Search
Python · Secure coding
Skills
Sort:BestMost starsTrending todayTrending this weekTrending this monthNewestRecently updatedName
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 1 | Scans a codebase for vulnerabilities with CodeQL's data flow and taint tracking in run-all or important-only modes, including data extensions for project-specific sources and sinks. | trailofbits/ | 7.4k | — | ~4.6k | Automated safety check: Notes | CC-BY-SA-4.0 | 2 days ago |
| 2 | Scans code with a bundled Node script for injection, secrets, XSS and other risky patterns, ranks findings by severity and checks that security decisions are documented. | fengshao1227/ | 5.9k | — | ~621 | Automated safety check: Notes | MIT | 24 days ago |
| 3 | Checks a codebase for hardcoded secrets, vulnerable dependencies, weak input handling, weak authentication and unsafe transport settings before deployment or merge. | TheDecipherist/ | 550 | — | ~1.3k | Automated safety check: Notes | MIT | 5 mo ago |
| 4 | Shows how to replace unsafe hasattr and setattr loops over user-controlled kwargs with an explicit allowlist when configuring ONNX Runtime option objects. | microsoft/ | 22k | — | ~737 | Automated safety check: Pass | MIT | today |
| 5 | Gives the agent a five-step review routine that reads the full file first, labels each finding as bug, security, performance, style or suggestion, and ends with a summary. | FareedKhan-dev/ | 298 | — | ~809 | Automated safety check: Pass | MIT | 6 mo ago |
| 6 | Reference for building payment systems that meet PCI DSS: the 12 requirements, merchant levels, data that must never be stored, tokenization and encryption. | wshobson/ | 40k | 11 repos | ~1.9k | Automated safety check: Pass | MIT | 5 days ago |
| 7 | Compiles cryptographic code and inspects the assembly or bytecode for variable-time instructions, then triages which flagged operations actually touch secrets. | trailofbits/ | 7.4k | — | ~3.3k | Automated safety check: Notes | CC-BY-SA-4.0 | 2 days ago |
| 8 | A ten-category security checklist for the agent-core codebase, to run before any security-sensitive change or pull request: secrets, input validation, SQL, access control and prompt injection. | openJiuwen-ai/ | 446 | — | ~1.7k | Automated safety check: Notes | Apache-2.0 | today |
| 9 | Perform adversarial Python security code reviews grounded in the OpenSSF Secure Coding Guide for Python. | SpecterOps/ | 704 | — | ~2.3k | Automated safety check: Pass | Apache-2.0 | 16 days ago |
| 10 | REST API security hardening with authentication, rate limiting, input validation, security headers. | secondsky/ | 227 | — | ~718 | Automated safety check: Pass | MIT | 11 days ago |
| 11 | Configures HTTP security headers to protect against XSS, clickjacking, and MIME sniffing attacks. | secondsky/ | 227 | — | ~638 | Automated safety check: Pass | MIT | 11 days ago |
| 12 | XSS attack prevention with input sanitization, output encoding, Content Security Policy. | secondsky/ | 227 | — | ~1.5k | Automated safety check: Pass | MIT | 11 days ago |