Skip to main content

Skills in this repository

aibot88/sec_skill_store - Page 45

SkillsMP has collected 2,449 skills from aibot88/sec_skill_store. Open a skill to review its source and details.

aibot88/sec_skill_store

Showing 40 of 2,449 collected skills.

occupation
Information Security Analysts
description

Yetkili penetration testing engagement orchestrator — scope declaration, OPSEC tagging, evidence handling disiplini. Triggers on pentest, penetration test, red team, engagement, ROE, scope, security assessment, vulnerability assessment, ethical hacking.…

Source text: Turkish

updated
occupation
Information Security Analysts
description

Privilege escalation methodology — Linux + Windows + container escape advisory. LinPEAS/WinPEAS analizi, SUID/capability abuse, kernel exploit secimi. Triggers on privesc, privilege escalation, LinPEAS, WinPEAS, SUID, capability, sudo abuse, kernel exploit,…

updated
occupation
Information Security Analysts
description

Reconnaissance ve enumeration advisory — Nmap/Nessus/Nikto/BloodHound output parsing, attack surface prioritization, next-step onerisi. OSINT (domain recon, email harvest, breach data) dahil. Triggers on recon, reconnaissance, enumeration, Nmap output, attack…

Source text: Turkish

updated
occupation
Information Security Analysts
description

Penetration test rapor yazimi — executive summary, technical writeup, CVSS scoring, remediation roadmap advisory. Triggers on pentest report, executive summary, technical writeup, CVSS, remediation roadmap, finding writeup, retest report.

updated
occupation
Information Security Analysts
description

Social engineering pentest methodology — phishing strategy, pretexting, vishing senaryosu, awareness training advisory. Live phishing operation YOK. Triggers on social engineering, phishing, vishing, pretext, awareness, OSINT-driven pretext, GoPhish,…

Source text: Turkish

updated
occupation
Information Security Analysts
description

DISA STIG (Security Technical Implementation Guide) audit + GPO remediation + keep-open justification advisory. Triggers on STIG, DISA, SCAP, OpenSCAP, Compliance Master, GPO, group policy hardening, keep-open justification, CKL.

updated
occupation
Information Security Analysts
description

Threat modeling — STRIDE, DREAD, attack tree, data flow diagram, MITRE ATT&CK Navigator integration. Triggers on threat model, STRIDE, DREAD, attack tree, DFD, data flow diagram, MITRE ATT&CK, threat matrix, risk scoring.

updated
occupation
Information Security Analysts
description

Web application security testing methodology — OWASP Top 10, SSRF, IDOR, auth bypass, injection sinifi advisory. Burp/ZAP cikti analizi. Triggers on web pentest, OWASP, SQL injection, XSS, SSRF, IDOR, auth bypass, Burp output, ZAP, parameter pollution,…

updated
occupation
Information Security Analysts
description

Wireless network pentest — WPA/WPA2/WPA3, evil twin, 802.1X enterprise, Bluetooth advisory. Triggers on wireless pentest, WiFi, WPA2, WPA3, PMKID, evil twin, deauth, Aircrack, hcxdumptool, 802.1X, Bluetooth, BLE security.

Source text: Undetermined

updated
occupation
Software Developers
description

Enforces modern Python 3.11+ coding standards, PEP 8 compliance, and type-hinting best practices automatically. This skill should be used when writing, reviewing, or refactoring Python code to ensure consistency with PEP 8, proper type hints, Google-style…

updated
occupation
Software Developers
description

中文优先:用于Perl安全相关任务,帮助识别、设计、实现或验证对应工作流。English keywords: Comprehensive Perl security covering taint mode, input validation, safe process execution, DBI parameterized queries, web security (XSS/SQLi/CSRF), and perlcritic security policies.

updated
occupation
Lawyers
description

Acts as a Personal Data Expert providing PDPA and GDPR compliance guidance, risk assessments, privacy documentation, and breach response procedures in Thai, grounded in official PDPC standards.

Source text: Thai

updated
occupation
Software Developers
description

pev-harness を使うプロジェクトに Playwright を導入する自動 bootstrap skill。 npm install / browser binary / playwright.config.ts template / seed test template / `npx playwright init-agents --loop=claude` (Playwright agents 自動生成) の 5 step を 1 操作で完了する。 pev-e2e-verify skill の…

Source text: Japanese

updated
occupation
Software Developers
description

Build frontend Solana applications with Phantom Connect SDK and Helius infrastructure. Covers React, React Native, and browser SDK integration, transaction signing via Helius Sender, API key proxying, token gating, NFT minting, crypto payments, real-time…

updated
occupation
Lawyers
description

Prüft Online-Banking-Phishing, pushTAN, Call-ID-Spoofing, grobe Fahrlässigkeit, Beweislast, Banklogs, Ombudsmann und Klage gegen Zahlungsdienstleister.

Source text: German

updated
occupation
Information Security Analysts
description

PHP Web 全链路白盒代码安全审计流水线(多文件版编排)。作为总编排参考,按 Sink 类型调用各子审计 skill(`php-route-mapper/php-auth-audit/php-route-tracer/php-*-audit`),并复用统一输出与分级标准。

Source text: Chinese

updated
occupation
Software Developers
description

PHP coding rules from ai-toolkit: coding-style, frameworks, patterns, security, testing. Triggers: .php, composer.json, Laravel, Symfony, PHPUnit, PSR-12, Composer. Load when writing, reviewing, or editing PHP code.

updated
occupation
Information Security Analysts
description

Yii 框架特效安全审计工具。针对 Yii(通常指 Yii2)访问控制(AccessControl/RBAC)、CSRF、输入过滤规则、输出编码策略、URL/重定向安全等进行白盒静态审计,并映射到通用漏洞类型体系(AUTH/CSRF/XSS/CFG/LOGIC 等)。

Source text: Chinese

updated
occupation
Information Security Analysts
description

Threat library for physical-access threats that STRIDE and OWASP Top 10 don't cover — evil-maid, DMA, hostile peripheral, travel-host, coercion, cold-boot, supply-chain implant, side-channel

updated
occupation
Software Developers
description

Authors system prompt additions for pi coding agent. Use when extending pi's default prompt with custom principles, guidelines, or project-specific rules via SYSTEM.md or APPEND_SYSTEM.md.

updated
occupation
Software Developers
description

Use this skill to pick exactly one GitHub repository that needs a refresh: scan a given list of owners, collect signals of neglect — long stretches without commits, failing or absent CI runs on the default branch, outdated or vulnerable dependencies — score…

updated
occupation
Information Security Analysts
description

Picoclaw security posture skill with advisory awareness, configuration drift detection, and supply-chain verification guidance.

updated
occupation
Lawyers
description

Handling personally identifiable information under European and Australian privacy regulations.

updated
occupation
Market Research Analysts & Marketing Specialists
description

How to design a content hub that earns topical authority. Pillar topic selection, cluster planning, internal linking architecture, URL structure, pillar and cluster page anatomy, topical authority signals for SEO and AEO/GEO, and the maintenance discipline…

updated
occupation
Software Developers
description

Deep GitHub Actions workflow expert. Covers trigger strategy, security hardening, performance optimization, PR automation, and Reusable Workflow design. Use when new GHA workflow design or advanced optimization is needed.

updated
occupation
Software Quality Assurance Analysts & Testers
description

Use after completing any PRD, spec, plan, or code implementation — verifies that artifact-specific pitfalls (security, idempotency, integration contracts, edge cases, LLM output) do not apply before declaring work done. Two rounds max.

updated
occupation
Software Developers
description

Pixa.com (eski Pixelcut) — Claude'a MCP-native baglanan yaratici AI araclari. Arka plan kaldir, gorsel olustur, kalite iyilestir, video olustur, nesne sil. API anahtari gerekmez.

Source text: Turkish

updated
occupation
Technical Writers
description

Use when asked to review project text for plain language compliance. Produces structured findings with rewrites. Triggers: plain language review, readability check, copy audit, make this clearer.

updated
occupation
Software Quality Assurance Analysts & Testers
description

Audit a project plan against the actual implementation — verifying code, types, security, and Supabase backend alignment.

updated
occupation
Project Management Specialists
description

Documenta progreso y marca tareas completadas en PLAN_MEJORAS.md. Usa SIEMPRE después de completar cualquier tarea del plan de mejoras.

Source text: Spanish

updated
occupation
Software Quality Assurance Analysts & Testers
description

Guide for writing Gherkin acceptance criteria using Given-When-Then syntax for testable requirements. Covers scenario structure, background blocks, scenario outlines with examples tables, common patterns for authentication/CRUD/validation/error handling, and…

updated
occupation
Market Research Analysts & Marketing Specialists
description

Synthetic user advocate that role-plays as end users to generate authentic feature requests, surface unmet needs, and challenge team assumptions. Don't use for real feedback analysis (Voice) or UI evaluation (Echo).

updated
occupation
Software Developers
description

Analyze agent extensions and generate self-contained HTML wiki reports with security audit and architecture diagrams. Use when asked to analyze, audit, or document a plugin. Triggers on GitHub plugin URLs or local plugin paths.

updated
occupation
Art Directors
description

Critically review the user-facing surface of a PRD, design spec, or feature proposal against behavioral and UX principles. Use when a PM has a solution in hand and wants the design layer pressure-tested — defaults, friction placement, choice architecture,…

updated
occupation
Software Developers
description

Generates a complete, production-ready PMCR-O Cognitive Architecture .NET 10 Aspire project as a downloadable ZIP file. The generated project follows the real PMCRO substrate pattern: Aspire AppHost, gRPC-internal / REST-external hybrid, Microsoft Agent…

updated
occupation
Software Developers
description

Authenticate production Podium integrations and survive the auth-side failures — OAuth2 access-token expiry storms, refresh-token decay after 90 days of non-use, scope drift on re-grant, secret rotation without downtime, multi-tenant token routing, leakage in…

updated
occupation
Software Developers
description

Search the PMC Open Access literature with polars-dovmed. Author structured JSON queries directly, then use the hosted API when an API key is available or fall back to local dovmed scan over PMC, bioRxiv, or both parquet corpora.

updated
occupation
Compliance Officers
description

Especificação completa da camada de política de agentes — spend controls, rate limiting, tool access matrix e compliance checklist

Source text: Portuguese

updated
occupation
Software Developers
description

Use this skill to walk through an existing code base and fix surface-level problems that are obvious on a careful read: typos, grammar mistakes in comments and strings, inconsistent naming or formatting, dead imports, stale references, broken links,…

updated
occupation
Lawyers
description

Guide pour (a) évaluer la conformité d'un dispositif lanceur d'alerte existant ou (b) rédiger une politique de signalement conforme sur la base d'un template fourni. Couvre la Directive UE 2019/1937, la loi Sapin II modifiée (Waserman 2022), le décret…

Source text: French

updated
Showing 40 of 2,449 collected skills.