Search
Security · SQL
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 49 | 49.Waf Web Application Firewall guidance, when to put one in front of an app and how to run it without breaking traffic. | TheDecipherist/ | 338 | — | ~1.4k | Automated safety check: Pass | MIT | 3 mo ago |
| 50 | Scan a source tree for SQL-injection vulnerable patterns: string concatenation into queries, f-string interpolation in SQL, string-format substitution into raw queries, deprecated cursor methods… | jeremylongshore/ | 2.8k | — | ~1.5k | Automated safety check: Pass | MIT | yesterday |
| 51 | A skill your agent uses when you need to write or review programmatic JDBC with Spring — including JdbcClient (Spring Framework 7+) as the default API, JdbcTemplate only where batch/streaming APIs… | jabrena/ | 447 | — | ~975 | Automated safety check: Pass | Apache-2.0 | 3 days ago |
| 52 | Security review checklist for web applications. An agent skill from cohen-liel/hivemind. | cohen-liel/ | 110 | — | ~701 | Automated safety check: Notes | Apache-2.0 | 5 mo ago |
| 53 | Detect and exploit second-order SQL injection vulnerabilities where malicious input is stored in a database and later executed in an unsafe SQL query during a different application operation. | mukul975/ | 34k | — | ~2.3k | Automated safety check: Warn | Apache-2.0 | 1 mo ago |
| 54 | Comprehensive code security audit with AI-powered vulnerability detection. | LeoYeAI/ | 2.2k | — | ~3.7k | Automated safety check: Notes | MIT | 2 mo ago |
| 55 | 扫描代码安全漏洞,检测依赖漏洞、密钥泄露和OWASP安全模式。当用户提到安全扫描、漏洞检测、依赖审计、密钥泄露、API key、OWASP、npm audit、pip-audit或SQL注入/XSS等关键词时触发。 | rongxinzy/ | 154 | — | ~868 | Automated safety check: Pass | MIT | yesterday |
| 56 | 56.Sqli Testing Detect and exploit SQL injection vulnerabilities in web application parameters | NeoTheCapt/ | 143 | — | ~1.2k | Automated safety check: Pass | No licence | 2 mo ago |
| 57 | 服务上线前的 AI 安全审查,聚焦需要理解代码语义和业务逻辑的安全问题. An agent skill from 312362115/claude. | 312362115/ | 107 | — | ~1.3k | Automated safety check: Pass | MIT | 5 mo ago |
| 58 | 当涉及添加身份验证(Authentication)、处理用户输入、操作机密(Secrets)、创建 API 终端节点或实现支付/敏感功能时,请使用此技能。提供全面的安全检查清单和模式。 | xu-xiang/ | 2k | — | ~2.5k | Automated safety check: Notes | MIT | 7 mo ago |
| 59 | 在添加身份验证、处理用户输入、操作机密信息(Secrets)、创建 API 端点以及实现支付/敏感功能时使用此技能。提供全面的安全检查清单和模式。 | xu-xiang/ | 2k | — | ~2.4k | Automated safety check: Notes | MIT | 7 mo ago |
| 60 | 在添加身份验证、处理用户输入、操作机密信息、创建 API 接口或实现支付/敏感功能时使用此技能。提供全面的安全自查清单和模式。 | xu-xiang/ | 2k | — | ~2.4k | Automated safety check: Notes | MIT | 7 mo ago |
| 61 | Use sqlmap to confirm and characterize suspected SQL injection with faithful requests and bounded evidence. | cyberful/ | 135 | — | ~1.1k | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 62 | Trace and test untrusted data through SQL, NoSQL, LDAP, XPath, XML, shell, process, template, expression-language, code-evaluation, log, spreadsheet, mail, header, and browser interpreters. | cyberful/ | 135 | — | ~1.1k | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 63 | Detect sql injection detector operations. An agent skill from jeremylongshore/tons-of-skills-marketplace. | jeremylongshore/ | 2.8k | — | ~585 | Automated safety check: Pass | MIT | yesterday |
| 64 | Analyze detected vulnerabilities to assess realistic exploitability by examining control flow, input sources, sanitization logic, and execution context. | ArabelaTso/ | 253 | — | ~3.5k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 65 | Statically analyze code to detect security vulnerabilities including buffer overflows, injection risks (SQL, command, XSS), insecure deserialization, improper authentication, hard-coded credentials… | ArabelaTso/ | 253 | — | ~2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 66 | 思维链 (Chain-of-Thought) 注入攻击方法论。当目标系统使用 ReAct/CoT 框架进行多步推理、 Agent 依赖中间推理结果做决策、或需要测试思维链完整性时触发。 | wgpsec/ | 1.8k | — | ~640 | Automated safety check: Pass | No licence | today |
| 67 | CTF/靶场 Flag 强制验证流程。当通过任何方式发现疑似 flag 字符串(含 flag{、FLAG{、ctf{ 等格式)时必须立即使用此 skill 验证,不要直接提交。防止因字符截断、编码错误、HTML 实体、base64 不完整解码、hex 截断等原因导致提交错误 flag。即使 flag 看起来完整,也可能存在隐藏字符或编码问题。覆盖 SQL… | wgpsec/ | 1.8k | — | ~644 | Automated safety check: Pass | No licence | today |
| 68 | 基于 OWASP Top 10 (2021) 标准提供代码安全审查,逐项检查 SQL 注入、XSS、SSRF、访问控制、加密失败等常见漏洞,并给出具体的漏洞代码示例与修复方案。当用户需要代码安全审查、安全加固、渗透测试辅助,或提及 OWASP、安全检查、SQL 注入、XSS、代码审计、安全清单等关键词时触发此技能。 | rongxinzy/ | 154 | — | ~3k | Automated safety check: Pass | MIT | yesterday |
| 69 | 安全测试助手 - 专业的应用安全测试与防护专家。适用场景: (1) Web应用安全测试(OWASP Top 10漏洞检测) (2) API安全测试(认证/授权/数据泄露) (3) 安全测试用例设计与评审 (4) 渗透测试方案制定与执行指导 (5) 安全漏洞分析与风险评估 (6) 安全加固建议与最佳实践 (7) 安全合规检查(GDPR/等保) (8) 安全测试报告编写… | chendongqi/ | 126 | — | ~1.7k | Automated safety check: Pass | No licence | 8 mo ago |
| 70 | 70.Go Review Performs security review of arbitrary Go packages, including libraries, frameworks, CLIs, HTTP and gRPC services, and backend applications. | SpecterOps/ | 706 | — | ~2.1k | Automated safety check: Pass | Apache-2.0 | 17 days ago |
| 71 | Java 框架特定漏洞源码审计。当在 Java 白盒审计中需要检测框架层面的已知漏洞模式时触发. An agent skill from wgpsec/AboutSecurity. | wgpsec/ | 1.8k | — | ~1.3k | Automated safety check: Pass | No licence | today |
| 72 | Information disclosure detection — error messages, files, headers, debug endpoints | NeoTheCapt/ | 143 | — | ~1.1k | Automated safety check: Notes | No licence | 2 mo ago |