安全

安全扫描与漏洞检测

显示 1705-1728 / 共 2326 个技能
Emasoft

ghe-design

Emasoft

Reference material for Athena when writing requirements. NOT a template - Athena writes requirements freely based on the domain. This skill provides guidance patterns that may be useful, not constraints to follow.

文档生成 4 9个月前
AmnadTaowsoam

Algorithmic Self Discovery

AmnadTaowsoam

Algorithmic Self-Discovery is the God-Mode protocol that enables AI agents

API 开发 4 6个月前
hairyf

solidity

hairyf

Solidity language and compiler — source layout, types, contracts, control flow, security, compiler, ABI, internals.

国际化 4 7个月前
otrebu

dev-work-summary

otrebu

Scan ~/dev recursively for git repos and report today's work with commits, branches, stats, and detailed change analysis. Use when user asks "what did I work on", "show my work", "daily summary", "what repos did I touch".

CLI 工具 4 10个月前
AJBcoding

moai-baas-foundation

AJBcoding

Enterprise Backend-as-a-Service Foundation with AI-powered BaaS architecture patterns, strategic provider selection, and intelligent multi-service orchestration for scalable production applications

云服务 4 9个月前
pluginagentmarketplace

automated-testing

pluginagentmarketplace

CI/CD integration and automation frameworks for continuous AI security testing

CI/CD 3 8个月前
vchirrav

sast-brakeman

vchirrav

Run Brakeman SAST scans on Ruby on Rails applications. Detects SQL injection, XSS, mass assignment, CSRF, command injection, and other Rails-specific vulnerabilities.

数据处理 2 6个月前
pluginagentmarketplace

spring-security

pluginagentmarketplace

Secure Spring Boot applications - authentication, authorization, OAuth2, JWT, CORS/CSRF protection

API 开发 2 8个月前
vchirrav

network-scan-nmap

vchirrav

Run Nmap for network discovery and security auditing. Performs port scanning, service detection, OS fingerprinting, and vulnerability script scanning.

CLI 工具 2 6个月前
vchirrav

secure-coding-audit

vchirrav

Audit code for security vulnerabilities using OWASP Secure Coding rules. Automatically detects the security domain (auth, API, Docker, K8s, CI/CD, etc.) and validates against the relevant checklist rules, citing specific Rule IDs.

CI/CD 2 6个月前
vchirrav

cloud-security-scoutsuite

vchirrav

Run ScoutSuite for multi-cloud security auditing. Collects configuration data from AWS, Azure, GCP, Oracle, and Alibaba Cloud and generates an interactive security report.

云服务 2 6个月前
ma1orek

anti-reversing-techniques

ma1orek

Understand anti-reversing, obfuscation, and protection techniques encountered during software analysis. Use when analyzing protected binaries, bypassing anti-debugging for authorized analysis, or understanding software protection mechanisms.

代码评审 2 7个月前
kawaxi

audit-maintenance

kawaxi

Use when the user wants to ensure the audit environment is persistent and recoverable. This skill manages system-level access to prevent auditor lockout during long-term substation audits.

代码评审 2 6个月前
NewmanXBT

audit-report-generator

NewmanXBT

Generate professional PDF audit reports from markdown findings. Use when converting security audit findings to formal PDF reports, creating audit deliverables, or formatting vulnerability assessments. Triggers on requests to "generate audit report", "create PDF report", "format findings as PDF", or any audit report generation task.

分析 2 7个月前
clearsmog

validate-bib

clearsmog

Validate bibliography entries against citations in all document files (.tex, .qmd, .typ). Find missing entries and unused references.

学术 2 6个月前
vchirrav

sast-psalm

vchirrav

Run Psalm with taint analysis on PHP code. Detects SQL injection, XSS, command injection, path traversal, and other taint-flow vulnerabilities in PHP applications.

数据处理 2 6个月前
vchirrav

sast-detekt

vchirrav

Run detekt static analysis on Kotlin code with security-focused rules. Detects hardcoded secrets, insecure crypto, and code quality issues affecting security.

CLI 工具 2 6个月前
mrsknetwork

audit

mrsknetwork

Performs structured code, security, and architecture audits. Produces severity-categorized findings with file/line evidence and actionable remediation steps. Use when reviewing a PR, conducting a security review, evaluating technical debt, or assessing code quality before a release. Never merge critical audit findings without a documented resolution.

代码评审 2 6个月前
vchirrav

sca-osv-scanner

vchirrav

Run Google's OSV-Scanner for Software Composition Analysis. Scans lockfiles and SBOMs across all major ecosystems (npm, PyPI, Maven, Go, Cargo, NuGet, RubyGems) for known vulnerabilities.

数据处理 2 6个月前
kaelen-hou

code-review-assistant

kaelen-hou

Comprehensive code review assistant that analyzes code for security vulnerabilities, performance issues, and code quality. Use when reviewing pull requests, conducting code audits, or analyzing code changes. Supports Python, JavaScript/TypeScript, and general code patterns. Includes automated analysis scripts and structured checklists.

代码评审 2 8个月前
vchirrav

iac-scan-tfsec

vchirrav

Run tfsec (now part of Trivy) to scan Terraform code for security misconfigurations. Deep HCL analysis with support for Terraform modules, variables, and expressions.

云服务 2 6个月前
costa-marcello

ci-cd

costa-marcello

"Creates production-ready GitHub Actions workflows for CI/CD, Docker builds, security scanning, and monorepo orchestration. Triggers on requests for CI/CD setup, workflow creation, pipeline automation, GitHub Actions help, deployment workflows, matrix builds, reusable workflows, or security scanning configuration."

CI/CD 2 6个月前
costa-marcello

production-audit

costa-marcello

"Audits a codebase for production readiness across six dimensions: API completeness, frontend-backend sync, security, scalability, infrastructure, and dead code/architecture. Use when asked for a launch assessment, production readiness check, pre-deployment audit, or multi-agent patchwork cleanup."

智能体 2 6个月前
masanao-ohba

security-patterns

masanao-ohba

PHP security best practices and patterns for preventing common vulnerabilities

代码生成 2 10个月前