Security

Security scanning and vulnerability detection

Showing 1537-1560 of 2332 skills
SlumPark

bankrguard

by SlumPark

Base chain token security scan and developer history tracking engine (v38.8)

Security 4 4mo ago
luan

brainstorm

by luan

"Collaborative design for greenfield features and new ideas. Triggers: 'brainstorm', 'ideate', 'new feature design', 'help me think through', 'what should we build', 'help me design', 'think through X with me', 'I want to build something new'. Do NOT use when: the user wants to investigate an existing codebase or research a specific technical question — use /scope instead."

Code Gen 4 6mo ago
acedergren

oracle-dba

by acedergren

"Oracle DBA and DevOps expertise for Autonomous Database (ADB) on OCI. This skill should be used when managing Oracle Autonomous Databases, writing optimized SQL/PLSQL, configuring security (TDE, Database Vault, Data Safe), implementing HA/DR (Data Guard, PITR), using OCI CLI for database operations, or integrating with Oracle MCP servers for AI-assisted database management. Covers Oracle Database versions 19c, 21c, 23ai, and 26ai."

Agents 4 8mo ago
QuestNova502

fda-consultant-specialist

by QuestNova502

Senior FDA consultant and specialist for medical device companies including HIPAA compliance and requirement management. Provides FDA pathway expertise, QSR compliance, cybersecurity guidance, and regulatory submission support. Use for FDA submission planning, QSR compliance assessments, HIPAA evaluations, and FDA regulatory strategy development.

Code Review 4 7mo ago
89jobrien

network-engineering

by 89jobrien

Network architecture, troubleshooting, and infrastructure patterns. Use

Code Review 4 8mo ago
OTTTTTO

safe-exec

by OTTTTTO

Safe command execution for OpenClaw Agents with automatic danger pattern detection, risk assessment, user approval workflow, and audit logging. Use when agents need to execute shell commands that may be dangerous (rm -rf, dd, fork bombs, system directory modifications) or require human oversight. Provides multi-level risk assessment (CRITICAL/HIGH/MEDIUM/LOW), in-session notifications, pending request management, and non-interactive environment support for agent automation.

CLI Tools 3 6mo ago
AtlasPA

openclaw-security

by AtlasPA

"Unified security suite for agent workspaces. Installs, configures, and orchestrates all 11 OpenClaw security tools in one command — integrity, secrets, permissions, network, audit trail, signing, supply chain, credentials, injection defense, compliance, and incident response."

CLI Tools 3 7mo ago
pluginagentmarketplace

testing-methodologies

by pluginagentmarketplace

Structured approaches for AI security testing including threat modeling, penetration testing, and red team operations

ML Ops 3 8mo ago
pluginagentmarketplace

security-testing

by pluginagentmarketplace

Comprehensive security testing automation for AI/ML systems with CI/CD integration

Security 3 8mo ago
hieutrtr

code-review-security

by hieutrtr

Security-focused code review checklist and automated scanning patterns. Use when reviewing pull requests for security issues, auditing authentication/authorization code, checking for OWASP Top 10 vulnerabilities, or validating input sanitization. Covers SQL injection prevention, XSS protection, CSRF tokens, authentication flow review, secrets detection, dependency vulnerability scanning, and secure coding patterns for Python (FastAPI) and React. Does NOT cover deployment security (use docker-best-practices) or incident handling (use incident-response).

Auth 8 7mo ago
ilude

Security-First-Design Skill

by ilude

Apply this framework when security is a primary design concern. Work through phases sequentially, documenting findings and mitigations at each stage.

Auth 8 9mo ago
ilude

structured-analysis

by ilude

Apply structured analytical frameworks to any artifact (prompts, systems, documents, code). 12 frameworks in 3 tiers: Core (4 universal), Auto-Invoke (specialized), On-Demand (advanced). Includes adversarial-review for finding blind spots and post-plan validation workflow.

Code Gen 8 9mo ago
xinbenlv

codereview-security

by xinbenlv

Zero-trust security analysis like Cursor BugBot. Focuses exclusively on finding exploitable vulnerabilities with high confidence (>95%). Use when reviewing files that handle input parsing, database queries, authentication, or external API calls.

Auth 8 7mo ago
thechandanbhagat

code-review

by thechandanbhagat

Perform automated code reviews with best practices, security checks, and refactoring suggestions. Use when reviewing code, checking for vulnerabilities, or analyzing code quality.

CLI Tools 8 7mo ago
ilude

git-workflow

by ilude

Git workflow and commit guidelines. Trigger keywords: git, commit, push, .git, version control. MUST be activated before ANY git commit, push, or version control operation. Includes security scanning for secrets (API keys, tokens, .env files), commit message formatting with HEREDOC, logical commit grouping (docs, test, feat, fix, refactor, chore, build, deps), push behavior rules, safety rules for hooks and force pushes, and CRITICAL safeguards for destructive operations (filter-branch, gc --prune, reset --hard). Activate when user requests committing changes, pushing code, creating commits, rewriting history, or performing any git operations including analyzing uncommitted changes.

File Ops 8 8mo ago
intenxus

aave-security-foundations

by intenxus

Security baseline for AAVE integration and execution scripts. Use when user asks for AAVE security review, pre-trade checks, liquidation safety, allowance minimization, or execution hardening.

Code Review 8 6mo ago
LeonMelamud

code-security-audit

by LeonMelamud

Perform security audits on code changes, diffs, or branches to find high-confidence exploitable vulnerabilities. Use when asked to "audit security", "review for vulnerabilities", "security scan", "check for security issues", "audit this PR", "review these changes for security", or "find vulnerabilities in diff". Distinct from security-review (which provides secure coding patterns/checklists) — this skill actively audits code changes using a structured methodology with false positive filtering. Includes Python scripts for GitHub Action CI integration and PR evaluation.

Code Review 2 6mo ago
Tai-ch0802

skill-vetter

by Tai-ch0802

Security-first skill vetting for AI agents. Use before installing any skill from ClawdHub, GitHub, or other sources. Checks for red flags, permission scope, and suspicious patterns.

Code Review 2 6mo ago
vchirrav

container-scan-trivy

by vchirrav

Run Trivy to scan container images for OS and library vulnerabilities, misconfigurations, and secrets. Comprehensive multi-target security scanner.

Processing 2 6mo ago
Agentient

architecture-doc-auditor

by Agentient

Systematic completeness audit of Architecture Documentation using 188-item viewpoint-based checklist, severity-classified gap detection, technical debt indicators, and architecture anti-pattern scanning. Supports TOGAF, C4, arc42, and IEEE 42010 frameworks. PROACTIVELY activate for: (1) Architecture review gates, (2) ADR validation before implementation, (3) C4 diagram completeness check, (4) Technical debt assessment, (5) Pre-implementation validation, (6) Governance compliance audit, (7) Design doc handoff review. Triggers: "audit architecture", "review ADR", "check architecture doc", "validate design doc", "architecture review", "audit C4 diagrams", "check system context", "technical debt assessment", "architecture health check", "governance review", "architecture completeness"

Code Review 2 7mo ago
Jpkovas

code-audit-readonly

by Jpkovas

Execute a complete, deterministic, read-only repository audit and produce a single improvements.md action plan with traceable findings (file + lines), severity, category, impact, and high-level fixes. Use when users ask for full code audits, security/performance/architecture reviews, file-by-file analysis, or technical debt mapping without modifying project files.

Code Review 2 7mo ago
ferueda

review-spec

by ferueda

Review a spec document against codebase reality, identifying gaps and ensuring sound, robust implementations.

Code Review 2 7mo ago
Agentient

prd-completeness-auditor

by Agentient

Systematic completeness audit of Product Requirements Documents using 100+ item MECE checklist, severity-classified gap detection, and anti-pattern scanning. PROACTIVELY activate for: (1) PRD review before development handoff, (2) Requirements completeness assessment, (3) Identifying ambiguous requirements, (4) PRD template validation, (5) Finding missing stakeholder needs, (6) Detecting inconsistent acceptance criteria. Triggers: "audit PRD", "review requirements", "check PRD completeness", "validate requirements document", "PRD review", "requirements audit", "find gaps in PRD", "requirements completeness check", "PRD quality check"

Code Review 2 7mo ago
vchirrav

sca-npm-audit

by vchirrav

Run npm audit for Node.js dependency vulnerability scanning. Built-in SCA for npm projects with automatic fix suggestions.

Code Review 2 6mo ago