Loading...
Loading...
Found 5212 skills
NickCrew
Provides STRIDE, attack trees, and risk assessment methodologies for proactive security analysis in system design and security reviews.
NickCrew
Provides detection and remediation patterns for OWASP Top 10 security vulnerabilities in code reviews and security audits.
bobmatnyc
Provides Vercel security and access controls including RBAC, SSO, firewall, and 2FA for project protection.
bobmatnyc
Provides a structured threat modeling workflow including STRIDE analysis, data flow diagrams, and risk scoring to identify security vulnerabilities and generate mitigation tasks.
bobmatnyc
Validates and secures environment variables in Next.js, Vite, React, and Node.js applications to prevent configuration vulnerabilities.
bobmatnyc
Automates security scanning in CI pipelines, detecting secrets, dependencies, SAST issues, and managing triage with expiring exceptions.
bobmatnyc
Provides security validation for WordPress development, including nonces, sanitization, validation, and escaping to prevent XSS, CSRF, and SQL injection.
bobmatnyc
Provides a security checklist for API endpoints to verify authentication, authorization, and input validation prior to deployment.
JosiahSiegel
Provides comprehensive security guidelines and threat mitigation strategies for Docker container environments.
JosiahSiegel
Enables secure PowerShell administration through SecretManagement, JEA, WDAC, and credential protection best practices.
JosiahSiegel
Integrates Microsoft Defender for DevOps security scanning into Azure Pipelines for continuous vulnerability detection during CI/CD pipelines.
JosiahSiegel
Enforces Git security best practices for 2025, including signed commits, zero-trust workflows, secret scanning, and verification.
JosiahSiegel
Enforces security-first practices in bash scripting through mandatory validation and zero-trust principles.
JosiahSiegel
AI-powered security and automation features for GitHub repositories, enhancing code security and development workflows in 2025.
dazuck
Scans files for sensitive data including personal information, credentials, and security risks to prevent accidental exposure before sharing or publishing.
tachyon-beep
Guides implementation of security architecture through threat modeling, control frameworks, compliance adherence, and authorization mechanisms.
nozomi-koborinai
Scans codebases for accidental exposure of secrets including API keys, tokens, and passwords to prevent security breaches.
daffy0208
Implements security best practices for application stacks, including API security, authentication, input validation, and OWASP Top 10 compliance.
CsHeng
Delivers guidance on network security standards and connectivity controls for secure infrastructure implementation.
daffy0208
Comprehensive quality auditing of tools, frameworks, and systems against industry best practices with 12-dimensional scoring.
CsHeng
Provides governance and compliance standards for LLM content to ensure adherence to regulatory and ethical guidelines.
CsHeng
Guides implementation of structured security logging to meet compliance and security control requirements.
CsHeng
Provides comprehensive security implementation standards and guidance for establishing security guardrails in development and operations.
daffy0208
Security architecture including threat modeling, security-first design, and compliance validation.