Security

Security scanning and vulnerability detection

Showing 1897-1920 of 2326 skills
meetdave3

refine

by meetdave3

Audit, score, and improve any project's Claude Code configuration. Analyzes CLAUDE.md, skills, agents, hooks, MCP servers, and settings. Trigger: /refine, /refine audit, /refine quick

Agents 1 6mo ago
elliottrjacobs

security-audit

by elliottrjacobs

Deep security audit of codebase with parallel domain-focused agents. Use when the user says "security audit", "check for vulnerabilities", "security review", or before a launch/deployment. More thorough than the security reviewer in /engineer-review.

Code Review 1 6mo ago
Git-Fg

auditing-security

by Git-Fg

"Scans for secrets and performs comprehensive security audits. MUST Use when verifying security of code changes or auditing file safety."

Code Review 1 7mo ago
yariv1025

owasp-llm-top-10

by yariv1025

"OWASP Top 10 for LLM Applications - prevention, detection, and remediation for LLM and GenAI security. Use when building or reviewing LLM apps - prompt injection, information disclosure, training/supply chain, poisoning, output handling, excessive agency, system prompt leakage, vectors/embeddings, misinformation, unbounded consumption."

ML Ops 1 7mo ago
jovermier

quality-severity

by jovermier

This skill should be used when classifying issues, findings, or code review problems with severity levels. Triggers on requests like "classify severity", "what is P1/P2/P3", "determine issue priority".

Processing 1 7mo ago
jainabhishek

reflect

by jainabhishek

Self-improving skill that analyzes conversations for corrections and preferences, then persists them to skill files with optional Git versioning. Use when: (1) User runs "/reflect" or "/reflect [skill-name]" to manually extract learnings, (2) User says "reflect on" or "reflect off" to toggle automatic reflection, (3) User says "reflect status" to check mode, (4) User wants Claude to remember corrections for future sessions. Supports manual and automatic (hook-based) modes.

Code Review 1 8mo ago
pluginagentmarketplace

security-practices

by pluginagentmarketplace

Master secure development, OWASP top 10, testing, and compliance. Use when building secure systems, conducting security reviews, or implementing best practices.

Auth 1 8mo ago
pluginagentmarketplace

security-architecture

by pluginagentmarketplace

Design security architectures with threat modeling and zero trust

Processing 1 8mo ago
physics91

django-reviewer

by physics91

WHEN: Django project review, ORM queries, views/templates, admin customization WHAT: ORM optimization + View patterns + Template security + Admin config + Migration safety WHEN NOT: FastAPI → fastapi-reviewer, Flask → flask-reviewer, DRF API only → consider api-expert

Code Review 1 9mo ago
leobrival

audit-methodology

by leobrival

Comprehensive audit methodology for web applications covering accessibility (RGAA 4.1), security (OWASP Top 10), performance (Core Web Vitals), and eco-design. Use when users need guidance on audit processes, testing methodologies, compliance standards, or audit best practices. Includes detailed reference documentation for each audit domain.

Accessibility 1 7mo ago
physics91

ai-code-reviewer

by physics91

WHEN: Deep AI-powered code analysis, multi-model code review, security scanning with Codex and Gemini WHAT: Comprehensive code review using external AI models with severity-based findings, deduplication, and secret detection WHEN NOT: Simple lint checks -> code-reviewer, Quick security only -> security-scanner, Style formatting -> code-quality-checker

CLI Tools 1 8mo ago
BankkRoll

google-cloud

by BankkRoll

"Scraped from https://cloud.google.com/docs/ Source: https://cloud.google.com/docs. Use when questions involve: ai ml, authentication, buildpacks, enterprise, generative ai, security, terraform."

Cloud 1 7mo ago
pluginagentmarketplace

agent-safety

by pluginagentmarketplace

Ensure agent safety - guardrails, content filtering, monitoring, and compliance

Agents 1 8mo ago
yariv1025

owasp-kubernetes-top-10

by yariv1025

"OWASP Kubernetes Top 10 - prevention, detection, and remediation for Kubernetes security. Use when designing or reviewing K8s workloads and clusters - workload config, supply chain, RBAC, policy enforcement, logging, authentication, network segmentation, secrets, cluster components, vulnerable components."

Agents 1 7mo ago
Jackiexiao

supabase-postgres-best-practices

by Jackiexiao

"Postgres performance optimization and best practices from Supabase for schema, indexing, query tuning, security, and operations."

Database 1 6mo ago
physics91

sql-optimizer

by physics91

WHEN: SQL query review, query optimization, index usage, N+1 detection, performance analysis WHAT: Query plan analysis + Index recommendations + N+1 detection + Join optimization + Performance tuning WHEN NOT: Schema design → schema-reviewer, ORM code → orm-reviewer

Code Review 1 9mo ago
terraphim

disciplined-verification

by terraphim

Phase 4 of disciplined development. Verifies implementation against design through unit and integration testing. Builds traceability matrices, tracks coverage, and loops defects back to originating left-side phases.

Security 1 7mo ago
josavicentevw

devsecops

by josavicentevw

DevSecOps skill for security automation, vulnerability management, secure CI/CD pipelines, container security, secrets management, compliance, and security testing. Use when implementing security in development workflows, scanning for vulnerabilities, securing infrastructure, or when user mentions security automation, SAST, DAST, container scanning, or compliance.

CI/CD 1 7mo ago
arc-claw-bot

clawdefender

by arc-claw-bot

Security scanner and input sanitizer for AI agents. Detects prompt injection, command injection, SSRF, credential exfiltration, and path traversal attacks. Use when (1) installing new skills from ClawHub, (2) processing external input like emails, calendar events, Trello cards, or API responses, (3) validating URLs before fetching, (4) running security audits on your workspace. Protects agents from malicious content in untrusted data sources.

CLI Tools 1 6mo ago
SerendipityOneInc

cloud-resources

by SerendipityOneInc

Cloud resource management and monitoring for GCP (云资源管理与监控 - GCP)

Code Review 1 7mo ago
chrysos

security-audit

by chrysos

Run comprehensive security audit on any project. Detects package manager (npm, pnpm, yarn, bun, pip, composer, cargo, go), runs native audit commands, and searches the web for CVEs and security advisories for ALL dependencies — even those that pass the audit. Generates a detailed security report.

Code Review 1 7mo ago
KaribuLab

python-fastapi

by KaribuLab

FastAPI Secure Engineering

Auth 1 6mo ago
Nep-Cheat

clawdbot-self-security-audit

by Nep-Cheat

Perform a comprehensive read-only security audit of Clawdbot's own configuration. This is a knowledge-based skill that teaches Clawdbot to identify hardening opportunities and generate reports. Use when user asks to "run security check", "audit clawdbot", "check security hardening", or "what vulnerabilities do I have". This skill only READS configuration and generates reports—it never modifies settings or executes fixes automatically. Designed to be extensible—new checks can be added by updating this skill's knowledge.

Auth 1 7mo ago
fethallaheth

audit-reports

by fethallaheth

Generate formatted security audit findings for Web3 platforms (Sherlock, Code4rena, Cantina). Use when user needs to report vulnerabilities, format findings, or create audit reports for smart contract security contests.

Code Gen 1 7mo ago