration testing, security audits, code reviews for security flaws, or vulnerability research. Covers SQL injection, XSS, command execution, file upload, path traversal, unauthorized access, information disclosure, and business logic flaws.

Database 467 4mo ago