This skill should be used when the user asks to "test for HTML injection", "inject HTML into web pages", "perform HTML injection attacks", "deface web applications", or "test conten...
Idioma do texto original: inglês
Menu
Skills neste repositório
O SkillsMP coletou 1.315 skills de christophacham/agent-skills-library. Abra uma skill para revisar a origem e os detalhes.
christophacham/agent-skills-libraryMostrando 40 de 1.315 skills coletadas.
This skill should be used when the user asks to "test for HTML injection", "inject HTML into web pages", "perform HTML injection attacks", "deface web applications", or "test conten...
Idioma do texto original: inglês
Expert patterns for HubSpot CRM integration including OAuth authentication, CRM objects, associations, batch operations, webhooks, and custom objects. Covers Node.js and Python SDKs. Use when: hubs...
Idioma do texto original: inglês
Infrastructure as Code security scanning skill for Terraform, CloudFormation, Kubernetes manifests, Helm charts, and ARM templates. This skill should be used when auditing IaC configurations for misconfigurations, scanning Terraform plans, validating…
Idioma do texto original: inglês
This skill should be used when the user asks to "test for insecure direct object references," "find IDOR vulnerabilities," "exploit broken access control," "enumerate user IDs or obje...
Idioma do texto original: inglês
Apply the six principles of ethical persuasion (reciprocity, commitment, social proof, authority, liking, scarcity) to product design, copy, and sales. Use when the user mentions "social proof", "persuasive copy", "why users don't convert", or "ethical…
Idioma do texto original: inglês
Implement Kubernetes security policies including NetworkPolicy, PodSecurityPolicy, and RBAC for production-grade security. Use when securing Kubernetes clusters, implementing network isolation, or ...
Idioma do texto original: inglês
Security auditor for Laravel applications. Analyzes code for vulnerabilities, misconfigurations, and insecure practices using OWASP standards and Laravel security best practices.
Idioma do texto original: inglês
LibAFL is a modular fuzzing library for building custom fuzzers. Use for advanced fuzzing needs, custom mutators, or non-standard fuzzing targets.
Idioma do texto original: inglês
Coverage-guided fuzzer built into LLVM for C/C++ projects. Use for fuzzing C/C++ code that can be compiled with Clang.
Idioma do texto original: inglês
This skill should be used when the user asks to "escalate privileges on Linux", "find privesc vectors on Linux systems", "exploit sudo misconfigurations", "abuse SUID binaries", "ex...
Idioma do texto original: inglês
LLM and AI application security testing skill for prompt injection, jailbreaking, and AI system vulnerabilities. This skill should be used when testing AI/ML applications for security issues, performing prompt injection attacks, testing LLM guardrails,…
Idioma do texto original: inglês
Multi-agent autonomous startup system for Claude Code. Triggers on "Loki Mode". Orchestrates 100+ specialized agents across engineering, QA, DevOps, security, data/ML, business operations,...
Idioma do texto original: inglês
Expert malware analyst specializing in defensive malware research, threat intelligence, and incident response. Masters sandbox analysis, behavioral analysis, and malware family identification.
Idioma do texto original: inglês
Master memory forensics techniques including memory acquisition, process analysis, and artifact extraction using Volatility and related tools. Use when analyzing memory dumps, investigating inciden...
Idioma do texto original: inglês
This skill should be used when the user asks to "use Metasploit for penetration testing", "exploit vulnerabilities with msfconsole", "create payloads with msfvenom", "perform post-exp...
Idioma do texto original: inglês
Expert in launching small, focused SaaS products fast - the indie hacker approach to building profitable software. Covers idea validation, MVP development, pricing, launch strategies, and growing t...
Idioma do texto original: inglês
Microsoft Entra Authentication Events SDK for .NET. Azure Functions triggers for custom authentication extensions.
Idioma do texto original: inglês
Expert in secure mobile coding practices specializing in input validation, WebView security, and mobile-specific security patterns.
Idioma do texto original: inglês
Configure mutual TLS (mTLS) for zero-trust service-to-service communication. Use when implementing zero-trust networking, certificate management, or securing internal service communication.
Idioma do texto original: inglês
Expert network engineer specializing in modern cloud networking, security architectures, and performance optimization.
Idioma do texto original: inglês
Expert integration of Supabase Auth with Next.js App Router Use when: supabase auth next, authentication next.js, login supabase, auth middleware, protected route.
Idioma do texto original: inglês
Use this skill to query your Google NotebookLM notebooks directly from Claude Code for source-grounded, citation-backed answers from Gemini. Browser automation, library management, persistent auth....
Idioma do texto original: inglês
Automatically hunt for high-impact OSS contribution opportunities in trending repositories.
Idioma do texto original: inglês
OSS-Fuzz provides free continuous fuzzing for open source projects. Use when setting up continuous fuzzing infrastructure or enrolling projects.
Idioma do texto original: inglês
This skill should be used when the user asks to "escalate privileges", "get root access", "become administrator", "privesc techniques", "abuse sudo", "exploit SUID binaries", "K...
Idioma do texto original: inglês
Red team tactics principles based on MITRE ATT&CK. Attack phases, detection evasion, reporting.
Idioma do texto original: inglês
This skill should be used when the user asks to "follow red team methodology", "perform bug bounty hunting", "automate reconnaissance", "hunt for XSS vulnerabilities", "enumerate su...
Idioma do texto original: inglês
Codified expertise for returns authorisation, receipt and inspection, disposition decisions, refund processing, fraud detection, and warranty claims management.
Idioma do texto original: inglês
Ruzzy is a coverage-guided Ruby fuzzer by Trail of Bits. Use for fuzzing pure Ruby code and Ruby C extensions.
Idioma do texto original: inglês
Configure Static Application Security Testing (SAST) tools for automated vulnerability detection in application code. Use when setting up security scanning, implementing DevSecOps practices, or aut...
Idioma do texto original: inglês
Software Composition Analysis skill for identifying vulnerable dependencies, license compliance, and supply chain security. This skill should be used when scanning dependencies for CVEs, analyzing SBOM (Software Bill of Materials), checking license…
Idioma do texto original: inglês
This skill should be used when the user asks to "perform vulnerability scanning", "scan networks for open ports", "assess web application security", "scan wireless networks", "detec...
Idioma do texto original: inglês
Expert security auditor specializing in DevSecOps, comprehensive cybersecurity, and compliance frameworks.
Idioma do texto original: inglês
Build security Blue Books for sensitive apps
Idioma do texto original: inglês
Derive security requirements from threat models and business context. Use when translating threats into actionable requirements, creating security user stories, or building security test cases.
Idioma do texto original: inglês
You are a security expert specializing in dependency vulnerability analysis, SBOM generation, and supply chain security. Scan project dependencies across ecosystems to identify vulnerabilities, ass...
Idioma do texto original: inglês
Coordinate multi-layer security scanning and hardening across application, infrastructure, and compliance controls.
Idioma do texto original: inglês
Static Application Security Testing (SAST) for code vulnerability analysis across multiple languages and frameworks
Idioma do texto original: inglês
Analyzes content for E-E-A-T signals and suggests improvements to build authority and trust. Identifies missing credibility elements. Use PROACTIVELY for YMYL topics.
Idioma do texto original: inglês
This skill should be used when the user asks to "perform SMTP penetration testing", "enumerate email users", "test for open mail relays", "grab SMTP banners", "brute force email cre...
Idioma do texto original: inglês