Topic · Backend & APIs
Best Authorization and RBAC skills, page 10
Authorization and RBAC skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 433 | Audit application database access layers for query construction, authorization placement, tenant scoping, transaction boundaries, consistency, credential authority, and observable durable effects. | cyberful/ | 135 | — | ~599 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 434 | Test service accounts, OAuth clients, workload federation, token exchange, audience binding, delegated actors, credential rotation, and machine-identity authorization. | cyberful/ | 135 | — | ~895 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 435 | MCP gateway setup for multi-server integration, security configuration, tool routing, and access control | Hack23/ | 239 | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | today |
| 436 | 436.AWS Essentials A skill your agent uses when standing up the core AWS surface a small product needs: hardening a fresh account, a private S3 bucket, encrypted RDS Postgres, ECS Fargate vs EC2, CloudFront + OAC, or… | ericrisco/ | 167 | — | ~2.9k | Automated safety check: Notes | MIT | today |
| 437 | 437.Constraint A skill your agent uses whenever the design must structurally prevent invalid actions — input validation, disabled states, required fields, type-restricted inputs, mode locks, role-based gates… | hashgraph-online/ | 1.2k | — | ~3.3k | Automated safety check: Pass | Apache-2.0 | today |
| 438 | Provides authentication implementation patterns for Next.js 15+ App Router using Auth.js 5 (NextAuth.js). | giuseppe-trisciuoglio/ | 355 | — | ~2.8k | Automated safety check: Notes | MIT | 27 days ago |
| 439 | Provides patterns for unit testing Spring Security with @PreAuthorize, @Secured, @RolesAllowed. | giuseppe-trisciuoglio/ | 355 | — | ~1.7k | Automated safety check: Notes | MIT | 27 days ago |
| 440 | 当未授权/零身份测试但路径不在主站 JS、禁止依赖登录 Network 截图、独立 H5/旧域名 NXDOMAIN/品牌迁域、兄弟域或同 IP Host 漏路径、网关 405 或 data 空数组、getRsaKey/JSEncrypt/前端加密被当成鉴权时调用。负责零身份公开面还原路径与密钥、响应指纹分流、加密证伪、迁域复查。JS 拆包见 recon-js-analysis;角色/IDOR… | zhaji2333/ | 113 | — | ~1.4k | Automated safety check: Pass | MIT | 23 days ago |
| 441 | 441.Deno Assists with building secure JavaScript and TypeScript applications using the Deno runtime. | majiayu000/ | 666 | 1 repo | ~1.8k | Automated safety check: Pass | Apache-2.0 | today |
| 442 | For Bankr agents operating a Harness-provisioned wallet. An agent skill from BankrBot/skills. | BankrBot/ | 1.2k | — | ~3.6k | Automated safety check: Pass | No licence | 2 days ago |
| 443 | Drafts bounded cybersecurity engagement plans with objectives, scope, exclusions, roles, authorization, runtime controls, evidence, stop criteria, and restart gates. | HoangNguyen0403/ | 571 | — | ~681 | Automated safety check: Pass | MIT | today |
| 444 | 444.Laravel Security Harden Laravel apps with Policies for model authorization, Gate-based RBAC, validated mass assignment, and CSRF protection. | HoangNguyen0403/ | 571 | — | ~887 | Automated safety check: Pass | MIT | today |
| 445 | 445.Nestjs Security Implement JWT authentication, RBAC guards, Helmet hardening, and Argon2 hashing in NestJS. | HoangNguyen0403/ | 571 | — | ~778 | Automated safety check: Notes | MIT | today |
| 446 | Call a health plan's provider-services line about a claim with CALL-E, disclosing only the minimum patient identifiers that workflow needs, and return a schema-checked answer whose every field is… | CALLE-AI/ | 106 | — | ~1.5k | Automated safety check: Pass | MIT | today |
| 447 | 447.Django Security Django 安全最佳实践、身份验证(Authentication)、授权(Authorization)、CSRF 防护、SQL 注入防御、XSS 防御以及安全部署配置。 | xu-xiang/ | 2k | — | ~3.5k | Automated safety check: Notes | MIT | 7 mo ago |
| 448 | Automated enforcement of GDPR Article 5(1)(e) storage limitation principle. | mukul975/ | 295 | — | ~2.4k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 449 | Technical enforcement of GDPR Article 5(1)(b) purpose limitation principle. | mukul975/ | 295 | — | ~2.9k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 450 | Implements HIPAA workforce training requirements under 45 CFR §164.530(b) (Privacy Rule) and 45 CFR §164.308(a)(5) (Security Rule). | mukul975/ | 295 | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 451 | Implements HIPAA Privacy Rule requirements for research uses of protected health information under 45 CFR §164.512(i). | mukul975/ | 295 | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 452 | Configures privacy settings for enterprise HR systems including SAP SuccessFactors, Workday, and BambooHR. | mukul975/ | 295 | — | ~4.7k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 453 | Guide for mobile-specific consent management covering Apple ATT framework for iOS, Android permission model, in-app consent flows, SDK consent propagation to third-party libraries, and IDFA/GAID… | mukul975/ | 295 | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 454 | 454.Nist Pf Protect Implement the NIST Privacy Framework PROTECT function covering PR.AC access control, PR.DS data security, and PR.PO protective policies. | mukul975/ | 295 | — | ~2.6k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 455 | Design and implement Purpose-Based Access Control (PBAC) architecture including purpose ontology definition, policy engine configuration, audit logging of purpose verification at query time, and… | mukul975/ | 295 | — | ~3.9k | Automated safety check: Pass | Apache-2.0 | 6 mo ago |
| 456 | Operate kubectl, kube-bench, Trivy, Prowler, and manifest/runtime evidence for advanced Kubernetes security assessment. | cyberful/ | 135 | — | ~898 | Automated safety check: Pass | AGPL-3.0 | 1 mo ago |
| 457 | Focused security audit of code, calibrated to surface real exploitable bugs and suppress theoretical findings. | PostHog/ | 40k | — | ~8k | Automated safety check: Warn | Unknown | today |
| 458 | AI compliance and policy engine — evaluate scan results against OWASP, NIST, SOC 2, ISO 27001, CMMC, EU AI Act, AISVS v1.0, and related frameworks. | LeoYeAI/ | 2.2k | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 2 mo ago |
| 459 | 459.Healthclaw AI-native hospital and multi-department healthcare ERP. An agent skill from LeoYeAI/openclaw-master-skills. | LeoYeAI/ | 2.2k | — | ~4.9k | Automated safety check: Pass | MIT | 2 mo ago |
| 460 | Configures Amazon CloudFront content delivery across six workflows: when to use CloudFront and how it fits with AWS WAF, Shield, CloudFront Functions, Lambda@Edge, Route 53, and origins (creating a… | aws/ | 2.8k | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | today |
| 461 | 461.Authz Check Verify that an endpoint checks ownership, not just authentication. | Archive228/ | 756 | — | ~220 | Automated safety check: Pass | MIT | 2 mo ago |
| 462 | AL permission set design for Business Central. An agent skill from javiarmesto/ALDC-AL-Development-Collection. | javiarmesto/ | 109 | — | ~2.5k | Automated safety check: Pass | MIT | today |
| 463 | RBAC configuration, row policies, quotas, network security, audit logging, and access control best practices. | chmonitor/ | 299 | — | ~440 | Automated safety check: Pass | GPL-3.0 | 2 days ago |
| 464 | 464.Access Manage Slack channel access control — pairing, allowlist, channel opt-in. | jeremylongshore/ | 2.8k | — | ~2k | Automated safety check: Pass | Apache-2.0 | today |
| 465 | Configure Anthropic enterprise organization management, Workspaces, and role-based access control for teams. | jeremylongshore/ | 2.8k | — | ~1.5k | Automated safety check: Pass | MIT | today |
| 466 | Implement access control for multi-user Apple Notes automation. | jeremylongshore/ | 2.8k | — | ~1.6k | Automated safety check: Pass | MIT | today |
| 467 | Configure Clay workspace roles, team access control, and credit budget allocation. | jeremylongshore/ | 2.8k | — | ~1.7k | Automated safety check: Pass | MIT | today |
| 468 | Apply Clay security best practices for API keys, webhook secrets, and data access control. | jeremylongshore/ | 2.8k | — | ~1.7k | Automated safety check: Notes | MIT | today |
| 469 | Configure RBAC and namespace isolation for CoreWeave multi-team GPU access. | jeremylongshore/ | 2.8k | — | ~1.6k | Automated safety check: Pass | MIT | today |
| 470 | Secure CoreWeave deployments with RBAC, network policies, and secrets management. | jeremylongshore/ | 2.8k | — | ~1.6k | Automated safety check: Pass | MIT | today |
| 471 | Apply security best practices for Fondo including OAuth token management, financial data protection, SOC 2 compliance, and access control. | jeremylongshore/ | 2.8k | — | ~1.2k | Automated safety check: Pass | MIT | today |
| 472 | Apply Framer security best practices for secrets and access control. | jeremylongshore/ | 2.8k | — | ~767 | Automated safety check: Notes | MIT | today |
| 473 | Implement security best practices for Gamma integration. An agent skill from jeremylongshore/tons-of-skills-marketplace. | jeremylongshore/ | 2.8k | — | ~1.2k | Automated safety check: Notes | MIT | today |
| 474 | Map AD/Okta groups to Glean document permissions using allowedGroups. | jeremylongshore/ | 2.8k | — | ~1.5k | Automated safety check: Pass | MIT | today |
| 475 | Apply Hex security best practices for secrets and access control. | jeremylongshore/ | 2.8k | — | ~1.4k | Automated safety check: Pass | MIT | today |
| 476 | Apply Hootsuite security best practices for secrets and access control. | jeremylongshore/ | 2.8k | — | ~876 | Automated safety check: Notes | MIT | today |
| 477 | Analyze kubernetes rbac analyzer operations. An agent skill from jeremylongshore/tons-of-skills-marketplace. | jeremylongshore/ | 2.8k | — | ~590 | Automated safety check: Pass | MIT | today |
| 478 | Configure Lokalise enterprise SSO, role-based access control, and team management. | jeremylongshore/ | 2.8k | — | ~2.8k | Automated safety check: Pass | MIT | today |
| 479 | Apply Lokalise security best practices for API tokens and access control. | jeremylongshore/ | 2.8k | — | ~2.4k | Automated safety check: Notes | MIT | today |
| 480 | 480.Policy Author MCP tool-call policy rules without hand-editing access.json. | jeremylongshore/ | 2.8k | — | ~2.4k | Automated safety check: Pass | Apache-2.0 | today |
Explore related skills
Category
More topics in Backend & APIs
- Backend development927
- REST APIs801
- Webhooks689
- Authentication649
- OAuth and OpenID Connect493
- OpenAPI specifications450
- Third-party API integration409
- Smart contracts390
- GraphQL389
- Rate limiting379
- Caching349
- Event-driven systems312
- Microservices303
- File uploads and storage292
- API design283
- Realtime and WebSockets281
- Serverless257
- Transactional email160
- Background jobs158
- gRPC and Protobuf144
- Search implementation140
- Multi-tenancy120
- Payments and billing56