安全

安全扫描与漏洞检测

显示 25-48 / 共 2316 个技能
UseAI-pro

network-watcher

UseAI-pro

"Audit and monitor network requests made by OpenClaw skills. Detects data exfiltration, unauthorized API calls, and suspicious outbound connections."

安全 71 7个月前
PaoloRollo

openclaw-sec

PaoloRollo

AI Agent Security Suite - Real-time protection against prompt injection, command injection, SSRF, path traversal, secrets exposure, and content policy violations

安全 9 6个月前
dmonteroh

deps-audit

dmonteroh

"Produces a local, best-effort dependency audit summary and remediation plan for repos with dependency manifests."

安全 1 6个月前
truongnat

security-specialist

truongnat

Elite security engineering based on threat modeling, defensive coding, vulnerability management, and compliance standards. Focused on the "Security-by-Design" philosophy.

安全 7 6个月前
dmonteroh

gdpr-data-handling

dmonteroh

"Implement practical GDPR-compliant data handling (privacy by design, lawful basis, DSARs, retention, vendor/transfer controls, breach readiness). Use when building or reviewing systems that process EU personal data."

安全 1 6个月前
dmonteroh

secrets-management

dmonteroh

"Secure secrets handling for CI/CD and runtime: secret inventory, access boundaries, short-lived identity (OIDC/workload identity), rotation, auditing, and leak response. Works across Vault and cloud-native secret managers."

安全 1 6个月前
mikr13

auto-updates

mikr13

Configure automatic security updates on Ubuntu/Debian VPS servers to patch vulnerabilities and prevent exploitation of known security flaws.

安全 6 7个月前
dmonteroh

auth-implementation-patterns

dmonteroh

"Provides authentication and authorization implementation patterns (JWT, OAuth2/OIDC, sessions, RBAC) for designing, implementing, or reviewing secure access control in applications and APIs."

安全 1 6个月前
timsonner

penetration-testing

timsonner

Comprehensive penetration testing workflow using Kali Linux tools via MCP. Guides agents through reconnaissance, vulnerability assessment, exploitation, privilege escalation, and reporting. Use when conducting security assessments, CTF challenges, vulnerability testing, or red team exercises.

安全 1 7个月前
ncdevshiv

accessibility-compliance-accessibility-audit

ncdevshiv

"You are an accessibility expert specializing in WCAG compliance, inclusive design, and assistive technology compatibility. Conduct audits, identify barriers, and provide remediation guidance."

无障碍 1 6个月前
ncdevshiv

anti-reversing-techniques

ncdevshiv

"Understand anti-reversing, obfuscation, and protection techniques encountered during software analysis. Use when analyzing protected binaries, bypassing anti-debugging for authorized analysis, or u..."

安全 1 6个月前
ncdevshiv

active-directory-attacks

ncdevshiv

"This skill should be used when the user asks to "attack Active Directory", "exploit AD", "Kerberoasting", "DCSync", "pass-the-hash", "BloodHound enumeration", "Golden Ticket", ..."

安全 1 6个月前
arc-claw-bot

arc-shield

arc-claw-bot

Output sanitization for agent responses - prevents accidental secret leaks

安全 0 7个月前
googleworkspace

gws-modelarmor-create-template

googleworkspace

"Google Model Armor: Create a new Model Armor template."

安全 3.1万 5个月前
Leontynestirredup43

slowmist-security-cc

Leontynestirredup43

SlowMist AI Agent Security Review — comprehensive security framework for skills, repositories, URLs, on-chain addresses, and products (Claude Code version)

安全 0 5个月前
googleworkspace

gws-modelarmor-sanitize-response

googleworkspace

"Google Model Armor: Sanitize a model response through a Model Armor template."

安全 3.1万 5个月前
smouj

Provenance Guard

smouj

Supply chain security and integrity verification for software artifacts

安全 0 6个月前
curiositech

agentic-zero-trust-security

curiositech

Cryptographic security for agentic systems — zero-trust agent networking, signed message envelopes (JWS/JWE), capability-based security (ocaps), Merkle tree audit trails, WASM sandboxing, and formal verification. Covers CLI dev tool security, mTLS between agents, permission boundaries (least privilege for AI agents), and supply chain security for skills/plugins. Activate on: "agent security", "zero trust agents", "secure agent communication", "capability-based security", "ocap", "signed messages between agents", "agent audit trail", "sandbox agent execution", "agent permissions", "mTLS agents", "cryptographic verification", "agent supply chain", "OWASP agentic", "prove agent did X", "tamper-proof agent logs". NOT for: application-level SAST scanning (use security-auditor), network firewall rules (use infrastructure), SOC2/HIPAA compliance (organizational), or prompt injection defense (use prompt-engineer).

安全 2 4个月前
googleworkspace

gws-modelarmor-sanitize-prompt

googleworkspace

"Google Model Armor: Sanitize a user prompt through a Model Armor template."

安全 3.1万 5个月前
mukul975

analyzing-outlook-pst-for-email-forensics

mukul975

Analyze Microsoft Outlook PST and OST files for email forensic evidence including message content, headers, attachments,

数据处理 3.1万 5个月前
mukul975

analyzing-malicious-url-with-urlscan

mukul975

URLScan.io is a free service for scanning and analyzing suspicious URLs. It captures screenshots, DOM content,

自动化 3.1万 5个月前
mukul975

analyzing-packed-malware-with-upx-unpacker

mukul975

'Identifies and unpacks UPX-packed and other packed malware samples to expose the original executable code for

调试 3.1万 5个月前
mukul975

analyzing-certificate-transparency-for-phishing

mukul975

Monitor Certificate Transparency logs using crt.sh and Certstream to detect phishing domains, lookalike certificates,

分析 3.1万 5个月前
mukul975

analyzing-ios-app-security-with-objection

mukul975

'Performs runtime mobile security exploration of iOS applications using Objection, a Frida-powered toolkit that

调试 3.1万 5个月前