Language
PHP agent skills, page 8
PHP skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 337 | CTF/靶场 Flag 强制验证流程。当通过任何方式发现疑似 flag 字符串(含 flag{、FLAG{、ctf{ 等格式)时必须立即使用此 skill 验证,不要直接提交。防止因字符截断、编码错误、HTML 实体、base64 不完整解码、hex 截断等原因导致提交错误 flag。即使 flag 看起来完整,也可能存在隐藏字符或编码问题。覆盖 SQL… | wgpsec/ | 1.8k | — | ~644 | Automated safety check: Pass | No licence | 4 days ago |
| 338 | 338.Ctf Web Recon CTF Web 挑战专用侦察方法。当面对 CTF 靶场目标需要快速发现攻击入口时使用。与真实渗透的 recon 不同——CTF 是单个应用、有意留线索、侦察应在 2-3 轮内完成。覆盖源码泄露、备份文件、隐藏路径、页面线索提取 | wgpsec/ | 1.8k | — | ~624 | Automated safety check: Notes | No licence | 4 days ago |
| 339 | 339.Dirsearch Fuzz 使用 dirsearch 进行 Web 目录和文件暴力枚举。当需要发现隐藏的目录、文件、后台路径、备份文件时使用。dirsearch 内置高质量字典,支持多扩展名、递归扫描、状态码过滤。任何涉及目录枚举、路径发现、后台查找、敏感文件发现的场景都应使用此技能 | wgpsec/ | 1.8k | — | ~520 | Automated safety check: Pass | No licence | 4 days ago |
| 340 | 340.Persist Maintain 权限持久化方法论。当已获取目标系统权限后需要维持长期访问时使用。覆盖 Linux(cron/SSH key/webshell) 和 Windows(计划任务/服务/注册表/WMI) 持久化技术,以及 Web 层面的 webshell 部署和隐蔽策略 | wgpsec/ | 1.8k | — | ~398 | Automated safety check: Pass | No licence | 4 days ago |
| 341 | 当拿到源码、代码片段、反编译产物,或用户要求代码审计时调用。负责输入点→传播链→危险函数Sink的静态审计,跨语言(PHP/Java/Python/Node/Go)危险函数速查,输出可疑调用链与缺陷触发条件。 | zhaji2333/ | 113 | — | ~409 | Automated safety check: Pass | MIT | 23 days ago |
| 342 | Coding principles and conventions for the Shopsys monorepo — DRY/KISS/reuse, comment and docblock quality, test-code rules, the per-folder visibility/typing rules (packages vs project-base vs… | shopsys/ | 350 | — | ~1.1k | Automated safety check: Pass | Unknown | today |
| 343 | 343.Php Tooling Configure PHP ecosystem tooling, dependency management, and static analysis. | HoangNguyen0403/ | 571 | — | ~615 | Automated safety check: Pass | MIT | yesterday |
| 344 | ext-php-rs conventions for building PHP 8.2+ native extensions from a Rust core: phpclass/phpfunction macros, Zval conversion, PhpException mapping, php.ini loading, and PHPUnit testing. | Goldziher/ | 158 | — | ~357 | Automated safety check: Pass | MIT | today |
| 345 | 345.Form Testing Test WordPress form submissions and email delivery. An agent skill from aiskillstore/marketplace. | aiskillstore/ | 430 | — | ~2k | Automated safety check: Notes | No licence | yesterday |
| 346 | 346.Jsonlogic Work with JsonLogic business rules — the JSON-based conditional-logic format at jsonlogic.com. | aiskillstore/ | 430 | — | ~2.8k | Automated safety check: Pass | MIT | yesterday |
| 347 | PHP 源码认证、配置与逻辑类漏洞审计。当在 PHP 白盒审计中需要检测认证绕过、 权限控制、安全配置、密码学误用或业务逻辑漏洞时触发。 | wgpsec/ | 1.8k | — | ~704 | Automated safety check: Pass | No licence | 4 days ago |
| 348 | 348.Php File Audit PHP 源码文件操作类漏洞审计。当在 PHP 白盒审计中需要检测文件相关漏洞时触发. An agent skill from wgpsec/AboutSecurity. | wgpsec/ | 1.8k | — | ~810 | Automated safety check: Pass | No licence | 4 days ago |
| 349 | PHP 框架特定安全审计。当在 PHP 白盒审计中已识别目标使用特定框架、 需要检查框架特有安全机制和常见配置缺陷时触发。 | wgpsec/ | 1.8k | — | ~767 | Automated safety check: Notes | No licence | 4 days ago |
| 350 | PHP 源码前端交互类漏洞审计。当在 PHP 白盒审计中需要检测前端安全相关漏洞时触发. An agent skill from wgpsec/AboutSecurity. | wgpsec/ | 1.8k | — | ~777 | Automated safety check: Pass | No licence | 4 days ago |
| 351 | PHP 源码注入类漏洞审计。当在 PHP 白盒审计中需要检测注入类漏洞时触发. An agent skill from wgpsec/AboutSecurity. | wgpsec/ | 1.8k | — | ~965 | Automated safety check: Pass | No licence | 4 days ago |
| 352 | PHP 源码序列化与模板类漏洞审计。当在 PHP 白盒审计中需要检测反序列化、XML 解析或模板注入漏洞时触发. An agent skill from wgpsec/AboutSecurity. | wgpsec/ | 1.8k | — | ~689 | Automated safety check: Pass | No licence | 4 days ago |
| 353 | Information disclosure detection — error messages, files, headers, debug endpoints | NeoTheCapt/ | 142 | — | ~1.1k | Automated safety check: Notes | No licence | 2 mo ago |
| 354 | 354.Ssti Testing Server-side template injection detection, engine identification, and RCE | NeoTheCapt/ | 142 | — | ~748 | Automated safety check: Pass | No licence | 2 mo ago |
| 355 | 355.Laravel Idioms Laravel framework patterns: Eloquent ORM relationships, N+1 query prevention, Form Request validation, Service layer architecture, and Pest/PHPUnit testing. | irahardianto/ | 157 | — | ~624 | Automated safety check: Pass | MIT | 3 days ago |
| 356 | 356.Php Idioms Modern PHP 8.x idioms: strict types, typed properties, enums, readonly classes, match expressions, and PSR standards. | irahardianto/ | 157 | — | ~883 | Automated safety check: Pass | MIT | 3 days ago |
| 357 | 357.Php Concurrency Implement concurrency and non-blocking I/O in modern PHP. An agent skill from HoangNguyen0403/agent-skills-standard. | HoangNguyen0403/ | 571 | — | ~683 | Automated safety check: Pass | MIT | yesterday |
| 358 | Implement modern PHP error and exception handling patterns. An agent skill from HoangNguyen0403/agent-skills-standard. | HoangNguyen0403/ | 571 | — | ~488 | Automated safety check: Pass | MIT | yesterday |
| 359 | 359.Php Testing Write unit and integration tests for PHP applications with PHPUnit and Pest. | HoangNguyen0403/ | 571 | — | ~929 | Automated safety check: Pass | MIT | yesterday |
| 360 | 360.Quality Checks Run code quality tools: PHP-CS-Fixer for style, PHPStan for static analysis, and type safety checks | dev-toolings/ | 222 | — | ~381 | Automated safety check: Notes | MIT | 3 days ago |