Skip to main content
vigolium
Perfil de criador do GitHub

vigolium

Visão por repositório de 35 skills coletadas em 4 repositórios do GitHub.

skills coletadas
35
repositórios
4
atualizado
19 de ago. de 2026
explorador de repositórios

Repositórios e skills representativas

vigolium-scanner
Analistas de segurança da informação

Use when operating the vigolium CLI for web vulnerability scanning, security testing, or traffic analysis. Covers scanning a URL/spec/raw request, running AI agent scans (autopilot, swarm, audit, query), triaging findings, confirming them with replay/fuzz,…

19 de ago. de 2026
audit
Analistas de segurança da informação

Use when performing repository security analysis that combines application/attack-surface modeling and, depending on mode, advisory intelligence, static analysis, manual exploit-path review, false-positive elimination, PoC construction, and reporting. Applies…

17 de jul. de 2026
vigolium-audit
Analistas de segurança da informação

Use when the user asks to run a security audit, find vulnerabilities in a repo, "audit this codebase", check for exploitable bugs, or otherwise drive `vigolium-audit` — the autonomous multi-agent security auditor. Covers install, mode selection (lite /…

11 de jul. de 2026
last30days
Especialistas em operações de negócios, todos os outros

Researches a topic from the last 30 days across the web, Reddit, and X, surfacing real discussions with engagement metrics and synthesizing them into actionable insights. In an audit, use it for recent domain attack research — newly disclosed CVEs, fresh…

11 de jun. de 2026
idor-blast-radius
Analistas de segurança da informação

When you find an Insecure Direct Object Reference (a URL/body/header parameter that lets you read or write another user's or another tenant's object), discover the ID space, prove the access is unauthorized, quantify the blast radius (how many records…

5 de jun. de 2026
xss-browser-confirm
Analistas de segurança da informação

Turn a suspected Cross-Site Scripting reflection or DOM sink into proof of JavaScript execution by firing a uniquely-tagged dialog in a real headless browser via the browser_probe tool — not by string-matching the response. Covers reflected, stored, and…

5 de jun. de 2026
audit-auth
Analistas de segurança da informação

Audit authentication and session-management code for common issues — weak JWT config, session fixation, password-handling flaws, insecure cookies, broken OAuth flows, and missing auth checks on routes. Use when the user asks to review auth code or when…

23 de mai. de 2026
command-injection-rce
Analistas de segurança da informação

Turn suspected OS command injection (a parameter that lands in a shell or a child process) into proof of remote code execution via an OAST callback, plus one safe demonstration of follow-on impact (read a file, list users, env dump). Use when a parameter…

23 de mai. de 2026
Mostrando 8 de 29 skills coletadas.
Mostrando 4 de 4 repositórios
Todos os repositórios foram exibidos