安全

安全扫描与漏洞检测

显示 2281-2304 / 共 2315 个技能
yunaamelia

anti-reversing-techniques

yunaamelia

"Understand anti-reversing, obfuscation, and protection techniques encountered during software analysis. Use when analyzing protected binaries, bypassing anti-debugging for authorized analysis, or u..."

认证鉴权 0 6个月前
IchenDEV

code-review

IchenDEV

代码审查流程,系统化分析代码质量、安全性和最佳实践

代码评审 0 7个月前
paixaop

security-analyst

paixaop

"Use when the user wants a security audit, penetration test, threat model, vulnerability hunt, security fix plan, SBOM, compliance mapping, privacy assessment, or security posture comparison between runs."

代码评审 0 6个月前
bromanko

typescript-security-review

bromanko

This skill should be used when the user asks for "security review", "vulnerability scan", "audit TypeScript security", "security audit", "find vulnerabilities", "check for security issues", or wants a deep security analysis of TypeScript code including input validation, auth boundaries, and dependency risks.

代码评审 0 6个月前
jugaad-lab

clawguard

jugaad-lab

Security blacklist protecting AI agents from malicious skills, scams, and prompt injection. Use before executing external commands, visiting unknown URLs, or installing new skills. Triggers on "security check", "is this safe", "check this URL", or suspicious command patterns.

CLI 工具 0 7个月前
miabascacal

SKILL.md

miabascacal

Xolgadas no esta confirmado como nombre final solido. Mantener validacion de marca como workstream paralelo, sin desplazar seguridad.

提示词 0 4个月前
tailuge

nchan-expert

tailuge

Expert guidance for Nchan, a scalable pub/sub server for Nginx. Use this skill when you need to configure Nchan endpoints (publisher/subscriber), set up horizontal scaling with Redis, implement security patterns (authorization, X-Accel-Redirect), or troubleshoot Nchan performance and metrics.

缓存 0 7个月前
crance

fortify-scdast

crance

ScanCentral DAST guide for MCP tools. Run dynamic application security testing (DAST) scans, list and filter scan results, discover scan settings and policies, and manage web application security scanning using Fortify ScanCentral DAST. Triggers include any mention of 'SC-DAST', 'ScanCentral DAST', 'DAST scan', 'web scan', 'dynamic scan', 'run DAST scan', 'list scans', and similar requests indicating interaction with SC-DAST for dynamic application security scanning.

认证鉴权 0 6个月前
antgly

apple-platform-versions

antgly

Use ONLY to resolve Apple OS baselines for code and documentation for minimum deployment target, API/SDK availability, #available/@available, “latest/current” docs, or Sequoia (macOS 15) vs Tahoe (macOS 26.x) baseline corrections.

API 开发 0 6个月前
DevGuyRash

skill-auditor

DevGuyRash

Perform structured, reproducible audits of agent skills — testing mechanical correctness, agent usability, output quality, context efficiency, EARS compliance, prompt complexity, multi-agent coordination, audit convergence (reproducibility across runs), finding divergence (specificity and tailoring), AGENTS.md adherence (rule absorption verification), documentation/runtime staleness drift detection, CLI discoverability helper coverage, idempotency, error recovery, and credential safety. Covers 25 audit domains (D1–D25) with confidence-scored findings at every level. Use when (1) auditing or health-checking a skill end-to-end, (2) verifying AGENTS.md adherence, audit convergence, or finding divergence, or (3) validating scripts, CLIs, context/token footprint, EARS requirement syntax, prompt complexity, name consistency, dispatch prompt quality, or structured confidence-scored audit reports.

智能体 0 6个月前
wizact

go-developer

wizact

Go development best practices - clean architecture, testing, security, and idiomatic patterns for production-ready code

调试 0 6个月前
nimeshgurung

quality-manager-qms-iso13485

nimeshgurung

ISO 13485 Quality Management System specialist for medical device companies. Provides QMS implementation, maintenance, process optimization, and compliance expertise. Use for QMS design, documentation control, management review, internal auditing, corrective actions, and ISO 13485 certification activities.

代码评审 0 9个月前
Hack23

ai-governance

Hack23

AI governance, EU AI Act compliance, OWASP LLM security, responsible AI practices for GitHub Copilot agents

代码评审 236 6个月前
BizShuk

Security Scanner

BizShuk

Scan workspace for potential security risks including exposed passwords, API keys, tokens, and other sensitive data

API 开发 0 7个月前
Andy160675

subscription-audit

Andy160675

Audit IT, AI, and SaaS subscription fees by searching Gmail and Slack for receipts, invoices, and billing notifications. Use when asked to find subscriptions, audit recurring charges, identify software costs, review SaaS spending, or compile a subscription fee report.

代码评审 0 6个月前
alexwelcing

seo-audit

alexwelcing

Conduct comprehensive SEO audits and provide actionable recommendations

安全 0 7个月前
nick-neely

homescout-ingest

nick-neely

Analyze Homescout output directories (current.json, history/.jsonl(.gz), speedtests.jsonl, speedtests/.jsonl(.gz)) with CLI tools like jq/rg/awk to answer questions about device presence, outages, scan stats, or speedtest trends. Use when an agent needs to ingest Homescout outputs, especially from remote/Tailscale/Taildrive output paths.

CI/CD 0 7个月前
htooayelwinict

security-review

htooayelwinict

Audit code for security vulnerabilities using OWASP Top 10 guidelines. Use for security audits, pre-deployment checks, authentication reviews, or when checking for XSS, SQL injection, CSRF, or authorization issues. EXCLUSIVE to security-expert agent.

代码评审 0 7个月前
aleister1102

security-agent-efficiency

aleister1102

Use when running a full security audit of an arbitrary source code repository. Orchestrates a 9-phase workflow combining advisory intelligence, patch bypass analysis, knowledge base construction, SAST, spec gap analysis, deep bug hunting, false positive elimination, and variant analysis. Triggers on "audit this repo", "run a full security audit", "find vulnerabilities in this codebase", "check for security issues", "is this secure?", "run the security agents", or any request combining advisory regression, SAST, and manual review.

分析 0 6个月前
alterxyz

skill-evaluator

alterxyz

Evaluate Agent Skills against agentskills.io specification with three progressive modes and smart visual reports. (1) Static Analysis - SKILL.md-only review for quality and spec compliance, outputs score /60. (2) Semi-Static Analysis - adds environment and user fit assessment without execution, outputs score /100. (3) Full Analysis - complete evaluation with security scanning, trigger testing, and dynamic verification, outputs score /130. Supports Bento-ready JSON report output for visual dashboards with auto-scaling blocks based on issue severity. Trigger phrases include "evaluate skill", "review skill", "audit skill", "is this skill good", "should I use/install this skill", "skill quality check", "rate this skill", "score this skill", "bento report", "visual report", "技能评估", "评测 skill", "审核 skill", "可视化报告".

分析 0 7个月前
keep-starknet-strange

starknet-tongo

keep-starknet-strange

Confidential ERC20 payments on Starknet using Tongo protocol. Fund, transfer, withdraw, and rollover encrypted token balances with zero-knowledge proofs. Use when the user needs privacy-preserving transactions, confidential payments, encrypted balances, or auditable private transfers on Starknet.

法律 80 5个月前
takuan-osho

interview

takuan-osho

Conduct structured interviews to gather requirements, clarify specifications, or understand context. This skill should be used when starting a new task that requires understanding user intent, requirements, technical specifications, or context. It supports various interview types including requirements definition, debugging investigation, architecture review, and general information gathering.

代码评审 0 7个月前
elvatis

clawhub-scanner

elvatis

"Scan installed ClawHub skills for malware, credential theft, prompt injection, and security risks. Detects known C2 infrastructure, obfuscated payloads, and data exfiltration patterns from the ClawHavoc campaign."

代码评审 0 6个月前
Hack23

incident-response

Hack23

Security incident detection, analysis, containment, eradication, recovery, and lessons learned per NIST SP 800-61r2 and ISO 27035

法律 236 3个月前