All categories
Security
Security audits, vulnerabilities, compliance, auth, secrets, and safe automation
- 26,873
- 1,120
Security grades appear on each card once the skill has been scanned. Newly imported skills may briefly show without a grade until the backfill job runs.
Open in full browserBrowse security skills
Showing 385–408 of 26,873 skills
- Application InspectorRun Microsoft Application Inspector for technology profiling and security feature detection. Use when analyzing technology stack, finding crypto/auth patterns, detecting sensitive API usage, or creating security posture reports.Votes: 0GitHub stars: 2
- Api SecurityAPI security best practices and common vulnerability prevention. Enforces security checks for authentication, input validation, SQL injection, XSS, and OWASP Top 10 vulnerabilities. Use when building or modifying APIs.Votes: 0GitHub stars: 2
- Api Security ReviewAPI security checklist for reviewing endpoints before deployment. Use when creating or modifying API routes to ensure proper authentication, authorization, and input validation.Votes: 0GitHub stars: 2
- Api Patterns 3Resend API integration patterns, authentication, error handling, and rate limiting. Use when implementing API clients, handling authentication, managing rate limits, implementing retry strategies, or building resilient email service integrations.Votes: 0GitHub stars: 2
- Api Nestjs ReviewerReviews NestJS code for architectural patterns, security issues, multi-tenancy compliance, CQRS enforcement, and best practicesVotes: 0GitHub stars: 2
- Api Integration PatternsImplement robust third-party API integrations with proper authentication, error handling, and rate limitingVotes: 0GitHub stars: 2
- Api Integration 8Guide for integrating external APIs securely and correctlyVotes: 0GitHub stars: 2
- Api Designer 2Design and implement REST API endpoints for NutriProfile. Use this skill when creating new endpoints, modifying API schemas, working with Pydantic models, or ensuring OpenAPI compliance. Follows FastAPI best practices.Votes: 0GitHub stars: 2
- Api Design Agent 1Designs APIs with sandbox configuration for safe testingVotes: 0GitHub stars: 2
- Api Design 23Use when designing or modifying REST API endpoints, controller structure, route patterns, request/response DTOs. Triggers on keywords like "API endpoint", "REST", "controller", "route", "HTTP", "request body", "response".Votes: 0GitHub stars: 2
- Api DebugQuery the PrdAgent API to fetch real data for debugging. Use when you need to investigate issues, verify data states, or understand system behavior by querying actual API endpoints.Votes: 0GitHub stars: 2
- Api Auth GuardsGenerate authentication and authorization guards (JWT, API key, roles, permissions) with tenant context validation. Use when protecting API endpoints or implementing RBAC.Votes: 0GitHub stars: 2
- Android SecurityStandards for Data Encryption, Network Security, and PermissionsVotes: 0GitHub stars: 2
- Ambiguity DetectionDetects critical product, scope, data, risk, and success ambiguities in requirements or PRDs and expresses them as structured, decision-forcing clarification questions without proposing solutions or workflow actions.Votes: 0GitHub stars: 2
- Algorand Vulnerability ScannerScans Algorand smart contracts for 11 common vulnerabilities including rekeying attacks, unchecked transaction fees, missing field validations, and access control issues. Use when auditing Algorand projects (TEAL/PyTeal). (project, gitignored)Votes: 0GitHub stars: 2
- Ai Assisted Development StandardsThis skill should be used when the user asks about "AI development", "AI coding", "AI assistant", "CLAUDE.md", "AI context", "AI guidelines", "code generation", "AI workflow", "AI review", "AI configuration", or needs guidance on configuring AI assistants and AI-assisted development workflows.Votes: 0GitHub stars: 2
- Agentic ShiftInteractive setup for AI-assisted development. Asks about your context (tech stack, compliance needs, security requirements), creates a minimal CLAUDE.md, then walks you through your first AI-generated feature. Adapts to regulated industries, offers add-ons only when relevant.Votes: 0GitHub stars: 2
- Agentic Jumpstart SecuritySecurity best practices for TanStack Start applications with React 19, Drizzle ORM, PostgreSQL, Stripe, OAuth, and AWS S3/R2. Use when writing secure code, implementing authentication, handling payments, protecting API endpoints, validating input, preventing XSS/CSRF/SQL injection, or when the user mentions security, vulnerabilities, or authentication.Votes: 0GitHub stars: 2
- Agent ExecutionAgent execution patterns including LLM calls and token handling. Use when implementing agent execution or multipart forms. Triggers: agent.Agent, VisionForm, ParseVisionForm, Token injection, constructAgent, ChatStream, VisionStream, multipart/form-data, base64, Provider.Options["token"], go-agents, ExecuteRequest, SetSecret, GetSecret. File patterns: internal/agents/*.goVotes: 0GitHub stars: 2
- Adversarial ReasoningRed-team thinking for robustness testing and edge case discovery. Use when you need to stress-test solutions, find vulnerabilities, anticipate failures, or challenge assumptions. Ideal for security review, system design validation, decision stress-testing, and pre-mortem analysis. Example: "We've designed an auth system" → Attack it from 10 angles before shipping.Votes: 0GitHub stars: 2
- Latest B3ef4354e823Read and send email via IMAP/SMTP. Check for new/unread messages, fetch content, search mailboxes, mark as read/unread, and send emails with attachments. Supports multiple accounts. Works with any IMAP/SMTP server including Gmail, Outlook, 163.com, vip.163.com, 126.com, vip.126.com, 188.com, and vip.188.com.Votes: 0GitHub stars: 5
- Latest De77fc339d08tuya-smart-control is an official AI Agent skill for the OpenClaw platform, built on Tuya's 2C end-user APIs. It brings developers the industry's broadest AI + device interaction capabilities — 3,000+ smart hardware categories, covering 200+ countries and regions, enabling AI Agents to control everything out of the box. Get started with one click at tuya.ai — no complex authentication required. Once installed, use natural language to query devices, control smart hardware, send notifications, ...Votes: 0GitHub stars: 5
- Vault CredentialsStore and retrieve encrypted credentials using Supabase Vault. Use when implementing features that need secure credential storage such as API keys, OAuth tokens, or sensitive configuration. Triggers when adding credential storage to a feature, implementing OAuth flows, or storing user-provided secrets.Votes: 0GitHub stars: 2
- Security PassDefensive security self-assessment of the operator's OWN codebase. Local and read-only by default — it reads the repo, runs static scanners, and writes a briefing; no live system is touched. Active probes are opt-in, run only against a TEST instance the human owns and supplies, and require explicit per-run human approval; production and third-party targets are out of scope. Use when the user wants to security-review their own app, harden it, check for BOLA/IDOR/JWT/SSRF/mass-assignment issues...Votes: 0GitHub stars: 2