Topic · Backend & APIs
Best Authorization and RBAC skills, page 4
Authorization and RBAC skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 145 | 145.Workos A skill your agent uses when the user asks for a WorkOS docs URL, term, or dashboard field (Sign-in endpoint, initiateloginuri, Redirect URI, WORKOS env vars), or is implementing, debugging, or… | usenotra/ | 256 | — | ~6.2k | Automated safety check: Pass | AGPL-3.0 | today |
| 146 | Guidance for secure remote VM management in Azure using Azure Bastion combined with Defender for Cloud just-in-time (JIT) VM access. | vinayaklatthe/ | 175 | — | ~2.2k | Automated safety check: Pass | MIT | 3 mo ago |
| 147 | 147.Django Security Django security best practices, authentication, authorization, CSRF protection, SQL injection prevention, XSS prevention, and secure deployment configurations. | affaan-m/ | 275k | 1 repo | ~4.3k | Automated safety check: Notes | MIT | 3 days ago |
| 148 | 148.Dev Team Simulate a collaborative dev team session where multiple role-based personas (PM, Architect, Developer, QA) respond to the same problem together in one session. | affaan-m/ | 275k | 1 repo | ~2.1k | Automated safety check: Pass | MIT | 3 days ago |
| 149 | Protected Health Information (PHI) and PII compliance patterns for healthcare applications: data classification, row-level access control, tamper-proof audit trails, schema tagging, and common leak… | affaan-m/ | 275k | 1 repo | ~1.4k | Automated safety check: Pass | MIT | 3 days ago |
| 150 | Kubernetes workload patterns, resource management, RBAC, probes, autoscaling, ConfigMap/Secret handling, and kubectl debugging for production-grade deployments. | affaan-m/ | 275k | 1 repo | ~5k | Automated safety check: Pass | MIT | 3 days ago |
| 151 | 151.Quarkus Security Quarkus security implementation patterns: JWT and OIDC authentication, @RolesAllowed RBAC and SecurityIdentity checks, Bean Validation and custom validators, parameterized Panache queries, BCrypt… | affaan-m/ | 275k | 1 repo | ~3.1k | Automated safety check: Pass | MIT | 3 days ago |
| 152 | Activate when developers have latent caching needs: slow API responses, database read bottlenecks, DynamoDB throttling or cost, RDS/Aurora scaling pressure, Bedrock latency or cost, or adding a… | aws/ | 2.8k | — | ~4.5k | Automated safety check: Pass | Apache-2.0 | today |
| 153 | A ten-category security checklist for the agent-core codebase, to run before any security-sensitive change or pull request: secrets, input validation, SQL, access control and prompt injection. | openJiuwen-ai/ | 442 | — | ~1.7k | Automated safety check: Notes | Apache-2.0 | today |
| 154 | Secure API Platform resources with security expressions, voters, securityPostValidation, and operation-level access control | dev-toolings/ | 222 | — | ~551 | Automated safety check: Notes | MIT | 2 days ago |
| 155 | Implements authentication, authorization, encryption, secrets management, and security hardening patterns. | CloudAI-X/ | 1.4k | — | ~3.6k | Automated safety check: Notes | MIT | yesterday |
| 156 | Develops and administers SAP Build Work Zone, advanced edition digital workplace solutions. | secondsky/ | 462 | — | ~3.3k | Automated safety check: Pass | GPL-3.0 | 2 days ago |
| 157 | 157.User Management Manage users, groups, and permissions on Linux systems. An agent skill from sickn33/agentic-awesome-skills. | sickn33/ | 47k | 2 repos | ~2.8k | Automated safety check: Notes | MIT | today |
| 158 | Multi-tenant authz, pre-auth disclosure hardening, and Kali disposition. | bbartling/ | 172 | — | ~2.2k | Automated safety check: Pass | Unknown | today |
| 159 | 159.Convex Authz Audit and harden a Convex app's authorization: identity-from-arg impersonation, missing per-document ownership checks, public queries leaking data by a client-supplied id, and writes into a… | openclaw/ | 9.5k | — | ~2.3k | Automated safety check: Pass | MIT | today |
| 160 | Review multiplayer authority, RPCs, sessions, authorization, replication, inventory, economy, purchases, retries, and replay. | gmh5225/ | 3.6k | — | ~258 | Automated safety check: Pass | MIT | today |
| 161 | Review pull requests in the SAP Deployment Automation Framework. | Azure/ | 145 | — | ~7k | Automated safety check: Pass | MIT | today |
| 162 | 162.SQL Code Review Universal SQL code review assistant that performs comprehensive security, maintainability, and code quality analysis across SQL databases (PostgreSQL, SQL Server, Oracle). | totvs/ | 143 | — | ~3.5k | Automated safety check: Pass | MIT | 2 days ago |
| 163 | 163.Atlassian Admin Atlassian Administrator for managing and organizing Atlassian products (Jira, Confluence, Bitbucket, Trello), users, permissions, security, integrations, system configuration, and org-wide governance. | alirezarezvani/ | 28k | 1 repo | ~3.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 164 | API design conventions, namespace coordinate system, RBAC roles, ClawHub compatibility layer, OpenAPI contract sync rules, and CSRF/session handling. | iflytek/ | 5.2k | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | today |
| 165 | 165.Smart App Launch Expert guidance for implementing SMART App Launch (HL7 FHIR specification for OAuth 2.0-based authorization). | aehrc/ | 137 | — | ~1.3k | Automated safety check: Pass | Apache-2.0 | today |
| 166 | Configure AuthCrunch diagnostic skip rules and explain the Caddy middleware logger boundary. | greenpau/ | 2.3k | — | ~2.1k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 167 | Security-focused code review mapped to OWASP Top 10 and ASVS. | OWASP/ | 187 | — | ~549 | Automated safety check: Pass | CC-BY-4.0 | 12 days ago |
| 168 | Container and Kubernetes security assessment — image vulnerability scanning, SBOM diff analysis, K8s cluster auditing, RBAC privilege mapping, NetworkPolicy review, container escape testing, and… | hardw00t/ | 104 | — | ~2.8k | Automated safety check: Pass | No licence | 5 mo ago |
| 169 | 169.Auth A skill your agent uses when implementing login flows, issuing or validating JWTs, setting up OAuth2/OIDC with a provider, designing role-based or attribute-based access control, securing API… | kid-sid/ | 189 | — | ~3.2k | Automated safety check: Pass | MIT | 2 mo ago |
| 170 | Security hardening and best practices for robotic systems, covering SROS2 DDS security, network segmentation, secrets management, secure boot, and the physical-cyber safety intersection. | arpitg1304/ | 368 | — | ~7.8k | Automated safety check: Warn | Apache-2.0 | 1 mo ago |
| 171 | Configure authorization policies, ACLs, bypasses, identity headers, JWT verification, remote Basic/API-key auth, and direct OAuth without a portal. | greenpau/ | 2.3k | — | ~4.2k | Automated safety check: Pass | Apache-2.0 | 2 days ago |
| 172 | Expert in Odoo access control: ir.model.access.csv, record rules (ir.rule), groups, and multi-company security patterns. | sickn33/ | 47k | 2 repos | ~1.1k | Automated safety check: Pass | MIT | today |
| 173 | 173.Policy Opa Policy-as-code enforcement and compliance validation using Open Policy Agent (OPA). | AgentSecOps/ | 220 | 1 repo | ~3.5k | Automated safety check: Pass | Unknown | 5 mo ago |
| 174 | 174.Recon Nmap Network reconnaissance and security auditing using Nmap for port scanning, service enumeration, and vulnerability detection. | AgentSecOps/ | 220 | 1 repo | ~4.6k | Automated safety check: Notes | Unknown | 5 mo ago |
| 175 | Run every Convex audit (authz, reviewer, advisor, insights) into one scored, deduped readiness report with an ordered fix plan — Lighthouse for your backend. | openclaw/ | 9.5k | — | ~1.2k | Automated safety check: Pass | MIT | today |
| 176 | 176.Convex Verify Prove a Convex feature works — seed, drive as multiple mocked users via convex-test, assert behavior including the negative authz cases (wrong user refused, data-scope enforced). | openclaw/ | 9.5k | — | ~1.2k | Automated safety check: Pass | MIT | today |
| 177 | Provision app-specific Claude, OpenAI, OpenRouter, ElevenLabs or fal.ai API keys, install secrets, rotate keys or adjust their budgets using saved authorization. | swyxio/ | 175 | — | ~1.3k | Automated safety check: Pass | MIT | 3 days ago |
| 178 | API authorization and BOLA testing playbook. An agent skill from yaklang/hack-skills. | yaklang/ | 2.4k | — | ~449 | Automated safety check: Pass | MIT | 24 days ago |
| 179 | AI-powered codebase security scanner that reasons about code like a security researcher — tracing data flows, understanding component interactions, and catching vulnerabilities that pattern-matching… | github/ | 40k | 1 repo | ~2.3k | Automated safety check: Notes | MIT | today |
| 180 | 180.Access Matrix Access matrix of role-by-module permissions, with per-role scope, confidentiality level and SME tier, as CSV, SQL, JSON Schema or Notion on request. | sickn33/ | 47k | 1 repo | ~3.6k | Automated safety check: Pass | MIT | today |
| 181 | Audit multi-role marketplace authorization across roles, resource ownership, tenant boundaries, and order-state transitions; use when access rules need evidence, not UI assumptions. | sickn33/ | 47k | 1 repo | ~3.1k | Automated safety check: Pass | MIT | today |
| 182 | Apply bottom-up and top-down role mining techniques, including clustering algorithms and formal concept analysis, to discover optimal RBAC roles from existing user-permission assignments… | mukul975/ | 34k | — | ~2.6k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 183 | Deploys a Software-Defined Perimeter per the CSA v2.0 specification, configuring Single Packet Authorization, mutual TLS, and SDP controller/gateway components to enforce zero trust network access. | mukul975/ | 34k | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 184 | Detects and prevents privilege escalation inside Kubernetes pods by combining admission control (OPA policies), runtime monitoring (Falco), and audit log analysis of security contexts, Linux… | mukul975/ | 34k | — | ~2.4k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 185 | Implements device posture assessment as a zero trust access control by integrating endpoint health signals from CrowdStrike ZTA, Microsoft Intune, and Jamf into conditional access policies that… | mukul975/ | 34k | — | ~4.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 186 | Implements GCP Binary Authorization end to end, including creating KMS-backed attestors, Container Analysis notes, deploy-time policies, and signing image attestations, so that only trusted… | mukul975/ | 34k | — | ~2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 187 | Hardens Kubernetes RBAC by designing least-privilege Roles and ClusterRoles, auditing RoleBindings, eliminating cluster-admin sprawl, separating service accounts, and integrating an external OIDC… | mukul975/ | 34k | — | ~2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 188 | Assesses the security posture of the etcd cluster backing Kubernetes: encryption at rest, TLS peer and client transport, access control, backup encryption, and network isolation. | mukul975/ | 34k | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 189 | Evaluates Kubernetes cluster security by actively simulating attacker techniques against the API server, kubelet, etcd, pods, RBAC, network policy, and secrets, using kube-hunter, Kubescape… | mukul975/ | 34k | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 190 | Configures the security features of the Harbor open-source container registry - integrated Trivy scanning, Cosign and Notary content trust policies, project-level RBAC, immutable tag and retention… | mukul975/ | 34k | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 191 | 191.S3 AWS S3 object storage for bucket management, object operations, and access control. | itsmostafa/ | 1.2k | — | ~2.3k | Automated safety check: Pass | MIT | 2 days ago |
| 192 | 192.Eip7702 Delegate smart contract code to EOAs with EIP-7702 using Nethereum (.NET). | Nethereum/ | 2.3k | — | ~1.4k | Automated safety check: Pass | MIT | 3 days ago |
Explore related skills
Category
More topics in Backend & APIs
- Backend development927
- REST APIs801
- Webhooks689
- Authentication649
- OAuth and OpenID Connect493
- OpenAPI specifications450
- Third-party API integration409
- Smart contracts390
- GraphQL389
- Rate limiting379
- Caching349
- Event-driven systems312
- Microservices303
- File uploads and storage292
- API design283
- Realtime and WebSockets281
- Serverless257
- Transactional email160
- Background jobs158
- gRPC and Protobuf144
- Search implementation140
- Multi-tenancy120
- Payments and billing56