home/categories/testing-security
domain cluster

Testing & Security

QA, penetration testing, and code quality.

9326 اسکلزall categories
sorting
stars
current ordering strategy
query
all entries
refine the visible subset
security
90

delon-auth-authentication-authorization

Implement authentication and authorization using @delon/auth. Use this skill when adding login/logout flows, JWT token management, role-based access control (RBAC), route guards, HTTP interceptors, and session management. Integrates with Firebase Auth and custom permission systems. Ensures secure token storage, automatic token refresh, and consistent authorization checks across components and services.

aiskillstore
aiskillstore
testing-security
open
testing
90

rn-testing

Testing patterns for React Native with Jest and React Native Testing Library. Use when writing tests, mocking Expo modules, testing Zustand stores, or debugging test failures.

aiskillstore
aiskillstore
testing-security
open
security
90

rn-auth

React Native authentication patterns for Expo apps. Use when implementing login flows, Google/Apple sign-in, token management, session handling, or debugging auth issues in Expo/React Native.

aiskillstore
aiskillstore
testing-security
open
testing
90

react-testing

Testing patterns for React with Jest and React Testing Library. Use when writing tests, mocking modules, testing Zustand stores, or debugging test failures in React web applications.

aiskillstore
aiskillstore
testing-security
open
security
90

web-auth

Authentication patterns for React web applications. Use when implementing login flows, OAuth, JWT handling, session management, or protected routes in React web apps.

aiskillstore
aiskillstore
testing-security
open
testing
90

tdd-workflow

Test-Driven Development methodology for Node.js/TypeScript projects.

aiskillstore
aiskillstore
testing-security
open
testing
90

tdd-pytest

Python/pytest TDD specialist for test-driven development workflows. Use when writing tests, auditing test quality, running pytest, or generating test reports. Integrates with uv and pyproject.toml configuration.

aiskillstore
aiskillstore
testing-security
open
testing
90

testing

Automated test generation, review, and execution for pytest-based projects.

aiskillstore
aiskillstore
testing-security
open
testing
90

scenario-testing

This skill should be used when writing tests, validating features, or needing to verify code works. Triggers on "write tests", "add test coverage", "validate feature", "integration test", "end-to-end", "e2e test", "mock", "unit test". Enforces scenario-driven testing with real dependencies in .scratch/ directory.

aiskillstore
aiskillstore
testing-security
open
security
90

iac-checkov

Infrastructure as Code (IaC) security scanning using Checkov with 750+ built-in policies for Terraform, CloudFormation, Kubernetes, Dockerfile, and ARM templates. Use when: (1) Scanning IaC files for security misconfigurations and compliance violations, (2) Validating cloud infrastructure against CIS, PCI-DSS, HIPAA, and SOC2 benchmarks, (3) Detecting secrets and hardcoded credentials in IaC, (4) Implementing policy-as-code in CI/CD pipelines, (5) Generating compliance reports with remediation guidance for cloud security posture management.

aiskillstore
aiskillstore
testing-security
open
code-quality
90

global-commenting

Write minimal, evergreen code comments that explain complex logic without documenting obvious behavior or temporary changes. Use this skill when adding comments to PHP files, TypeScript/JavaScript files, or any code files, when documenting complex algorithms or business logic, when adding PHPDoc blocks or JSDoc comments, when writing self-documenting code with clear naming, or when reviewing existing comments for relevance and necessity. Focus on keeping code self-explanatory through clear structure and naming rather than relying heavily on comments.

aiskillstore
aiskillstore
testing-security
open
code-quality
90

devops-quality

Code quality standards, linting rules, and CI/CD principles.

aiskillstore
aiskillstore
testing-security
open
code-quality
90

conventions

Load coding conventions and style guidelines when writing or reviewing code. Ensures consistency with project standards.

aiskillstore
aiskillstore
testing-security
open
code-quality
90

dead-code-removal

Detects and safely removes unused code (imports, functions, classes) across multiple languages. Use after refactoring, when removing features, or before production deployment. Includes safety checks and validation.

aiskillstore
aiskillstore
testing-security
open
code-quality
90

seo-fundamentals

Auto-invoke when reviewing HTML head, meta tags, or Next.js page components. Enforces semantic HTML and search optimization.

aiskillstore
aiskillstore
testing-security
open
security
90

sast-horusec

Multi-language static application security testing using Horusec with support for 18+ programming languages and 20+ security analysis tools. Performs SAST scans, secret detection in git history, and provides vulnerability findings with severity classification. Use when: (1) Analyzing code for security vulnerabilities across multiple languages simultaneously, (2) Detecting exposed secrets and credentials in git history, (3) Integrating SAST into CI/CD pipelines for secure SDLC, (4) Performing comprehensive security analysis during development, (5) Managing false positives and prioritizing security findings.

aiskillstore
aiskillstore
testing-security
open
code-quality
90

verify-output

Pattern for verifying your output matches required schema before completing. Use before writing final output to ensure validity.

aiskillstore
aiskillstore
testing-security
open
code-quality
90

global-standards

Project-wide coding standards and conventions specialist. Use PROACTIVELY when writing code, making architectural decisions, or establishing project conventions. Covers coding style, commenting, error handling, validation, tech stack consistency, and project conventions across all languages and frameworks.

aiskillstore
aiskillstore
testing-security
open
code-quality
90

lint-dotnet

Run .NET architecture linter to check for MSBuild/CPM violations

aiskillstore
aiskillstore
testing-security
open
code-quality
90

error-handling-fundamentals

Auto-invoke when reviewing try/catch blocks, API error responses, async operations, or user feedback patterns. Enforces graceful degradation and meaningful error messages.

aiskillstore
aiskillstore
testing-security
open
code-quality
90

neovim-debugging

Debug Neovim/LazyVim configuration issues. Use when: user reports Neovim errors, keymaps not working, plugins failing, or config problems. Provides systematic diagnosis through hypothesis testing, not just checklists. Think like a detective narrowing down possibilities.

aiskillstore
aiskillstore
testing-security
open
code-quality
90

validate-requirements

Validate that input meets prerequisites based on the user's saved standards for the project type. Use at the start of any quality pipeline to ensure the user has provided sufficient requirements.

aiskillstore
aiskillstore
testing-security
open
code-quality
90

chapter-analyzer

Validates and analyzes Docusaurus MDX chapters for structure, pedagogical quality, and component usage.

aiskillstore
aiskillstore
testing-security
open
Previous
Page 158 / 389
Next