Search

Security · Backend development

44 skills found.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
1

Django access control and IDOR security review. An agent skill from getsentry/skills.

getsentry/skills1k3 repos~2.6kAutomated safety check: NotesApache-2.0yesterday
2

Runs and interprets Psalm security (taint) analysis on a Laravel project.

cachethq/core230—~4.7kAutomated safety check: PassUnknown5 days ago
3

Server-Side Template Injection — fingerprint the engine first (Jinja2 / Twig / Velocity / Freemarker / ERB / Smarty / Mako / Handlebars / Pug), then escalate the engine-specific primitive to RCE or…

PentesterFlow/agent1.4k—~1.2kAutomated safety check: PassApache-2.01 mo ago
4

Run the full Spring Boot verification loop — Maven or Gradle build, SpotBugs, PMD, and Checkstyle static analysis, unit and Testcontainers integration tests with JaCoCo coverage, OWASP dependency…

affaan-m/ECC276k5 repos~1.5kAutomated safety check: PassMITtoday
5

Django security best practices, authentication, authorization, CSRF protection, SQL injection prevention, XSS prevention, and secure deployment configurations.

affaan-m/ECC276k5 repos~4kAutomated safety check: NotesMITtoday
6

Django 安全最佳实践、认证、授权、CSRF 防护、SQL 注入预防、XSS 预防和安全部署配置. An agent skill from affaan-m/ECC.

affaan-m/ECC276k3 repos~3.7kAutomated safety check: NotesMITtoday
7

Java Spring Boot 服务中认证/授权、验证、CSRF、密钥、标头、速率限制和依赖安全性的 Spring Security 最佳实践。

affaan-m/ECC276k3 repos~1.6kAutomated safety check: PassMITtoday
8

Review Django security audit patterns for settings and middleware.

IgorWarzocha/Opencode-Workflows122—~1.6kAutomated safety check: NotesNo licence8 mo ago
9

Django security best practices, authentication, authorization, CSRF protection, SQL injection prevention, XSS prevention, and secure deployment configurations.

affaan-m/ECC276k1 repo~4.3kAutomated safety check: NotesMITtoday
10

NVIDIA's runtime safety framework for LLM applications. An agent skill from Orchestra-Research/AI-Research-SKILLs.

Orchestra-Research/AI-Research-SKILLs13k2 repos~1.9kAutomated safety check: WarnMIT3 mo ago
11

Server-Side Template Injection detection→engine-fingerprint→RCE for web apps.

s0ld13rr/pentestcode828—~621Automated safety check: PassMIT8 days ago
12

Detects and exploits Server-Side Template Injection (SSTI) vulnerabilities across Jinja2, Twig, Freemarker, and other template engines to achieve remote code execution.

mukul975/Anthropic-Cybersecurity-Skills34k—~3.1kAutomated safety check: PassApache-2.01 mo ago
13

Detects and exploits JavaScript prototype pollution vulnerabilities in client-side and server-side (Node.js) applications to achieve XSS, RCE, or authentication bypass through property injection…

mukul975/Anthropic-Cybersecurity-Skills34k—~2.3kAutomated safety check: PassApache-2.01 mo ago
14

Audits Rails application security against OWASP Top 10, detects vulnerabilities with Brakeman, and verifies Pundit authorization policies.

ThibautBaissac/rails_ai_agents665—~846Automated safety check: NotesMIT4 mo ago
15

Laravel 框架特效安全审计工具。针对 Laravel 常见鉴权/CSRF/Session/模型填充/Blade 渲染等框架特性进行白盒静态审计,并将风险映射到你现有通用漏洞类型体系(AUTH/CSRF/LOGIC/XSS/CFG 等)。

0xShe/PHP-Code-Audit-Skill4021 repo~821Automated safety check: PassNo licence6 mo ago
16

Buenas prácticas de Spring Security para autenticación/autorización, validación, CSRF, secretos, cabeceras, limitación de velocidad y seguridad de dependencias en servicios Java Spring Boot.

affaan-m/ECC276k—~2.1kAutomated safety check: PassMITtoday
17

Detects and exploits HTTP request smuggling caused by Content-Length/Transfer-Encoding parsing discrepancies between front-end and back-end servers, using Burp Suite Repeater (auto Content-Length…

mukul975/Anthropic-Cybersecurity-Skills34k—~2.8kAutomated safety check: PassApache-2.01 mo ago
18

Server-Side Request Forgery detection→internal-access→proof for web apps.

s0ld13rr/pentestcode828—~660Automated safety check: WarnMIT8 days ago
19

Review secret detection patterns and scanning workflows. An agent skill from IgorWarzocha/Opencode-Workflows.

IgorWarzocha/Opencode-Workflows122—~1.2kAutomated safety check: NotesNo licence8 mo ago
20

Identify CMS, frameworks, and server technology stacks on live hosts.

uphiago/recon-skills1.3k—~2kAutomated safety check: PassMIT1 mo ago
21

Security auditor for Laravel applications. An agent skill from aiskillstore/marketplace.

aiskillstore/marketplace4334 repos~1.1kAutomated safety check: NotesNo licenceyesterday
22

Analyze session management implementations to identify security vulnerabilities in web applications.

jeremylongshore/tons-of-skills-marketplace2.8k—~1.5kAutomated safety check: PassMITtoday
23

Review Vite security audit patterns for SPA and dev server security.

IgorWarzocha/Opencode-Workflows122—~1.2kAutomated safety check: NotesNo licence8 mo ago
24

Hunting skill for cache poison vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter.

elementalsouls/Claude-BugHunter4.8k—~5.7kAutomated safety check: PassMITyesterday
25

Hunting skill for sqli vulnerabilities. An agent skill from elementalsouls/Claude-BugHunter.

elementalsouls/Claude-BugHunter4.8k—~5.5kAutomated safety check: PassMITyesterday
26

API hardening for Express, FastAPI, and serverless. An agent skill from jamditis/claude-skills-journalism.

jamditis/claude-skills-journalism416—~12kAutomated safety check: PassMIT6 days ago
27

Deploys Llama Guard 3 safety classification, NeMo Guardrails programmable dialogue rails, and LLM Guard input/output scanner pipelines as complementary runtime defenses that inspect and constrain…

mukul975/Anthropic-Cybersecurity-Skills34k—~3.1kAutomated safety check: WarnApache-2.01 mo ago
28

Advanced prototype pollution playbook — server-side RCE, client-side gadgets, filter bypasses, and detection techniques.

yaklang/hack-skills2.4k—~2.8kAutomated safety check: PassMIT27 days ago
29

Detect Server-Side Request Forgery (SSRF) vulnerabilities in a codebase using a three-phase approach: recon (find outbound call sites), batched verify (trace user input to destinations in parallel…

utkusen/sast-skills1.3k—~6.7kAutomated safety check: PassMIT6 mo ago
30

Detect Server-Side Template Injection (SSTI) vulnerabilities in a codebase using a three-phase approach: recon (find template rendering sites that use dynamic strings), batched verify (trace user…

utkusen/sast-skills1.3k—~7.5kAutomated safety check: PassMIT6 mo ago
31

Server-side vulnerability testing - SSRF, HTTP Request Smuggling, Path Traversal, File Upload, Insecure Deserialization, and Host Header injection.

transilienceai/communitytools563—~484Automated safety check: PassMIT2 mo ago
32

Use this skill as THE specialized Lightning Web Security (LWS) validator for a Lightning Web Component bundle (.js, .ts, .html, .css, .js-meta.xml) — the canonical LWS/Product-Security review for…

forcedotcom/sf-skills1.1k—~2.6kAutomated safety check: PassApache-2.0yesterday
33

Audit PHP web application source for critical vulnerabilities using PHP's specific sink and footgun catalog — object injection via unserialize and phar:// POP chains, type-juggling and magic-hash…

trilwu/secskills157—~2.8kAutomated safety check: PassMIT1 mo ago
34

Run defensive pre-release security tests for Python web applications.

aiskillstore/marketplace433—~1.2kAutomated safety check: NotesMITyesterday
35

Detect and exploit server-side request forgery to access internal resources and cloud metadata

NeoTheCapt/RedteamAgent143—~768Automated safety check: PassNo licence2 mo ago
36

Provides AWS Key Management Service (KMS) patterns using AWS SDK for Java 2.x.

giuseppe-trisciuoglio/developer-kit357—~3.6kAutomated safety check: NotesMIT1 mo ago
37

Backend tech-stack identification — web servers, runtimes, languages, frameworks, databases, APIs, and CMS via HTTP headers, cookies, error pages, and API discovery.

transilienceai/communitytools563—~381Automated safety check: PassMIT2 mo ago
38

PHP-only security standards for database access, password handling, and input validation.

HoangNguyen0403/agent-skills-standard572—~604Automated safety check: PassMITyesterday
39

Spring Boot 服务的 Spring Security 身份验证/授权、验证、CSRF、密钥、响应头、速率限制和依赖项安全最佳实践。

xu-xiang/everything-claude-code-zh2k—~703Automated safety check: PassMIT7 mo ago
40

Spring Boot 服务的身份验证/授权、校验、CSRF、机密管理、响应头、速率限制及依赖安全的 Spring Security 最佳实践。

xu-xiang/everything-claude-code-zh2k—~1.7kAutomated safety check: PassMIT7 mo ago
41

Assess server-side URL retrieval and network egress during authorized penetration tests or code audits.

cyberful/cyberful135—~867Automated safety check: PassAGPL-3.01 mo ago
42

PHP 框架特定安全审计。当在 PHP 白盒审计中已识别目标使用特定框架、 需要检查框架特有安全机制和常见配置缺陷时触发。

wgpsec/AboutSecurity1.8k—~767Automated safety check: NotesNo licencetoday
43

Server-side template injection detection, engine identification, and RCE

NeoTheCapt/RedteamAgent143—~748Automated safety check: PassNo licence2 mo ago
44

Secure server-side TypeScript input, auth tokens, and injection boundaries.

HoangNguyen0403/agent-skills-standard572—~817Automated safety check: NotesMITyesterday