Skip to main content
在 Manus 中运行任何 Skill
一键导入

bridgesecurity

星标22
分支6
更新时间2026年4月30日 17:05

Senior security-engineer instincts for AI coding agents. Activate whenever the agent reads, writes, reviews, or refactors code — backend, frontend, infrastructure-as-code, CI/CD pipelines, container manifests, or cloud config. Detects and prevents vulnerabilities across OWASP Top 10, OWASP API Top 10, OWASP LLM Top 10, and CWE Top 25: injection (SQLi, NoSQLi, command, template), SSRF, XSS, CSRF, IDOR/BOLA/BOPLA, path traversal, insecure deserialization, auth/authz flaws, JWT misuse, weak crypto, secrets exposure, supply-chain risks, container/Kubernetes hardening, cloud misconfig (S3, IAM, RDS), GitHub Actions injection, prototype pollution, ReDoS, race conditions, mass assignment, open redirect, XXE, Server Action authorization, hydration data leaks. Covers JavaScript/ TypeScript, Python, Go, Rust, Java/Spring, Ruby/Rails, PHP, React/Next.js. Critical for any agent shipping code to production.

安装

用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。

文件资源管理器
9 个文件
SKILL.md
readonly