安全

安全扫描与漏洞检测

显示 1369-1392 / 共 2332 个技能
miles990

analyze-repo

miles990

Enterprise-grade repository analysis with arc42/C4 architecture documentation, technical debt quantification, security assessment, and multi-stakeholder reporting

代码评审 20 7个月前
miles990

security-practices

miles990

OWASP Top 10, authentication, and secure coding practices

认证鉴权 20 8个月前
yebot

Security Checklist

yebot

Security review checklist for features and changes

认证鉴权 9 9个月前
germanfndez

fivem-basics

germanfndez

FiveM resource structure, fxmanifest, client/server scripting, events. Use when creating or editing FiveM resources or Lua scripts, or when the user asks how FiveM works.

调试 12 6个月前
germanfndez

fivem-nui

germanfndez

FiveM NUI (New User Interface) development for creating graphical elements and user interfaces. Use when creating or editing NUI interfaces, HTML/CSS/JS for FiveM, or handling NUI callbacks.

代码生成 12 6个月前
germanfndez

fivem-security

germanfndez

Best practices and rules for securing FiveM resources against cheaters and exploits. Use this skill when writing or reviewing server-side and client-side code to ensure malicious events, unauthorized entity creations, and client trust issues are prevented. Focuses on strict server authority and safe event handling.

代码评审 12 6个月前
0xAxiom

Adversary Trainer - AI Agent Security Testing

0xAxiom

Stay secure, test early, test often. 🛡️

分析 18 7个月前
SkeneTechnologies

self-serve-motion

SkeneTechnologies

When the user wants to reduce friction in the self-serve buying experience, optimize in-product checkout, remove "contact sales" gates, or design self-serve onboarding and support. Also use when the user says "frictionless," "self-service," "remove sales gates," "no-demo experience," or "friction audit." For signup flow optimization, see signup-flow-cro. For pricing page design, see pricing-strategy.

认证鉴权 18 7个月前
0xAxiom

Social Intel Hub

0xAxiom

Edit config/skills-inventory.json when you ship new tools. The context matcher uses this to identify threads where your tools are directly relevant.

数据处理 18 7个月前
0xAxiom

Code Generation Validator

0xAxiom

Web Interface: Browser-based validation tool

安全 18 7个月前
0xAxiom

agent-security

0xAxiom

Security guardrails, self-audit tools, and secret scanning for AI agents

代码评审 18 7个月前
igamenovoer

serve-md-by-mkdocs

igamenovoer

Serve markdown/docs/text notes with MkDocs using a specified work directory as the output folder (scripts/config/site).

CLI 工具 7 7个月前
MikeeBuilds

clawpinch

MikeeBuilds

"Security audit toolkit for OpenClaw deployments. Scans 63 checks across 8 categories. Use when asked to audit security, harden an installation, check for vulnerabilities, or review config safety."

CLI 工具 7 7个月前
schalkneethling

frontend-security

schalkneethling

Audit frontend codebases for security vulnerabilities and bad practices. Use when performing security reviews, auditing code for XSS/CSRF/DOM vulnerabilities, checking Content Security Policy configurations, validating input handling, reviewing file upload security, or examining Node.js/NPM dependencies. Target frameworks include web platform (vanilla HTML/CSS/JS), React, Astro, Twig templates, Node.js, and Bun. Based on OWASP security guidelines.

代码评审 7 8个月前
HartreeWorks

secure-mcp-install

HartreeWorks

'This skill should be used when the user asks to install or audit an MCP server, especially from third-party sources. Security-focused: clones at pinned commits, runs security scans.'

代码评审 7 7个月前
KentoShimizu

code-review-security

KentoShimizu

"Run security-focused code review when changes cross trust boundaries or may affect authentication, authorization, input validation, secrets handling, or sensitive-data exposure. Use for merge decisions requiring explicit security findings; do not use for non-security-only review scope."

认证鉴权 7 6个月前
ImL1s

openclaw-ops

ImL1s

OpenClaw 運維全指南 — 安裝設定、模型管理、遷移、cron 任務、安全檢查、除錯。當需要管理、遷移、排錯 OpenClaw 時使用此 skill。觸發關鍵字:"OpenClaw 設定", "OpenClaw 遷移", "Gateway 管理", "cron 任務", "模型設定", "Telegram bot", "OpenClaw 安全檢查"。

认证鉴权 7 5个月前
vchirrav

network-scan-nmap

vchirrav

Run Nmap for network discovery and security auditing. Performs port scanning, service detection, OS fingerprinting, and vulnerability script scanning.

CLI 工具 17 6个月前
vchirrav

sast-bandit

vchirrav

Run Bandit SAST scans on Python code. Detects common security issues like SQL injection, hardcoded passwords, exec usage, and insecure crypto.

数据处理 17 6个月前
vchirrav

malware-scan-yara

vchirrav

Run YARA rules for pattern-based malware identification. Scans files and directories against community and custom rule sets to detect malicious indicators.

数据处理 17 6个月前
vchirrav

sca-osv-scanner

vchirrav

Run Google's OSV-Scanner for Software Composition Analysis. Scans lockfiles and SBOMs across all major ecosystems (npm, PyPI, Maven, Go, Cargo, NuGet, RubyGems) for known vulnerabilities.

数据处理 17 6个月前
vchirrav

sast-cargo-audit

vchirrav

Run cargo-audit and cargo-geiger on Rust code. Audits dependencies for known vulnerabilities and detects unsafe code usage for memory safety review.

代码评审 17 6个月前
vchirrav

sast-flawfinder

vchirrav

Run Flawfinder SAST scans on C/C++ code. Detects buffer overflows, format string vulnerabilities, race conditions, and other memory safety issues.

数据处理 17 6个月前
vchirrav

secret-scan-trufflehog

vchirrav

Run TruffleHog to detect secrets in git repos, filesystems, and S3 buckets. Uses verification to confirm if detected secrets are live/active.

数据处理 17 6个月前