安全

安全扫描与漏洞检测

显示 1777-1800 / 共 2326 个技能
gaebalai

design-reviewer

gaebalai

Copilot agent that assists with systematic design review using ATAM (Architecture Tradeoff Analysis Method), SOLID principles, design patterns, coupling/cohesion analysis, error handling, and security requirements Trigger terms: design review, architecture review, ATAM, SOLID principles, design patterns, coupling, cohesion, ADR review, C4 review, architecture analysis, design quality Use when: User requests involve design document review, architecture evaluation, or design quality assessment tasks.

代码评审 3 7个月前
SanctifiedOps

transparency-and-disclosures

SanctifiedOps

Write clear disclosures for Solana projects: risks, unlocks, authority states, and data sources. Use for websites, docs, and announcements.

代码评审 3 7个月前
AnthemFlynn

openclaw-admin

AnthemFlynn

"Fix, configure, tune, or troubleshoot OpenClaw. Use for config changes, security fixes, performance tuning, doctor --fix, or when openclaw-doctor flags issues that need remediation."

调试 3 7个月前
peixotorms

php-security

peixotorms

Use when handling user input, database queries, file operations, authentication, sessions, or any security-sensitive PHP code. Covers SQL injection prevention with prepared statements, PDO parameterized queries, XSS with htmlspecialchars, CSRF tokens, input validation (filter_var, FILTER_VALIDATE_*, FILTER_SANITIZE_*), output escaping by context, password_hash, password_verify, bcrypt, Argon2, file upload security, session management, SameSite cookies, Content-Security-Policy headers, serialization security, process execution security, error exposure, php.ini hardening (open_basedir, disable_functions, allow_url_include), OWASP Top 10 for PHP, rate limiting, brute force protection, directory traversal, path traversal, and common vulnerability patterns.

认证鉴权 3 7个月前
peixotorms

pci-compliance

peixotorms

Use when building payment processing, handling credit card data, PAN, CVV, cardholder data environment (CDE), implementing checkout flows, tokenization, Stripe, Braintree, or any code that touches cardholder information — PCI DSS v4.0 coding patterns, SAQ selection, data classification, AES-256 encryption, TLS 1.2, audit log, data masking, Luhn validation, payment gateway integration, 3-D Secure, scope reduction, network segmentation

数据处理 3 7个月前
pluginagentmarketplace

emerging-specialty-skills

pluginagentmarketplace

Master emerging technologies including blockchain, cybersecurity, QA testing, and specialized tech roles. Stay ahead with cutting-edge technologies.

安全 3 8个月前
thoreinstein

security-review

thoreinstein

Perform enterprise security review of the codebase

代码评审 3 7个月前
pluginagentmarketplace

red-team-reporting

pluginagentmarketplace

Professional security report generation, executive summaries, finding documentation, and remediation tracking

分析 3 8个月前
vxcozy

audit

vxcozy

Productivity analyst that maps your workflow, scores tasks by time cost and energy drain, and builds a prioritized 4-week automation plan. Use when you want to audit your workflow, figure out what to automate, do a productivity review, identify high-leverage tasks, feel overwhelmed and need to prioritize, or after the compounder surfaces new friction. Part of the architect-system loop. Outputs to system/audit-report.md.

自动化 3 6个月前
icartsh

code-reviewer

icartsh

"보안 스캔, 품질 지표 및 모범 사례 분석을 포함한 자동화된 코드 리뷰입니다. 다음을 위한 코드 리뷰 시 사용합니다: (1) 보안 취약점 및 일반적인 공격 벡터, (2) 코드 품질 이슈 및 유지보수 문제, (3) 성능 병목 현상 및 최적화 기회, (4) 모범 사례 및 디자인 패턴, (5) 테스트 커버리지 및 테스트 전략, (6) 문서 품질 및 완전성"

代码评审 3 8个月前
Mearman

cve-audit

Mearman

Scan project dependencies for known vulnerabilities. Automatically detect and parse package files (package.json, requirements.txt, Gemfile, go.mod, pom.xml) and check all dependencies against the CVE database. Use when you want to audit a project for security vulnerabilities, check if dependencies have known CVEs, or generate a vulnerability report for compliance.

代码评审 3 7个月前
asteroid-belt

release-readiness-checklist

asteroid-belt

Interactive release readiness checklist with semantic versioning guidance. Use when preparing a software release, cutting a version, deploying to production, or when user asks about release preparation. Triggers on phrases like "prepare release", "release checklist", "ready to release", "cut a version", "version bump", or "/release-readiness-checklist".

CI/CD 3 7个月前
gigs-slc

dev-client

gigs-slc

Build and distribute Expo development clients locally or via TestFlight

CLI 工具 3 7个月前
pluginagentmarketplace

secure-deployment

pluginagentmarketplace

Security best practices for deploying AI/ML models to production environments

CI/CD 3 8个月前
icartsh

code-analyze

icartsh

.NET 코드에서 정적 분석(Static analysis), 보안 스캔(Security scan) 및 종속성 체크(Dependency check)를 수행합니다. 코드 품질, 보안 감사 또는 취약점 탐지가 포함된 작업에서 사용합니다.

CLI 工具 3 8个月前
pluginagentmarketplace

benchmark-datasets

pluginagentmarketplace

Standard datasets and benchmarks for evaluating AI security, robustness, and safety

MLOps 3 8个月前
SanctifiedOps

community-ops-playbook

SanctifiedOps

Moderate and grow Solana communities (TG/Discord): rules, mod actions, FUD handling, legitimacy cues. Use for community operations.

自动化 3 7个月前
C0ntr0lledCha0s

analyzing-response-quality

C0ntr0lledCha0s

Expert at analyzing the quality of Claude's responses and outputs. Use when evaluating response completeness, accuracy, clarity, or effectiveness. Auto-invokes during self-reflection or when quality assessment is needed.

代码评审 3 9个月前
Tharun-Balaji

audit-skills

Tharun-Balaji

"Review, audit, and harden AI skills for security risks including prompt injection, hidden instructions, tool misuse, data exfiltration, and malicious payloads; use when analyzing SKILL.md, scripts, references, or assets for vulnerabilities and when producing remediation guidance."

代码评审 3 7个月前
michavie

protocol

michavie

Expert MultiversX Protocol Knowledge. Use for understanding sharding, consensus, token standards (ESDT), and network parameters.

法律 3 7个月前
SanctifiedOps

launch-readiness-checklist

SanctifiedOps

End-to-end pre-flight checklist for launching a Solana token/app: infra, wallets, liquidity, comms, security, and rollback planning. Use before mainnet launch or major release.

调试 3 7个月前
vxcozy

architect-system

vxcozy

Master orchestrator for the 5-step productivity loop. Runs audit, architect, analyst, refinery, and compounder in sequence or individually. Use when you want to run the full loop, start the system, check system status, resume from where you left off, or run a specific step. Manages state, sequencing, and skill chaining. Supports full loop, single step, resume, and status-only modes.

自动化 3 6个月前
pluginagentmarketplace

specialized-roles-skill

pluginagentmarketplace

Master specialized tech careers including Product Management, Engineering Management, DevRel, Technical Writing, QA, Blockchain, Game Development, Cybersecurity, and UX Design. Navigate multiple career paths beyond traditional software development.

设计 3 9个月前
BowTiedSwan

solodit

BowTiedSwan

Search 50,000+ smart contract vulnerabilities from Cyfrin Solodit. 8 MCP tools with intelligent caching for searching, filtering, and analyzing blockchain security findings.

API 开发 3 7个月前