Search

Web application vulnerabilities

464 skills found, page 6.
Search results
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
241

You are a frontend security specialist focusing on Cross-Site Scripting (XSS) vulnerability detection and prevention.

aiskillstore/marketplace4337 repos~2.4kAutomated safety check: PassNo licenceyesterday
242

Expert in secure frontend coding practices specializing in XSS prevention, output sanitization, and client-side security patterns.

aiskillstore/marketplace4337 repos~3kAutomated safety check: PassNo licenceyesterday
243

Static Application Security Testing (SAST) for code vulnerability analysis across multiple languages and frameworks

aiskillstore/marketplace4337 repos~3.7kAutomated safety check: PassNo licenceyesterday
244

Application security defense knowledge for builders. An agent skill from telagod/code-abyss.

telagod/code-abyss244—~777Automated safety check: PassMIT2 mo ago
245

Parse Apache and Nginx access logs to detect SQL injection attempts, local file inclusion, directory traversal, web scanner fingerprints, and brute-force patterns.

mukul975/Anthropic-Cybersecurity-Skills34k—~644Automated safety check: PassApache-2.01 mo ago
246

Conducts penetration testing of iOS and Android mobile applications following the OWASP Mobile Application Security Testing Guide (MASTG) to identify vulnerabilities in data storage, network…

mukul975/Anthropic-Cybersecurity-Skills34k—~3.2kAutomated safety check: PassApache-2.01 mo ago
247

Analyze WAF (ModSecurity/AWS WAF/Cloudflare) logs to detect SQL injection attack campaigns.

mukul975/Anthropic-Cybersecurity-Skills34k—~564Automated safety check: PassApache-2.01 mo ago
248

Identifies and exploits SQL injection vulnerabilities in web applications during authorized penetration tests using manual techniques and automated tools like sqlmap.

mukul975/Anthropic-Cybersecurity-Skills34k—~3.2kAutomated safety check: PassApache-2.01 mo ago
249

Detecting and exploiting SQL injection vulnerabilities using sqlmap to extract database contents during authorized penetration tests.

mukul975/Anthropic-Cybersecurity-Skills34k—~2.3kAutomated safety check: PassApache-2.01 mo ago
250

Performs API inventory and discovery to identify all API endpoints in an organization's environment including documented, undocumented, shadow, zombie, and deprecated APIs.

mukul975/Anthropic-Cybersecurity-Skills34k—~4.3kAutomated safety check: PassApache-2.01 mo ago
251

A skill your agent uses when reviewing authentication implementation, setting up a new auth system, or evaluating whether the current token storage approach exposes the application to XSS-based…

thedaviddias/Front-End-Checklist74k—~604Automated safety check: PassMIT5 days ago
252

Flags API endpoints whose data or actions look like they should need a login but currently don't, as part of authorized security testing.

uphiago/recon-skills1.3k—~2kAutomated safety check: PassMIT1 mo ago
253

Automatically discover security skills when working with authentication, authorization, input validation, security headers, vulnerability assessment, or secrets management.

rand/cc-polymath181—~1.9kAutomated safety check: PassMIT7 mo ago
254

PreToolUse security-anti-pattern hook for Claude Code. An agent skill from alirezarezvani/claude-skills.

alirezarezvani/claude-skills28k—~1.9kAutomated safety check: PassMIT1 mo ago
255

Hunt LLM/AI feature bugs — prompt injection, indirect injection, exfiltration via tool-use/markdown, ASCII smuggling, agentic AI security (OWASP Agentic Apps 2026, ASI01-ASI10).

elementalsouls/Claude-BugHunter4.8k—~4kAutomated safety check: WarnMITyesterday
256
256.Add AI WebapiOfficial

Integrates Power Pages generative-AI summarization APIs (PREVIEW) into a Single Page Application (SPA) site — the Search Summary API and the Data Summarization API — on any record-detail or list page.

microsoft/power-platform-skills984—~13kAutomated safety check: NotesMITyesterday
257

Enhance SEO (meta tags, semantic HTML) and security (vulnerability checks, hardening).

ww-w-ai/bkit-claude-code601—~2.3kAutomated safety check: PassApache-2.014 days ago
258

Check code for the most common, high-risk security vulnerabilities (broken access control, tenant isolation, injection, secrets, SSRF, auth/session, unsafe file handling, mass assignment) before it…

trycompai/comp2k—~853Automated safety check: PassAGPL-3.0yesterday
259

This skill should be used when the user asks to "intercept HTTP traffic", "modify web requests", "use Burp Suite for testing", "perform web vulnerability scanning", "test with Burp ...

aiskillstore/marketplace4334 repos~2.7kAutomated safety check: PassNo licenceyesterday
260

Server-Side Request Forgery detection→internal-access→proof for web apps.

s0ld13rr/pentestcode828—~660Automated safety check: WarnMIT9 days ago
261

Expert security auditor specializing in DevSecOps, comprehensive cybersecurity, and compliance frameworks.

aiskillstore/marketplace4336 repos~2.6kAutomated safety check: PassNo licenceyesterday
262

PHP Web 源码 CSRF 审计工具。识别状态变更接口是否受 CSRF 保护,追踪 token 生成、校验与绕过条件,输出可利用性分级、PoC 与修复建议(禁止省略)。

0xShe/PHP-Code-Audit-Skill4021 repo~398Automated safety check: PassNo licence6 mo ago
263

PHP Web 源码 XSS 审计工具。识别用户输入进入输出上下文(HTML/属性/JS/URL/模板),分析转义与防护策略,输出可利用性分级、PoC 与修复建议(禁止省略)。

0xShe/PHP-Code-Audit-Skill4021 repo~370Automated safety check: PassNo licence6 mo ago
264

XSLT injection testing: processor fingerprinting, XXE and document() SSRF, EXSLT write primitives, PHP/Java/.NET extension RCE surfaces.

langbyyi/CyberStrikeAI-SRC1291 repo~3kAutomated safety check: PassApache-2.04 days ago
265

RLS validation, security audits, OWASP compliance, and vulnerability scanning.

bybren-llc/safe-agentic-workflow423—~1.4kAutomated safety check: NotesMIT2 mo ago
266

Default code-quality route for broad code review, PR review, maintainability, correctness, and regression-risk checks.

foryourhealth111-pixel/Vibe-Skills3.6k—~1.4kAutomated safety check: NotesApache-2.01 mo ago
267

Zimbra SOAP user enum, CVE-2022-37042, SSRF when webmail. An agent skill from uphiago/recon-skills.

uphiago/recon-skills1.3k—~2.2kAutomated safety check: PassMIT1 mo ago
268

Audit application source code against the OWASP Top 10 (2021) vulnerability categories — broken access control, cryptographic failures, injection, insecure design, security misconfiguration…

briiirussell/cybersecurity-skills413—~8.6kAutomated safety check: NotesMIT4 mo ago
269

Review the implementation source code of MCP (Model Context Protocol) servers, clients, and tool handlers against a security baseline — authentication, sessions, rate limiting, input-schema…

github/awesome-copilot40k—~5.2kAutomated safety check: PassMIT2 days ago
270

A skill your agent uses when the user says 'OWASP audit', 'OWASP top 10', 'security audit', 'vulnerability assessment', 'full security check', or needs a comprehensive web application security…

cwinvestments/memstack423—~5kAutomated safety check: PassProprietary14 days ago
271

Security patterns and OWASP guidelines. An agent skill from aiskillstore/marketplace.

aiskillstore/marketplace4331 repo~1.2kAutomated safety check: NotesNo licenceyesterday
272

Security auditor for Laravel applications. An agent skill from aiskillstore/marketplace.

aiskillstore/marketplace4334 repos~1.1kAutomated safety check: NotesNo licenceyesterday
273

AI/LLM defensive security reference: prompt-injection defense, OWASP LLM Top 10 defensive mapping, MCP and agentic tool-call hardening, training-data poisoning detection, model-output validation and…

modu-ai/moai-adk1.2k—~4.5kAutomated safety check: PassApache-2.0yesterday
274

OWASP Top 10 security checklist, authentication patterns, input validation, and HTTP security headers reference.

modu-ai/moai-adk1.2k—~2.3kAutomated safety check: PassApache-2.0yesterday
275

DevSecOps, container, and API operational defensive security reference: CI/CD pipeline hardening, secret scanning, IaC misconfiguration detection, SAST/DAST integration, container image scanning…

modu-ai/moai-adk1.2k—~2.6kAutomated safety check: PassApache-2.0yesterday
276

Search-visibility and crawlability reference for web output: canonical URL discipline, per-page title and meta description uniqueness, robots.txt and sitemap.xml as host-derived artifacts, JSON-LD…

modu-ai/moai-adk1.2k—~3.3kAutomated safety check: PassApache-2.0yesterday
277

SQL injection screening for host code (MoonBit / TS / Rust) plus secretlint setup notes.

mizchi/skills360—~1.4kAutomated safety check: PassNo licence9 days ago
278

Analyzes changed security boundaries against applicable OWASP risks and project contracts.

pavel-molyanov/molyanov-ai-dev297—~566Automated safety check: PassMIT1 mo ago
279

当目标为微信/支付宝/抖音/百度等小程序(含微信云开发/云函数)、需要小程序包获取与反编译、appid/appsecret/接口提取、微信登录链/支付/越权/WebView/rich-text 渲染/云开发漏洞挖掘时调用。负责小程序全生命周期深度挖掘:包还原 → 代码审计 → 接口与密钥提取 → 登录/支付/越权/渲染/云开发专项 → 验证要点。命中场景:openid 替换越权、code…

zhaji2333/CkSKILLS115—~1.5kAutomated safety check: PassMIT26 days ago
280

Check compliance with OWASP Top 10 security risks and best practices.

jeremylongshore/tons-of-skills-marketplace2.8k—~1.1kAutomated safety check: PassMITyesterday
281

Detect and analyze SQL injection vulnerabilities in application code and database queries.

jeremylongshore/tons-of-skills-marketplace2.8k—~1.6kAutomated safety check: PassMITyesterday
282

Execute this skill enables AI assistant to automatically scan for xss (cross-site scripting) vulnerabilities in code.

jeremylongshore/tons-of-skills-marketplace2.8k—~1.1kAutomated safety check: PassMITyesterday
283

Scan for input validation vulnerabilities and injection risks.

jeremylongshore/tons-of-skills-marketplace2.8k—~1.1kAutomated safety check: PassMITyesterday
284

Validate CSRF protection implementations for security gaps. An agent skill from jeremylongshore/tons-of-skills-marketplace.

jeremylongshore/tons-of-skills-marketplace2.8k—~1.8kAutomated safety check: PassMITyesterday
285

Security-focused review of native Android and iOS mobile app source code against OWASP MASVS v2.1.0.

OWASP/secure-agent-playbook188—~622Automated safety check: PassCC-BY-4.016 days ago
286

WordPress plugin development with hooks, security, REST API, custom post types.

secondsky/claude-skills227—~4.6kAutomated safety check: PassMIT13 days ago
287

A skill your agent uses when debugging or handling API errors in Frappe/ERPNext v14/v15/v16.

Impertio-Studio/Frappe_Claude_Skill_Package189—~4kAutomated safety check: PassMIT24 days ago
288

A skill your agent uses when debugging or preventing errors in Frappe Client Scripts.

Impertio-Studio/Frappe_Claude_Skill_Package189—~2.4kAutomated safety check: PassMIT24 days ago