Loading...
Loading...
Found 5212 skills
bajor3k
Guide for reviewing application code to identify vulnerabilities, validate inputs, and verify permissions to ensure security compliance.
AVRA-CADAVRA
Provides a security validation checklist covering encryption, authentication, and data protection for compliance and implementation reviews.
AVRA-CADAVRA
Guides secure integration of the Signal protocol, including encryption, key management, and security best practices for messaging applications.
kjibba
Performs advanced vulnerability analysis including OWASP 2025 compliance, supply chain security assessment, attack surface mapping, and risk prioritization.
jj8127
Guides creation of Row Level Security (RLS) policies in Supabase for secure data access control and permission management.
meriley
Reviews Go code using Casbin for authorization security, model correctness, policy design, and anti-patterns in pull requests and audits.
jscraik
Manages secrets securely using 1Password CLI for injection, authentication, and environment variable provisioning in scripts.
jscraik
Analyzes hardened or low-signal targets via observation-first instrumentation and baseline/stimulus diffs to identify security escalation paths.
kjibba
Provides red team tactics based on MITRE ATT&CK, covering attack phases, detection evasion, and reporting guidelines.
BenWork17
Manages user authentication, authorization, and role-based access control with JWT and token rotation for secure user management.
jscraik
Static analysis tool for macOS .app bundles and Mach-O binaries, examining bundle structure, code signatures, entitlements, and symbol imports to assess security posture.
meriley
Audits Cursor IDE rules (.mdc files) against quality standards using a 5-gate review process to ensure correctness and maintainability.
cerico
Analyzes npm audit results to distinguish critical security vulnerabilities from false positives and provides actionable remediation steps.
CodedBiijay
Monitors and sanitizes all inputs to prevent storage of PHI, PII, and proprietary secrets.
shaitamam-80
Provides security assistance for web applications and APIs, including vulnerability checks, permission management, and data protection, tailored for Supabase and FastAPI projects.
jscraik
Analyzes and reports authorized security evidence using Recon Workbench workflows for macOS, iOS, web apps, and OSS repositories via CLI commands.
meriley
Automates pre-commit security scanning to detect secrets, vulnerabilities, and injection risks, ensuring compliance before code commit.
Manuelvillarvieites
Configures Google Analytics 4 with DSGVO-compliant cookie consent banners to ensure legal data tracking compliance.
yousufjoyian
Enforces multi-layer data validation across all system layers to eliminate security flaws and prevent bugs.
stkhr
Provides OWASP Top 10 compliant security hardening for code, including input validation, authentication, and protection against XSS, CSRF, and SQL injection vulnerabilities.
tubone24
Provides security checklists and patterns for secure implementation of authentication, user input handling, secrets management, and payment features.
ChanningHe
Enforces security best practices in code development, covering input handling, secrets management, and secure coding standards.
buttercupck
Provides a structured methodology for bug bounty hunting, including parallel reconnaissance, systematic testing, and vulnerability exploitation guidance across diverse targets.
MigzCtrl
Audits Supabase Row Level Security policies to prevent cross-shop data leaks in multi-tenant applications.