Security

Security scanning and vulnerability detection

Showing 1561-1584 of 2332 skills
hackIDLE

mesh-security

by hackIDLE

Analyze Istio, Consul, and Linkerd service mesh configurations for security vulnerabilities with NIST 800-53 control mappings. Use when users need to audit mesh security, identify misconfigurations, check mTLS settings, review ACL policies, or prepare for FedRAMP assessments. Triggers on keywords like "mesh config", "istio security", "consul ACL", "linkerd policy", "service mesh audit", or "NIST compliance".

Code Review 2 7mo ago
Agentient

cicd-patterns

by Agentient

Implement CI/CD pipelines with GitHub Actions and Cloud Build for GCP deployments. PROACTIVELY activate for: (1) setting up GitHub Actions workflows for GCP, (2) configuring Cloud Build pipelines, (3) implementing Workload Identity federation. Triggers: "cicd", "github actions", "cloud build"

CI/CD 2 7mo ago
vchirrav

sast-eslint-security

by vchirrav

Run ESLint with security plugins on JavaScript/TypeScript code. Detects eval usage, non-literal RegExp, prototype pollution, and other JS/TS security anti-patterns.

Processing 2 6mo ago
hackIDLE

iac-security-scanner

by hackIDLE

Scan Terraform, Kubernetes, CloudFormation, ARM templates, and Dockerfiles for security misconfigurations using 790 Terrascan-derived policies with NIST 800-53 control mappings. Use when users need to review IaC for security issues, audit cloud configurations, check compliance posture, harden infrastructure code, or identify misconfigurations across AWS, Azure, GCP, and Kubernetes before deployment.

Cloud 2 6mo ago
vchirrav

container-scan-dockle

by vchirrav

Run Dockle to audit container images against CIS Docker Benchmark and best practices. Checks for running as root, sensitive files, HEALTHCHECK, and more.

Processing 2 6mo ago
vchirrav

sast-spotbugs

by vchirrav

Run SpotBugs with Find Security Bugs plugin on Java code. Detects injection flaws, XXE, insecure crypto, SSRF, deserialization, and other JVM security bugs.

CLI Tools 2 6mo ago
vchirrav

sast-gosec

by vchirrav

Run gosec SAST scans on Go code. Detects SQL injection, hardcoded credentials, insecure TLS, command injection, and other Go security issues.

Processing 2 6mo ago
Agentient

firestore-security-rules-generation

by Agentient

Firestore Security Rules patterns for user-scoped access, RBAC, and field validation. PROACTIVELY activate for: (1) implementing user-scoped data access rules, (2) setting up role-based access with custom claims, (3) validating fields and enforcing immutability. Triggers: "security rules", "rbac", "firestore rules"

Auth 2 7mo ago
pramseier-tenb

security-intel-brief

by pramseier-tenb

Build a leadership-ready security intelligence brief (PDF) for selected vendors and software products, down to specific versions. Collects CVEs, CISA KEV (known exploited vulnerabilities) status, latest/fixed versions, end-of-life dates, vendor advisories, and recent security news, then assigns per-product risk ratings. Use this skill whenever the user wants security research on a vendor or product, asks about CVEs/KEVs/vulnerabilities affecting software they run, wants a patch/version exposure check, or asks for a security report or briefing for leadership — even if they don't say "PDF" or "brief". Trigger on phrases like "what vulnerabilities affect X", "security posture of [vendor/product]", "CVE report", "vulnerability briefing", "is [software version] safe/exposed".

Processing 2 2mo ago
vchirrav

sast-semgrep

by vchirrav

Run Semgrep SAST scans on code. Supports 30+ languages with OWASP, security, and custom rulesets. Parses results and provides remediation guidance.

CI/CD 2 6mo ago
vchirrav

secure-coding-generate

by vchirrav

Generate secure code following OWASP Secure Coding rules. Automatically detects the security domain and produces code with inline Rule ID citations (e.g., [INPUT-04], [AUTH-07]) plus a rules-applied summary.

Auth 2 6mo ago
poindexter12

terraform

by poindexter12

Terraform infrastructure-as-code reference for HCL syntax, state management, module design, and provider configuration. Use when working with Terraform configurations (.tf files), running terraform commands, troubleshooting state issues, or designing modules. Includes Telmate Proxmox provider patterns. Triggers: terraform, tfstate, .tf files, HCL, modules, providers, proxmox_vm_qemu.

Cloud 7 8mo ago
manastalukdar

container-optimize

by manastalukdar

Docker/container optimization for size, layers, caching, and security

Docker 1 7mo ago
famaoai-creator

license-auditor

by famaoai-creator

Output path for license report

Code Gen 1 6mo ago
PrakharMNNIT

backend-principle-eng-javascript-pro-max

by PrakharMNNIT

"Principal backend engineering intelligence for JavaScript services. Actions: plan, design, build, implement, review, fix, optimize, refactor, debug, secure, scale backend code and architectures. Focus: correctness, reliability, performance, security, observability, scalability, operability, cost."

Monitoring 1 7mo ago
famaoai-creator

investor-readiness-audit

by famaoai-creator

Output file path

Code Review 1 6mo ago
truongnat

code-review

by truongnat

Perform deep semantic code reviews that go beyond syntax checking. Evaluates architecture adherence, security vulnerabilities, performance bottlenecks, and maintainability. Use when reviewing PRs, auditing code quality, or when the user asks for a code review of any file or module.

Code Review 7 6mo ago
famaoai-creator

financial-modeling-maestro

by famaoai-creator

Output file path

Code Review 1 6mo ago
samChang72

docker-expert

by samChang72

Docker containerization expert with deep knowledge of multi-stage builds, image optimization, container security, Docker Compose orchestration, and production deployment patterns. Use PROACTIVELY for Dockerfile optimization, container issues, image size problems, security hardening, networking, and orchestration challenges.

Docker 1 7mo ago
famaoai-creator

ai-ethics-auditor

by famaoai-creator

Audits AI systems for bias, fairness, and privacy. Analyzes prompts and datasets to ensure ethical and safe AI implementation.

Code Review 1 6mo ago
famaoai-creator

red-team-adversary

by famaoai-creator

Output path for report

Code Review 1 6mo ago
famaoai-creator

mcp-aws-knowledge-connector

by famaoai-creator

status: implemented

Cloud 1 6mo ago
gpu-cli

skill-shield

by gpu-cli

Security audit and active remediation for agent skills. Analyzes SKILL.md instructions and bundled scripts for prompt injection, data exfiltration, excessive permissions, supply chain risks, and other threats. Presents findings inline, optionally generates reports, and can rewrite skills to remove security concerns.

Code Review 1 6mo ago
famaoai-creator

quality-scorer

by famaoai-creator

Output JSON path

Code Review 1 6mo ago