Security

Security scanning and vulnerability detection

Showing 1729-1752 of 2326 skills
clearsmog

qa

by clearsmog

Adversarial quality audit loop. Critic finds issues, fixer applies fixes, loops until APPROVED (max 5 rounds). Works with any document format.

Code Review 2 6mo ago
DUBSOpenHub

design-auditor

by DUBSOpenHub

๐Ÿ” Design Auditor โ€” paste a URL, get 5 ranked fixes to improve conversions. Analyzes layout, performance, accessibility, and CTA effectiveness. Say "audit <url>" to start, or "audit local" for a local dev server.

Accessibility 2 6mo ago
masanao-ohba

nextjs-deliverable-criteria

by masanao-ohba

Quality gates and acceptance criteria for Next.js 15 App Router projects

Code Review 2 7mo ago
vchirrav

tls-scan-testssl

by vchirrav

Run testssl.sh to analyze TLS/SSL configurations. Checks cipher suites, protocols, certificate validity, known vulnerabilities (Heartbleed, POODLE, ROBOT), and compliance.

Processing 2 6mo ago
ma1orek

attack-tree-construction

by ma1orek

Build comprehensive attack trees to visualize threat paths. Use when mapping attack scenarios, identifying defense gaps, or communicating security risks to stakeholders.

Processing 2 7mo ago
vchirrav

dast-nuclei

by vchirrav

Run Nuclei template-based vulnerability scanner. Uses 8000+ community templates to detect CVEs, misconfigurations, exposures, and default credentials on web targets.

Code Gen 2 6mo ago
costa-marcello

review-code

by costa-marcello

"Reviews current git changes with a senior engineer lens. Detects SOLID violations, YAGNI/DRY/KISS breaches, security risks, performance issues, and proposes actionable improvements. Use when reviewing pull requests, checking code quality before merging, or auditing changes for security vulnerabilities."

Code Review 2 6mo ago
vchirrav

sast-flawfinder

by vchirrav

Run Flawfinder SAST scans on C/C++ code. Detects buffer overflows, format string vulnerabilities, race conditions, and other memory safety issues.

Processing 2 6mo ago
Kooooooma

code-security-scanner

by Kooooooma

Scan code repositories for security threats including data exfiltration, backdoors, malicious code injection, dependency chain risks, and sensitive file access. Use this skill when users want to audit a codebase (especially TypeScript/JavaScript/Node.js projects) for security vulnerabilities, detect hidden malware, review npm dependencies for supply-chain attacks, check for credential leaks, or perform a pre-deployment security review. Triggers on requests like "scan for malicious code", "security audit", "check for backdoors", "review dependencies for vulnerabilities", "detect data exfiltration".

Code Review 2 6mo ago
vchirrav

dast-zap

by vchirrav

Run OWASP ZAP for Dynamic Application Security Testing. Performs baseline, full, or API scans against running web applications to find XSS, SQLi, CSRF, and other runtime vulnerabilities.

API Dev 2 6mo ago
ahmed9500070

securebydesign

by ahmed9500070

Enforce security-by-design in every line of code, architecture decision, and system recommendation. Activate whenever the user is: building an app, writing code, designing an API, setting up infrastructure, integrating an LLM, reviewing code, planning a deployment, or asking about authentication, data storage, or external service integration. Do not wait to be asked. Proactively flag security issues and apply these guidelines.

Auth 2 6mo ago
vchirrav

api-security-spectral

by vchirrav

Run Spectral to lint OpenAPI and AsyncAPI specs for security issues. Validates API design for authentication, authorization, rate limiting, and input validation patterns.

API Dev 2 6mo ago
cuozg

unity-review-quality

by cuozg

Full Unity project audit โ€” A-F graded HTML report covering architecture, performance, best practices, tech debt. Triggers โ€” 'project audit', 'quality audit', 'project review', 'code quality report', 'tech debt audit'.

Code Review 2 6mo ago
vchirrav

sca-pip-audit

by vchirrav

Run pip-audit for Python dependency vulnerability scanning. Checks installed packages and requirements files against the OSV and PyPI advisory databases.

Code Review 2 6mo ago
clearsmog

visual-audit

by clearsmog

Adversarial visual layout audit of documents and slides. Checks overflow, font consistency, component fatigue, and spacing. Supports .tex, .qmd, and .typ files.

Code Review 2 6mo ago
vchirrav

sast-bandit

by vchirrav

Run Bandit SAST scans on Python code. Detects common security issues like SQL injection, hardcoded passwords, exec usage, and insecure crypto.

Processing 2 6mo ago
vchirrav

mobile-security-mobsf

by vchirrav

Run MobSF (Mobile Security Framework) for automated static and dynamic analysis of Android and iOS apps. Detects insecure storage, weak crypto, hardcoded secrets, and permission issues.

API Dev 2 6mo ago
vchirrav

sast-cargo-audit

by vchirrav

Run cargo-audit and cargo-geiger on Rust code. Audits dependencies for known vulnerabilities and detects unsafe code usage for memory safety review.

Code Review 2 6mo ago
jorgealves

module-project-generator

by jorgealves

Generates end-to-end student projects that reinforce specific modular learning objectives. Use to create professional-grade portfolio pieces and assessment tasks for engineering mentees.

Code Gen 2 7mo ago
vchirrav

secret-scan-gitleaks

by vchirrav

Run Gitleaks to detect hardcoded secrets in git repositories. Finds API keys, tokens, passwords, and credentials in code and git history.

Processing 2 6mo ago
vchirrav

sca-grype

by vchirrav

Run Anchore Grype for SCA vulnerability scanning on filesystems and container images. Matches dependencies against multiple vulnerability databases (NVD, GitHub, OS advisories).

Processing 2 6mo ago
vchirrav

cloud-security-prowler

by vchirrav

Run Prowler for comprehensive cloud security posture assessment. Audits AWS, Azure, and GCP against CIS Benchmarks, PCI-DSS, HIPAA, GDPR, and other compliance frameworks.

Cloud 2 6mo ago
masanao-ohba

evaluation-criteria

by masanao-ohba

Defines evaluation criteria and scoring methodologies for deliverable assessment

Debugging 2 7mo ago
NewmanXBT

x-content-optimizer

by NewmanXBT

Audit and optimize tweets, X articles, and threads for X's recommendation algorithm. Use when user wants to review content before posting, improve engagement potential, or get algorithm-friendly suggestions. Triggers on /x-content-optimizer or requests to "review tweet", "optimize for X algorithm", "audit my post", or "improve engagement".

Code Review 2 7mo ago