Loading...
Loading...
Found 5212 skills
Factory-AI
Validates security scan findings by assessing exploitability, filtering false positives, and generating proof-of-concept exploits to confirm vulnerabilities.
naporin0624
Lookup tool for OWASP DevSecOps guidelines, security tools, and CI/CD pipeline configurations including SAST, DAST, and container security.
naporin0624
Performs static security analysis on HTML forms to detect CSRF tokens, insecure actions, and validation issues without sending requests.
naporin0624
Scans Terraform and multi-cloud Infrastructure as Code for security misconfigurations using tfsec and Checkov.
naporin0624
Searches NIST NVD database for CVE vulnerabilities, providing details, CVSS scores, and affected software references.
naporin0624
Scans Git repositories for hardcoded secrets, credentials, and API keys using Gitleaks, providing severity, location, and remediation steps.
naporin0624
Scans Dockerfiles and container images for security vulnerabilities using Trivy and Hadolint, providing security auditing for containerized applications.
naporin0624
Dynamically tests web form vulnerabilities by sending payloads via Playwright, requiring user confirmation before execution.
naporin0624
Scans source code for security vulnerabilities, anti-patterns, and OWASP Top 10 issues using Semgrep for static application security testing.
jamietso
Reviews unilateral commercial NDAs from Recipient or Discloser perspectives, producing clause-by-clause issue logs with redlines, rationales, and compliance deadlines.
naporin0624
Provides OWASP Top 10 and CWE vulnerability details including attack vectors, payloads, and bounty payout estimates for security researchers.
naporin0624
Validates web resource files (sitemap.xml, robots.txt, security.txt, llms.txt) against RFC standards for security and compliance.
jaypaulb
Provides security protocols and compliance measures for system files requiring enterprise-wide security considerations.
raphaelmansuy
Enables secure authentication, authorization, and access control through RBAC, JWT, and OAuth for API security and governance.
hirefrank
Autonomously validates authentication security by checking password hashing, cookie configuration, CSRF protection, and session management for OWASP compliance.
hirefrank
Automatically checks Cloudflare Workers code for security best practices in secret management, CORS, and input validation during development.
timequity
Manages data lineage, cataloging, access control, and regulatory compliance to ensure data security and adherence to standards.
mcp-fortress
Scans MCP servers for security vulnerabilities, prompt injection attacks, and tool poisoning to ensure safety and integrity before installation.
ricable
Coordinates 5G RAN security, detects network threats, implements security policies, and enables intelligent security management for comprehensive network protection.
timequity
Automates OWASP security vulnerability scanning for code generated in the pipeline, ensuring compliance with security standards.
RobThePCGuy
Reviews utility patent applications against USPTO MPEP guidelines to ensure regulatory compliance.
timequity
Applies CIS benchmarks and performs vulnerability scanning to harden infrastructure security posture.
timequity
Automates pre-commit hook configuration and secret scanning to prevent accidental credential leaks in repositories.
davydany
Creates STIX 2.1 threat intelligence objects and bundles from IOCs, MITRE ATT&CK, and reports for security operations.