Security

Security scanning and vulnerability detection

Showing 1777-1800 of 2236 skills
lukeslp

quality-audit

by lukeslp

"Code quality auditing skill that runs real analysis tools in the sandbox. Use when: auditing a codebase for security vulnerabilities, checking dependency health, scanning for accessibility issues, measuring performance, running linters, or generating a comprehensive quality report for a project."

Accessibility 2 5mo ago
rafaelcalleja

Gemini CLI

by rafaelcalleja

Consult Google Gemini CLI for second opinions on architecture, debugging, and security audits. Use Gemini's 1M+ context window for comprehensive code analysis. Compare Flash (fast) vs Pro (thorough) vs 3-Pro-Preview (cutting-edge). Use when: need second opinion on architectural decisions, stuck debugging after 2+ attempts, writing security- sensitive code, planning refactors (5+ files), approaching 70%+ context capacity, unfamiliar with tech stack, need peer review, or want Flash vs Pro vs 3-Pro-Preview comparison. Keywords: gemini-cli, google gemini, gemini command line, second opinion, model comparison, gemini-2.5-flash, gemini-2.5-pro, gemini-3-pro-preview, architectural decisions, debugging assistant, code review gemini, security audit gemini, 1M context window, AI pair programming, gemini consultation, flash vs pro, AI-to-AI prompting, peer review, codebase analysis, gemini CLI tool, shell gemini, command line AI assistant, gemini architecture advice, gemini debug help, gemini security scan, gemini code compare

CLI Tools 2 7mo ago
ahmed9500070

securebydesign

by ahmed9500070

Enforce security-by-design in every line of code, architecture decision, and system recommendation. Activate whenever the user is: building an app, writing code, designing an API, setting up infrastructure, integrating an LLM, reviewing code, planning a deployment, or asking about authentication, data storage, or external service integration. Do not wait to be asked. Proactively flag security issues and apply these guidelines.

Auth 2 4mo ago
jorgealves

gdpr-ccpa-privacy-auditor

by jorgealves

Audits web applications to ensure declared privacy policies match actual technical data collection practices. Use to identify discrepancies in cookie usage, tracking scripts, and user data handling.

Code Review 2 5mo ago
cuozg

unity-review-quality

by cuozg

Full Unity project audit — A-F graded HTML report covering architecture, performance, best practices, tech debt. Triggers — 'project audit', 'quality audit', 'project review', 'code quality report', 'tech debt audit'.

Code Review 2 4mo ago
liuchiawei

code-review-checklist

by liuchiawei

"Comprehensive checklist for conducting thorough code reviews covering functionality, security, performance, and maintainability"

Code Review 2 5mo ago
jorgealves

pedagogical-code-grader

by jorgealves

Evaluates student code submissions based on conceptual mastery rather than just correctness. Use to provide high-quality educational feedback on architectural patterns and programming logic.

Code Review 2 5mo ago
vchirrav

sca-pip-audit

by vchirrav

Run pip-audit for Python dependency vulnerability scanning. Checks installed packages and requirements files against the OSV and PyPI advisory databases.

Code Review 2 5mo ago
clearsmog

visual-audit

by clearsmog

Adversarial visual layout audit of documents and slides. Checks overflow, font consistency, component fatigue, and spacing. Supports .tex, .qmd, and .typ files.

Code Review 2 4mo ago
gannonh

kata-audit-milestone

by gannonh

Verify milestone achievement against its definition of done, checking requirements coverage, cross-phase integration, and end-to-end flows. Triggers include "audit milestone", "verify milestone", "check milestone", and "milestone audit". This skill reads existing phase verification files, aggregates technical debt and gaps, and spawns an integration checker for cross-phase wiring.

Code Review 2 5mo ago
liuchiawei

code-review-excellence

by liuchiawei

Master effective code review practices to provide constructive feedback, catch bugs early, and foster knowledge sharing while maintaining team morale. Use when reviewing pull requests, establishing review standards, or mentoring developers.

Code Review 2 5mo ago
vchirrav

mobile-security-mobsf

by vchirrav

Run MobSF (Mobile Security Framework) for automated static and dynamic analysis of Android and iOS apps. Detects insecure storage, weak crypto, hardcoded secrets, and permission issues.

API Dev 2 5mo ago
vchirrav

sast-cargo-audit

by vchirrav

Run cargo-audit and cargo-geiger on Rust code. Audits dependencies for known vulnerabilities and detects unsafe code usage for memory safety review.

Code Review 2 5mo ago
jorgealves

module-project-generator

by jorgealves

Generates end-to-end student projects that reinforce specific modular learning objectives. Use to create professional-grade portfolio pieces and assessment tasks for engineering mentees.

Code Gen 2 5mo ago
jforksy

ciso-security

by jforksy

IT security operations - access control reviews, vulnerability management, incident response, and security tool configuration

Processing 2 5mo ago
jforksy

skills-audit

by jforksy

Audit, validate, and maintain the skills ecosystem - structure checks, hierarchy mapping, lint, and health dashboard

Code Review 2 5mo ago
lukhanteanini21-glitch

code-audit

by lukhanteanini21-glitch

Professional code security audit skill covering 55+ vulnerability types. Enhanced with WooYun 88,636 real-world vulnerability cases (2010-2016). This skill should be used when performing security audits, vulnerability scanning, penetration testing preparation, or code review for security issues. Supports 9 languages: Java, Python, Go, PHP, JavaScript/Node.js, C/C++, .NET/C#, Ruby, Rust. Includes 143 mandatory detection items across all languages with language-specific checklists. Covers SQL injection, XSS, RCE, deserialization, SSRF, JNDI injection, JDBC protocol injection, authentication bypass, business logic flaws, race conditions, and modern security domains (LLM, Serverless, Android). WooYun integration adds: statistical-driven parameter priority, bypass techniques library, logic vulnerability patterns, and real-case references. v1.0: Initial public release with Docker deployment verification framework.

Security 2 5mo ago
plutowang

code-critic

by plutowang

Use when explicitly asked to critique code, find bugs, audit code quality, analyze performance, or review a specific code snippet for security issues. Do not use for full branch or PR reviews.

Code Review 2 5mo ago
vchirrav

sca-grype

by vchirrav

Run Anchore Grype for SCA vulnerability scanning on filesystems and container images. Matches dependencies against multiple vulnerability databases (NVD, GitHub, OS advisories).

Processing 2 5mo ago
vchirrav

cloud-security-prowler

by vchirrav

Run Prowler for comprehensive cloud security posture assessment. Audits AWS, Azure, and GCP against CIS Benchmarks, PCI-DSS, HIPAA, GDPR, and other compliance frameworks.

Cloud 2 5mo ago
jforksy

cto

by jforksy

CTO Co-Pilot - strategic technical leadership, architecture decisions, infrastructure optimization, and engineering team coordination

Code Review 2 5mo ago
masanao-ohba

evaluation-criteria

by masanao-ohba

Defines evaluation criteria and scoring methodologies for deliverable assessment

Debugging 2 6mo ago
NewmanXBT

x-content-optimizer

by NewmanXBT

Audit and optimize tweets, X articles, and threads for X's recommendation algorithm. Use when user wants to review content before posting, improve engagement potential, or get algorithm-friendly suggestions. Triggers on /x-content-optimizer or requests to "review tweet", "optimize for X algorithm", "audit my post", or "improve engagement".

Code Review 2 6mo ago
vchirrav

malware-scan-yara

by vchirrav

Run YARA rules for pattern-based malware identification. Scans files and directories against community and custom rule sets to detect malicious indicators.

Processing 2 5mo ago