- Home
- /
- Categories
- /
- Security
Security
Security scanning and vulnerability detection
ui-ux-audit
by WomenDefiningAI
Mandatory audit workflow for UI/UX changes that reads current state FIRST, checks for redundancy, respects clean design philosophy, and identifies genuine gaps before implementation. Auto-invoked when user mentions UI, UX, design, layout, homepage, page improvements, visual changes, or interface modifications.
code-reviewer
by WomenDefiningAI
Research-backed code review skill with OWASP Top 10 security checks, SAST tool integration (SonarQube, CodeQL, Snyk), performance pattern detection, and automated quality standards enforcement. Auto-invoked for code review, security audit, PR analysis, and bug checking. Implements 2025 best practices with 92% faster vulnerability remediation.
action-item-organizer
by 89jobrien
Systematic framework for extracting actionable items from documents and
gitlab-vulnerability
by grandcamel
"GitLab vulnerability operations via API. ALWAYS use this skill when user wants to: (1) list security vulnerabilities, (2) view vulnerability details, (3) confirm/dismiss/resolve vulnerabilities, (4) view vulnerability findings."
senseguard
by fermionoid
Semantic security scanner for OpenClaw skills. Detects prompt injection, data exfiltration, and hidden instructions that traditional code scanners miss. Use when user asks to scan skills, check skill safety, or run a security audit.
security-engineering
by 89jobrien
Security architecture and implementation patterns. Use when designing
hm-coding-philosophy
by humanmade
Human Made engineering principles and code quality standards. Apply when writing code, reviewing code, planning implementations, or discussing architecture. Covers code quality priorities, simplicity over complexity, and avoiding over-engineering.
tax-loss-harvesting-tracker
by zen-tradings
Identifies and plans tax loss harvesting opportunities across a portfolio. Use when the user asks about tax loss harvesting, wants to find losses to offset gains, asks "how can I reduce my capital gains tax", "which positions should I sell for losses", "wash sale rules", "tax-efficient selling", or mentions offsetting gains with losses. Also triggers when users share portfolio positions with unrealized losses, ask about year-end tax planning for investments, or want to understand how harvesting losses works. Handles wash-sale compliance, replacement security suggestions, and cross-account tracking.
SkillSync MCP — Security-Gated Skill Manager
by adityasugandhi
Critical threats (prompt injection, RCE, credential theft) permanently block installation. Medium/high risk requires explicit force: true. All output is sanitized against prompt injection.
code-security-audit
by chaigon
对代码项目进行全面安全审计,支持 Python、Node.js、Go、Java 四种语言。 包含依赖漏洞扫描(结合原生工具 + Claude 分析)、代码安全模式检查(OWASP Top 10、注入、反序列化、 敏感信息泄露、认证授权、加密问题等)、业务逻辑审计、攻击链构建、配置审计、以及结构化报告输出。 触发场景:(1) 用户要求对项目进行安全审计/安全检查/代码审计 (2) 用户要求检查代码中的安全漏洞 (3) 用户要求进行依赖漏洞扫描 (4) 用户提到 security audit、vulnerability scan、代码审计、安全扫描、渗透测试前的代码审查 (5) 用户要求检查 OWASP Top 10 相关问题
vendor-rip
by vendor-rip
"Scan, assess, plan, and replace SaaS tools with AI-built code. Analyzes your codebase for SaaS integrations, generates migration plans, executes replacements, and validates results."
security-audit
by 89jobrien
Security auditing and vulnerability assessment specialist. Use when conducting
dependency-management
by 89jobrien
Dependency management specialist. Use when updating dependencies, scanning
nda-review
by jamietso
Reviews incoming one-way (unilateral) commercial NDAs in a jurisdiction-agnostic way, from either a Recipient or Discloser perspective (user-selected), producing a clause-by-clause issue log with preferred redlines, fallbacks, rationales, owners, and deadlines.
code-review
by 89jobrien
Expert code review specialist for quality, security, and maintainability.
security-analysis-skills
by kimasplund
Comprehensive security analysis framework teaching STRIDE threat modeling, OWASP Top 10 vulnerabilities, CVSS risk scoring, and secure coding patterns. Use when conducting security assessments, code reviews, threat modeling, or implementing security controls. Applicable to all development work requiring security consideration.
avail
by hairyf
Avail Node—run chains, Kate RPC for data availability, block authoring, and runtime APIs for DA tooling.
claude-hooks
by 89jobrien
Claude Code hooks configuration specialist. Use when creating hooks for
Cognitive Governance
by AmnadTaowsoam
Cognitive Governance is the God-Mode protocol that implements deep, unblockable
cloud-infrastructure
by 89jobrien
Cloud infrastructure design and deployment patterns for AWS, Azure, and
simple-deployment-on-vm
by stakpak
How to do simple but secure deployments using virtual machines on different cloud providers
python-security-hardening
by melvinmt
Harden Python projects with security-first development practices. Enforces 100% test coverage, static analysis, secret scanning, mutation testing, pre-commit hooks, and SOC 2 compliance. Use when setting up security tooling, writing security tests, or hardening a Python codebase.
Algorithmic Self Discovery
by AmnadTaowsoam
Algorithmic Self-Discovery is the God-Mode protocol that enables AI agents
solidity
by hairyf
Solidity language and compiler — source layout, types, contracts, control flow, security, compiler, ABI, internals.