home/categories/testing-security
domain cluster

Testing & Security

QA, penetration testing, and code quality.

9326 اسکلزall categories
sorting
stars
current ordering strategy
query
all entries
refine the visible subset
security
0

scalekit-auth

Implement authentication with Scalekit for web applications, APIs, and MCP servers. Supports full-stack auth, modular SSO (SAML/OIDC), and MCP OAuth 2.1. Handles login, SSO, session management, token validation, and enterprise identity providers. Works with Node.js, Express, Next.js, Python, FastAPI, and MCP servers. Use when implementing authentication, adding SSO, securing APIs, or protecting MCP servers.

scalekit-inc
scalekit-inc
testing-security
open
security
0

edge-done

Validate session completion before ending work. Use when finishing a coding session to ensure state was saved and proof exists.

DazedtilDawn
DazedtilDawn
testing-security
open
security
0

keychain-security

Secure credential handling using macOS Keychain. Use when working with API keys, passwords, tokens, or any sensitive data. Triggers: 'API key', 'credentials', 'secret', 'password', 'token', 'authenticate'.

ali
ali
testing-security
open
security
0

security-scanning

Scan code for security vulnerabilities. Use after implementation changes.

amattas
amattas
testing-security
open
security
0

oauth21-compliance

OAuth 2.1 compliance checklist for authorization servers. Use when implementing OAuth 2.1 beyond OpenID Connect Basic OP requirements, verifying OAuth 2.1 specific features, or understanding differences from OAuth 2.0. Covers all OAuth 2.1 draft-ietf-oauth-v2-1-14 requirements not in Basic OP.

maronnjapan
maronnjapan
testing-security
open
security
0

oauth-automation

Use when OAuth tokens expire frequently, need automatic token refresh, YouTube/Google API integration, or when workflows fail due to expired credentials

aixier
aixier
testing-security
open
security
0

ios-signing

iOSアプリのコード署名・プロビジョニング支援。証明書管理、Provisioning Profile管理、Keychain設定、CI/CD環境での署名設定など、コード署名に関する包括的なサポートを提供する。「署名エラーを解決したい」「証明書を更新したい」「CIで署名を設定したい」と言った時に使用する。

CAPHTECH
CAPHTECH
testing-security
open
security
0

oauth21-token-endpoint

OAuth 2.1 Token Endpoint implementation guide. Use when implementing token endpoint requirements beyond OpenID Connect, including grant types, token response format, Cache-Control headers, CORS support, and error handling. Covers OAuth 2.1 Section 3.2 and Section 4 requirements.

maronnjapan
maronnjapan
testing-security
open
security
0

authorisation

Security pattern for implementing access control and authorization. Use when designing permission systems, implementing RBAC/ABAC, preventing unauthorized access, addressing privilege escalation, or ensuring users can only perform allowed actions on permitted resources. Addresses "Entity performs disallowed action" problem.

igbuend
igbuend
testing-security
open
security
0

genfeed-scope-validator

Validate workflows and node requests against Genfeed OSS core scope. Ensures only OSS-included nodes are used and flags Cloud-only features. Use before implementing workflows or when users request new nodes.

genfeedai
genfeedai
testing-security
open
security
0

sso-guide

SSO integration guidance for fort-nix services. Use when adding authentication to a service, choosing an SSO mode, configuring oauth2-proxy, or troubleshooting auth issues. Triggers on fort.cluster.services sso config, oauth2-proxy setup, OIDC integration, or auth header injection.

gisikw
gisikw
testing-security
open
security
0

onvifscan

ONVIF device security scanner for testing authentication and brute-forcing credentials. Use when you need to assess security of IP cameras or ONVIF-enabled devices.

consigcody94
consigcody94
testing-security
open
security
0

auth-verify

Authenticate to web app and verify session state with Chrome DevTools session sharing

rayzru
rayzru
testing-security
open
security
0

security

Configure security headers, CORS, antiforgery, and the IConfigurableOptions pattern for affolterNET.Web.Bff. Use when setting up CSP, HSTS, CSRF protection, or custom options.

Mcafee123
Mcafee123
testing-security
open
security
0

security

inkLine security checklist to protect the application from common attacks

JackieNonSense
JackieNonSense
testing-security
open
security
0

cryptography-as-a-service

Security pattern for delegating cryptographic operations and key management to an external service. Use when designing systems that should not possess cryptographic keys directly. Implementation of Cryptographic Key Management pattern. Examples include Android Keystore, iOS KeyChain, AWS KMS, Azure Key Vault, Google Cloud KMS. Reduces risk of key leakage and cipher misconfiguration.

igbuend
igbuend
testing-security
open
security
0

pact-security-patterns

CROSS-CUTTING: Security patterns and best practices for ALL PACT phases. Provides OWASP Top 10 guidance, authentication/authorization patterns, input validation, secure coding practices, secrets management, and security testing checklists. Use when: implementing authentication, handling user input, storing secrets, designing authorization, reviewing code for vulnerabilities, planning security tests.

v4lheru
v4lheru
testing-security
open
security
0

aws-sso-refresh

Automatically refresh AWS SSO authentication tokens when encountering expiration errors. Use when AWS MCP tools fail due to expired SSO sessions.

veelenga
veelenga
testing-security
open
security
0

csrf-auth-debugger

Debug CSRF token issues and authentication problems including 403 Forbidden errors, cookie issues, JWT tokens, OAuth flows, and session management. Use when troubleshooting CSRF verification failed, 403 errors on POST requests, login not working, or token refresh issues.

allthriveai
allthriveai
testing-security
open
security
0

api-design-security

Design and implement secure admin APIs in Next.js 16 with hardened security, RBAC, CSRF protection, tenant isolation, and audit logging. Use when creating new admin API routes, implementing security controls, or ensuring API compliance with corporate security standards.

ArtisanClarinets
ArtisanClarinets
testing-security
open
security
0

symfony-sksecurity-zone

Create security zones and assign rights to profiles. Use when registering controllers.

Swoking
Swoking
testing-security
open
security
0

1password-cli

Use this skill when working with the 1Password CLI (`op` command) for secrets management, retrieving API keys, injecting secrets into development environments, or any task involving 1Password vault operations. Triggers on: "1password", "op command", "secrets management", "api keys from vault", "op run", "op read", "service account token".

research-developer
research-developer
testing-security
open
Previous
Page 338 / 389
Next