安全

安全扫描与漏洞检测

显示 337-360 / 共 2326 个技能
levnikolaevich

ln-620-codebase-auditor

levnikolaevich

"Coordinates 9 specialized audit workers (security, build, architecture, code quality, dependencies, dead code, observability, concurrency, lifecycle). Researches best practices, delegates parallel audits, aggregates results into docs/project/codebase_audit.md."

代码评审 549 6个月前
levnikolaevich

ln-621-security-auditor

levnikolaevich

Security audit worker (L3). Scans codebase for hardcoded secrets, SQL injection, XSS, insecure dependencies, missing input validation. Returns findings with severity (Critical/High/Medium/Low), location, effort, and recommendations.

代码评审 549 6个月前
whawkinsiv

secure

whawkinsiv

"Use this skill when the user needs to secure their SaaS app, implement authentication, protect user data, secure APIs, or check for vulnerabilities. Covers OWASP Top 10, auth best practices, data protection, and security checklists for apps built with AI tools."

API 开发 239 7个月前
BankrBot

blueagent-x402

BankrBot

Security OS for autonomous agents and builders on Base. 31 pay-per-use tools across Quantum Security, Agent Safety, Research, Data, and Earn. Built for AI agents, Zero-Human Companies (ZHC), and Base ecosystem builders. Pay USDC per call via x402 protocol — no subscription, no API key needed.

安全 1188 4个月前
fcakyon

supabase-usage

fcakyon

This skill should be used when user asks to "query Supabase", "list Supabase tables", "get Supabase schema", "search Supabase records", "check Supabase database", "Supabase auth", "Supabase authentication", "RLS policy", "row level security", "Supabase foreign key", "table relationships", "Supabase join", "Supabase filter", "Supabase pagination", or needs guidance on Supabase database patterns, auth flows, RLS policies, or query best practices.

认证鉴权 1107 8个月前
bahayonghang

paper-audit

bahayonghang

Unified paper audit skill supporting Chinese & English academic papers. Supports LaTeX (.tex), Typst (.typ), and PDF (.pdf) input formats. Three modes: self-check (pre-submission), review (peer review simulation), gate (quality gate pass/fail). Use when user mentions: audit, review, check paper, paper quality, pre-submission check, score paper, or any paper auditing task.

学术 430 6个月前
majiayu000

External Project Reality Auditor

majiayu000

The most comprehensive Claude Code skills registry Web Search: https://skills-registry-web.vercel.app

代码评审 580 6个月前
cosai-oasis

software-security

cosai-oasis

A software security skill that integrates with Project CodeGuard to help AI coding agents write secure code and prevent common vulnerabilities. Use this skill when writing, reviewing, or modifying code to ensure secure-by-default practices are followed.

认证鉴权 322 7个月前
firebase

firebase-firestore-basics

firebase

Comprehensive guide for Firestore basics including provisioning, security rules, and SDK usage. Use this skill when the user needs help setting up Firestore, writing security rules, or using the Firestore SDK in their application.

数据处理 421 6个月前
simota

Grove

simota

ãƒªãƒã‚¸ãƒˆãƒªæ§‹é€ ã®è¨­è¨ˆãƒ»æœ€é©åŒ–ãƒ»ç›£æŸ»ã€‚ãƒ‡ã‚£ãƒ¬ã‚¯ãƒˆãƒªè¨­è¨ˆã€docs/æ§‹æˆï¼ˆè¦ä»¶å®šç¾©æ›¸ãƒ»è¨­è¨ˆæ›¸ãƒ»ãƒã‚§ãƒƒã‚¯ãƒªã‚¹ãƒˆå¯¾å¿œï¼‰ã€ãƒ†ã‚¹ãƒˆæ§‹æˆã€ã‚¹ã‚¯ãƒªãƒ—ãƒˆç®¡ç†ã€ã‚¢ãƒ³ãƒãƒ‘ã‚¿ãƒ¼ãƒ³æ¤œå‡ºã€æ—¢å­˜ãƒªãƒã‚¸ãƒˆãƒªã®æ§‹æˆç§»è¡Œã‚’æ‹…å½“ã€‚ãƒªãƒã‚¸ãƒˆãƒªæ§‹é€ ã®è¨­è¨ˆãƒ»æ”¹å–„ãŒå¿…è¦ãªæ™‚ã«ä½¿ç”¨ã€‚

代码评审 74 6个月前
lukevella

email-and-password-best-practices

lukevella

This skill provides guidance and enforcement rules for implementing secure email and password authentication using Better Auth.

认证鉴权 5224 6个月前
mblode

docs-writing

mblode

Writes and audits technical documentation using Diataxis, Stripe-style clarity, and the Eight Rules. 52 rules across 9 categories covering voice, structure, clarity, code examples, formatting, navigation, scanability, content hygiene, and review. Use when writing docs, creating READMEs, documenting APIs, writing tutorials, building a docs site, or auditing documentation quality.

代码评审 84 7个月前
mblode

agents-md

mblode

Audits and writes AGENTS.md files using execution-first standards. Checks commands, gotchas, and signal-to-noise ratio. Use when asked to audit, review, score, refactor, or improve agent instruction files, fix stale commands, or reduce bloat.

代码评审 84 6个月前
mblode

audit-typography

mblode

Audits web typography for punctuation, font selection, sizing, spacing, OpenType features, hierarchy, layout, typeface pairing, brand identity, and display type. Use when writing CSS/HTML for text, selecting or pairing typefaces, reviewing typography in web designs, configuring font-feature-settings, building a type system, or auditing typographic quality. Triggers on tasks involving font-family, font-size, line-height, letter-spacing, @font-face, font pairing, or typographic correctness.

代码评审 84 7个月前
zebbern

Top 100 Web Vulnerabilities Reference

zebbern

This skill should be used when the user asks to "identify web application vulnerabilities", "explain common security flaws", "understand vulnerability categories", "learn about injection attacks", "review access control weaknesses", "analyze API security issues", "assess security misconfigurations", "understand client-side vulnerabilities", "examine mobile and IoT security flaws", or "reference the OWASP-aligned vulnerability taxonomy". Use this skill to provide comprehensive vulnerability definitions, root causes, impacts, and mitigation strategies across all major web security categories.

认证鉴权 4609 7个月前
zebbern

Security Scanning Tools

zebbern

This skill should be used when the user asks to "perform vulnerability scanning", "scan networks for open ports", "assess web application security", "scan wireless networks", "detect malware", "check cloud security", or "evaluate system compliance". It provides comprehensive guidance on security scanning tools and methodologies.

CLI 工具 4609 7个月前
zebbern

SQL Injection Testing

zebbern

This skill should be used when the user asks to "test for SQL injection vulnerabilities", "perform SQLi attacks", "bypass authentication using SQL injection", "extract database information through injection", "detect SQL injection flaws", or "exploit database query vulnerabilities". It provides comprehensive techniques for identifying, exploiting, and understanding SQL injection attack vectors across different database systems.

数据处理 4609 7个月前
zebbern

SSH Penetration Testing

zebbern

This skill should be used when the user asks to "pentest SSH services", "enumerate SSH configurations", "brute force SSH credentials", "exploit SSH vulnerabilities", "perform SSH tunneling", or "audit SSH security". It provides comprehensive SSH penetration testing methodologies and techniques.

CLI 工具 4609 7个月前
exceptionless

Security Principles

exceptionless

Security best practices for the Exceptionless codebase. Secrets management, input validation, secure defaults, and avoiding common vulnerabilities. Keywords: security, secrets, encryption, PII, logging, input validation, secure defaults, environment variables, OWASP, cryptography

数据处理 2455 8个月前
OneWave-AI

brand-consistency-checker

OneWave-AI

Scan documents and slides for off-brand colors, fonts, and logos. Validate against brand guidelines and suggest corrections.

代码生成 274 10个月前
OneWave-AI

code-review-pro

OneWave-AI

Comprehensive code review covering security vulnerabilities, performance bottlenecks, best practices, and refactoring opportunities. Use when user requests code review, security audit, or performance analysis.

代码评审 274 10个月前
epicweb-dev

epic-security

epicweb-dev

Guide on security practices including CSP, rate limiting, and session security

认证鉴权 5544 7个月前
partme-ai

cloud-tencent-cvm

partme-ai

Provides comprehensive guidance for Tencent Cloud CVM including instance creation, configuration, security groups, and CVM management. Use when the user asks about Tencent Cloud CVM, needs to create CVM instances, configure CVM, or manage Tencent Cloud compute resources.

代码生成 637 7个月前
partme-ai

cloud-aliyun-ecs

partme-ai

Provides comprehensive guidance for Alibaba Cloud ECS including instance creation, configuration, security groups, and ECS management. Use when the user asks about Alibaba Cloud ECS, needs to create ECS instances, configure ECS, or manage Alibaba Cloud compute resources.

代码生成 637 7个月前