Search
Development · Secure coding
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Finds and fixes out-of-range output writes in ONNX Runtime operator shape-inference functions where a getNumOutputs guard admits too few outputs. | microsoft/ | 22k | — | ~3.3k | Automated safety check: Pass | MIT | today |
| 2 | Runs claude-flow CLI security scans for input validation, path traversal, SQL injection, XSS, hardcoded secrets and known CVEs, and writes an audit report. | ruvnet/ | 74k | 2 repos | ~823 | Automated safety check: Pass | MIT | today |
| 3 | Reviews code or recent changes for bugs, security issues, performance problems and maintainability, reporting findings by severity with the reason and a fix. | pretend1111/ | 494 | 1 repo | ~502 | Automated safety check: Pass | Unknown | 5 mo ago |
| 4 | Checks a codebase for hardcoded secrets, vulnerable dependencies, weak input handling, weak authentication and unsafe transport settings before deployment or merge. | TheDecipherist/ | 550 | — | ~1.3k | Automated safety check: Notes | MIT | 5 mo ago |
| 5 | Applies safer package manager defaults and dependency vetting to JavaScript and TypeScript projects to reduce supply-chain attack risk. | bodadotsh/ | 859 | — | ~1k | Automated safety check: Warn | MIT | 8 days ago |
| 6 | Gives the agent a five-step review routine that reads the full file first, labels each finding as bug, security, performance, style or suggestion, and ends with a summary. | FareedKhan-dev/ | 298 | — | ~809 | Automated safety check: Pass | MIT | 6 mo ago |
| 7 | Reviews WordPress plugin, theme and block code after an agent writes or edits it, catching missing escaping, nonces, capability checks and unprepared queries. | amElnagdy/ | 1.3k | — | ~2.4k | Automated safety check: Pass | MIT | 3 mo ago |
| 8 | Reviews APIs, configuration schemas and library interfaces for footguns, the designs where the easy path leads to insecure use, using a four-phase analysis. | trailofbits/ | 7.4k | 3 repos | ~3k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 9 | Finds sensitive data that C, C++ or Rust code never wipes from memory, including wipes the compiler optimizes away, using source, assembly and control-flow analysis. | trailofbits/ | 7.4k | 4 repos | ~5.9k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |
| 10 | Reviews AdvPL and TLPP source against SonarQube rules, ProtheusDOC requirements, security, performance and Protheus conventions, and reports findings by severity. | totvs/ | 143 | — | ~2.5k | Automated safety check: Pass | MIT | 3 days ago |
| 11 | Plans a change to the NGINX Ingress Controller before any code: acceptance criteria, security impact, affected layers, invariants, test surface and an ordered file list. | nginx/ | 5.1k | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | today |
| 12 | Runs untrusted or AI-generated code in isolated Deno Sandbox microVMs using the @deno/sandbox SDK, with lifecycle, process and streaming guidance. | denoland/ | 100 | — | ~2.7k | Automated safety check: Pass | MIT | 2 mo ago |
| 13 | Plans and builds full-stack features with frontend, backend and security handled together, including a written design and a security checklist before any code. | Jeffallan/ | 12k | — | ~1.5k | Automated safety check: Pass | MIT | 5 days ago |
| 14 | Develops WordPress themes, plugins, Gutenberg blocks and WooCommerce features with nonce, escaping and capability checks, phpcs linting and caching tuned for speed. | Jeffallan/ | 12k | — | ~1.6k | Automated safety check: Pass | MIT | 5 days ago |
| 15 | Steers C++ code toward C++20, C++23 and C++26 idioms such as smart pointers, concepts, std::expected and std::print, with a security focus. | trailofbits/ | 7.4k | — | ~2.2k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 16 | A ten-category security checklist for the agent-core codebase, to run before any security-sensitive change or pull request: secrets, input validation, SQL, access control and prompt injection. | openJiuwen-ai/ | 442 | — | ~1.7k | Automated safety check: Notes | Apache-2.0 | today |
| 17 | 17.Reviewdog Automated code review and security linting integration for CI/CD pipelines using reviewdog. | AgentSecOps/ | 220 | 1 repo | ~3k | Automated safety check: Pass | Unknown | 5 mo ago |
| 18 | Expert in secure backend coding practices specializing in input validation, authentication, and API security. | aiskillstore/ | 430 | 7 repos | ~2.6k | Automated safety check: Pass | No licence | yesterday |
| 19 | Apply security-conscious thinking when generating or modifying code. | techygarg/ | 198 | — | ~1.5k | Automated safety check: Pass | MIT | 2 days ago |
| 20 | Configure and audit security review capabilities as one layer in a defense-in-depth pull-request program. | jeremylongshore/ | 2.8k | — | ~1.1k | Automated safety check: Pass | MIT | today |
| 21 | Reviews a design or change for security before it ships — authentication and authorization, data handling, secrets, dependencies, and the secure-development practices around it. | cbrock84/ | 2k | — | ~1.1k | Automated safety check: Pass | MIT | 21 days ago |
| 22 | Perform adversarial Python security code reviews grounded in the OpenSSF Secure Coding Guide for Python. | SpecterOps/ | 702 | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | 15 days ago |
| 23 | 23.Webhint Use webhint in .NET repositories that ship browser-facing frontends. | managedcode/ | 486 | — | ~1.3k | Automated safety check: Pass | MIT | yesterday |