home/categories/security
category focus

Security

Encryption, auth, and vulnerability scanning.

2506 skillsall categories
sorting
stars
current ordering strategy
query
all entries
refine the visible subset
security
4

authentication

Implement authentication with NextAuth v5. Use when adding login/logout, checking sessions, protecting API routes, server actions, or pages.

xmark168
xmark168
testing-security
open
security
4

trust-safety

Trust and safety - abuse prevention, rate limiting. Use when fighting bad actors.

SylphxAI
SylphxAI
testing-security
open
security
4

appsec

Application security - OWASP, validation, secrets. Use when securing the app.

SylphxAI
SylphxAI
testing-security
open
security
4

auth

Authentication patterns - sign-in, SSO, passkeys, sessions. Use when implementing auth flows.

SylphxAI
SylphxAI
testing-security
open
security
4

electron-security-hardening

Electronデスクトップアプリケーションのセキュリティ強化専門知識。 XSS、コードインジェクション、プロセス隔離違反などの脅威から保護。 Anchors: • Electron Security / 適用: プロセス隔離・IPC保護 / 目的: 安全なデスクトップアプリ • OWASP / 適用: 脆弱性評価・脅威モデリング / 目的: 継続的なセキュリティ監査 • Content Security Policy / 適用: CSP実装 / 目的: XSS防御とリソース制限 Trigger: Use when implementing Electron security hardening, configuring CSP, designing secure IPC channels, conducting security audits, managing vulnerabilities, or implementing sandboxing. electron security, CSP, IPC protection, context isolation, sandbox, preload

daishiman
daishiman
testing-security
open
security
4

tool-security

MCPツールとAPI統合のセキュリティ設計を体系化するスキル。 脅威整理、制御設計、設定検証を通じて安全なツール運用を支援する。 Anchors: • Web Application Security / 適用: 脅威モデリング / 目的: 攻撃面の整理 • OWASP ASVS / 適用: セキュリティ要件 / 目的: 制御の網羅性 Trigger: Use when designing tool security controls, validating security configs, or reviewing secrets handling. tool security, threat modeling, config validation

daishiman
daishiman
testing-security
open
security
3

assisting-with-soc2-audit-preparation

Automate SOC 2 audit preparation including evidence gathering, control assessment, and compliance gap identification. Use when you need to prepare for SOC 2 audits, assess Trust Service Criteria compliance, document security controls, or generate readiness reports. Trigger with phrases like "SOC 2 audit preparation", "SOC 2 readiness assessment", "collect SOC 2 evidence", or "Trust Service Criteria compliance".

BbgnsurfTech
BbgnsurfTech
testing-security
open
security
3

using-authentication

Use Better Auth for client and server-side authentication. Covers session access, protected routes, sign in/out, and fetching user data.

andrelandgraf
andrelandgraf
testing-security
open
security
3

building-api-authentication

Build secure API authentication systems with OAuth2, JWT, API keys, and session management. Use when implementing secure authentication flows. Trigger with phrases like "build authentication", "add API auth", or "secure the API".

BbgnsurfTech
BbgnsurfTech
testing-security
open
security
3

better-auth-python

Better Auth JWT verification for Python/FastAPI backends. Use when integrating Python APIs with a Better Auth TypeScript server via JWT tokens. Covers JWKS verification, FastAPI dependencies, SQLModel/SQLAlchemy integration, and protected routes.

Syedaashnaghazanfar
Syedaashnaghazanfar
testing-security
open
security
3

better-auth-ts

Better Auth TypeScript/JavaScript authentication library. Use when implementing auth in Next.js, React, Express, or any TypeScript project. Covers email/password, OAuth, JWT, sessions, 2FA, magic links, social login with Next.js 16 proxy.ts patterns.

Syedaashnaghazanfar
Syedaashnaghazanfar
testing-security
open
security
3

security-auditor

Security vulnerability expert covering OWASP Top 10 and common security issues. Use when conducting security audits or reviewing code for vulnerabilities.

Charon-Fan
Charon-Fan
testing-security
open
security
3

validating-authentication-implementations

Validate authentication mechanisms for security weaknesses and compliance. Use when reviewing login systems or auth flows. Trigger with 'validate authentication', 'check auth security', or 'review login'.

BbgnsurfTech
BbgnsurfTech
testing-security
open
security
3

phi-detection

Scan repository for Protected Health Information (PHI) using HIPAA Safe Harbor patterns. Ensures evaluation data remains synthetic-only.

GOATnote-Inc
GOATnote-Inc
testing-security
open
security
3

pki-and-x509

Expert guidance for Public Key Infrastructure (PKI) and X.509 certificates including certificate structure, DN parsing, CSR generation, certificate signing, revocation (CRL/OCSP), key management, and OpenSSL commands. Use this when working with digital certificates, certificate authorities, or cryptographic key management.

oriolrius
oriolrius
testing-security
open
security
3

performing-security-testing

Automate security vulnerability testing covering OWASP Top 10, SQL injection, XSS, CSRF, and authentication issues. Use when performing security assessments, penetration tests, or vulnerability scans. Trigger with phrases like "scan for vulnerabilities", "test security", or "run penetration test".

BbgnsurfTech
BbgnsurfTech
testing-security
open
security
3

cosmian-kms

Expert guidance for Cosmian Key Management System including key generation, certificate management, encryption operations, access policies, and KMS CLI operations. Use this when working with Cosmian KMS, cryptographic key management, or Cosmian-specific PKI operations.

oriolrius
oriolrius
testing-security
open
security
3

policyengine-api

PolicyEngine API - Flask REST service powering policyengine.org and programmatic access

PolicyEngine
PolicyEngine
testing-security
open
security
3

finding-security-misconfigurations

Identify security misconfigurations in infrastructure-as-code, application settings, and system configurations. Use when you need to audit Terraform/CloudFormation templates, check application config files, validate system security settings, or ensure compliance with security best practices. Trigger with phrases like "find security misconfigurations", "audit infrastructure security", "check config security", or "scan for misconfigured settings".

BbgnsurfTech
BbgnsurfTech
testing-security
open
security
3

scanning-for-data-privacy-issues

Scan for data privacy issues and sensitive information exposure. Use when reviewing data handling practices. Trigger with 'scan privacy issues', 'check sensitive data', or 'validate data protection'.

BbgnsurfTech
BbgnsurfTech
testing-security
open
security
3

application-security

Secure applications against common vulnerabilities. Use when reviewing code for security, implementing security controls, or hardening applications. Covers OWASP Top 10.

dralgorhythm
dralgorhythm
testing-security
open
security
3

scanning-input-validation-practices

Scan for input validation vulnerabilities and injection risks. Use when reviewing user input handling. Trigger with 'scan input validation', 'check injection vulnerabilities', or 'validate sanitization'.

BbgnsurfTech
BbgnsurfTech
testing-security
open
Previous
Page 70 / 105
Next