Audits parser and tokenizer performance.
Skills in this repository
SocketDev/action - Page 2
SkillsMP has collected 80 skills from SocketDev/action. Open a skill to review its source and details.
SocketDev/actionShowing 40 of 80 collected skills.
Audits performance in Rust, Go, C++, JS/TS, parsers, Node addons, and WebAssembly.
Optimizes measured React interface performance.
Audits measured Rust performance.
Minimize submodule sparse-checkouts to only the trees the repo actually consumes.
Audits WebAssembly performance and capability fallbacks.
Fix verified security findings with minimal patches and independent review before validation.
Reference for avoiding Promise.race/any handler leaks in loops and hand-rolled concurrency pools.
Pick a property/fuzz tier and harness for parsers, decoders, and native addons.
Edit human-facing prose to remove AI patterns, padding, hedging, and awkward generated phrasing.
Run the full pre-push gate, push only when green, then watch CI after the push.
Refresh a default branch to one signed initial commit: update deps, verify, force-push with backup.
Release a single-package fleet repo: pre-bump, changelog, staged publish, approve, tag, release.
Render pages or extension popups to PNG and inspect pixels to catch real UI regressions.
Move an existing version-bump commit back to tip, retag it, verify integrity, and force-push safely.
Research recent community and upstream signals across GitHub, forums, social feeds, and web sources.
Review the current branch against a base with multiple AI backends and produce verified findings.
Reviews web interface quality before landing UI changes.
Run the repo's canonical Test262 suite for parser/runtime conformance; never write ad hoc runners.
Scan for bugs, races, workflow flaws, insecure defaults, and regressions; verify and rank findings.
Run AgentShield, zizmor, and Socket dependency scans into a graded security report.
Run static vulnerability scanners over a target tree and write raw findings for triage.
Repo onboarding wizard: tokens, keychain, shell bridge, tools, hooks, initialization.
Squash default-branch history to one commit with backup and force-push.
Tests web interfaces across component and browser layers.
Build or interview for a threat model covering assets, attackers, trust boundaries, and mitigations.
Remove untracked or ignored junk and scratch files across fleet repos without touching tracked work.
Keep rolldown bundles lean by reporting collapsible deps, catalog drift, and fat external shims.
Sweep spent clean worktrees whose branches merged or vanished; preserve dirty or unpushed work.
Verify raw security findings, dedupe them, rerank exploitability, and assign owners.
Find unused bundled code paths and keep only stubs that rebuild and pass tests.
Refresh the README coverage badge by running coverage and rewriting the shields.io badge line.
Promote soak-cleared dependency exclusions, drop expired dates, and reconcile the lockfile.
Read-only DRY sweep of fleet hooks and oxlint rules for overlap and consolidation.
Resolve lockstep manifest drift by pipelining version-pin rows and reporting parity rows.
Refresh current AI model pricing data from vendor sources and update fleet pricing constants.
Resolve Dependabot alerts by bumping, overriding, patching, or dismissing with evidence.
Run repo maintenance: updates, lockstep, submodules, security, coverage, audits.
Write or review a dual-use DISCLOSURE file; npm Trust & Safety reads it, so every claim must be verifiable.
Writing or reviewing tests, or a slow suite: pick the cheapest seam, keep files parallel-safe.