Skip to main content
Run any Skill in Manus
with one click
Prohao42
GitHub creator profile

Prohao42

Repository-level view of 45 collected skills across 1 GitHub repositories.

skills collected
45
repositories
1
updated
2026-06-06
repository map

Where the skills live

Top repositories by collected skill count, with their share of this creator catalog and occupation spread.

repository explorer

Repositories and representative skills

api-sec
information-security-analysts

Entry P1 category router for API security. Use when choosing between API recon, authorization, token abuse, and hidden-parameter workflows before any deeper API topic skill.

2026-06-06
auth-sec
information-security-analysts

Entry P1 category router for authentication and authorization. Use when testing login flows, sessions, object authorization, JWT, OAuth, CORS, CSRF, and enterprise SSO weaknesses before any deeper auth topic skill.

2026-06-06
authbypass-authentication-flaws
information-security-analysts

Authentication bypass testing playbook. Use when assessing login flows, password reset logic, account recovery, MFA bypass, token predictability, brute-force resistance, and session boundary flaws.

2026-06-06
business-logic-vuln
information-security-analysts

Entry P1 category router for business logic testing. Use when workflow abuse, race conditions, pricing flaws, or multi-step state attacks matter more than parser-level input injection.

2026-06-06
business-logic-vulnerabilities
information-security-analysts

Business logic vulnerability playbook. Use when reasoning about workflows, race conditions, price manipulation, coupon abuse, state machines, and multi-step authorization gaps.

2026-06-06
cmdi-command-injection
information-security-analysts

Command injection playbook. Use when user input may reach shell commands, process execution, converters, import pipelines, or blind out-of-band command sinks.

2026-06-06
cors-cross-origin-misconfiguration
information-security-analysts

CORS misconfiguration testing playbook. Use when analyzing cross-origin trust, credentialed browser reads, origin reflection, preflight policy bugs, and browser-based access to authenticated APIs.

2026-06-06
crlf-injection
information-security-analysts

CRLF injection playbook. Use when user input reaches HTTP response headers, Location redirects, Set-Cookie values, or log files where carriage-return/line-feed characters can split or inject content.

2026-06-06
Showing top 8 of 45 collected skills in this repository.
Showing 1 of 1 repositories
All repositories loaded