- Home
- /
- Categories
- /
- Security
Security
Security scanning and vulnerability detection
application-security
by travisjneuman
OWASP Top 10 with code examples, SAST/DAST tools, dependency scanning, CSP headers, and input validation patterns. Use when hardening applications, reviewing security posture, or implementing defensive coding practices.
epic-security
by epicweb-dev
Guide on security practices including CSP, rate limiting, and session security
symfony:symfony-voters
by MakFly
Strengthen Symfony authorization and validation boundaries with explicit, test-backed enforcement. Use for symfony voters tasks.
secret-scanner
by alirezarezvani
Detect exposed secrets, API keys, credentials, and tokens in code. Use before commits, on file saves, or when security is mentioned. Prevents accidental secret exposure. Triggers on file changes, git commits, security checks, .env file modifications.
security-auditor
by alirezarezvani
Continuous security vulnerability scanning for OWASP Top 10, common vulnerabilities, and insecure patterns. Use when reviewing code, before deployments, or on file changes. Scans for SQL injection, XSS, secrets exposure, auth issues. Triggers on file changes, security mentions, deployment prep.
code-reviewer
by alirezarezvani
Automatic code quality and best practices analysis. Use proactively when files are modified, saved, or committed. Analyzes code style, patterns, potential bugs, and security basics. Triggers on file changes, git diff, code edits, quality mentions.
audit-ui
by mblode
Audits web UI quality across accessibility, interaction, forms, typography, navigation, layout, performance, motion, and microcopy. Use when reviewing or refining frontend UI before merge or release, or when the user asks for a UI, UX, or accessibility audit.
nansen-perp-scan
by nansen-ai
"What is the state of the Hyperliquid perp market? Top contracts by volume/OI, trader leaderboard, and SM perp activity."
meta-prompting
by iliaal
Enhanced reasoning patterns via slash commands (/think, /verify, /adversarial, /edge, /compare, /confidence, /budget, /constrain, /json, /flip, /assumptions, /tensions, /analyze, /trade) or natural language ("argue against", "what could break", "show reasoning", "deep review", "meta-prompts", "thinking modes", "second-best approach", "list assumptions", "opposing perspectives").
settlement-clearing
by JoelLewis
"Settlement and clearing: T+1 settlement cycle, DTC/NSCC clearing, fails management, corporate actions on settlement, DVP/RVP, continuous net settlement, and settlement risk."
threat-model-generation
by Factory-AI
Generate a STRIDE-based security threat model for a repository. Use when setting up security monitoring, after architecture changes, or for security audits.
multi-source-investigation
by poemswe
You must use this when investigating complex claims across diverse sources or fact-checking contradictory information.
memory-audit
by nhadaututtheky
Comprehensive memory quality review across 6 dimensions: purity, freshness, coverage, clarity, relevance, and structure. Generates prioritized findings with specific memory references and actionable recommendations.
planner-rt-ica
by Jamie-BitFlight
Identify required inputs, dependencies, and uncertainty during planning. Use when generating plans or task graphs under incomplete information. Does not block plan generation; instead localizes gaps and creates unblock dependencies.
reference-data
by JoelLewis
"Financial reference data: security master, client master, account master, identifiers (CUSIP, ISIN, SEDOL, FIGI), pricing, and reference data governance."
security
by alinaqi
OWASP security patterns, secrets management, security testing
agent-teams
by alinaqi
Claude Code Agent Teams - default team-based development with strict TDD pipeline enforcement
SEO Audit
by quran
Frontend build on next.js
iac-reviewer
by proflead
Review infrastructure-as-code changes for safety and correctness. Use when a mid-level developer needs a second look on IaC.
vulnerability-validation
by Factory-AI
Validate security findings from commit-security-scan by assessing exploitability, filtering false positives, and generating proof-of-concept exploits. Use after running commit-security-scan to confirm vulnerabilities.
implementing-dapper-queries
by bitwarden
Implementing Dapper repository methods and stored procedures for MSSQL at Bitwarden. Use when creating or modifying Dapper repositories, writing stored procedures, or working with MSSQL-specific data access in the server repo.
Agent Security Audit
by DmitrL-dev
Проверка безопасности AI-агентов по OWASP Agentic Top 10 2026
logophile
by tkersey
"Precision copy edits + naming: compress and clarify without changing meaning. Triggers: $logophile, rewrite/reword/rephrase, shorten, rename titles/labels/headings. Avoid operational scope/validation tasks unless rewriting is explicit."
skill-install
by stellarlinkco
Install Claude skills from GitHub repositories with automated security scanning. Triggers when users want to install skills from a GitHub URL, need to browse available skills in a repository, or want to safely add new skills to their Claude environment.