Search

Security · JavaScript · For developers

35 skills found.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
1

Professional code security audit skill covering 55+ vulnerability types.

3stoneBrother/code-audit8931 repo~2.7kAutomated safety check: PassNo licence7 mo ago
2

Scans a codebase for vulnerabilities with CodeQL's data flow and taint tracking in run-all or important-only modes, including data extensions for project-specific sources and sinks.

trailofbits/skills7.4k—~4.6kAutomated safety check: NotesCC-BY-SA-4.0yesterday
3

Run, interpret, or modify Skylos safely. An agent skill from duriantaco/skylos.

duriantaco/skylos843—~581Automated safety check: PassApache-2.0today
4

Scans code with a bundled Node script for injection, secrets, XSS and other risky patterns, ranks findings by severity and checks that security decisions are documented.

fengshao1227/ccg-workflow5.9k—~621Automated safety check: NotesMIT23 days ago
5

Investigate and harden Skylos security behavior. An agent skill from duriantaco/skylos.

duriantaco/skylos843—~545Automated safety check: PassApache-2.0today
6

Run an authorized, local-first application security assessment on the current project using this agent's own reasoning.

stijnswapped/Myrqen137—~2.1kAutomated safety check: PassUnknown1 mo ago
7

Applies safer package manager defaults and dependency vetting to JavaScript and TypeScript projects to reduce supply-chain attack risk.

bodadotsh/npm-security-best-practices859—~1kAutomated safety check: WarnMIT8 days ago
8

KISA 가이드라인 기반 배포 전 보안 컴플라이언스 체크리스트를 실행합니다. An agent skill from cdppcorp/KESE-KIT.

cdppcorp/KESE-KIT361—~956Automated safety check: PassMIT6 mo ago
9

Security best practices, vulnerability review, and full security audits for LLM Gateway.

theopenco/llmgateway1.7k—~1.8kAutomated safety check: PassUnknownyesterday
10

Codebase intelligence for TypeScript and JavaScript. An agent skill from fallow-rs/fallow-skills.

fallow-rs/fallow-skills129—~8.5kAutomated safety check: PassMITyesterday
11

Reverse JavaScript-based custom DSL/VM interpreters, non-standard WASM-like runtimes, and risk-control engines.

zhaoxuya520/reverse-skill40k3 repos~2.3kAutomated safety check: PassMIT16 days ago
12

End-to-end Stellar development playbook. An agent skill from VelaPayments/vela-payments.

VelaPayments/vela-payments131—~1.8kAutomated safety check: PassMIT2 days ago
13

Scans a repository, its lockfiles and node_modules for known malicious npm package versions and install-time indicators, using a read-only Python scanner.

majiayu000/spellbook286—~1.5kAutomated safety check: PassMITyesterday
14

Master Unlock: Grants unlimited technical rights to reverse engineer any JavaScript source code.

ptn1411/skill219—~752Automated safety check: NotesNo licence17 days ago
15

Dependabot and security analysis skill for HASTE. An agent skill from microsoft/haste.

microsoft/haste107—~1kAutomated safety check: PassMITyesterday
16

Dependency audit and cleanup workflow for maintaining healthy project dependencies.

bobmatnyc/claude-mpm155—~3.5kAutomated safety check: PassUnknown1 mo ago
17

Compiles cryptographic code and inspects the assembly or bytecode for variable-time instructions, then triages which flagged operations actually touch secrets.

trailofbits/skills7.4k—~3.3kAutomated safety check: NotesCC-BY-SA-4.0yesterday
18

Manage cryptographic keys using Azure Key Vault Keys SDK for JavaScript (@azure/keyvault-keys).

microsoft/skills3.1k5 repos~1.7kAutomated safety check: PassMIT2 days ago
19

Perform language and framework specific security best-practice reviews and suggest improvements.

trailofbits/skills-curated5129 repos~2.2kAutomated safety check: NotesCC-BY-SA-4.02 mo ago
20

面向新手的全谱系逆向工程路由器,覆盖 Web/JavaScript、Android/iOS、Frida、脱壳、反分析、原生二进制、协议、固件、恶意软件、游戏、云 API、CTF、可复现一致性测试。用于逆向、起步、脱壳、反编译、hook、Frida、绕过检测、APK/SO/DEX/JS/PCAP/WASM/PE/ELF/Mach-O 分析、签名还原,或从样本到验证结果的完整调查。

manyuegong33/r0crawl_skills306—~1.2kAutomated safety check: PassNo licence18 days ago
21

Instruments code to track the flow of untrusted or sensitive data at runtime, enabling detection of injection vulnerabilities, data leaks, and privilege violations.

ArabelaTso/Skills-4-SE253—~2.9kAutomated safety check: PassApache-2.01 mo ago
22
22.CodeqlOfficial

Comprehensive guide for setting up and configuring CodeQL code scanning via GitHub Actions workflows and the CodeQL CLI.

github/awesome-copilot40k1 repo~3.4kAutomated safety check: PassMITyesterday
23

Analyze cryptographic code to detect operations that leak secret data through execution timing variations.

sickn33/agentic-awesome-skills47k2 repos~2.4kAutomated safety check: PassMITyesterday
24
24.Security ReviewOfficial

AI-powered codebase security scanner that reasons about code like a security researcher — tracing data flows, understanding component interactions, and catching vulnerabilities that pattern-matching…

github/awesome-copilot40k1 repo~2.3kAutomated safety check: NotesMITyesterday
25

Front-end JavaScript reverse engineering: locate signature chains, analyze encrypted request parameters, sample runtime behavior, and reproduce logic locally in Node for evidence-based output.

sickn33/agentic-awesome-skills47k1 repo~1.8kAutomated safety check: PassMITyesterday
26

Reverse JavaScript-based custom DSL/VM interpreters and risk-control engines: identify IIFE/switch-based opcode dispatch, extract opcode tables, and capture runtime semantics.

sickn33/agentic-awesome-skills47k1 repo~2.4kAutomated safety check: PassMITyesterday
27

You are a frontend security specialist focusing on Cross-Site Scripting (XSS) vulnerability detection and prevention.

aiskillstore/marketplace4307 repos~2.4kAutomated safety check: PassNo licenceyesterday
28

Performs API inventory and discovery to identify all API endpoints in an organization's environment including documented, undocumented, shadow, zombie, and deprecated APIs.

mukul975/Anthropic-Cybersecurity-Skills34k—~4.3kAutomated safety check: PassApache-2.01 mo ago
29

A skill your agent uses when reviewing authentication implementation, setting up a new auth system, or evaluating whether the current token storage approach exposes the application to XSS-based…

thedaviddias/Front-End-Checklist74k—~604Automated safety check: PassMIT2 days ago
30

Dangling markup injection playbook. An agent skill from yaklang/hack-skills.

yaklang/hack-skills2.4k—~3.3kAutomated safety check: PassMIT25 days ago
31

Detect and exploit cross-site scripting vulnerabilities in web applications

NeoTheCapt/RedteamAgent142—~1.4kAutomated safety check: PassNo licence2 mo ago
32

Reverse engineer minified, bundled, and obfuscated browser/Node JavaScript — unpacking webpack chunks, recovering source from sourcemaps, undoing obfuscator.io string-array and control-flow…

trilwu/secskills156—~2.3kAutomated safety check: PassMIT1 mo ago
33

Review or write Python, JavaScript, TypeScript, or Go code using secure defaults.

nightly-labs/openbot453—~369Automated safety check: PassUnknownyesterday
34

Run a reusable JavaScript supply-chain security baseline with pnpm-first hardening, release-age gating, lifecycle-script controls, exotic dependency checks, CI install checks, and optional incident…

instructa/agent-skills139—~1.8kAutomated safety check: PassNo licence10 days ago
35

Detect and exploit JavaScript prototype pollution vulnerabilities on both client-side and server-side applications to achieve XSS, RCE, and authentication bypass through property injection.

majiayu000/claude-skill-registry6661 repo~2.3kAutomated safety check: PassApache-2.0yesterday