Skip to main content
Exécutez n'importe quel Skill dans Manus
en un clic
tighten
Profil créateur GitHub

tighten

Vue par dépôt de 13 skills collectés dans 2 dépôts GitHub.

skills collectés
13
dépôts
2
mis à jour
2026-06-10
carte des dépôts

Où se trouvent les skills

Principaux dépôts par nombre de skills collectés, avec leur part dans ce catalogue créateur et leur couverture métier.

explorateur de dépôts

Dépôts et skills représentatifs

frisk-agentic-audit
Analystes en sécurité de l'information

Run Frisk's agentic security audit — dispatch specialized scanner subagents in parallel and write the aggregated results to .frisk/agentic-findings.json so the Frisk CLI can ingest them.

2026-06-10
frisk-scan-auth-flow
Analystes en sécurité de l'information

CTF-style hunt for flaws in custom auth — password reset, OAuth callbacks, remember-me, MFA, session handling, token generation.

2026-06-10
frisk-scan-business-logic-injection
Analystes en sécurité de l'information

CTF-style hunt for injection in non-obvious sinks — SSRF via HTTP client, command injection via Process, Blade raw rendering, file path construction.

2026-06-10
frisk-scan-idor
Analystes en sécurité de l'information

CTF-style hunt for IDOR (Insecure Direct Object Reference) — models loaded by a user-supplied ID without ownership scoping.

2026-06-10
frisk-scan-mass-assignment
Analystes en sécurité de l'information

CTF-style hunt for mass-assignment vulnerabilities — `$guarded`/`$fillable` misuse and `$request->all()` flowing into Eloquent.

2026-06-10
frisk-scan-open-redirect
Analystes en sécurité de l'information

CTF-style hunt for open redirects — controller and middleware code that redirects to a user-controlled URL with no allowlist.

2026-06-10
frisk-scan-privilege-escalation
Analystes en sécurité de l'information

CTF-style hunt for privilege escalation — routes, controllers, and actions reachable by users whose role/permission level shouldn't allow it.

2026-06-10
frisk-scan-prompt-injection
Analystes en sécurité de l'information

CTF-style hunt for prompt injection — user input flowing into LLM message payloads without sandboxing, and trusted LLM responses driving permission decisions or interpolated into Slack/HTML/markdown channels.

2026-06-10
Affichage des 8 principaux skills collectés sur 12 dans ce dépôt.
2 dépôts affichés sur 2
Tous les dépôts sont affichés