Security

Security scanning and vulnerability detection

Showing 721-744 of 2236 skills
AgentSecOps

reviewdog

by AgentSecOps

Automated code review and security linting integration for CI/CD pipelines using reviewdog. Aggregates findings from multiple security and quality tools (SAST, linters, formatters) into unified code review comments on pull requests. Use when: (1) Integrating security scanning into code review workflows, (2) Automating security feedback on pull requests, (3) Consolidating multiple tool outputs into actionable review comments, (4) Enforcing secure coding standards in CI/CD pipelines, (5) Providing inline security annotations during development.

Code Review 179 8mo ago
AgentSecOps

sca-blackduck

by AgentSecOps

Software Composition Analysis (SCA) using Synopsys Black Duck for identifying open source vulnerabilities, license compliance risks, and supply chain security threats with CVE, CWE, and OWASP framework mapping. Use when: (1) Scanning dependencies for known vulnerabilities and security risks, (2) Analyzing open source license compliance and legal risks, (3) Identifying outdated or unmaintained dependencies, (4) Integrating SCA into CI/CD pipelines for continuous dependency monitoring, (5) Providing remediation guidance for vulnerable dependencies with CVE and CWE mappings, (6) Assessing supply chain security risks and third-party component threats.

Code Review 179 8mo ago
AgentSecOps

skill-name

by AgentSecOps

[REQUIRED] Comprehensive description of what this skill does and when to use it. Include: (1) Primary functionality, (2) Specific use cases, (3) Security operations context. Must include specific "Use when:" clause for skill discovery. Example: "SAST vulnerability analysis and remediation guidance using Semgrep and industry security standards. Use when: (1) Analyzing static code for security vulnerabilities, (2) Prioritizing security findings by severity, (3) Providing secure coding remediation, (4) Integrating security checks into CI/CD pipelines." Maximum 1024 characters.

Automation 179 8mo ago
AgentSecOps

sast-bandit

by AgentSecOps

Python security vulnerability detection using Bandit SAST with CWE and OWASP mapping. Use when: (1) Scanning Python code for security vulnerabilities and anti-patterns, (2) Identifying hardcoded secrets, SQL injection, command injection, and insecure APIs, (3) Generating security reports with severity classifications for CI/CD pipelines, (4) Providing remediation guidance with security framework references, (5) Enforcing Python security best practices in development workflows.

CI/CD 179 8mo ago
AgentSecOps

sast-horusec

by AgentSecOps

Multi-language static application security testing using Horusec with support for 18+ programming languages and 20+ security analysis tools. Performs SAST scans, secret detection in git history, and provides vulnerability findings with severity classification. Use when: (1) Analyzing code for security vulnerabilities across multiple languages simultaneously, (2) Detecting exposed secrets and credentials in git history, (3) Integrating SAST into CI/CD pipelines for secure SDLC, (4) Performing comprehensive security analysis during development, (5) Managing false positives and prioritizing security findings.

CLI Tools 179 8mo ago
alirezarezvani

ms365-tenant-manager

by alirezarezvani

Comprehensive Microsoft 365 tenant administration skill for setup, configuration, user management, security policies, and organizational structure optimization for Global Administrators

Analytics 836 9mo ago
alirezarezvani

tech-stack-evaluator

by alirezarezvani

Comprehensive technology stack evaluation and comparison tool with TCO analysis, security assessment, and intelligent recommendations for engineering teams

Processing 836 8mo ago
kochetkov-ma

brewcode:secrets-scan

by kochetkov-ma

Scans all git-tracked files for leaked secrets and credentials. Use when - scanning for secrets, security audit, finding leaked credentials. Trigger keywords - secrets scan, find credentials, security scan, leaked keys, security audit.

Processing 29 5mo ago
0xAxiom

Adversary Trainer - AI Agent Security Testing

by 0xAxiom

Stay secure, test early, test often. 🛡️

Analytics 18 5mo ago
0xAxiom

Code Generation Validator

by 0xAxiom

Web Interface: Browser-based validation tool

Security 18 5mo ago
AgentSecOps

secrets-gitleaks

by AgentSecOps

Hardcoded secret detection and prevention in git repositories and codebases using Gitleaks. Identifies passwords, API keys, tokens, and credentials through regex-based pattern matching and entropy analysis. Use when: (1) Scanning repositories for exposed secrets and credentials, (2) Implementing pre-commit hooks to prevent secret leakage, (3) Integrating secret detection into CI/CD pipelines, (4) Auditing codebases for compliance violations (PCI-DSS, SOC2, GDPR), (5) Establishing baseline secret detection and tracking new exposures, (6) Remediating historical secret exposures in git history.

Processing 179 8mo ago
nth5693

code-review

by nth5693

Systematic multi-perspective code review with consistent quality gates.

Code Review 371 7mo ago
waynesutton

convex-security-audit

by waynesutton

Deep security review patterns for authorization logic, data access boundaries, action isolation, rate limiting, and protecting sensitive operations

Auth 400 6mo ago
waynesutton

convex

by waynesutton

Umbrella skill for all Convex development patterns. Routes to specific skills like convex-functions, convex-realtime, convex-agents, etc.

Code Review 400 6mo ago
waynesutton

convex-security-check

by waynesutton

Quick security audit checklist covering authentication, function exposure, argument validation, row-level access control, and environment variable handling

Auth 400 6mo ago
rysweet

consensus-voting

by rysweet

Multi-agent consensus voting with domain-weighted expertise for critical decisions requiring structured validation

Agents 68 6mo ago
rysweet

computer-scientist-analyst

by rysweet

Analyzes events through computer science lens using computational complexity, algorithms, data structures, systems architecture, information theory, and software engineering principles to evaluate feasibility, scalability, security. Provides insights on algorithmic efficiency, system design, computational limits, data management, and technical trade-offs. Use when: Technology evaluation, system architecture, algorithm design, scalability analysis, security assessment. Evaluates: Computational complexity, algorithmic efficiency, system architecture, scalability, data integrity, security.

Processing 68 6mo ago
rysweet

n-version-workflow

by rysweet

N-version programming for critical implementations - generates N independent solutions and selects the best through comparison

Agents 68 6mo ago
BagelHole

iso27001-compliance

by BagelHole

Implement ISO 27001 Information Security Management System. Configure ISMS controls and risk management. Use when implementing enterprise security frameworks.

Code Review 42 5mo ago
fortunto2

solo-audit

by fortunto2

Health check knowledge base for broken links, missing frontmatter, tag inconsistencies, and coverage gaps. Use when user says "audit KB", "check frontmatter", "find broken links", "tag cleanup", or "knowledge base quality". Do NOT use for SEO audits (use /seo-audit) or code reviews.

Code Review 17 5mo ago
parhumm

sec-audit-remediate

by parhumm

Generate security fixes from detect-dev findings with regression tests. Use when remediating security vulnerabilities.

Code Gen 25 5mo ago
zhaono1

code-reviewer

by zhaono1

Reviews pull requests and code changes for quality, security, and best practices. Use when user asks for code review, PR review, or mentions reviewing changes.

Code Review 66 6mo ago
maroffo

cloud-infrastructure

by maroffo

"AWS/GCP cloud infrastructure: Well-Architected, security, cost, observability. Use when working with Terraform outputs, IAM policies, VPC design, load balancers, or cloud architecture decisions."

Cloud 15 5mo ago
u9401066

auto-paper

by u9401066

全自動論文撰寫 + 閉環自我改進系統。 LOAD THIS SKILL WHEN: 全自動寫論文、auto write、自動撰寫、幫我寫完整篇、autopilot、從頭到尾、一鍵寫論文 CAPABILITIES: 編排所有研究 Skills + 3 層 Audit Hooks + Meta-Learning 自我改進

Code Review 10 5mo ago