安全

安全扫描与漏洞检测

显示 385-408 / 共 2326 个技能
xu-xiang

security-review

xu-xiang

当添加身份认证(authentication)、处理用户输入、使用凭据(secrets)、创建 API 端点或实现支付/敏感功能时,请使用此技能。提供全面的安全检查清单和模式。

调试 1912 7个月前
xu-xiang

django-verification

xu-xiang

Django 项目的验证循环(Verification loop):包含数据库迁移、代码检查、带覆盖率的测试、安全扫描,以及在发布或 PR 前的部署就绪检查。

CLI 工具 1912 7个月前
xu-xiang

springboot-security

xu-xiang

Spring Boot 服务中关于身份认证/授权(authn/authz)、校验、CSRF、密钥管理、响应头、限流及依赖安全的 Spring Security 最佳实践。

API 开发 1912 7个月前
xu-xiang

django-security

xu-xiang

Django 安全最佳实践,涵盖身份认证、授权、CSRF 防护、SQL 注入预防、XSS 预防以及安全的部署配置。

认证鉴权 1912 7个月前
softaworks

dependency-updater

softaworks

Smart dependency management for any language. Auto-detects project type, applies safe updates automatically, prompts for major versions, diagnoses and fixes dependency issues.

CLI 工具 2390 7个月前
olorehq

olore-openclaw-latest

olorehq

Local OpenClaw documentation reference (latest). OpenClaw documentation. Use for installation, configuration, channels, plugins, providers, hooks, CLI, security, and platform integrations.

CLI 工具 103 7个月前
codewithmukesh

security-scan

codewithmukesh

Deep security scanning for .NET applications across 6 layers: vulnerable packages, secrets detection, OWASP code patterns, auth configuration, CORS policy, and data protection. Produces severity-rated findings with specific remediation steps. Load this skill when: "security scan", "security audit", "check for vulnerabilities", "find secrets", "OWASP", "auth review", "CORS check", "security review", "penetration test prep", "CVE check", "vulnerability scan", "hardcoded password", "data protection", "security posture".

认证鉴权 677 6个月前
jamditis

security-checklist

jamditis

Pre-deployment security audit for web applications. Use when reviewing code before shipping, auditing an existing application, or when users mention "security review," "ready to deploy," "going to production," or express concern about vulnerabilities. Covers authentication, input validation, secrets management, database security, and compliance basics.

认证鉴权 371 8个月前
vudovn

web-design-guidelines

vudovn

Review UI code for Web Interface Guidelines compliance. Use when asked to "review my UI", "check accessibility", "audit design", "review UX", or "check my site against best practices".

无障碍 8155 7个月前
kostja94

gtm-strategy

kostja94

When the user wants to plan go-to-market strategy, GTM framework, or market entry. Also use when the user mentions "GTM," "go-to-market," "market entry," "new market," "repositioning," "PLG," "sales-led," "product-led," "marketing-led," "ICP," "buyer persona," "GTM motion," or "market expansion."

代码生成 924 6个月前
asamassekou10

ship-safe-score

asamassekou10

Get your project's security health score (0-100, A-F grade). Use when the user wants a quick security check or asks "is my code safe to ship?"

CLI 工具 826 6个月前
vudovn

vulnerability-scanner

vudovn

Advanced vulnerability analysis principles. OWASP 2025, Supply Chain Security, attack surface mapping, risk prioritization.

认证鉴权 8155 7个月前
vudovn

parallel-agents

vudovn

Multi-agent orchestration patterns. Use when multiple independent tasks can run with different domain expertise or when comprehensive analysis requires multiple perspectives.

智能体 8155 7个月前
vudovn

code-review-checklist

vudovn

Code review guidelines covering code quality, security, and best practices.

代码评审 8155 7个月前
scaffold-eth

solidity-security

scaffold-eth

Master smart contract security best practices to prevent common vulnerabilities and implement secure Solidity patterns. Use when writing smart contracts, auditing existing contracts, or implementing security measures for blockchain applications.

法律 2043 7个月前
accomplish-ai

code-review

accomplish-ai

Review code for bugs, security issues, performance problems, and best practices. Provide actionable feedback.

代码评审 1.1万 6个月前
TencentBlueKing

bk-monitor-security-audit

TencentBlueKing

对前端代码进行安全审计,检测 XSS、CSRF 等漏洞。当用户请求代码审查或询问代码安全性时使用。

代码评审 840 7个月前
whawkinsiv

optimize

whawkinsiv

"Use this skill when the user's app feels slow, the codebase feels bloated, or after significant development work. Optimizes across four dimensions: Speed (page load, API response), Code (unused files, dead code), Database (orphaned data, schema hygiene), and Dependencies (package bloat, bundle size)."

代码评审 239 7个月前
GoPlusSecurity

agentguard

GoPlusSecurity

GoPlus AgentGuard — AI agent security guard. Automatically blocks dangerous commands, prevents data leaks, and protects secrets. Use when reviewing third-party code, auditing skills, checking for vulnerabilities, evaluating action safety, or viewing security logs.

CLI 工具 458 6个月前
kousen

Security Code Review

kousen

Identify security vulnerabilities and suggest secure coding practices

认证鉴权 328 10个月前
wasintoh

Security Engineer Skill

wasintoh

Next.js Security: https://nextjs.org/docs/app/building-your-application/configuring/security

认证鉴权 94 8个月前
gmh5225

llvm-learning

gmh5225

Comprehensive learning resources and tutorials for LLVM, Clang, and compiler development. Use this skill when helping users learn LLVM internals, find educational resources, or understand compiler concepts.

调试 876 7个月前
phodal

code-review

phodal

Perform comprehensive code review with best practices

代码评审 4534 8个月前
mohitmishra786

static-analysis

mohitmishra786

Static analysis skill for C/C++ codebases. Use when hardening code quality, triaging noisy builds, running clang-tidy, cppcheck, or scan-build, interpreting check categories, suppressing false positives, or integrating static analysis into CI. Activates on queries about clang-tidy checks, cppcheck, scan-build, compile_commands.json, code hardening, or static analysis warnings.

数据处理 186 6个月前