All categories
Security
Security audits, vulnerabilities, compliance, auth, secrets, and safe automation
- 26,878
- 1,120
Security grades appear on each card once the skill has been scanned. Newly imported skills may briefly show without a grade until the backfill job runs.
Open in full browserBrowse security skills
Showing 505–528 of 26,878 skills
- Oauth2 And Oidc From ScratchUse when implementing or reviewing OAuth 2.0 / OAuth 2.1 / OpenID Connect from scratch in a real codebase, choosing a flow (authorization code + PKCE, client credentials, BFF), validating ID tokens, storing tokens safely in browsers, sizing refresh-token rotation, or migrating off implicit / ROPC. Triggers: "should I use a JWT or session cookie", PKCE code_challenge/code_verifier, exact redirect_uri match, state vs nonce confusion, ID-token replay, refresh-token rotation, BFF (backend-for-fro...Votes: 0GitHub stars: 2
- GcsGoogle Cloud Storage service administration and design: storage classes (Rapid, Standard, Nearline, Coldline, Archive), Autoclass, Hierarchical Namespace, lifecycle management, signed URLs, IAM, Pub/Sub notifications, Storage Transfer Service, and cost optimization. Use for \"GCS\", \"Google Cloud Storage\", \"gcloud storage\", \"gsutil\", \"Autoclass\", \"Nearline\", \"Coldline\", \"Archive storage\", \"Rapid storage\", \"signed URL\", \"GCS lifecycle\", \"GCS bucket\", \"HNS bucket\", \"Sto...Votes: 0GitHub stars: 4
- Aws S3Amazon S3 cloud object storage service administration and design: storage classes, lifecycle policies, replication (CRR/SRR/RTC), versioning, Object Lock, encryption, access points, S3 Express One Zone, S3 Tables, Transfer Acceleration, and cost optimization. Use for \"S3\", \"AWS S3\", \"S3 bucket\", \"S3 lifecycle\", \"S3 Glacier\", \"S3 replication\", \"CRR\", \"SRR\", \"S3 Express\", \"S3 storage class\", \"S3 versioning\", \"Object Lock\", \"S3 Transfer Acceleration\", \"S3 access point\...Votes: 0GitHub stars: 4
- ZscalerExpert agent for Zscaler Zero Trust Exchange. Covers ZIA internet access, ZPA private access, ZDX digital experience monitoring, App Connector deployment, and Zscaler's 150+ data center architecture. WHEN: \"Zscaler\", \"ZIA\", \"ZPA\", \"ZDX\", \"Zscaler Internet Access\", \"Zscaler Private Access\", \"Zscaler Digital Experience\", \"App Connector\", \"Zscaler tunnel\", \"ZCC client\", \"Zscaler policy\".Votes: 0GitHub stars: 4
- Zero TrustExpert routing agent for Zero Trust and SASE. Covers NIST 800-207 zero trust architecture, SASE/SSE components (SWG, CASB, ZTNA, FWaaS), ZTNA vs VPN, identity-centric access, and SD-WAN convergence. WHEN: \"zero trust\", \"SASE\", \"SSE\", \"ZTNA\", \"SWG\", \"CASB\", \"FWaaS\", \"zero trust network access\", \"secure access service edge\", \"NIST 800-207\", \"replace VPN\", \"cloud firewall\". Do NOT use for platform-specific questions -- use the `zscaler`, `netskope`, `prisma-access`, `clou...Votes: 0GitHub stars: 4
- ZeekExpert agent for Zeek network analysis framework. Covers event-driven scripting, structured log analysis (conn.log, dns.log, http.log, ssl.log, files.log), protocol analysis, Intelligence Framework, cluster deployment, Spicy parsers, and Zeek packages. WHEN: \"Zeek\", \"Zeek script\", \"Zeek log\", \"conn.log\", \"zeekctl\", \"Bro\", \"network forensics\", \"Zeek Intelligence Framework\", \"Spicy parser\", \"Zeek cluster\".Votes: 0GitHub stars: 4
- ZapExpert agent for OWASP ZAP open-source DAST. Covers active/passive scanning, spidering (traditional+AJAX), authentication handling, API scanning (OpenAPI/GraphQL/SOAP), automation framework (YAML), add-ons, headless/Docker mode, and GitHub Actions integration. WHEN: \"OWASP ZAP\", \"ZAP\", \"zaproxy\", \"zap-cli\", \"ZAP automation framework\", \"zap-full-scan\", \"zap-api-scan\", \"zap-baseline-scan\", \"ZAP HUD\", \"zap docker\".Votes: 0GitHub stars: 4
- XsoarExpert agent for Cortex XSOAR. Provides deep expertise in playbook development (YAML/Python), war room collaboration, indicator management, TIM (Threat Intelligence Management), 900+ integrations, content marketplace, incident lifecycle, and Python scripting for custom automations. WHEN: \"XSOAR\", \"Cortex XSOAR\", \"XSOAR playbook\", \"war room\", \"XSOAR integration\", \"Demisto\", \"XSOAR script\", \"indicator management\", \"TIM\", \"XSOAR content pack\".Votes: 0GitHub stars: 4
- WazuhExpert agent for Wazuh open-source EDR/SIEM platform. Covers agent deployment, ossec.conf configuration, FIM, SCA, active response, custom rules and decoders, vulnerability detection, compliance (PCI DSS, HIPAA, GDPR), cluster deployment, and Wazuh indexer/dashboard setup. WHEN: \"Wazuh\", \"OSSEC\", \"open-source EDR\", \"FIM\", \"SCA\", \"Wazuh manager\", \"Wazuh agent\", \"ossec.conf\", \"active response\", \"Wazuh indexer\".Votes: 0GitHub stars: 4
- Vulnerability ManagementSubdomain routing agent for Vulnerability Management and Attack Surface Management. Covers VM programs, scanner operations, risk scoring (CVSS/EPSS/VPR), remediation workflows, SLA tracking, CNAPP platforms, and EASM tools. WHEN: \"vulnerability management\", \"vuln scan\", \"CVE\", \"CVSS\", \"EPSS\", \"patch prioritization\", \"attack surface\", \"EASM\", \"CNAPP\", \"CSPM\", \"exposure management\". Do NOT use for platform-specific questions -- use the `qualys`, `tenable`, `rapid7`, `snyk`...Votes: 0GitHub stars: 4
- VeeamExpert agent for Veeam Data Platform (VBR v12/v13). Covers backup infrastructure architecture, hardened Linux repositories, immutable backups, SureBackup verification, Secure Restore, 4-eyes authorization, SOBR, and ransomware resilience configuration. WHEN: \"Veeam\", \"VBR\", \"Veeam Backup & Replication\", \"hardened Linux repository\", \"SureBackup\", \"Secure Restore\", \"SOBR\", \"Veeam ONE\", \"Veeam Recovery Orchestrator\", \"4-eyes authorization\".Votes: 0GitHub stars: 4
- VantaExpert agent for Vanta compliance automation. Covers 400+ integrations, 35+ frameworks (SOC 2, ISO 27001, HIPAA, PCI DSS, GDPR), automated evidence collection, continuous monitoring, trust reports, vendor risk management, AI policy agent, and custom frameworks. WHEN: \"Vanta\", \"Vanta SOC 2\", \"Vanta ISO 27001\", \"Vanta integrations\", \"Vanta trust report\", \"Vanta vendor risk\", \"Vanta AI policy\", \"Vanta custom framework\".Votes: 0GitHub stars: 4
- TorqExpert agent for Torq hyperautomation platform. Provides deep expertise in AI-powered case management, visual workflow builder, integrations marketplace, SOC Copilot, no-code/low-code automation, event-driven triggers, and enterprise-grade security orchestration. WHEN: \"Torq\", \"Torq automation\", \"Torq workflow\", \"hyperautomation\", \"Torq SOC Copilot\", \"Torq integration\", \"Torq playbook\", \"Torq case management\".Votes: 0GitHub stars: 4
- TinesExpert agent for Tines security automation. Provides deep expertise in no-code story building, action types (HTTP, Transform, Trigger, Event), team edition (free tier), credential management, story library, and vendor-agnostic security workflow design. WHEN: \"Tines\", \"Tines story\", \"Tines automation\", \"no-code SOAR\", \"Tines action\", \"Tines trigger\", \"Tines transform\", \"Tines free\", \"Tines team edition\".Votes: 0GitHub stars: 4
- ThreatconnectExpert agent for ThreatConnect TIP and SOAR platform. Covers CAL scoring, ThreatConnect Intelligence feeds, visual playbook automation, case management, indicator management, groups and associations, and STIX/TAXII integration. WHEN: \"ThreatConnect\", \"TC\", \"CAL\", \"Collective Analytics Layer\", \"TCI\", \"ThreatConnect Intelligence\", \"TC playbooks\", \"TC case management\", \"Dataminr\".Votes: 0GitHub stars: 4
- Threat IntelExpert routing agent for threat intelligence. Covers intelligence lifecycle, strategic/tactical/operational/technical intel, IOCs vs TTPs, STIX/TAXII, TLP 2.0, kill chain, diamond model, and threat actor taxonomy. Routes to Recorded Future, Mandiant, ThreatConnect, and MISP agents. WHEN: \"threat intelligence\", \"threat intel\", \"IOC\", \"TTP\", \"STIX\", \"TAXII\", \"TLP\", \"threat actor\", \"APT\", \"threat feed\", \"intelligence lifecycle\", \"diamond model\". Do NOT use for platform-sp...Votes: 0GitHub stars: 4
- TenableExpert agent for Tenable Nessus, Tenable.io, and Tenable One. Covers scanner deployment, credentialed scan policies, plugin management, compliance auditing, VPR/EPSS prioritization, Nessus Agent configuration, and Tenable One exposure management. WHEN: \"Tenable\", \"Nessus\", \"Tenable.io\", \"Tenable One\", \"VPR\", \"Nessus agent\", \"plugin families\", \"credentialed scan\", \"Tenable SC\", \"exposure management\".Votes: 0GitHub stars: 4
- SophosExpert agent for Sophos Intercept X EDR. Covers deep learning malware detection, CryptoGuard anti-ransomware, exploit prevention, Adaptive Attack Protection, Sophos Central management, Sophos MDR service, and EDR/XDR capabilities. WHEN: \"Sophos\", \"Intercept X\", \"Sophos Central\", \"CryptoGuard\", \"Sophos EDR\", \"Sophos MDR\", \"deep learning detection\", \"Sophos XDR\", \"Sophos MTR\".Votes: 0GitHub stars: 4
- Snyk OssExpert agent for Snyk Open Source SCA. Covers vulnerability detection, auto-fix PRs, license compliance, reachability analysis, SBOM generation, Snyk CLI, CI/CD integration, and the Snyk platform ecosystem. WHEN: \"Snyk Open Source\", \"Snyk OSS\", \"snyk test\", \"snyk monitor\", \"snyk fix\", \"Snyk auto-fix\", \"Snyk license compliance\", \"Snyk vulnerability database\", \"snyk-to-html\".Votes: 0GitHub stars: 4
- Snyk CodeExpert agent for Snyk Code AI-powered SAST. Covers DeepCode engine, real-time IDE scanning, data-flow analysis, auto-fix suggestions, Priority Score, and Snyk platform integration. WHEN: \"Snyk Code\", \"Snyk SAST\", \"DeepCode\", \"Snyk IDE plugin\", \"snyk code test\", \"Snyk Priority Score\", \"Snyk fix\", \"Snyk AppRisk\".Votes: 0GitHub stars: 4
- Sentinel PlaybooksExpert agent for Microsoft Sentinel Playbooks (Azure Logic Apps). Provides deep expertise in automation rules, Logic Apps designer, incident/entity triggers, 200+ connectors, managed identity authentication, ARM templates, and cost-effective automation patterns for Sentinel incidents. WHEN: \"Sentinel playbook\", \"Logic Apps security\", \"automation rule\", \"Sentinel automation\", \"incident trigger\", \"entity trigger\", \"Sentinel SOAR\", \"Logic App connector\".Votes: 0GitHub stars: 4
- SecretsRouting agent for Secrets & Certificate Management. Delegates to specialist agents for HashiCorp Vault, Azure Key Vault, AWS Secrets Manager, CyberArk, Doppler, Infisical, 1Password, SOPS, and PKI/certificate tooling. WHEN: \"secrets management\", \"secret rotation\", \"certificate management\", \"PKI\", \"key vault\", \"HSM\", \"envelope encryption\", \"credential storage\". Do NOT use for platform-specific questions -- use the `vault`, `azure-key-vault`, `aws-secrets`, `cyberark`, `doppler`...Votes: 0GitHub stars: 4
- ScaExpert routing agent for Software Composition Analysis (SCA). Covers open source vulnerability management, CVE/CVSS scoring, license compliance, SBOM generation, reachability analysis, and dependency update automation. Routes to Snyk OSS, Dependabot, Mend, and Black Duck. WHEN: \"SCA\", \"software composition analysis\", \"open source vulnerabilities\", \"dependency scanning\", \"CVE\", \"SBOM\", \"license compliance\", \"supply chain security\", \"transitive dependencies\", \"dependency upda...Votes: 0GitHub stars: 4
- RubrikExpert agent for Rubrik Security Cloud and CDM. Covers immutable filesystem, anomaly detection, threat hunting with YARA/IOCs, data classification, orchestrated recovery, Polaris GPS policy management, and ransomware resilience. WHEN: \"Rubrik\", \"CDM\", \"Rubrik Cloud Data Management\", \"Polaris\", \"Rubrik Security Cloud\", \"Live Mount\", \"threat hunting\", \"anomaly detection\", \"Rubrik cluster\", \"data classification\".Votes: 0GitHub stars: 4