Security

Security scanning and vulnerability detection

Showing 1897-1920 of 2236 skills
HemSoft

simplisticate

by HemSoft

V1.0 - Identifies complexity in code and proposes targeted simplifications with risk assessment. Use when reducing code complexity.

Linting 1 5mo ago
nguyendinhquocx

brand-analyzer

by nguyendinhquocx

This skill should be used when the user requests brand analysis, brand guidelines creation, brand audits, or establishing brand identity and consistency standards. It provides comprehensive frameworks for analyzing brand elements and creating actionable brand guidelines based on requirements.

Code Gen 1 5mo ago
ma1orek

attack-tree-construction

by ma1orek

Build comprehensive attack trees to visualize threat paths. Use when mapping attack scenarios, identifying defense gaps, or communicating security risks to stakeholders.

Processing 1 5mo ago
keep-starknet-strange

starknet-skills

by keep-starknet-strange

Routes Cairo/Starknet coding and audit tasks to the smallest relevant module for focused, high-quality execution.

Code Review 1 4mo ago
jgarrison929

code-reviewer

by jgarrison929

Use when reviewing code changes, pull requests, or asking for code quality feedback. Covers readability, maintainability, security, performance, error handling, naming conventions, and test coverage.

Code Review 1 5mo ago
Prismas33

security-audit

by Prismas33

"Security auditing and pentesting skill. Use when asked 'analyze security', 'how would you attack', 'vulnerabilities', 'pentester mode', or 'security audit'."

Auth 1 5mo ago
agentic-reserve

percolator

by agentic-reserve

Percolator perpetual futures protocol development (Feb 2026). Educational research project for predictable risk management using profit-as-junior-claims model. Covers core risk engine (Rust), Solana programs, CLI tools, matcher development, testing, and formal verification. Alternative to traditional ADL with global coverage ratio and self-healing mechanics.

CLI Tools 1 5mo ago
danielcubas

security-audit-saas-generic

by danielcubas

Perform a full security audit for any SaaS web application regardless of specific framework or ORM. Use before production or after MVP completion.

Auth 1 4mo ago
juliomrqz

test-audit

by juliomrqz

Audit test suites (unit, integration, feature/E2E) for correctness, quality, and best practices. Use when the user wants to review, audit, validate, or improve tests in any programming language or framework (Jest, pytest, RSpec, JUnit, PHPUnit, etc.). Triggers on requests like "audit my tests", "review test quality", "check my test coverage", "are my tests good", or any request to evaluate test effectiveness.

Code Review 1 5mo ago
elsvv

yandex-cloud-cli

by elsvv

Manage Yandex Cloud infrastructure via the yc CLI. Use when the user asks to create, configure, manage, or troubleshoot any Yandex Cloud resource: VMs, disks, networks, security groups, databases (PostgreSQL, MySQL, ClickHouse, Redis/Valkey, MongoDB, OpenSearch, Greenplum, Kafka), Kubernetes, serverless functions/containers, S3 storage, CDN, load balancers, Lockbox secrets, KMS, certificates, DNS, container registry, DataProc, Data Transfer, logging, audit trails, organizations, WAF, or any other YC service. Triggers: Yandex Cloud, yc CLI, YC, managed-postgresql, managed-kubernetes, compute instance, serverless function, vpc network, alb, lockbox, yandex cloud.

Processing 1 5mo ago
cybertechajju

web-design-guidelines

by cybertechajju

Advanced web design patterns with AI-powered suggestions

Cloud 1 5mo ago
mmcmedia

Ad Audit — Paid Advertising Analysis for OpenClaw

by mmcmedia

→ I'll provide Meta, Google, TikTok, LinkedIn benchmarks relevant to your business

Code Review 1 5mo ago
fwehrling

forge-audit

by fwehrling

FORGE Security Agent — Threat modeling, OWASP audit, and compliance checks. Enterprise track only. Usage: /forge-audit

Code Review 1 4mo ago
yariv1025

owasp-serverless-top-10

by yariv1025

"OWASP Serverless Top 10 - prevention, detection, and remediation for serverless (Lambda, Functions) security. Use when building or reviewing serverless apps - event injection, over-permissioned functions, insecure deps, secrets, config, and other serverless-specific interpretations of the Web Top 10."

Auth 1 5mo ago
theepan

java-code-review

by theepan

Review Java source code for bugs, security vulnerabilities, performance problems, concurrency issues, AI-generated code quality issues, dependency licensing risks, and best practice violations. Use when a user asks to review Java code, audit Java files, find bugs in Java, check Java code quality, detect AI slop, check library licenses, or perform a code review on .java files. Accepts code provided directly, as local file paths, as directory paths, or as unified diff output.

Code Review 1 5mo ago
cachemoney

dependency-updater

by cachemoney

Smart dependency management for any language. Auto-detects project type, applies safe updates automatically, prompts for major versions, diagnoses and fixes dependency issues.

CLI Tools 1 5mo ago
iulspop

security-check

by iulspop

Security audit for web applications based on OWASP Top 10 and common vulnerabilities. Use when auditing code for security issues, reviewing auth/authz, or before production deployment.

Code Review 1 5mo ago
101mare

agent-builder

by 101mare

Knowledge for designing Claude Code agents with research-backed identity design (Soul Formula). Teaches experiential identities, anti-patterns, multi-file structure, and consolidation patterns. Use when building new agents or improving existing ones. Recognizes: "create an agent", "new agent for X", "agent that does Y", "how do I make an agent?", "agent configuration", "add a subagent", "agent frontmatter", "agent tools", "agent soul", "agent identity", "agent design"

Agents 1 4mo ago
BankkRoll

fastapi

by BankkRoll

"Scraped from https://fastapi.tiangolo.com/ Source: https://fastapi.tiangolo.com. Use when questions involve: advanced, deployment, how to, reference, tutorial."

API Dev 1 5mo ago
daaain

devcontainer-security

by daaain

Guide for setting up secured VS Code dev containers for coding agents. Use when creating or hardening a DevContainer to sandbox Claude Code or other coding agents, configuring Docker socket proxies, handling VS Code IPC escape vectors, setting up git worktree support, or verifying security controls. Covers threat model, three-layer defence architecture, Node.js/pnpm setup, and verification testing.

Docker 1 4mo ago
fefogarcia

dependency-audit

by fefogarcia

Comprehensive dependency health auditing for JavaScript/TypeScript projects. Run npm audit, detect outdated packages, check for security advisories, and verify license compliance. Prioritises vulnerabilities by severity and provides actionable fix recommendations. Use when: auditing project dependencies, checking for vulnerabilities, updating packages, preparing for release, or investigating "npm audit" warnings. Keywords: audit, vulnerabilities, outdated, security, npm audit, pnpm audit, CVE, GHSA, license.

Code Review 1 5mo ago
yariv1025

owasp-top-10

by yariv1025

"OWASP Top 10 web application security risks - prevention, detection, and remediation. Use when implementing or reviewing access control, authentication, crypto/sensitive data, input validation and injection, secure design, security configuration, dependency management, session/identity, deserialization or CI/CD integrity, logging and monitoring, or server-side requests (SSRF)."

Auth 1 5mo ago
velcrafting

observability-audit

by velcrafting

Ensure logging/metrics/tracing and auditability match the quality bar for changed behavior.

Code Review 1 6mo ago
jgarrison929

security-auditor

by jgarrison929

Use when reviewing code for security vulnerabilities, implementing authentication flows, auditing OWASP Top 10, configuring CORS/CSP headers, handling secrets, input validation, SQL injection prevention, XSS protection, or any security-related code review.

Auth 1 5mo ago