home/categories/testing-security
domain cluster

Testing & Security

QA, penetration testing, and code quality.

9326 اسکلزall categories
sorting
stars
current ordering strategy
query
all entries
refine the visible subset
code-quality
191

sast-semgrep

Static application security testing (SAST) using Semgrep for vulnerability detection, security code review, and secure coding guidance with OWASP and CWE framework mapping. Use when: (1) Scanning code for security vulnerabilities across multiple languages, (2) Performing security code reviews with pattern-based detection, (3) Integrating SAST checks into CI/CD pipelines, (4) Providing remediation guidance with OWASP Top 10 and CWE mappings, (5) Creating custom security rules for organization-specific patterns, (6) Analyzing dependencies for known vulnerabilities.

rohunj
rohunj
testing-security
open
testing
190

webapp-testing

使用 Playwright 与本地 Web 应用程序交互和测试的工具包。支持验证前端功能、调试 UI 行为、捕获浏览器截图和查看浏览器日志。

Prorise-cool
Prorise-cool
testing-security
open
code-quality
188

roborevrespond

Add a response or note to a roborev code review to document how findings were addressed

wesm
wesm
testing-security
open
code-quality
188

roborevrespond

Add a response or note to a roborev code review to document how findings were addressed

wesm
wesm
testing-security
open
code-quality
187

new-rule-completeness-validator

Validates that all necessary code changes are implemented when adding new game rules; use when adding new game rules or variants to ensure no files are missed.

calcitem
calcitem
testing-security
open
testing
187

flutter-test-runner

Run Sanmill's Flutter test suite, including unit tests, widget tests, and integration tests; use when running tests or checking test coverage.

calcitem
calcitem
testing-security
open
testing
185

test-writer

Writes tests using IoC overrides and test factories.

MaksimZayats
MaksimZayats
testing-security
open
security
178

gsd-plan-checker

Validates plans before execution to catch issues early

toonight
toonight
testing-security
open
testing
178

gsd-verifier

Validates implemented work against spec requirements with empirical evidence

toonight
toonight
testing-security
open
code-quality
169

consistency-violation-capture

Capture codebase inconsistencies discovered during exploration OR implementation. TRIGGER when you find conflicting patterns while looking for code to follow (e.g., "some UseCases extend AbstractMemberUseCase, others don't") or different approaches to the same concern across modules (naming, error handling, validation placement). Log silently to .claude/consistency-violations.yaml so teams can standardize later.

PackmindHub
PackmindHub
testing-security
open
testing
167

testability

Make features testable by design. Testing pyramid from fast (local) to slow (UI). Expose APIs securely for testing.

different-ai
different-ai
testing-security
open
testing
167

browser-automation

Reliable, composable browser automation using minimal OpenCode Browser primitives.

different-ai
different-ai
testing-security
open
security
166

azure-auth

Microsoft Entra ID (Azure AD) authentication for React SPAs with MSAL.js and Cloudflare Workers JWT validation using jose library. Full-stack pattern with Authorization Code Flow + PKCE. Use when: implementing Microsoft SSO, troubleshooting AADSTS50058 loops, AADSTS700084 refresh token errors, React Router redirects, or validating Entra ID tokens in Workers.

jezweb
jezweb
testing-security
open
security
166

oauth-integrations

Implement OAuth 2.0 authentication with GitHub and Microsoft Entra (Azure AD) in Cloudflare Workers and other edge environments. Covers provider-specific quirks, required headers, scope requirements, and token handling without MSAL. Use when: implementing GitHub OAuth, Microsoft/Azure AD authentication, handling OAuth callbacks, or troubleshooting 403 errors in OAuth flows.

jezweb
jezweb
testing-security
open
security
166

mcp-oauth-cloudflare

Add OAuth authentication to MCP servers on Cloudflare Workers. Uses @cloudflare/workers-oauth-provider with Google OAuth for Claude.ai-compatible authentication. Use when building MCP servers that need user authentication, implementing Dynamic Client Registration (DCR) for Claude.ai, or replacing static auth tokens with OAuth flows. Prevents CSRF vulnerabilities, state validation errors, and OAuth misconfiguration.

jezweb
jezweb
testing-security
open
security
165

convex-security-check

Quick security audit checklist covering authentication, function exposure, argument validation, row-level access control, and environment variable handling

waynesutton
waynesutton
testing-security
open
security
160

coding-conventions

Apply consistent security, performance, and accessibility standards across all recommendations. Use when reviewing code, designing features, or validating implementations. Cross-cutting skill for all agents.

rsmdt
rsmdt
testing-security
open
code-quality
160

code-quality-review

Systematic code review patterns, quality dimensions, anti-pattern detection, and constructive feedback techniques. Use when reviewing code changes, assessing codebase quality, identifying technical debt, or mentoring through reviews. Covers correctness, design, security, performance, and maintainability.

rsmdt
rsmdt
testing-security
open
security
160

security-assessment

Vulnerability review, OWASP patterns, secure coding practices, and threat modeling approaches. Use when reviewing code security, designing secure systems, performing threat analysis, or validating security implementations.

rsmdt
rsmdt
testing-security
open
testing
160

testing

Writing effective tests and running them successfully. Covers layer-specific mocking rules, test design principles, debugging failures, and flaky test management. Use when writing tests, reviewing test quality, or debugging test failures.

rsmdt
rsmdt
testing-security
open
testing
160

implementation-verification

Validate implementation against specifications (PRD/SDD/PLAN). Use when verifying specification compliance, checking interface contracts, validating architecture decisions, detecting deviations, or ensuring implementations match documented requirements. Provides structured compliance reporting.

rsmdt
rsmdt
testing-security
open
code-quality
158

coding-standards

コードの品質問題、アンチパターン、可読性を検査。機能実装、コードレビュー、リファクタリング時に使用。

shinpr
shinpr
testing-security
open
code-quality
158

typescript-rules

Applies type safety and error handling rules. Enforces no-any policy and type guards. Use when implementing TypeScript or reviewing types.

shinpr
shinpr
testing-security
open
code-quality
158

typescript-rules

型安全性とエラーハンドリングルールを適用。any禁止、型ガード必須。TypeScript実装、型定義レビュー時に使用。

shinpr
shinpr
testing-security
open
Previous
Page 153 / 389
Next