Search
Security · C++ · For developers
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Finds and fixes out-of-range output writes in ONNX Runtime operator shape-inference functions where a getNumOutputs guard admits too few outputs. | microsoft/ | 22k | — | ~3.3k | Automated safety check: Pass | MIT | today |
| 2 | Professional code security audit skill covering 55+ vulnerability types. | 3stoneBrother/ | 892 | 1 repo | ~2.7k | Automated safety check: Pass | No licence | 7 mo ago |
| 3 | Scans a codebase for vulnerabilities with CodeQL's data flow and taint tracking in run-all or important-only modes, including data extensions for project-specific sources and sinks. | trailofbits/ | 7.4k | — | ~4.6k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |
| 4 | Ensure that C and C++/CLI types are documented with XML comments and follow best practices for documentation. | MichaelGrafnetter/ | 2k | — | ~1.2k | Automated safety check: Pass | MIT | 27 days ago |
| 5 | Perform a systematic code review of all source files, focusing on security, performance, backwards compatibility, and design principles. | MichaelGrafnetter/ | 2k | — | ~4k | Automated safety check: Pass | MIT | 27 days ago |
| 6 | Reference vocabulary for designing instrumented harnesses that drive vulnerability discovery — design classes (trigger-driven vs coverage-driven), tiered scope (T1 isolated function / T2… | provos/ | 612 | — | ~5.7k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 7 | Build, test, or update the iccDEV ClusterFuzzLite libFuzzer integration across ASan, UBSan, and MSan. | InternationalColorConsortium/ | 183 | — | ~1.5k | Automated safety check: Pass | BSD-3-Clause | today |
| 8 | Guides writing and improving fuzzing harnesses for C, C++ and Rust so random byte input gets translated into structured, reproducible test cases for the target code. | trailofbits/ | 7.4k | 1 repo | ~5.3k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 9 | Compiles cryptographic code and inspects the assembly or bytecode for variable-time instructions, then triages which flagged operations actually touch secrets. | trailofbits/ | 7.4k | — | ~3.3k | Automated safety check: Notes | CC-BY-SA-4.0 | yesterday |
| 10 | Steers C++ code toward C++20, C++23 and C++26 idioms such as smart pointers, concepts, std::expected and std::print, with a security focus. | trailofbits/ | 7.4k | — | ~2.2k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 11 | Patches checksums, hash checks, time-based seeds and other non-deterministic state out of fuzzing builds so the fuzzer reaches deeper code, with production behavior intact. | trailofbits/ | 7.4k | — | ~4k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 12 | Instruments code to track the flow of untrusted or sensitive data at runtime, enabling detection of injection vulnerabilities, data leaks, and privilege violations. | ArabelaTso/ | 253 | — | ~2.9k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 13 | Sets up and runs AFL++ for multi-core fuzzing of C/C++ projects built with afl-clang-fast or afl-gcc-fast. | trailofbits/ | 7.4k | — | ~5.6k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 14 | Sets up and runs libFuzzer, the coverage-guided fuzzer built into LLVM, on C/C++ code that compiles with Clang. | trailofbits/ | 7.4k | — | ~6.1k | Automated safety check: Pass | CC-BY-SA-4.0 | yesterday |
| 15 | Comprehensive guide for setting up and configuring CodeQL code scanning via GitHub Actions workflows and the CodeQL CLI. | github/ | 40k | 1 repo | ~3.4k | Automated safety check: Pass | MIT | today |
| 16 | Analyze cryptographic code to detect operations that leak secret data through execution timing variations. | sickn33/ | 47k | 2 repos | ~2.4k | Automated safety check: Pass | MIT | today |
| 17 | Launch stealth Chromium with C++ fingerprint patches for anti-bot bypass. | uphiago/ | 1.3k | — | ~2.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 18 | 18.Fuzzing Implements, registers, and verifies fuzz tests in Chromium. An agent skill from nwjs/chromium.src. | nwjs/ | 160 | — | ~1.1k | Automated safety check: Pass | BSD-3-Clause | 5 days ago |
| 19 | Writing Windows-safe Infinite code from macOS: keep WIN32 out of nodes, three-sided Platform:: obligation, Windows trap catalogue (WASAPI, WinMM, GDI glyphs, Media Foundation stride, wide paths… | n1m21n/ | 268 | — | ~4.6k | Automated safety check: Pass | Unknown | yesterday |
| 20 | 20.Cpp A skill your agent uses when writing, reviewing, modernizing, building, or debugging C++ - RAII and resource lifetime, smart-pointer ownership, move semantics and the Rule of Zero/Five, target-based… | ericrisco/ | 174 | — | ~4k | Automated safety check: Pass | MIT | yesterday |
| 21 | Audit C, C++, unsafe Rust, native extensions, parsers, codecs, FFI boundaries, and systems code for memory corruption and low-level exploitation risk. | cyberful/ | 135 | — | ~829 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 22 | 22.Fuzzing Fuzzing skill for automated input-driven bug finding in C/C++. | mohitmishra786/ | 253 | — | ~2.1k | Automated safety check: Pass | MIT | 3 mo ago |
| 23 | Static analysis skill for C/C++ codebases. An agent skill from mohitmishra786/low-level-dev-skills. | mohitmishra786/ | 253 | — | ~1.4k | Automated safety check: Pass | MIT | 3 mo ago |
| 24 | 函数式语言运行时逆向(Haskell/OCaml):闭包/堆对象模型、调用约定、数据流优先策略. An agent skill from dslsdzc/rev-skills. | dslsdzc/ | 130 | — | ~1.4k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 25 | 25.Re Nim Nim 编译产物逆向:运行时识别、NimString 结构、异常与 GC 路径. An agent skill from dslsdzc/rev-skills. | dslsdzc/ | 130 | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 26 | 26.Re Zig Zig 编译产物逆向:产物识别、comptime 展开、panic/错误处理路径、C ABI 边界. An agent skill from dslsdzc/rev-skills. | dslsdzc/ | 130 | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | 4 days ago |
| 27 | Statically analyze code to detect security vulnerabilities including buffer overflows, injection risks (SQL, command, XSS), insecure deserialization, improper authentication, hard-coded credentials… | ArabelaTso/ | 253 | — | ~2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 28 | 28.Re Cpp Abi 现代 C++ 二进制逆向:RTTI/异常/虚表恢复、ABI 识别、mangling 解码. An agent skill from dslsdzc/rev-skills. | dslsdzc/ | 130 | — | ~996 | Automated safety check: Pass | Apache-2.0 | 4 days ago |