home/categories/security
category focus

Security

Encryption, auth, and vulnerability scanning.

2506 skillsall categories
sorting
stars
current ordering strategy
query
all entries
refine the visible subset
security
2

security-hardening

Implement client-side security measures including Content Security Policy, input sanitization, XSS prevention, and secure data handling. Use when handling user input, displaying dynamic content, or storing sensitive data.

CeamKrier
CeamKrier
testing-security
open
security
2

oscal-ssp-validator

Validates OSCAL System Security Plan documents against NIST 800-18 Rev 1 requirements and FedRAMP baselines. Identifies missing elements, quality issues, and provides remediation guidance for achieving ATO compliance.

euCann
euCann
testing-security
open
security
2

security

DevSecOps practices including secrets management, SSL/TLS, vulnerability scanning, and compliance

pluginagentmarketplace
pluginagentmarketplace
testing-security
open
security
2

vulnerability-validation

Validate security findings from commit-security-scan by assessing exploitability, filtering false positives, and generating proof-of-concept exploits. Use after running commit-security-scan to confirm vulnerabilities.

Factory-AI
Factory-AI
testing-security
open
security
2

staging-browser-localhost

Open a headless browser authenticated with Aircall staging credentials for localhost development

kentoje
kentoje
testing-security
open
security
2

auth-skill

Implement secure authentication systems including signup, signin, password hashing, JWT tokens, and Better Auth integration.

subhankaladi
subhankaladi
testing-security
open
security
2

vulnerability-detection

Systematic approach to identifying security vulnerabilities in code, dependencies, and infrastructure

cyperx84
cyperx84
testing-security
open
security
2

security-review

FTC security review checks. Activates when reviewing code for credential leaks, unsafe file operations, or code injection vulnerabilities in FTC robot code. Use when auditing skills for security issues, checking for hardcoded credentials, or reviewing scripts for safe file operations.

ncssm-robotics
ncssm-robotics
testing-security
open
security
2

manifest-privilege-validator

Validates tizen-manifest.xml privilege declarations. Checks privilege correctness, required privilege levels, and manifest conformance.

plurigrid
plurigrid
testing-security
open
security
2

security-review

MANDATORY for security-sensitive code changes - OWASP-based security review with dedicated checklist, required before PR for auth, input handling, API, database, or credential code

troykelly
troykelly
testing-security
open
security
2

reading-op-secrets

Reads secrets from 1Password using the op CLI. Use when the user needs to retrieve passwords, API keys, credentials, documents, or one-time passwords stored in 1Password. Supports reading items by name or ID, extracting specific fields, listing vault contents, and reading secret references.

leefowlercu
leefowlercu
testing-security
open
security
2

security-headers-csp

Guide for CSP, security headers, and external scripts. Use fetchWithHmac for APIs, safeFetch for external services.

Esdeveniments
Esdeveniments
testing-security
open
security
2

fullstory-anonymize-users

Comprehensive guide for implementing Fullstory's User Anonymization API (setIdentity with anonymous:true) for web applications. Teaches proper logout handling, session management, privacy compliance, and user switching scenarios. Includes detailed good/bad examples for logout flows, multi-user applications, and privacy-conscious implementations.

fullstorydev
fullstorydev
testing-security
open
security
2

control-mapper

Map security controls between different compliance frameworks including NIST 800-53, ISO 27001, CIS Controls, PCI-DSS, HIPAA, SOC 2, and CMMC. Use this skill for gap analysis, multi-framework compliance, and control rationalization.

euCann
euCann
testing-security
open
security
2

verifier

Verification subagent. Runs checks from verification_spec in order. Fast-fails on first error. Reports PASS or FAIL with evidence. Does NOT modify code.

harivansh-afk
harivansh-afk
testing-security
open
security
2

1password-credential-lookup

This skill should be used when agents need to log into websites, retrieve passwords, or access credentials. CRITICAL - always use find_credential with the website URL, never guess item names.

ClementWalter
ClementWalter
testing-security
open
security
2

security

Production-grade security testing skill with OWASP Top 10, vulnerability scanning, penetration testing guidance, and compliance validation

pluginagentmarketplace
pluginagentmarketplace
testing-security
open
security
2

authentication-logic

Guide to using Better Auth for client and server-side authentication.

AbdulSamad94
AbdulSamad94
testing-security
open
security
2

goth-fundamentals

This skill should be used when the user asks to "set up goth", "install goth", "oauth in go", "authentication in golang", "goth package", "goth basics", or mentions "github.com/markbates/goth". Provides foundational guidance for the Goth multi-provider authentication library.

linehaul-ai
linehaul-ai
testing-security
open
security
2

secure-auth

Secure authentication implementation patterns. Use when implementing user login, registration, password reset, session management, JWT authentication, or OAuth integration. Provides production-ready patterns that avoid common tutorial pitfalls like insecure token storage, weak password hashing, and session fixation.

jamditis
jamditis
testing-security
open
security
2

security-audit

Triggers for authentication, payments, user input, and API endpoints to check OWASP risks. Auto-evaluates security need and provides actionable fixes, not checklists.

MacroMan5
MacroMan5
testing-security
open
security
2

cynara-policy-validator

Validates Cynara privilege access control policies. Checks policy syntax, logical consistency, and permission accuracy.

plurigrid
plurigrid
testing-security
open
security
2

moai-domain-security

Enterprise-grade security expertise with production-ready patterns for OWASP Top 10 2021, zero-trust architecture, threat modeling (STRIDE, PASTA), secure SDLC, DevSecOps automation, cloud security, cryptography, identity & access management, and compliance frameworks (SOC 2, ISO 27001, GDPR, CCPA).

AJBcoding
AJBcoding
testing-security
open
security
2

security-auditor

Expert in web security, XSS prevention, CSRF protection, Content Security Policy, authentication patterns, secure data handling, and dependency vulnerability scanning

deve1993
deve1993
testing-security
open
Previous
Page 75 / 105
Next