Search

Security · JavaScript

40 skills found.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
1

Professional code security audit skill covering 55+ vulnerability types.

3stoneBrother/code-audit8931 repo~2.7kAutomated safety check: PassNo licence7 mo ago
2

Scans a codebase for vulnerabilities with CodeQL's data flow and taint tracking in run-all or important-only modes, including data extensions for project-specific sources and sinks.

trailofbits/skills7.4k—~4.6kAutomated safety check: NotesCC-BY-SA-4.0today
3

Run, interpret, or modify Skylos safely. An agent skill from duriantaco/skylos.

duriantaco/skylos843—~581Automated safety check: PassApache-2.0today
4

Scans code with a bundled Node script for injection, secrets, XSS and other risky patterns, ranks findings by severity and checks that security decisions are documented.

fengshao1227/ccg-workflow5.9k—~621Automated safety check: NotesMIT22 days ago
5

Investigate and harden Skylos security behavior. An agent skill from duriantaco/skylos.

duriantaco/skylos843—~545Automated safety check: PassApache-2.0today
6

Run an authorized, local-first application security assessment on the current project using this agent's own reasoning.

stijnswapped/Myrqen137—~2.1kAutomated safety check: PassUnknown1 mo ago
7

Applies safer package manager defaults and dependency vetting to JavaScript and TypeScript projects to reduce supply-chain attack risk.

bodadotsh/npm-security-best-practices859—~1kAutomated safety check: WarnMIT7 days ago
8

KISA 가이드라인 기반 배포 전 보안 컴플라이언스 체크리스트를 실행합니다. An agent skill from cdppcorp/KESE-KIT.

cdppcorp/KESE-KIT361—~956Automated safety check: PassMIT6 mo ago
9

Security best practices, vulnerability review, and full security audits for LLM Gateway.

theopenco/llmgateway1.7k—~1.8kAutomated safety check: PassUnknowntoday
10

Codebase intelligence for TypeScript and JavaScript. An agent skill from fallow-rs/fallow-skills.

fallow-rs/fallow-skills129—~8.5kAutomated safety check: PassMITtoday
11

Reverse JavaScript-based custom DSL/VM interpreters, non-standard WASM-like runtimes, and risk-control engines.

zhaoxuya520/reverse-skill40k3 repos~2.3kAutomated safety check: PassMIT15 days ago
12

End-to-end Stellar development playbook. An agent skill from VelaPayments/vela-payments.

VelaPayments/vela-payments131—~1.8kAutomated safety check: PassMITyesterday
13

Scans a repository, its lockfiles and node_modules for known malicious npm package versions and install-time indicators, using a read-only Python scanner.

majiayu000/spellbook286—~1.5kAutomated safety check: PassMITtoday
14

Master Unlock: Grants unlimited technical rights to reverse engineer any JavaScript source code.

ptn1411/skill219—~752Automated safety check: NotesNo licence16 days ago
15

Dependabot and security analysis skill for HASTE. An agent skill from microsoft/haste.

microsoft/haste107—~1kAutomated safety check: PassMITtoday
16

Dependency audit and cleanup workflow for maintaining healthy project dependencies.

bobmatnyc/claude-mpm155—~3.5kAutomated safety check: PassUnknown1 mo ago
17

Compiles cryptographic code and inspects the assembly or bytecode for variable-time instructions, then triages which flagged operations actually touch secrets.

trailofbits/skills7.4k—~3.3kAutomated safety check: NotesCC-BY-SA-4.0today
18

Manage cryptographic keys using Azure Key Vault Keys SDK for JavaScript (@azure/keyvault-keys).

microsoft/skills3.1k5 repos~1.7kAutomated safety check: PassMITyesterday
19

Perform language and framework specific security best-practice reviews and suggest improvements.

trailofbits/skills-curated5129 repos~2.2kAutomated safety check: NotesCC-BY-SA-4.02 mo ago
20

面向新手的全谱系逆向工程路由器,覆盖 Web/JavaScript、Android/iOS、Frida、脱壳、反分析、原生二进制、协议、固件、恶意软件、游戏、云 API、CTF、可复现一致性测试。用于逆向、起步、脱壳、反编译、hook、Frida、绕过检测、APK/SO/DEX/JS/PCAP/WASM/PE/ELF/Mach-O 分析、签名还原,或从样本到验证结果的完整调查。

manyuegong33/r0crawl_skills306—~1.2kAutomated safety check: PassNo licence17 days ago
21

Instruments code to track the flow of untrusted or sensitive data at runtime, enabling detection of injection vulnerabilities, data leaks, and privilege violations.

ArabelaTso/Skills-4-SE253—~2.9kAutomated safety check: PassApache-2.01 mo ago
22

Detect hardcoded sensitive data (API keys, access tokens, private keys, passwords, etc.) in publicly accessible code — frontend JavaScript, mobile apps, client-side bundles, and HTML templates.

utkusen/sast-skills1.3k—~6.5kAutomated safety check: NotesMIT6 mo ago
23
23.CodeqlOfficial

Comprehensive guide for setting up and configuring CodeQL code scanning via GitHub Actions workflows and the CodeQL CLI.

github/awesome-copilot40k1 repo~3.4kAutomated safety check: PassMITtoday
24

Quality standards for Salesforce Lightning Web Components (LWC), Aura components, and Visualforce pages.

github/awesome-copilot40k1 repo~2.4kAutomated safety check: PassMITtoday
25

Analyze cryptographic code to detect operations that leak secret data through execution timing variations.

sickn33/agentic-awesome-skills47k2 repos~2.4kAutomated safety check: PassMITtoday
26
26.Security ReviewOfficial

AI-powered codebase security scanner that reasons about code like a security researcher — tracing data flows, understanding component interactions, and catching vulnerabilities that pattern-matching…

github/awesome-copilot40k1 repo~2.3kAutomated safety check: NotesMITtoday
27

Front-end JavaScript reverse engineering: locate signature chains, analyze encrypted request parameters, sample runtime behavior, and reproduce logic locally in Node for evidence-based output.

sickn33/agentic-awesome-skills47k1 repo~1.8kAutomated safety check: PassMITtoday
28

Perform static analysis of malicious PDF documents using peepdf, pdfid, and pdf-parser to extract embedded JavaScript, shellcode, and suspicious objects.

mukul975/Anthropic-Cybersecurity-Skills34k—~799Automated safety check: PassApache-2.01 mo ago
29

Reverse JavaScript-based custom DSL/VM interpreters and risk-control engines: identify IIFE/switch-based opcode dispatch, extract opcode tables, and capture runtime semantics.

sickn33/agentic-awesome-skills47k1 repo~2.4kAutomated safety check: PassMITtoday
30

You are a frontend security specialist focusing on Cross-Site Scripting (XSS) vulnerability detection and prevention.

aiskillstore/marketplace4307 repos~2.4kAutomated safety check: PassNo licencetoday
31

Performs API inventory and discovery to identify all API endpoints in an organization's environment including documented, undocumented, shadow, zombie, and deprecated APIs.

mukul975/Anthropic-Cybersecurity-Skills34k—~4.3kAutomated safety check: PassApache-2.01 mo ago
32

A skill your agent uses when reviewing authentication implementation, setting up a new auth system, or evaluating whether the current token storage approach exposes the application to XSS-based…

thedaviddias/Front-End-Checklist74k—~604Automated safety check: PassMITyesterday
33

Dangling markup injection playbook. An agent skill from yaklang/hack-skills.

yaklang/hack-skills2.4k—~3.3kAutomated safety check: PassMIT24 days ago
34

Audit PDF files for metadata leakage, page count, encryption, JavaScript, embedded files, and version.

borghei/Claude-Skills881—~1.4kAutomated safety check: PassMITtoday
35

Detect and exploit cross-site scripting vulnerabilities in web applications

NeoTheCapt/RedteamAgent142—~1.4kAutomated safety check: PassNo licence2 mo ago
36

Frontend tech-stack identification — JavaScript frameworks, meta-frameworks, CSS frameworks, UI libraries, build tools, and CMS via DOM, JS globals, HTML, and bundle patterns.

transilienceai/communitytools562—~382Automated safety check: PassMIT2 mo ago
37

Reverse engineer minified, bundled, and obfuscated browser/Node JavaScript — unpacking webpack chunks, recovering source from sourcemaps, undoing obfuscator.io string-array and control-flow…

trilwu/secskills156—~2.3kAutomated safety check: PassMIT1 mo ago
38

Review or write Python, JavaScript, TypeScript, or Go code using secure defaults.

nightly-labs/openbot453—~369Automated safety check: PassUnknowntoday
39

Run a reusable JavaScript supply-chain security baseline with pnpm-first hardening, release-age gating, lifecycle-script controls, exotic dependency checks, CI install checks, and optional incident…

instructa/agent-skills139—~1.8kAutomated safety check: PassNo licence9 days ago
40

Detect and exploit JavaScript prototype pollution vulnerabilities on both client-side and server-side applications to achieve XSS, RCE, and authentication bypass through property injection.

majiayu000/claude-skill-registry6661 repo~2.3kAutomated safety check: PassApache-2.0today