@skills · Category
Security agent skills
2,192 skills indexed; the 300 most-starred are listed here. Reference any of them in AdaL, Claude Code, Cursor or any coding agent — nothing to install. Search all security skills.
- healthcheck · steipete · 385,400 stars
Audit/harden OpenClaw hosts: SSH, firewall, updates, exposure, backups, disk encryption, gateway security.
- openclaw-ghsa-maintainer · steipete · 385,400 stars
Inspect, patch, validate, publish, or confirm OpenClaw GHSA security advisories and private-fork state.
- openclaw-secret-scanning-maintainer · steipete · 385,400 stars
Triage, redact, clean up, and resolve OpenClaw GitHub Secret Scanning alerts in issues or PRs.
- security-triage · steipete · 385,400 stars
Triage OpenClaw security advisories, drafts, and GHSA reports with shipped-tag and trust-model proof.
- cisco-ios-patterns · affaan-m · 238,342 stars
showコマンド、コンフィグ階層、ワイルドカードマスク、ACL配置、インターフェースハイジーン、安全な変更ウィンドウ検証のためのCisco IOSおよびIOS-XEレビューパターン。
- defi-amm-security · affaan-m · 238,342 stars
DeFi自動マーケットメーカー(AMM)スマートコントラクトセキュリティ監査パターン。フラッシュローン、スリッページ、サンドイッチング攻撃、価格操作、再入攻撃、不正確な整数演算をカバー。
- defi-amm-security · affaan-m · 238,342 stars
DeFi自動マーケットメーカー(AMM)スマートコントラクトセキュリティ監査パターン。フラッシュローン、スリッページ、サンドイッチング攻撃、価格操作、再入攻撃、不正確な整数演算をカバー。
- defi-amm-security · affaan-m · 238,342 stars
Solidity AMM 合约、流动性池和交换流程的安全检查清单。涵盖重入、CEI 排序、捐赠或通胀攻击、预言机操纵、滑点、管理员控制和整数数学。
- defi-amm-security · affaan-m · 238,342 stars
Security checklist for Solidity AMM contracts, liquidity pools, and swap flows. Covers reentrancy, CEI ordering, donation or inflation attacks, oracle mani
- defi-amm-security · affaan-m · 238,342 stars
Security checklist for Solidity AMM contracts, liquidity pools, and swap flows. Covers reentrancy, CEI ordering, donation or inflation attacks, oracle mani
- defi-amm-security · affaan-m · 238,342 stars
Solidity AMM 合约、流动性池和交换流程的安全检查清单。涵盖重入、CEI 排序、捐赠或通胀攻击、预言机操纵、滑点、管理员控制和整数数学。
- django-security · affaan-m · 238,342 stars
Django 安全最佳实践、认证、授权、CSRF 防护、SQL 注入预防、XSS 预防和安全部署配置。
- django-security · affaan-m · 238,342 stars
Django security best practices, authentication, authorization, CSRF protection, SQL injection prevention, XSS prevention, and secure deployment configurati
- django-security · affaan-m · 238,342 stars
Django security best practices, authentication, authorization, CSRF protection, SQL injection prevention, XSS prevention, and secure deployment configurati
- django-security · affaan-m · 238,342 stars
Django 安全最佳实践、认证、授权、CSRF 防护、SQL 注入预防、XSS 预防和安全部署配置。
- django-security · affaan-m · 238,342 stars
Django security best practices, authentication, authorization, CSRF protection, SQL injection prevention, XSS prevention, and secure deployment configurati
- django-security · affaan-m · 238,342 stars
Django security best practices, authentication, authorization, CSRF protection, SQL injection prevention, XSS prevention, and secure deployment configurati
- django-security · affaan-m · 238,342 stars
Django security best practices, authentication, authorization, CSRF protection, SQL injection prevention, XSS prevention, and secure deployment configurati
- django-security · affaan-m · 238,342 stars
Django security best practices, authentication, authorization, CSRF protection, SQL injection prevention, XSS prevention, and secure deployment configurati
- gateguard · affaan-m · 238,342 stars
API、エージェント、およびLLMエンドポイントのアクセス制御と認可パターン。
- gateguard · affaan-m · 238,342 stars
API、エージェント、およびLLMエンドポイントのアクセス制御と認可パターン。
- healthcare-phi-compliance · affaan-m · 238,342 stars
Protected Health Information (PHI) and Personally Identifiable Information (PII) compliance patterns for healthcare applications. Covers data classificatio
- healthcare-phi-compliance · affaan-m · 238,342 stars
医疗应用中受保护健康信息(PHI)和个人身份信息(PII)的合规模式。涵盖数据分类、访问控制、审计追踪、加密及常见泄露途径。
- healthcare-phi-compliance · affaan-m · 238,342 stars
保護医療情報(PHI)コンプライアンス、HIPAA準拠、およびデータセキュリティ。
- healthcare-phi-compliance · affaan-m · 238,342 stars
医疗应用中受保护健康信息(PHI)和个人身份信息(PII)的合规模式。涵盖数据分类、访问控制、审计追踪、加密及常见泄露途径。
- healthcare-phi-compliance · affaan-m · 238,342 stars
保護医療情報(PHI)コンプライアンス、HIPAA準拠、およびデータセキュリティ。
- hipaa-compliance · affaan-m · 238,342 stars
HIPAA-specific entrypoint for healthcare privacy and security work. Use when a task is explicitly framed around HIPAA, PHI handling, covered entities, BAAs
- hipaa-compliance · affaan-m · 238,342 stars
针对医疗隐私和安全工作的HIPAA特定入口点。当任务明确围绕HIPAA、PHI处理、受保实体、BAA、违规态势或美国医疗合规要求时使用。
- hipaa-compliance · affaan-m · 238,342 stars
HIPAA準拠実装、セキュリティ対策、監査ログ、およびデータ保護戦略。
- hipaa-compliance · affaan-m · 238,342 stars
针对医疗隐私和安全工作的HIPAA特定入口点。当任务明确围绕HIPAA、PHI处理、受保实体、BAA、违规态势或美国医疗合规要求时使用。
- hipaa-compliance · affaan-m · 238,342 stars
HIPAA-specific entrypoint for healthcare privacy and security work. Use when a task is explicitly framed around HIPAA, PHI handling, covered entities, BAAs
- hipaa-compliance · affaan-m · 238,342 stars
HIPAA準拠実装、セキュリティ対策、監査ログ、およびデータ保護戦略。
- homelab-pihole-dns · affaan-m · 238,342 stars
Pi-hole installation, blocklist management, DNS-over-HTTPS setup, DHCP integration, local DNS records, and troubleshooting broken DNS resolution on a home
- homelab-vlan-segmentation · affaan-m · 238,342 stars
ホームラボVLANセグメンテーション、ネットワーク分離、アクセス制御、およびトラフィック管理。
- homelab-vlan-segmentation · affaan-m · 238,342 stars
ホームラボVLANセグメンテーション、ネットワーク分離、アクセス制御、およびトラフィック管理。
- homelab-vlan-segmentation · affaan-m · 238,342 stars
Segmenting home networks into VLANs for IoT, guest, trusted, and server traffic using UniFi, pfSense/OPNsense, and MikroTik — including switch trunk config
- homelab-vlan-segmentation · affaan-m · 238,342 stars
Segmenting home networks into VLANs for IoT, guest, trusted, and server traffic using UniFi, pfSense/OPNsense, and MikroTik — including switch trunk config
- homelab-wireguard-vpn · affaan-m · 238,342 stars
ホームラボWireGuard VPN設定、リモートアクセス、キー管理、およびエンドツーエンド暗号化。
- homelab-wireguard-vpn · affaan-m · 238,342 stars
WireGuard VPN server setup, peer configuration, key generation, split tunneling vs full tunnel routing, and remote access to a home network from mobile and
- homelab-wireguard-vpn · affaan-m · 238,342 stars
WireGuard VPN server setup, peer configuration, key generation, split tunneling vs full tunnel routing, and remote access to a home network from mobile and
- homelab-wireguard-vpn · affaan-m · 238,342 stars
ホームラボWireGuard VPN設定、リモートアクセス、キー管理、およびエンドツーエンド暗号化。
- laravel-security · affaan-m · 238,342 stars
Laravel security best practices — authentication, authorization, Eloquent safety, CSRF, XSS prevention, API security, and secure deployment configurations.
- laravel-security · affaan-m · 238,342 stars
Laravel 安全最佳实践,涵盖认证/授权、验证、CSRF、批量赋值、文件上传、密钥管理、速率限制和安全部署。
- laravel-security · affaan-m · 238,342 stars
Laravel セキュリティベストプラクティス:認証・認可、バリデーション、CSRF、一括割当、ファイルアップロード、シークレット管理、レート制限、安全なデプロイメント
- laravel-security · affaan-m · 238,342 stars
Laravel security best practices for authn/authz, validation, CSRF, mass assignment, file uploads, secrets, rate limiting, and secure deployment.
- laravel-security · affaan-m · 238,342 stars
Laravel セキュリティベストプラクティス:認証・認可、バリデーション、CSRF、一括割当、ファイルアップロード、シークレット管理、レート制限、安全なデプロイメント
- laravel-security · affaan-m · 238,342 stars
Laravel security best practices for authn/authz, validation, CSRF, mass assignment, file uploads, secrets, rate limiting, and secure deployment.
- laravel-security · affaan-m · 238,342 stars
Buenas prácticas de seguridad en Laravel para autenticación/autorización, validación, CSRF, asignación masiva, subida de archivos, secretos, limitación de
- laravel-security · affaan-m · 238,342 stars
Buenas prácticas de seguridad en Laravel para autenticación/autorización, validación, CSRF, asignación masiva, subida de archivos, secretos, limitación de
- laravel-security · affaan-m · 238,342 stars
Laravel security best practices — authentication, authorization, Eloquent safety, CSRF, XSS prevention, API security, and secure deployment configurations.
- laravel-security · affaan-m · 238,342 stars
Laravel 安全最佳实践,涵盖认证/授权、验证、CSRF、批量赋值、文件上传、密钥管理、速率限制和安全部署。
- llm-trading-agent-security · affaan-m · 238,342 stars
Security patterns for autonomous trading agents with wallet or transaction authority. Covers prompt injection, spend limits, pre-send simulation, circuit b
- llm-trading-agent-security · affaan-m · 238,342 stars
具有钱包或交易权限的自主交易代理的安全模式。涵盖提示注入、支出限制、发送前模拟、断路器、MEV保护和密钥处理。
- llm-trading-agent-security · affaan-m · 238,342 stars
日本語翻訳:このファイルは llm-trading-agent-security 用の日本語翻訳が必要です
- llm-trading-agent-security · affaan-m · 238,342 stars
Security patterns for autonomous trading agents with wallet or transaction authority. Covers prompt injection, spend limits, pre-send simulation, circuit b
- llm-trading-agent-security · affaan-m · 238,342 stars
具有钱包或交易权限的自主交易代理的安全模式。涵盖提示注入、支出限制、发送前模拟、断路器、MEV保护和密钥处理。
- llm-trading-agent-security · affaan-m · 238,342 stars
日本語翻訳:このファイルは llm-trading-agent-security 用の日本語翻訳が必要です
- network-interface-health · affaan-m · 238,342 stars
ルーター、スイッチ、Linuxホスト上のインターフェースエラー、ドロップ、CRC、デュプレックス不一致、フラッピング、速度ネゴシエーション問題、カウンタートレンドを診断する。
- perl-security · affaan-m · 238,342 stars
Comprehensive Perl security covering taint mode, input validation, safe process execution, DBI parameterized queries, web security (XSS/SQLi/CSRF), and per
- perl-security · affaan-m · 238,342 stars
全面的Perl安全指南,涵盖污染模式、输入验证、安全进程执行、DBI参数化查询、Web安全(XSS/SQLi/CSRF)以及perlcritic安全策略。
- perl-security · affaan-m · 238,342 stars
テイントモード、入力バリデーション、安全なプロセス実行、DBIパラメータ化クエリ、Webセキュリティ(XSS/SQLi/CSRF)、perlcriticセキュリティポリシーを網羅する包括的なPerlセキュリティ。
- perl-security · affaan-m · 238,342 stars
テイントモード、入力バリデーション、安全なプロセス実行、DBIパラメータ化クエリ、Webセキュリティ(XSS/SQLi/CSRF)、perlcriticセキュリティポリシーを網羅する包括的なPerlセキュリティ。
- perl-security · affaan-m · 238,342 stars
全面的Perl安全指南,涵盖污染模式、输入验证、安全进程执行、DBI参数化查询、Web安全(XSS/SQLi/CSRF)以及perlcritic安全策略。
- perl-security · affaan-m · 238,342 stars
Comprehensive Perl security covering taint mode, input validation, safe process execution, DBI parameterized queries, web security (XSS/SQLi/CSRF), and per
- prediction-market-risk-review · affaan-m · 238,342 stars
Review prediction-market, basket, oracle, and trading-agent workflows for compliance, safety, data-quality, privacy, and execution risk. Use before any wor
- quarkus-security · affaan-m · 238,342 stars
Quarkus Security best practices for authentication, authorization, JWT/OIDC, RBAC, input validation, CSRF, secrets management, and dependency security. Use
- quarkus-security · affaan-m · 238,342 stars
Quarkus認証、認可、JWT/OIDC、RBAC、入力検証、CSRF、シークレット管理、依存関係セキュリティのセキュリティベストプラクティス。
- quarkus-security · affaan-m · 238,342 stars
Buenas prácticas de seguridad en Quarkus para autenticación, autorización, JWT/OIDC, RBAC, validación de entrada, CSRF, gestión de secretos y seguridad de
- quarkus-security · affaan-m · 238,342 stars
Quarkus Security best practices for authentication, authorization, JWT/OIDC, RBAC, input validation, CSRF, secrets management, and dependency security.
- quarkus-security · affaan-m · 238,342 stars
Quarkus認証、認可、JWT/OIDC、RBAC、入力検証、CSRF、シークレット管理、依存関係セキュリティのセキュリティベストプラクティス。
- quarkus-security · affaan-m · 238,342 stars
Quarkus Security best practices for authentication, authorization, JWT/OIDC, RBAC, input validation, CSRF, secrets management, and dependency security. Use
- quarkus-security · affaan-m · 238,342 stars
Buenas prácticas de seguridad en Quarkus para autenticación, autorización, JWT/OIDC, RBAC, validación de entrada, CSRF, gestión de secretos y seguridad de
- quarkus-security · affaan-m · 238,342 stars
Quarkus Security best practices for authentication, authorization, JWT/OIDC, RBAC, input validation, CSRF, secrets management, and dependency security.
- safety-guard · affaan-m · 238,342 stars
本番システムでの作業時や、エージェントを自律的に実行する際に破壊的な操作を防ぐためにこのスキルを使用してください。
- safety-guard · affaan-m · 238,342 stars
Use this skill to prevent destructive operations when working on production systems or running agents autonomously.
- safety-guard · affaan-m · 238,342 stars
使用此技能可防止在生产系统上工作或自主运行代理时进行破坏性操作。
- safety-guard · affaan-m · 238,342 stars
使用此技能可防止在生产系统上工作或自主运行代理时进行破坏性操作。
- safety-guard · affaan-m · 238,342 stars
本番システムでの作業時や、エージェントを自律的に実行する際に破壊的な操作を防ぐためにこのスキルを使用してください。
- security-bounty-hunter · affaan-m · 238,342 stars
在仓库中寻找可利用、值得赏金的安全问题。专注于远程可访问的漏洞,这些漏洞符合实际报告的条件,而不是嘈杂的仅本地发现。
- security-bounty-hunter · affaan-m · 238,342 stars
在仓库中寻找可利用、值得赏金的安全问题。专注于远程可访问的漏洞,这些漏洞符合实际报告的条件,而不是嘈杂的仅本地发现。
- security-bounty-hunter · affaan-m · 238,342 stars
Hunt for exploitable, bounty-worthy security issues in repositories. Focuses on remotely reachable vulnerabilities that qualify for real reports instead of
- security-bounty-hunter · affaan-m · 238,342 stars
リポジトリ内の悪用可能なバウンティ対象のセキュリティ問題を発見します。ノイズの多いローカルのみの発見ではなく、実際のレポートに適格なリモートから到達可能な脆弱性に焦点を当てます。
- security-bounty-hunter · affaan-m · 238,342 stars
リポジトリ内の悪用可能なバウンティ対象のセキュリティ問題を発見します。ノイズの多いローカルのみの発見ではなく、実際のレポートに適格なリモートから到達可能な脆弱性に焦点を当てます。
- security-bounty-hunter · affaan-m · 238,342 stars
Hunt for exploitable, bounty-worthy security issues in repositories. Focuses on remotely reachable vulnerabilities that qualify for real reports instead of
- security-review · affaan-m · 238,342 stars
Kimlik doğrulama eklerken, kullanıcı girdisi işlerken, secret'larla çalışırken, API endpoint'leri oluştururken veya ödeme/hassas özellikler uygularken bu s
- security-review · affaan-m · 238,342 stars
Use this skill when adding authentication, handling user input, working with secrets, creating API endpoints, or implementing payment/sensitive features. P
- security-review · affaan-m · 238,342 stars
Use this skill when adding authentication, handling user input, working with secrets, creating API endpoints, or implementing payment/sensitive features. P
- security-review · affaan-m · 238,342 stars
Use this skill when adding authentication, handling user input, working with secrets, creating API endpoints, or implementing payment/sensitive features. P
- security-review · affaan-m · 238,342 stars
認証の追加、ユーザー入力の処理、シークレットの操作、APIエンドポイントの作成、支払い/機密機能の実装時にこのスキルを使用します。包括的なセキュリティチェックリストとパターンを提供します。
- security-review · affaan-m · 238,342 stars
在添加身份验证、处理用户输入、处理机密信息、创建API端点或实现支付/敏感功能时使用此技能。提供全面的安全检查清单和模式。
- security-review · affaan-m · 238,342 stars
인증 추가, 사용자 입력 처리, 시크릿 관리, API 엔드포인트 생성, 결제/민감한 기능 구현 시 이 스킬을 사용하세요. 포괄적인 보안 체크리스트와 패턴을 제공합니다.
- security-review · affaan-m · 238,342 stars
Use this skill when adding authentication, handling user input, working with secrets, creating API endpoints, or implementing payment/sensitive features. P
- security-review · affaan-m · 238,342 stars
認証の追加、ユーザー入力の処理、シークレットの操作、APIエンドポイントの作成、支払い/機密機能の実装時にこのスキルを使用します。包括的なセキュリティチェックリストとパターンを提供します。
- security-review · affaan-m · 238,342 stars
Use this skill when adding authentication, handling user input, working with secrets, creating API endpoints, or implementing payment/sensitive features. P
- security-review · affaan-m · 238,342 stars
Usar este skill al agregar autenticación, manejar entradas de usuario, trabajar con secretos, crear endpoints de API o implementar funcionalidades de pago/
- security-review · affaan-m · 238,342 stars
Use this skill when adding authentication, handling user input, working with secrets, creating API endpoints, or implementing payment/sensitive features. P
- security-review · affaan-m · 238,342 stars
Use this skill when adding authentication, handling user input, working with secrets, creating API endpoints, or implementing payment/sensitive features. P
- security-review · affaan-m · 238,342 stars
인증 추가, 사용자 입력 처리, 시크릿 관리, API 엔드포인트 생성, 결제/민감한 기능 구현 시 이 스킬을 사용하세요. 포괄적인 보안 체크리스트와 패턴을 제공합니다.
- security-review · affaan-m · 238,342 stars
Use this skill when adding authentication, handling user input, working with secrets, creating API endpoints, or implementing payment/sensitive features. P
- security-review · affaan-m · 238,342 stars
Kimlik doğrulama eklerken, kullanıcı girdisi işlerken, secret'larla çalışırken, API endpoint'leri oluştururken veya ödeme/hassas özellikler uygularken bu s
- security-review · affaan-m · 238,342 stars
在添加身份验证、处理用户输入、处理机密信息、创建API端点或实现支付/敏感功能时使用此技能。提供全面的安全检查清单和模式。
- security-review · affaan-m · 238,342 stars
Usar este skill al agregar autenticación, manejar entradas de usuario, trabajar con secretos, crear endpoints de API o implementar funcionalidades de pago/
- security-scan · affaan-m · 238,342 stars
使用AgentShield扫描您的Claude代码配置(.claude/目录),以发现安全漏洞、配置错误和注入风险。检查CLAUDE.md、settings.json、MCP服务器、钩子和代理定义。
- security-scan · affaan-m · 238,342 stars
Scan your Claude Code configuration (.claude/ directory) for security vulnerabilities, misconfigurations, and injection risks using AgentShield. Checks CLA
- security-scan · affaan-m · 238,342 stars
使用AgentShield扫描您的Claude代码配置(.claude/目录),以发现安全漏洞、配置错误和注入风险。检查CLAUDE.md、settings.json、MCP服务器、钩子和代理定义。
- security-scan · affaan-m · 238,342 stars
Scan your Claude Code configuration (.claude/ directory) for security vulnerabilities, misconfigurations, and injection risks using AgentShield. Checks CLA
- security-scan · affaan-m · 238,342 stars
AgentShield を使用して、Claude Code の設定(.claude/ ディレクトリ)のセキュリティ脆弱性、設定ミス、インジェクションリスクをスキャンします。CLAUDE.md、settings.json、MCP サーバー、フック、エージェント定義をチェックします。
- security-scan · affaan-m · 238,342 stars
AgentShield を使用して、Claude Code の設定(.claude/ ディレクトリ)のセキュリティ脆弱性、設定ミス、インジェクションリスクをスキャンします。CLAUDE.md、settings.json、MCP サーバー、フック、エージェント定義をチェックします。
- springboot-security · affaan-m · 238,342 stars
Spring Security best practices for authn/authz, validation, CSRF, secrets, headers, rate limiting, and dependency security in Java Spring Boot services. Us
- springboot-security · affaan-m · 238,342 stars
Spring Security best practices for authn/authz, validation, CSRF, secrets, headers, rate limiting, and dependency security in Java Spring Boot services.
- springboot-security · affaan-m · 238,342 stars
Spring Security best practices for authn/authz, validation, CSRF, secrets, headers, rate limiting, and dependency security in Java Spring Boot services.
- springboot-security · affaan-m · 238,342 stars
Buenas prácticas de Spring Security para autenticación/autorización, validación, CSRF, secretos, cabeceras, limitación de velocidad y seguridad de dependen
- springboot-security · affaan-m · 238,342 stars
Spring Security best practices for authn/authz, validation, CSRF, secrets, headers, rate limiting, and dependency security in Java Spring Boot services. Us
- springboot-security · affaan-m · 238,342 stars
Spring Security best practices for authn/authz, validation, CSRF, secrets, headers, rate limiting, and dependency security in Java Spring Boot services.
- springboot-security · affaan-m · 238,342 stars
Java Spring Boot 服务中认证/授权、验证、CSRF、密钥、标头、速率限制和依赖安全性的 Spring Security 最佳实践。
- springboot-security · affaan-m · 238,342 stars
Spring Security best practices for authn/authz, validation, CSRF, secrets, headers, rate limiting, and dependency security in Java Spring Boot services.
- springboot-security · affaan-m · 238,342 stars
Java Spring Boot 服务中认证/授权、验证、CSRF、密钥、标头、速率限制和依赖安全性的 Spring Security 最佳实践。
- springboot-security · affaan-m · 238,342 stars
Buenas prácticas de Spring Security para autenticación/autorización, validación, CSRF, secretos, cabeceras, limitación de velocidad y seguridad de dependen
- 1password · nousresearch · 226,679 stars
Set up op CLI, sign in, and read or inject secrets.
- domain-intel · nousresearch · 226,679 stars
Passive recon of subdomains, SSL certs, WHOIS, and DNS.
- godmode · nousresearch · 226,679 stars
Jailbreak LLMs: Parseltongue, GODMODE, ULTRAPLINIAN.
- memento-flashcards · nousresearch · 226,679 stars
Spaced-repetition flashcards: create, review, quiz, export.
- oss-forensics · nousresearch · 226,679 stars
GitHub supply-chain forensics: recovery, IOCs, reporting.
- sherlock · nousresearch · 226,679 stars
Find accounts for a username across 400+ platforms.
- unbroker · nousresearch · 226,679 stars
Autonomously remove your info from data-broker sites.
- web-pentest · nousresearch · 226,679 stars
Authorized web pentest: recon, proof-based exploits, report.
- teach · mattpocock · 207,363 stars
Teach the user a new skill or concept, within this workspace.
- security-and-hardening · addyosmani · 83,053 stars
Hardens code against vulnerabilities. Use when auditing an input handler for vulnerabilities, when handling user input, authentication, data storage, or ex
- deal-with-security-advisory · paperclipai · 75,771 stars
Handle confidential GitHub Security Advisory response for Paperclip. Use when coordinating advisory triage, private-fork fixes, CVE/publication steps, and
- security-guardian · rtk-ai · 75,070 stars
CLI security expert for RTK - command injection, shell escaping, hook security
- securitytrails-automation · composiohq · 71,973 stars
Automate Securitytrails tasks via Rube MCP (Composio). Always search tools first for current schemas.
- security-research · code-yeongyu · 67,387 stars
- security-research · code-yeongyu · 67,387 stars
Team Mode security research skill. Orchestrates 3 vulnerability hunters and 2 PoC engineers to audit a codebase in parallel, prove exploitability, classify
- cli-anything-jumpserver · hkuds · 46,739 stars
Stateful CLI harness for JumpServer bastion host management. Supports asset, user, permission, account, session, audit, and operations management via REST
- cli-anything-jumpserver · hkuds · 46,739 stars
Stateful CLI harness for JumpServer bastion host management. Supports asset, user, permission, account, session, audit, and operations management via REST
- 007 · sickn33 · 44,571 stars
Security audit, hardening, threat modeling (STRIDE/PASTA), Red/Blue Team, OWASP checks, code review, incident response, and infrastructure security for any
- 007 · sickn33 · 44,571 stars
Security audit, hardening, threat modeling (STRIDE/PASTA), Red/Blue Team, OWASP checks, code review, incident response, and infrastructure security for any
- 007 · sickn33 · 44,571 stars
Security audit, hardening, threat modeling (STRIDE/PASTA), Red/Blue Team, OWASP checks, code review, incident response, and infrastructure security for any
- active-directory-attacks · sickn33 · 44,571 stars
Provide comprehensive techniques for attacking Microsoft Active Directory environments. Covers reconnaissance, credential harvesting, Kerberos attacks, lat
- active-directory-attacks · sickn33 · 44,571 stars
Provide comprehensive techniques for attacking Microsoft Active Directory environments. Covers reconnaissance, credential harvesting, Kerberos attacks, lat
- active-directory-attacks · sickn33 · 44,571 stars
Provide comprehensive techniques for attacking Microsoft Active Directory environments. Covers reconnaissance, credential harvesting, Kerberos attacks, lat
- aegisops-ai · sickn33 · 44,571 stars
Autonomous DevSecOps & FinOps Guardrails. Orchestrates Gemini 3 Flash to audit Linux Kernel patches, Terraform cost drifts, and K8s compliance.
- agentic-actions-auditor · sickn33 · 44,571 stars
Audits GitHub Actions workflows for security vulnerabilities in AI agent integrations including Claude Code Action, Gemini CLI, OpenAI Codex, and GitHub AI
- agentic-actions-auditor · sickn33 · 44,571 stars
Audits GitHub Actions workflows for security vulnerabilities in AI agent integrations including Claude Code Action, Gemini CLI, OpenAI Codex, and GitHub AI
- agentic-actions-auditor · sickn33 · 44,571 stars
Audits GitHub Actions workflows for security vulnerabilities in AI agent integrations including Claude Code Action, Gemini CLI, OpenAI Codex, and GitHub AI
- anti-reversing-techniques · sickn33 · 44,571 stars
AUTHORIZED USE ONLY: This skill contains dual-use security techniques. Before proceeding with any bypass or analysis: > 1.
- anti-reversing-techniques · sickn33 · 44,571 stars
AUTHORIZED USE ONLY: This skill contains dual-use security techniques. Before proceeding with any bypass or analysis: > 1.
- anti-reversing-techniques · sickn33 · 44,571 stars
AUTHORIZED USE ONLY: This skill contains dual-use security techniques. Before proceeding with any bypass or analysis: > 1.
- api-fuzzing-bug-bounty · sickn33 · 44,571 stars
Provide comprehensive techniques for testing REST, SOAP, and GraphQL APIs during bug bounty hunting and penetration testing engagements. Covers vulnerabili
- api-fuzzing-bug-bounty · sickn33 · 44,571 stars
Provide comprehensive techniques for testing REST, SOAP, and GraphQL APIs during bug bounty hunting and penetration testing engagements. Covers vulnerabili
- api-fuzzing-bug-bounty · sickn33 · 44,571 stars
Provide comprehensive techniques for testing REST, SOAP, and GraphQL APIs during bug bounty hunting and penetration testing engagements. Covers vulnerabili
- api-security-best-practices · sickn33 · 44,571 stars
Implement secure API design patterns including authentication, authorization, input validation, rate limiting, and protection against common API vulnerabil
- api-security-best-practices · sickn33 · 44,571 stars
Implement secure API design patterns including authentication, authorization, input validation, rate limiting, and protection against common API vulnerabil
- api-security-best-practices · sickn33 · 44,571 stars
Implement secure API design patterns including authentication, authorization, input validation, rate limiting, and protection against common API vulnerabil
- api-security-best-practices · sickn33 · 44,571 stars
Implement secure API design patterns including authentication, authorization, input validation, rate limiting, and protection against common API vulnerabil
- api-security-best-practices · sickn33 · 44,571 stars
Implement secure API design patterns including authentication, authorization, input validation, rate limiting, and protection against common API vulnerabil
- api-security-best-practices · sickn33 · 44,571 stars
Implement secure API design patterns including authentication, authorization, input validation, rate limiting, and protection against common API vulnerabil
- api-security-testing · sickn33 · 44,571 stars
API security testing workflow for REST and GraphQL APIs covering authentication, authorization, rate limiting, input validation, and security best practice
- api-security-testing · sickn33 · 44,571 stars
API security testing workflow for REST and GraphQL APIs covering authentication, authorization, rate limiting, input validation, and security best practice
- api-security-testing · sickn33 · 44,571 stars
API security testing workflow for REST and GraphQL APIs covering authentication, authorization, rate limiting, input validation, and security best practice
- api-security-testing · sickn33 · 44,571 stars
API security testing workflow for REST and GraphQL APIs covering authentication, authorization, rate limiting, input validation, and security best practice
- attack-tree-construction · sickn33 · 44,571 stars
Build comprehensive attack trees to visualize threat paths. Use when mapping attack scenarios, identifying defense gaps, or communicating security risks to
- attack-tree-construction · sickn33 · 44,571 stars
Build comprehensive attack trees to visualize threat paths. Use when mapping attack scenarios, identifying defense gaps, or communicating security risks to
- attack-tree-construction · sickn33 · 44,571 stars
Build comprehensive attack trees to visualize threat paths. Use when mapping attack scenarios, identifying defense gaps, or communicating security risks to
- audit-skills · sickn33 · 44,571 stars
Expert security auditor for AI Skills and Bundles. Performs non-intrusive static analysis to identify malicious patterns, data leaks, system stability risk
- auth-implementation-patterns · sickn33 · 44,571 stars
Implement or review authentication and authorization with explicit token, session and resource-access boundaries.
- auth-implementation-patterns · sickn33 · 44,571 stars
Implement or review authentication and authorization with explicit token, session and resource-access boundaries.
- auth-implementation-patterns · sickn33 · 44,571 stars
Implement or review authentication and authorization with explicit token, session and resource-access boundaries.
- auth-implementation-patterns · sickn33 · 44,571 stars
Implement or review authentication and authorization with explicit token, session and resource-access boundaries.
- auth-implementation-patterns · sickn33 · 44,571 stars
Implement or review authentication and authorization with explicit token, session and resource-access boundaries.
- auth-implementation-patterns · sickn33 · 44,571 stars
Implement or review authentication and authorization with explicit token, session and resource-access boundaries.
- auth-implementation-patterns · sickn33 · 44,571 stars
Implement or review authentication and authorization with explicit token, session and resource-access boundaries.
- aws-compliance-checker · sickn33 · 44,571 stars
Automated compliance checking against CIS, PCI-DSS, HIPAA, and SOC 2 benchmarks
- aws-compliance-checker · sickn33 · 44,571 stars
Automated compliance checking against CIS, PCI-DSS, HIPAA, and SOC 2 benchmarks
- aws-compliance-checker · sickn33 · 44,571 stars
Automated compliance checking against CIS, PCI-DSS, HIPAA, and SOC 2 benchmarks
- aws-iam-best-practices · sickn33 · 44,571 stars
IAM policy review, hardening, and least privilege implementation
- aws-iam-best-practices · sickn33 · 44,571 stars
IAM policy review, hardening, and least privilege implementation
- aws-iam-best-practices · sickn33 · 44,571 stars
IAM policy review, hardening, and least privilege implementation
- aws-penetration-testing · sickn33 · 44,571 stars
Provide comprehensive techniques for penetration testing AWS cloud environments. Covers IAM enumeration, privilege escalation, SSRF to metadata endpoint, S
- aws-penetration-testing · sickn33 · 44,571 stars
Provide comprehensive techniques for penetration testing AWS cloud environments. Covers IAM enumeration, privilege escalation, SSRF to metadata endpoint, S
- aws-penetration-testing · sickn33 · 44,571 stars
Provide comprehensive techniques for penetration testing AWS cloud environments. Covers IAM enumeration, privilege escalation, SSRF to metadata endpoint, S
- aws-secrets-rotation · sickn33 · 44,571 stars
Automate AWS secrets rotation for RDS, API keys, and credentials
- aws-secrets-rotation · sickn33 · 44,571 stars
Automate AWS secrets rotation for RDS, API keys, and credentials
- aws-secrets-rotation · sickn33 · 44,571 stars
Automate AWS secrets rotation for RDS, API keys, and credentials
- aws-security-audit · sickn33 · 44,571 stars
Comprehensive AWS security posture assessment using AWS CLI and security best practices
- aws-security-audit · sickn33 · 44,571 stars
Comprehensive AWS security posture assessment using AWS CLI and security best practices
- aws-security-audit · sickn33 · 44,571 stars
Comprehensive AWS security posture assessment using AWS CLI and security best practices
- azure-security-keyvault-keys-dotnet · sickn33 · 44,571 stars
Azure Key Vault Keys SDK for .NET. Client library for managing cryptographic keys in Azure Key Vault and Managed HSM. Use for key creation, rotation, encry
- azure-security-keyvault-keys-dotnet · sickn33 · 44,571 stars
Azure Key Vault Keys SDK for .NET. Client library for managing cryptographic keys in Azure Key Vault and Managed HSM. Use for key creation, rotation, encry
- azure-security-keyvault-secrets-java · sickn33 · 44,571 stars
Azure Key Vault Secrets Java SDK for secret management. Use when storing, retrieving, or managing passwords, API keys, connection strings, or other sensiti
- azure-security-keyvault-secrets-java · sickn33 · 44,571 stars
Azure Key Vault Secrets Java SDK for secret management. Use when storing, retrieving, or managing passwords, API keys, connection strings, or other sensiti
- backend-security-coder · sickn33 · 44,571 stars
Expert in secure backend coding practices specializing in input validation, authentication, and API security. Use PROACTIVELY for backend security implemen
- backend-security-coder · sickn33 · 44,571 stars
Expert in secure backend coding practices specializing in input validation, authentication, and API security. Use PROACTIVELY for backend security implemen
- backend-security-coder · sickn33 · 44,571 stars
Expert in secure backend coding practices specializing in input validation, authentication, and API security. Use PROACTIVELY for backend security implemen
- backend-security-coder · sickn33 · 44,571 stars
Expert in secure backend coding practices specializing in input validation, authentication, and API security. Use PROACTIVELY for backend security implemen
- backend-security-coder · sickn33 · 44,571 stars
Expert in secure backend coding practices specializing in input validation, authentication, and API security. Use PROACTIVELY for backend security implemen
- broken-authentication · sickn33 · 44,571 stars
Identify and exploit authentication and session management vulnerabilities in web applications. Broken authentication consistently ranks in the OWASP Top 1
- broken-authentication · sickn33 · 44,571 stars
Identify and exploit authentication and session management vulnerabilities in web applications. Broken authentication consistently ranks in the OWASP Top 1
- broken-authentication · sickn33 · 44,571 stars
Identify and exploit authentication and session management vulnerabilities in web applications. Broken authentication consistently ranks in the OWASP Top 1
- bumblebee · sickn33 · 44,571 stars
Run Bumblebee supply-chain inventory and exposure scans on macOS/Linux to detect compromised packages, extensions, and MCP host configs.
- bumblebee · sickn33 · 44,571 stars
Run Bumblebee supply-chain inventory and exposure scans on macOS/Linux to detect compromised packages, extensions, and MCP host configs.
- bumblebee · sickn33 · 44,571 stars
Run Bumblebee supply-chain inventory and exposure scans on macOS/Linux to detect compromised packages, extensions, and MCP host configs.
- burp-suite-testing · sickn33 · 44,571 stars
Execute comprehensive web application security testing using Burp Suite's integrated toolset, including HTTP traffic interception and modification, request
- burp-suite-testing · sickn33 · 44,571 stars
Execute comprehensive web application security testing using Burp Suite's integrated toolset, including HTTP traffic interception and modification, request
- burp-suite-testing · sickn33 · 44,571 stars
Execute comprehensive web application security testing using Burp Suite's integrated toolset, including HTTP traffic interception and modification, request
- burp-suite-testing · sickn33 · 44,571 stars
Execute comprehensive web application security testing using Burp Suite's integrated toolset, including HTTP traffic interception and modification, request
- burp-suite-testing · sickn33 · 44,571 stars
Execute comprehensive web application security testing using Burp Suite's integrated toolset, including HTTP traffic interception and modification, request
- burpsuite-project-parser · sickn33 · 44,571 stars
Searches and explores Burp Suite project files (.burp) from the command line. Use when searching response headers or bodies with regex patterns, extracting
- burpsuite-project-parser · sickn33 · 44,571 stars
Searches and explores Burp Suite project files (.burp) from the command line. Use when searching response headers or bodies with regex patterns, extracting
- cc-skill-security-review · sickn33 · 44,571 stars
This skill ensures all code follows security best practices and identifies potential vulnerabilities. Use when implementing authentication or authorization
- cc-skill-security-review · sickn33 · 44,571 stars
This skill ensures all code follows security best practices and identifies potential vulnerabilities. Use when implementing authentication or authorization
- cc-skill-security-review · sickn33 · 44,571 stars
This skill ensures all code follows security best practices and identifies potential vulnerabilities. Use when implementing authentication or authorization
- cc-skill-security-review · sickn33 · 44,571 stars
This skill ensures all code follows security best practices and identifies potential vulnerabilities. Use when implementing authentication or authorization
- cc-skill-security-review · sickn33 · 44,571 stars
This skill ensures all code follows security best practices and identifies potential vulnerabilities. Use when implementing authentication or authorization
- cc-skill-security-review · sickn33 · 44,571 stars
This skill ensures all code follows security best practices and identifies potential vulnerabilities. Use when implementing authentication or authorization
- cloud-penetration-testing · sickn33 · 44,571 stars
Conduct comprehensive security assessments of cloud infrastructure across Microsoft Azure, Amazon Web Services (AWS), and Google Cloud Platform (GCP).
- cloud-penetration-testing · sickn33 · 44,571 stars
Conduct comprehensive security assessments of cloud infrastructure across Microsoft Azure, Amazon Web Services (AWS), and Google Cloud Platform (GCP).
- cloud-penetration-testing · sickn33 · 44,571 stars
Conduct comprehensive security assessments of cloud infrastructure across Microsoft Azure, Amazon Web Services (AWS), and Google Cloud Platform (GCP).
- cloud-penetration-testing · sickn33 · 44,571 stars
Conduct comprehensive security assessments of cloud infrastructure across Microsoft Azure, Amazon Web Services (AWS), and Google Cloud Platform (GCP).
- cloud-penetration-testing · sickn33 · 44,571 stars
Conduct comprehensive security assessments of cloud infrastructure across Microsoft Azure, Amazon Web Services (AWS), and Google Cloud Platform (GCP).
- cloudflare-security-audit · sickn33 · 44,571 stars
Audit authorized codebases for exploitable vulnerabilities using scoped reconnaissance, adversarial review, validation, and structured reporting.
- cloudflare-security-audit · sickn33 · 44,571 stars
Audit authorized codebases for exploitable vulnerabilities using scoped reconnaissance, adversarial review, validation, and structured reporting.
- cloudflare-security-audit · sickn33 · 44,571 stars
Audit authorized codebases for exploitable vulnerabilities using scoped reconnaissance, adversarial review, validation, and structured reporting.
- codebase-cleanup-deps-audit · sickn33 · 44,571 stars
You are a dependency security expert specializing in vulnerability scanning, license compliance, and supply chain security. Analyze project dependencies fo
- codebase-cleanup-deps-audit · sickn33 · 44,571 stars
You are a dependency security expert specializing in vulnerability scanning, license compliance, and supply chain security. Analyze project dependencies fo
- codebase-cleanup-deps-audit · sickn33 · 44,571 stars
You are a dependency security expert specializing in vulnerability scanning, license compliance, and supply chain security. Analyze project dependencies fo
- constant-time-analysis · sickn33 · 44,571 stars
Analyze cryptographic code to detect operations that leak secret data through execution timing variations.
- constant-time-analysis · sickn33 · 44,571 stars
Analyze cryptographic code to detect operations that leak secret data through execution timing variations.
- constant-time-analysis · sickn33 · 44,571 stars
Analyze cryptographic code to detect operations that leak secret data through execution timing variations.
- container-security-hardening · sickn33 · 44,571 stars
Harden Docker/container images and runtime deployments with secure base images, non-root users, CVE scanning, SBOM/signing, seccomp/AppArmor, and Kubernete
- container-security-hardening · sickn33 · 44,571 stars
Harden Docker/container images and runtime deployments with secure base images, non-root users, CVE scanning, SBOM/signing, seccomp/AppArmor, and Kubernete
- container-security-hardening · sickn33 · 44,571 stars
Harden Docker/container images and runtime deployments with secure base images, non-root users, CVE scanning, SBOM/signing, seccomp/AppArmor, and Kubernete
- cred-omega · sickn33 · 44,571 stars
CISO operacional enterprise para gestao total de credenciais e segredos.
- cred-omega · sickn33 · 44,571 stars
CISO operacional enterprise para gestao total de credenciais e segredos.
- cred-omega · sickn33 · 44,571 stars
CISO operacional enterprise para gestao total de credenciais e segredos.
- cyber-audit · sickn33 · 44,571 stars
Run read-only exposure checks for security advisories and write a structured local audit report.
- cyber-audit · sickn33 · 44,571 stars
Run read-only exposure checks for security advisories and write a structured local audit report.
- cyber-audit · sickn33 · 44,571 stars
Run read-only exposure checks for security advisories and write a structured local audit report.
- differential-review · sickn33 · 44,571 stars
Security-focused code review for PRs, commits, and diffs.
- differential-review · sickn33 · 44,571 stars
Security-focused code review for PRs, commits, and diffs.
- differential-review · sickn33 · 44,571 stars
Security-focused code review for PRs, commits, and diffs.
- django-access-review · sickn33 · 44,571 stars
django-access-review
- django-access-review · sickn33 · 44,571 stars
django-access-review
- django-access-review · sickn33 · 44,571 stars
django-access-review
- django-access-review · sickn33 · 44,571 stars
django-access-review
- ethical-hacking-methodology · sickn33 · 44,571 stars
Master the complete penetration testing lifecycle from reconnaissance through reporting. This skill covers the five stages of ethical hacking methodology,
- ethical-hacking-methodology · sickn33 · 44,571 stars
Master the complete penetration testing lifecycle from reconnaissance through reporting. This skill covers the five stages of ethical hacking methodology,
- ethical-hacking-methodology · sickn33 · 44,571 stars
Master the complete penetration testing lifecycle from reconnaissance through reporting. This skill covers the five stages of ethical hacking methodology,
- ethical-hacking-methodology · sickn33 · 44,571 stars
Master the complete penetration testing lifecycle from reconnaissance through reporting. This skill covers the five stages of ethical hacking methodology,
- ethical-hacking-methodology · sickn33 · 44,571 stars
Master the complete penetration testing lifecycle from reconnaissance through reporting. This skill covers the five stages of ethical hacking methodology,
- examprep-ai · sickn33 · 44,571 stars
Exam preparation assistant that converts syllabi, past papers, or notes into a ranked High Score Roadmap. Covers theory, numericals, MCQs, coding, and lab
- examprep-ai · sickn33 · 44,571 stars
Exam preparation assistant that converts syllabi, past papers, or notes into a ranked High Score Roadmap. Covers theory, numericals, MCQs, coding, and lab
- examprep-ai · sickn33 · 44,571 stars
Exam preparation assistant that converts syllabi, past papers, or notes into a ranked High Score Roadmap. Covers theory, numericals, MCQs, coding, and lab
- ffuf-web-fuzzing · sickn33 · 44,571 stars
Expert guidance for ffuf web fuzzing during penetration testing, including authenticated fuzzing with raw requests, auto-calibration, and result analysis
- ffuf-web-fuzzing · sickn33 · 44,571 stars
Expert guidance for ffuf web fuzzing during penetration testing, including authenticated fuzzing with raw requests, auto-calibration, and result analysis
- ffuf-web-fuzzing · sickn33 · 44,571 stars
Expert guidance for ffuf web fuzzing during penetration testing, including authenticated fuzzing with raw requests, auto-calibration, and result analysis
- file-path-traversal · sickn33 · 44,571 stars
Identify and exploit file path traversal (directory traversal) vulnerabilities that allow attackers to read arbitrary files on the server, potentially incl
- file-path-traversal · sickn33 · 44,571 stars
Identify and exploit file path traversal (directory traversal) vulnerabilities that allow attackers to read arbitrary files on the server, potentially incl
- file-path-traversal · sickn33 · 44,571 stars
Identify and exploit file path traversal (directory traversal) vulnerabilities that allow attackers to read arbitrary files on the server, potentially incl
- find-bugs · sickn33 · 44,571 stars
Find bugs, security vulnerabilities, and code quality issues in local branch changes. Use when asked to review changes, find bugs, security review, or audi
- find-bugs · sickn33 · 44,571 stars
Find bugs, security vulnerabilities, and code quality issues in local branch changes. Use when asked to review changes, find bugs, security review, or audi
- find-bugs · sickn33 · 44,571 stars
Find bugs, security vulnerabilities, and code quality issues in local branch changes. Use when asked to review changes, find bugs, security review, or audi
- firmware-analyst · sickn33 · 44,571 stars
Expert firmware analyst specializing in embedded systems, IoT security, and hardware reverse engineering.
- firmware-analyst · sickn33 · 44,571 stars
Expert firmware analyst specializing in embedded systems, IoT security, and hardware reverse engineering.
- firmware-analyst · sickn33 · 44,571 stars
Expert firmware analyst specializing in embedded systems, IoT security, and hardware reverse engineering.
- fix-review · sickn33 · 44,571 stars
Verify fix commits address audit findings without new bugs
- fix-review · sickn33 · 44,571 stars
Verify fix commits address audit findings without new bugs
- fix-review · sickn33 · 44,571 stars
Verify fix commits address audit findings without new bugs
- frontend-mobile-security-xss-scan · sickn33 · 44,571 stars
You are a frontend security specialist focusing on Cross-Site Scripting (XSS) vulnerability detection and prevention. Analyze React, Vue, Angular, and vani
- frontend-mobile-security-xss-scan · sickn33 · 44,571 stars
You are a frontend security specialist focusing on Cross-Site Scripting (XSS) vulnerability detection and prevention. Analyze React, Vue, Angular, and vani
- frontend-mobile-security-xss-scan · sickn33 · 44,571 stars
You are a frontend security specialist focusing on Cross-Site Scripting (XSS) vulnerability detection and prevention. Analyze React, Vue, Angular, and vani
- frontend-security-coder · sickn33 · 44,571 stars
Expert in secure frontend coding practices specializing in XSS prevention, output sanitization, and client-side security patterns.
- fsi-compliance-checker · sickn33 · 44,571 stars
Maps code, architecture, and infrastructure changes to specific control IDs in PCI-DSS v4.0 and MAS TRM (Singapore financial regulator), producing an audit
- fsi-compliance-checker · sickn33 · 44,571 stars
Maps code, architecture, and infrastructure changes to specific control IDs in PCI-DSS v4.0 and MAS TRM (Singapore financial regulator), producing an audit
- fsi-compliance-checker · sickn33 · 44,571 stars
Maps code, architecture, and infrastructure changes to specific control IDs in PCI-DSS v4.0 and MAS TRM (Singapore financial regulator), producing an audit
- fsi-compliance-checker · sickn33 · 44,571 stars
Maps code, architecture, and infrastructure changes to specific control IDs in PCI-DSS v4.0 and MAS TRM (Singapore financial regulator), producing an audit
- gha-security-review · sickn33 · 44,571 stars
Find exploitable vulnerabilities in GitHub Actions workflows. Every finding MUST include a concrete exploitation scenario — if you can't build the attack,
- gha-security-review · sickn33 · 44,571 stars
Find exploitable vulnerabilities in GitHub Actions workflows. Every finding MUST include a concrete exploitation scenario — if you can't build the attack,
- gha-security-review · sickn33 · 44,571 stars
Find exploitable vulnerabilities in GitHub Actions workflows. Every finding MUST include a concrete exploitation scenario — if you can't build the attack,
- html-injection-testing · sickn33 · 44,571 stars
Identify and exploit HTML injection vulnerabilities that allow attackers to inject malicious HTML content into web applications. This vulnerability enables
- html-injection-testing · sickn33 · 44,571 stars
Identify and exploit HTML injection vulnerabilities that allow attackers to inject malicious HTML content into web applications. This vulnerability enables
- html-injection-testing · sickn33 · 44,571 stars
Identify and exploit HTML injection vulnerabilities that allow attackers to inject malicious HTML content into web applications. This vulnerability enables
- idor-testing · sickn33 · 44,571 stars
Provide systematic methodologies for identifying and exploiting Insecure Direct Object Reference (IDOR) vulnerabilities in web applications.
- idor-testing · sickn33 · 44,571 stars
Provide systematic methodologies for identifying and exploiting Insecure Direct Object Reference (IDOR) vulnerabilities in web applications.
- idor-testing · sickn33 · 44,571 stars
Provide systematic methodologies for identifying and exploiting Insecure Direct Object Reference (IDOR) vulnerabilities in web applications.
- incident-response-incident-response · sickn33 · 44,571 stars
Use when working with incident response incident response
- incident-response-incident-response · sickn33 · 44,571 stars
Use when working with incident response incident response
- incident-response-incident-response · sickn33 · 44,571 stars
Use when working with incident response incident response
- infinity · sickn33 · 44,571 stars
Enforces a strict input boundary protocol (detect, classify, filter, verify) to ensure untrusted data never reaches business logic raw.
- infinity · sickn33 · 44,571 stars
Enforces a strict input boundary protocol (detect, classify, filter, verify) to ensure untrusted data never reaches business logic raw.
- infinity · sickn33 · 44,571 stars
Enforces a strict input boundary protocol (detect, classify, filter, verify) to ensure untrusted data never reaches business logic raw.
- k8s-security-policies · sickn33 · 44,571 stars
Comprehensive guide for implementing NetworkPolicy, PodSecurityPolicy, RBAC, and Pod Security Standards in Kubernetes.
- k8s-security-policies · sickn33 · 44,571 stars
Comprehensive guide for implementing NetworkPolicy, PodSecurityPolicy, RBAC, and Pod Security Standards in Kubernetes.
- k8s-security-policies · sickn33 · 44,571 stars
Comprehensive guide for implementing NetworkPolicy, PodSecurityPolicy, RBAC, and Pod Security Standards in Kubernetes.
- laravel-security-audit · sickn33 · 44,571 stars
Security auditor for Laravel applications. Analyzes code for vulnerabilities, misconfigurations, and insecure practices using OWASP standards and Laravel s
- laravel-security-audit · sickn33 · 44,571 stars
Security auditor for Laravel applications. Analyzes code for vulnerabilities, misconfigurations, and insecure practices using OWASP standards and Laravel s
- laravel-security-audit · sickn33 · 44,571 stars
Security auditor for Laravel applications. Analyzes code for vulnerabilities, misconfigurations, and insecure practices using OWASP standards and Laravel s
- learn · sickn33 · 44,571 stars
Help a user learn a topic through adaptive tutoring, lesson planning, practice, retrieval checks, explanations, study guides, or exercises. Use when the us
- learn · sickn33 · 44,571 stars
Help a user learn a topic through adaptive tutoring, lesson planning, practice, retrieval checks, explanations, study guides, or exercises. Use when the us
- learn · sickn33 · 44,571 stars
Help a user learn a topic through adaptive tutoring, lesson planning, practice, retrieval checks, explanations, study guides, or exercises. Use when the us