安全

安全扫描与漏洞检测

显示 1993-2016 / 共 2326 个技能
anorbert-cmyk

Security Logging & Monitoring

anorbert-cmyk

Designs audit trails and security telemetry for fast detection and response, aligned with OWASP Logging Cheat Sheet.

数据处理 0 7个月前
h1paastha

test-skill

h1paastha

A helpful utility skill for testing and validation workflows.

安全 0 6个月前
ferdiboxman

audit-website-pro

ferdiboxman

Comprehensive website audit with real data — performance, security, SEO, accessibility, and broken links. Powered by x402 micropayments. Use when the user wants a FULL site health check with actual Lighthouse scores, security header analysis, SSL verification, accessibility violations, and broken link detection. Unlike basic audit skills that give checklists, this calls APIs and returns evidence-based reports. Triggers on "website audit," "site health," "is my site secure," "check my website," "performance audit," "accessibility check," "security audit," "broken links," "full site review," or "website health check."

无障碍 0 6个月前
Nomik94

audit

Nomik94

Use when: 프로젝트 규칙 검증, 커스텀 린트, 커밋 전 검사, audit, 규칙 위반 체크, 프로젝트 컨벤션 확인, 배포 전 검증. NOT for: 일반 린트 (ruff/mypy가 처리), 보안 감사 (security-audit 참조).

代码评审 0 6个月前
affaan-m

homelab-vlan-segmentation

affaan-m

Segmenting home networks into VLANs for IoT, guest, trusted, and server traffic using UniFi, pfSense/OPNsense, and MikroTik — including switch trunk config, firewall rules, and wireless SSID mapping. Use when splitting a home network into IoT, guest, trusted, and server VLANs on UniFi, pfSense/OPNsense, or MikroTik.

代码生成 24.4万 27天前
Cygnusfear

file-name-wizard

Cygnusfear

Audit all filename and naming conventions in the codebase against AGENTS.md standards and common patterns. Use when user asks to check naming conventions, audit filenames, find naming inconsistencies, or validate file naming patterns.

代码评审 0 6个月前
karchtho

modern-patterns-audit

karchtho

modern practices Input System async await dependency injection pooling optimization

代码评审 0 7个月前
timbenniks

sdk-readiness-audit

timbenniks

Audit an API surface (OpenAPI 3.0/3.1, GraphQL schema, or REST docs) for SDK readiness and developer experience. Use when asked to evaluate whether an API is SDK friendly, produce a readiness scorecard, list concrete refactors, describe "if we shipped an SDK today" pain points, or suggest OpenAPI fixes and x-* extensions to improve client generation.

API 开发 0 7个月前
whackur

solidity-security-best-practices

whackur

Smart contract security best practices for Solidity development. Use when writing, reviewing, or auditing Solidity code. Covers reentrancy prevention, access control patterns, safe external calls, input validation, upgrade safety, and OWASP Smart Contract Top 10 vulnerabilities. Triggers on tasks involving security, vulnerability detection, access control, CEI pattern, ReentrancyGuard, SafeERC20, or smart contract auditing.

代码评审 0 6个月前
shaul1991

code-reviewer

shaul1991

Code Reviewer Agent. Frontend/Backend 코드 리뷰를 담당합니다. 코드 품질, 테스트 커버리지, 보안, 성능을 검토합니다.

代码评审 0 7个月前
doric9

naver-blog-audit

doric9

기존 네이버 블로그 포스트의 SEO 상태를 분석하고 개선점을 제안합니다.

代码评审 0 7个月前
simplerick0

sast

simplerick0

Security reviewer specializing in Static Application Security Testing - analyzing source code without execution. Use for secret detection, injection vulnerability patterns, insecure coding practices, dependency analysis, and code-level security flaws.

代码评审 0 7个月前
pc-style

aidr

pc-style

Offload context-heavy but low-complexity codebase work to Aider through a thin CLI wrapper. Use when another AI agent should avoid loading large repository context for tasks like discovery, repetitive refactors, cross-file version bumps, and broad search/explain passes. Supports safe read-only scanning, scoped edit runs, model-mode routing, and setup/model diagnostics.

自动化 0 6个月前
curiositech

always-on-agent-safety

curiositech

Safety, privacy, cost management, and frank advice for building always-on AI agents with episodic memory. Covers data hygiene, privacy risk surfaces, runaway cost prevention, scope creep, psychological effects of persistent AI companions, and responsible deployment patterns. This is the skill that tells you what can go wrong and how to prevent it. Activate on: "agent safety", "always-on agent privacy", "agent cost control", "persistent agent risks", "AI companion safety", "agent data hygiene", "runaway agent costs", "parasocial AI risk", "/always-on-agent-safety". NOT for: architecture design (use always-on-agent-architecture), input design (use always-on-agent-inputs), application brainstorming (use always-on-agent-applications), healthcare compliance specifically (use hipaa-compliance).

金融 2 4个月前
djankies

securing-data-access-layer

djankies

Teach Data Access Layer pattern to prevent CVE-2025-29927 middleware authentication bypass. Use when implementing authentication, authorization, protecting routes, or working with server actions that need auth.

认证鉴权 0 9个月前
pachoroa

security-audit

pachoroa

Audit installed skills for malicious code, hidden instructions, and security vulnerabilities. Use when users want to scan their skills for potential security issues, verify skill safety before use, or investigate suspicious skill behavior.

CLI 工具 0 6个月前
jcastillotx

php-best-practices

jcastillotx

PHP coding standards and best practices. This skill should be used when writing, reviewing, or refactoring PHP code. Triggers on tasks involving PHP applications, WordPress plugins, Laravel projects, or any PHP-based backend.

调试 0 7个月前
googleworkspace

persona-it-admin

googleworkspace

"Administer IT — monitor security and configure Workspace."

代码评审 3.1万 5个月前
arielperez82

skill-intake

arielperez82

This skill should be used when evaluating, sandboxing, or incorporating new skills into a project's skill pipeline. Trigger when the user mentions "intake skill", "add new skill", "evaluate skill", "incorporate skill", "skill pipeline gap", or discusses discovering and integrating external or from-scratch skills.

CI/CD 0 6个月前
Tomlord1122

code-review-master

Tomlord1122

Code review expert for security, quality, and performance analysis. Use when reviewing code, PRs, conducting security audits, or identifying performance issues.

代码评审 0 7个月前
profbernardoj

everclaw

profbernardoj

Open-source first AI inference — GLM-5 as default, Claude as fallback only. Own your inference forever via the Morpheus decentralized network. Stake MOR tokens, access GLM-5, GLM-4.7 Flash, Kimi K2.5, and 30+ models with persistent inference by recycling staked MOR. Open-source first model router routes all tiers to Morpheus by default — Claude only kicks in as an escape hatch when needed. Includes Morpheus API Gateway bootstrap for zero-config startup, OpenAI-compatible proxy with auto-session management, automatic retry with fresh sessions, OpenAI-compatible error classification to prevent cooldown cascades, multi-key auth rotation v2 with proactive DIEM balance monitoring and reactive 402 watchdog, Gateway Guardian v5 with direct curl inference probes (eliminates Signal spam), proactive Venice DIEM credit monitoring, circuit breaker for stuck sub-agents, nuclear self-healing restart, always-on proxy-router with launchd auto-restart, smart session archiver, three-shift cyclic execution engine (v2 with 15-minute execution loops), 24/7 always-on power configuration for macOS, bundled security skills, zero-dependency wallet management via macOS Keychain, x402 payment client for agent-to-agent USDC payments, ERC-8004 agent registry reader for discovering trustless agents on Base, and hardware-aware local Ollama fallback with auto model selection (Qwen3.5 family, 1.5B–72B based on available RAM/GPU).

自动化 0 5个月前
seekaxis

security-auditor

seekaxis

"Proactively audit agent skills (SKILL.md and bundled scripts) for security risks including malicious installers, obfuscated payloads, credential exfiltration, and supply-chain attacks. Use when installing, reviewing, or triaging any agent skill, or when the user asks to check a skill for safety."

CLI 工具 0 7个月前
nimeshgurung

fda-consultant-specialist

nimeshgurung

Senior FDA consultant and specialist for medical device companies including HIPAA compliance and requirement management. Provides FDA pathway expertise, QSR compliance, cybersecurity guidance, and regulatory submission support. Use for FDA submission planning, QSR compliance assessments, HIPAA evaluations, and FDA regulatory strategy development.

代码评审 0 9个月前
ShotaIuchi

migration-resolver

ShotaIuchi

Dependency resolution for migrations. Apply when resolving version conflicts, transitive dependency issues, peer dependency requirements, and incompatible dependency trees.

代码评审 0 7个月前