All authors
aibot88 avatar

Claude Skills by aibot88

github.com/aibot88
5,317 skillsA× 4,872B× 290C× 67D× 53F× 350 installs1,468 views
Sc CsrfA

Cross-Site Request Forgery detection — missing tokens, SameSite misconfiguration, and CORS-CSRF interaction

securityjavascriptpython
0
4
Sc Dependency AuditA

Supply chain and dependency security analysis across all package ecosystems

securitypythonrust
0
4
Sc Diff ReportA

Incremental security scan for changed files only — optimized for PR and commit-level reviews

developmenttypescriptpython
0
4
Sc DockerA

Docker-specific security checks — image hardening, secrets in layers, compose security, and runtime configuration

securitygonode
0
4
Sc GraphqlA

GraphQL injection, introspection abuse, query complexity attacks, and authorization bypass detection

securityjavascriptgo
0
4
Sc Header InjectionA

HTTP Header Injection and Response Splitting detection via CRLF injection in headers

developmentjavascriptpython
0
4
Sc IacB

Infrastructure-as-Code security scanning — Dockerfile, Kubernetes, Terraform, and GitHub Actions misconfigurations

devopsrustgo
0
4
Sc JwtA

JWT implementation flaw detection — algorithm confusion, weak secrets, missing validation, and storage issues

securityjavascriptpython
0
4
Sc LdapA

LDAP Injection detection in search filters, DN construction, and bind operations

securitypythongo
0
4
Sc NosqliA

NoSQL Injection detection for MongoDB, Redis, CouchDB, and Elasticsearch

databasesjavascriptpython
0
4
Sc OrchestratorA

Master orchestration skill that coordinates the entire 4-phase security scanning pipeline

securityjavascripttypescript
0
4
Sc Path TraversalB

Path traversal and directory traversal detection — LFI, RFI, zip slip, and symlink attacks

securityjavascriptpython
0
4
Sc RceA

Remote Code Execution detection via eval, exec, dynamic code loading, and code injection vectors

developmentjavascriptpython
0
4
Sc ReconA

Codebase discovery and architecture mapping for security analysis

devopstypescriptpython
0
4
Sc ReportA

Final consolidated security assessment report generator with CVSS severity and remediation roadmap

securitygosql
0
4
Sc SecretsC

Hardcoded secrets, API keys, tokens, credentials, and private key detection in source code

securitypythongo
0
4
Sc SqliA

SQL Injection detection across all variants — classic, blind, time-based, second-order, and UNION-based

databasesjavascripttypescript
0
4
Sc SsrfA

Server-Side Request Forgery detection — URL fetching with user input, DNS rebinding, cloud metadata access

testingpythongo
0
4
Sc SstiA

Server-Side Template Injection detection across all major template engines

securityjavascriptpython
0
4
Sc VerifierA

False positive elimination and confidence scoring for all security findings

developmentrustgo
0
4
Sc WebsocketA

WebSocket security flaw detection — missing origin validation, authentication bypass, and message injection

securityjavascriptrust
0
4
Sc XssA

Cross-Site Scripting detection for Reflected, Stored, and DOM-based XSS across all frameworks

developmentjavascriptpython
0
4
Sc XxeB

XML External Entity injection detection across all XML parsers and document formats

securitypythongo
0
4
Scaffold Ci CdA

Wire CI/CD, E2E testing, and design-system compliance gates. Auto-dispatched by deliver-stage on ci-cd stages.

testinggorails
0
4
Scaffold PromptB

\"Create defensive prompt scaffolding with guardrails and safety measures. 創建帶護欄與安全措施之防禦提示架構。 Use when: building user-facing prompts, adding injection protection, implementing harm prevention layers.\"

securityrustrails
0
4
ScaffoldersA

Project-local Bun scaffolders shipped by THIS plugin (not the official `remix` CLI) for adding things incrementally to an existing project — `scripts/create-route.ts --name X --pattern //Y` (route + handler + router.map wiring, escaping Git Bash MSYS path mangling with `//`), `scripts/create-resource.ts --name X --param Yid [--only index,show,...]` (`resources()` block + 7-action controller mirror), `scripts/create-controller.ts --route admin.books` (stub for an existing RouteMap), `scripts/c...

testinggobash
0
4
Scan Agent Skill Folders For Risky Patterns And Missing SafeguarA

Run a pre-trust security pass over skill packs and prompt bundles before they get shared, merged, or deployed.

devopspythonrust
0
4
Scan Agent Workflows For Tools Mcp Exposure And Adversarial RiskA

Use Agentic Radar to statically scan agent workflows, map tools and MCP servers, generate shareable security reports, and optionally run adversarial runtime tests before rollout.

toolspythongo
0
4
Scan Agentic Codebases For Exposed Tools Mcp Usage And Mapped SeA

Generate a reviewable security report for a supported agent workflow before deployment by scanning its code, tools, MCP usage, and known vulnerability surface.

toolspythongo
0
4
Scan Claude Code Configs For Secrets Permission Drift And UnsafeA

Audit a Claude Code setup before use by flagging hardcoded secrets, broad allow rules, risky hooks, and dangerous MCP server config.

toolsgoshell
0
4
Scan FixA

Diagnose en fix scanner problemen. Gebruik bij "scanner", "scan", "OAuth", "tokens".

toolsbashreact
0
4
Scan Images Filesystems And Sboms For End Of Life Software BeforA

Find packages that are out of support even when they do not show up as a classic CVE finding yet.

devopsgogit
0
4
Scan Kubernetes Clusters And Manifests For Security Posture DrifA

Run Kubernetes security and compliance scans against manifests or live clusters before rollout or audit.

toolsgokubernetes
0
4
Scan Llm Systems For Jailbreaks Prompt Injections And Unsafe BehA

Probe a model or agent stack with adversarial test suites so safety failures show up before deployment or review.

toolspythongo
0
4
Scan Mcp Servers For Security Findings Before Connecting Them ToA

Run MCP Scanner against a remote or local MCP server before trusting it, so the agent gets a bounded security review of tools, prompts, resources, dependencies, and supply-chain risk.

ai-agentspythonrust
0
4
Scan Python Code For Risky Security Patterns With Bandit BeforeA

Catch insecure Python calls, weak crypto usage, shell injection risks, and similar patterns before merge or release.

toolspythongo
0
4
Scan Repositories For Ai Supply Chain And Agent Security Risks WA

Use Medusa Security before trusting a repository, dependency, or AI-agent codebase when an agent needs a focused scan for repo poisoning, prompt-injection, MCP, and AI supply-chain findings.

ai-agentspythonrust
0
4
Scan Repositories For Shai Hulud 2 0 Supply Chain Indicators WitA

Check repositories and CI surfaces for Shai-Hulud 2.0 compromise indicators when the task is targeted supply-chain triage, not generic malware scanning.

toolsgogit
0
4
Scan VulnA

Go プロジェクトの脆弱性スキャンを実行する。「脆弱性スキャン」「govulncheck」「セキュリティチェック」「脆弱性確認」「vuln」「CVE チェック」「セキュリティスキャン」などで起動。govulncheck を使用して既知の脆弱性を検出。

devopsgobash
0
4
ScanitA

Packages and runs a local SAST pipeline scan to identify source code vulnerabilities. - User asks to scan the codebase, run a scan, or check for vulnerabilities - User mentions "scanit", "pipeline scan", "SAST scan", "scan my code" - User wants to know if their code has security issues before committing or deploying

devopsbashsecurity
0
4
Scanning AccessibilityA

Validate WCAG compliance and accessibility standards (ARIA, keyboard navigation). Use when auditing WCAG compliance or screen reader compatibility. Trigger with phrases like "scan accessibility", "check WCAG compliance", or "validate screen readers".

developmenttypescriptgo
0
4
Scanning Api SecurityA

Detect API security vulnerabilities including injection, broken auth, and data exposure. Use when scanning APIs for security vulnerabilities. Trigger with phrases like "scan API security", "check for vulnerabilities", or "audit API security".

securitypythongo
0
4
Scanning Container SecurityA

'Execute use when you need to work with security and compliance.

securitygoshell
0
4
Scanning Database SecurityA

'Process use when you need to work with security and compliance.

securitypythonrust
0
4
Scanning For Data Privacy IssuesA

Scan for data privacy issues and sensitive information exposure. Use when reviewing data handling practices. Trigger with 'scan privacy issues', 'check sensitive data', or 'validate data protection'.

documentationgoshell
0
4
Scanning For Gdpr ComplianceA

Scan for GDPR compliance issues in data handling and privacy practices. Use when ensuring EU data protection compliance. Trigger with 'scan GDPR compliance', 'check data privacy', or 'validate GDPR'.

securitygobash
0
4
Scanning For SecretsA

Detect exposed secrets, API keys, and credentials in code. Use when auditing for secret leaks. Trigger with 'scan for secrets', 'find exposed keys', or 'check credentials'.

securitygobash
0
4
Scanning For VulnerabilitiesA

'Execute this skill enables comprehensive vulnerability scanning using

securitybashsql
0
4
Scanning For Xss VulnerabilitiesA

'Execute this skill enables AI assistant to automatically scan for xss

developmentjavascriptjava
0
4
Scanning Input Validation PracticesA

Scan for input validation vulnerabilities and injection risks. Use when reviewing user input handling. Trigger with 'scan input validation', 'check injection vulnerabilities', or 'validate sanitization'.

securitybashsql
0
4