Security

Security scanning and vulnerability detection

Showing 1129-1152 of 2332 skills
crtvrffnrt

pentest-input-protocol-manipulation

by crtvrffnrt

"Security assessment skill for input validation abuse and protocol-level manipulation. Use when prompts include injection, parser differential testing, request smuggling, method tampering, header confusion, serialization abuse, or payload mutation for exploitability testing. Do not use when the task is mainly authz boundary review, business workflow abuse, or report synthesis."

Automation 3 6mo ago
lisbeth718

pseo-orchestrate

by lisbeth718

Orchestrate the full programmatic SEO implementation by coordinating all pseo-* skills in the correct order. Use when implementing pSEO from scratch, running the full pSEO pipeline, or when the user asks to "set up programmatic SEO" or "build pSEO pages" without specifying a single skill.

Code Review 53 7mo ago
hylarucoder

ast-grep-rule-crafter

by hylarucoder

Write AST-based code search and rewrite rules using ast-grep YAML. Create linting rules, code modernizations, and API migrations with auto-fix. Use when the user mentions ast-grep, tree-sitter patterns, code search rules, lint rules with YAML, AST matching, or code refactoring patterns.

CLI Tools 53 8mo ago
lisbeth718

pseo-audit

by lisbeth718

Audit and assess a codebase for programmatic SEO readiness at 1000+ page scale. Use when starting a pSEO project, evaluating an existing codebase for pSEO gaps, or when the user asks to audit, assess, or review their site for programmatic SEO scalability.

Code Review 53 7mo ago
julianromli

backend-dev

by julianromli

Comprehensive backend development workflow that orchestrates expert analysis, architecture design, implementation, and deployment using the integrated toolset. Handles everything from API design and database architecture to security implementation and DevOps automation.

Performance 52 9mo ago
andrew

managing-dependencies

by andrew

Evaluates packages, manages dependencies, and addresses supply chain security. Use when adding npm/pip/cargo/bundler/go dependencies, auditing packages, reviewing lockfile changes, checking for vulnerabilities, comparing package alternatives, or assessing package trustworthiness.

Code Review 16 7mo ago
breethomas

ai-debug

by breethomas

Diagnose why an AI feature is underperforming, hallucinating, or behaving inconsistently. Uses 4D audit to work backwards from symptoms to root cause.

Code Review 16 6mo ago
ratacat

agent-native-audit

by ratacat

Run comprehensive agent-native architecture review with scored principles

Agents 51 7mo ago
Exploration-labs

skill-security-analyzer

by Exploration-labs

Comprehensive security risk analysis for Claude skills. Use when asked to analyze security risks, review security stance, audit skills for vulnerabilities, check security before deployment, or evaluate safety of skill files. Triggers include "analyze security," "security risks," "security audit," "security review," "is this skill safe," or "check for vulnerabilities."

Code Review 51 10mo ago
Exploration-labs

vibe-coding

by Exploration-labs

Comprehensive guide for AI-assisted vibe coding. Use when the user wants to build applications through natural language prompts using tools like Lovable, Cursor, Replit, or Bolt. Includes best practices, pitfall awareness, tool-specific guidance, architectural decision support, and MVP scope definition with a bias toward cutting features aggressively to ship faster.

Git & VCS 51 10mo ago
tzf1003

kali-tools

by tzf1003

Comprehensive reference for Kali Linux tools. Use this skill to find, understand, and use security tools in Kali Linux. It provides a categorized index of all available tools.

Git & VCS 49 8mo ago
maxnorm

magento-code-reviewer

by maxnorm

Reviews Magento 2 code for quality, security, performance, and compliance with PSR-12 and Magento coding standards. Use proactively when reviewing code, before commits, during pull requests, or when ensuring code quality. Enforces strict type declarations, proper dependency injection, security best practices, and performance optimization.

Code Review 28 7mo ago
jpoutrin

aws-cloud

by jpoutrin

AWS cloud infrastructure patterns and best practices. Use when designing or implementing AWS solutions including EC2, Lambda, S3, RDS, and infrastructure as code with Terraform or CloudFormation.

Cloud 15 7mo ago
jgamaraalv

owasp-security-review

by jgamaraalv

"Review code and architectures against the OWASP Top 10:2025 — the ten most critical web application security risks. Use when: (1) reviewing code for security vulnerabilities, (2) auditing a feature or codebase against OWASP categories, (3) providing remediation guidance for identified vulnerabilities, (4) writing new code and needing secure coding patterns. Triggers: 'review for security', 'OWASP audit', 'check for vulnerabilities','security checklist', 'is this code secure', 'security review', 'fix vulnerability'."

Auth 15 6mo ago
jgamaraalv

docker

by jgamaraalv

"Docker containerization reference — multi-stage builds, Compose configs, image optimization, and container security for Yarn 4 monorepos. Use when: (1) creating or optimizing Dockerfiles, (2) configuring docker-compose for dev or production, (3) reducing image size with multi-stage builds, (4) hardening container security, or (5) setting up health checks and resource limits."

API Dev 15 6mo ago
mujez

security-engineering

by mujez

Application security and infrastructure security expert. Use when reviewing code for vulnerabilities, implementing authentication/authorization, securing APIs, hardening infrastructure, threat modeling, implementing encryption, or conducting security audits. Covers OWASP Top 10, secure coding, DevSecOps, and compliance.

API Dev 47 7mo ago
FuzulsFriend

vibe-code-health-check

by FuzulsFriend

Scans any codebase and grades it A through F across 6 health dimensions (security, error handling, code structure, performance, deployment readiness, UX basics). Use when asked to "check my code", "audit my project", "is my code ready to ship", "review my codebase", "health check", "code quality check", "is my app secure", "vibe check my code", "scan my project", or "what is wrong with my code". Takes a codebase path and returns a scored report card with plain-English fixes.

Code Review 6 5mo ago
pubnub

pubnub-security

by pubnub

Secure PubNub applications with Access Manager, encryption, and TLS

Auth 6 7mo ago
martinholovsky

appsec-expert

by martinholovsky

"Elite Application Security engineer specializing in secure SDLC, OWASP Top 10 2025, SAST/DAST/SCA integration, threat modeling (STRIDE), and vulnerability remediation. Expert in security testing, cryptography, authentication patterns, and DevSecOps automation. Use when securing applications, implementing security controls, or conducting security assessments."

Auth 45 9mo ago
martinholovsky

Encryption Skill

by martinholovsky

Encryption done wrong is worse than no encryption - it provides false confidence.

Processing 45 9mo ago
martinholovsky

OS Keychain Skill

by martinholovsky

The OS keychain is your first line of defense. Misuse negates all downstream encryption.

API Dev 45 9mo ago
martinholovsky

Auto-Update Systems Expert

by martinholovsky

Expert in Tauri auto-update implementation with focus on signature verification, rollback mechanisms, staged rollouts, and secure update distribution

Processing 45 9mo ago
martinholovsky

rust

by martinholovsky

Systems programming expertise for Tauri desktop application backend development with memory safety and performance optimization

CLI Tools 45 9mo ago
martinholovsky

macos-accessibility

by martinholovsky

"Expert in macOS Accessibility APIs (AXUIElement) for desktop automation. Specializes in secure automation of macOS applications with proper TCC permissions, element discovery, and system interaction. HIGH-RISK skill requiring strict security controls."

Accessibility 45 9mo ago