Skip to main content
Exécutez n'importe quel Skill dans Manus
en un clic
Dépôt GitHub

laravelversions

laravelversions contient 12 skills collectées depuis tighten, avec une couverture métier par dépôt et des pages de détail sur le site.

skills collectés
12
Stars
98
mis à jour
2026-06-10
Forks
47
Couverture métier
1 catégories métier · 100% classifié
explorateur de dépôts

Skills dans ce dépôt

frisk-agentic-audit
Analystes en sécurité de l'information

Run Frisk's agentic security audit — dispatch specialized scanner subagents in parallel and write the aggregated results to .frisk/agentic-findings.json so the Frisk CLI can ingest them.

2026-06-10
frisk-scan-auth-flow
Analystes en sécurité de l'information

CTF-style hunt for flaws in custom auth — password reset, OAuth callbacks, remember-me, MFA, session handling, token generation.

2026-06-10
frisk-scan-business-logic-injection
Analystes en sécurité de l'information

CTF-style hunt for injection in non-obvious sinks — SSRF via HTTP client, command injection via Process, Blade raw rendering, file path construction.

2026-06-10
frisk-scan-idor
Analystes en sécurité de l'information

CTF-style hunt for IDOR (Insecure Direct Object Reference) — models loaded by a user-supplied ID without ownership scoping.

2026-06-10
frisk-scan-mass-assignment
Analystes en sécurité de l'information

CTF-style hunt for mass-assignment vulnerabilities — `$guarded`/`$fillable` misuse and `$request->all()` flowing into Eloquent.

2026-06-10
frisk-scan-open-redirect
Analystes en sécurité de l'information

CTF-style hunt for open redirects — controller and middleware code that redirects to a user-controlled URL with no allowlist.

2026-06-10
frisk-scan-privilege-escalation
Analystes en sécurité de l'information

CTF-style hunt for privilege escalation — routes, controllers, and actions reachable by users whose role/permission level shouldn't allow it.

2026-06-10
frisk-scan-prompt-injection
Analystes en sécurité de l'information

CTF-style hunt for prompt injection — user input flowing into LLM message payloads without sandboxing, and trusted LLM responses driving permission decisions or interpolated into Slack/HTML/markdown channels.

2026-06-10
frisk-scan-race-conditions
Analystes en sécurité de l'information

CTF-style hunt for race conditions and atomicity bugs — read-then-write on money/credits/quotas without locking, non-idempotent webhook handlers, double-spend windows.

2026-06-10
frisk-scan-sensitive-data-exposure
Analystes en sécurité de l'information

CTF-style hunt for tokens, hashes, secrets, and PII leaking via API responses, logs, error pages, or cached views.

2026-06-10
frisk-scan-tenancy
Analystes en sécurité de l'information

CTF-style hunt for cross-tenant data leakage in multi-tenant apps — queries that skip tenant scoping, jobs that drop tenant context, cache keys missing tenant prefix, shared storage paths.

2026-06-10
frisk-scan-webhook-integrity
Analystes en sécurité de l'information

CTF-style hunt for unverified or weakly-verified inbound webhooks — missing HMAC checks, timing-unsafe comparisons, missing replay protection, hand-rolled signed-URL verification.

2026-06-10