Loading...
Loading...
Found 5212 skills
Robotti-io
Provides a standardized checklist to validate security fixes, ensuring effectiveness and absence of behavioral regressions.
Robotti-io
Reviews AI/LLM outputs to prevent over-trust, injection attacks, and unsafe automation, ensuring secure deployment.
Robotti-io
Automates vulnerability triage for software dependencies by assessing reachability, impact, and generating safe remediation plans.
Robotti-io
Conducts systematic security code reviews to identify vulnerabilities and provide actionable remediation steps.
Robotti-io
Prevents secret and PII leaks in logs through automated redaction and security hygiene defaults.
Robotti-io
Reviews authentication and authorization flows (sessions, tokens, RBAC/ABAC) and provides actionable security fix guidance.
lovedragonball
Reviews application security by implementing best practices including CSP, XSS prevention, input validation, and secrets management.
lovedragonball
Audits websites for WCAG compliance, identifies accessibility issues, and provides fixes for inclusive design implementation.
TradersPost
Ensures Pine Scripts meet TradingView's House Rules and documentation standards for community library publication.
blacktop
Analyzes Apple firmware, binaries, and security components including Mach-O disassembly and iOS/macOS kernel research.
manutej
Provides secure OAuth2 authentication with support for authorization flows, token management, PKCE, OpenID Connect, and security best practices.
neurofoo
Conducts adversarial security analysis to identify vulnerabilities and weaknesses in systems before deployment or during security reviews.
NASA-AMMOS
Automates container and dependency vulnerability scanning using Grype in CI/CD pipelines and development workflows to detect security issues early.
NASA-AMMOS
Detects project type and applies appropriate NASA or open source licenses for compliance assurance.
oaustegard
Securely stores and retrieves API keys for external services like Anthropic, Google Gemini, and GitHub to enable safe external API access.
yonatangross
Provides input validation and sanitization patterns to prevent injection attacks and ensure safe user input handling.
yonatangross
Provides security patterns for LLM integrations to defend against prompt injection and prevent hallucinations.
yonatangross
Secures MCP servers through prompt injection defense, tool poisoning prevention, and permission management via allowlist implementation.
yonatangross
Provides guidance on OWASP Top 10 security vulnerabilities and their mitigations for security audits and code reviews.
yonatangross
Provides secure authentication and authorization patterns including JWT, OAuth 2.1, and role-based access control for login flows and session management.
yonatangross
Automates security scanning of dependencies and code using tools like npm audit, pip-audit, and Semgrep, with CI/CD integration.
yonatangross
Enforces defense-in-depth security validation across AI pipeline components to eliminate single points of failure in LLM integrations.
yonatangross
Provides WCAG 2.2 AA compliance patterns for auditing and implementing accessibility requirements in web applications.
iurygdeoliveira
Automates security audits for Laravel and Filament applications, checking for XSS, CSP misconfigurations, and IDOR vulnerabilities.