Topic · Backend & APIs
Best Authorization and RBAC skills, page 5
Authorization and RBAC skills, ranked
Ranked by score. Sort bymost stars,trending,newest,recently updated
| # | Skill | Repository | Stars | Used in | Tokens | Auto-check | Licence | Updated |
|---|---|---|---|---|---|---|---|---|
| 193 | 193.X402 Payments Accept HTTP 402 cryptocurrency payments using Nethereum (.NET/C). | Nethereum/ | 2.3k | — | ~2.2k | Automated safety check: Pass | MIT | 3 days ago |
| 194 | A skill your agent uses when the user asks to "pick which social channels to run", "should we be on X platform or 小红书", or "plan our organic social channel portfolio"; produces an… | aaron-he-zhu/ | 2.9k | — | ~2.7k | Automated safety check: Pass | Apache-2.0 | today |
| 195 | Full lifecycle team skill — plan, develop, test, review in one coordinated session. | catlog22/ | 2.1k | — | ~1.8k | Automated safety check: Notes | MIT | 3 mo ago |
| 196 | A skill your agent uses for any Python backend work in this project: building FastAPI endpoints, writing service functions, defining Pydantic/SQLModel schemas, running Alembic migrations, or… | avibebuilder/ | 120 | — | ~997 | Automated safety check: Pass | MIT | 4 mo ago |
| 197 | Review or harden security-sensitive behavior involving authentication, authorization, secrets, sessions, untrusted input, sensitive data, or trust boundaries. | dzhalaevd/ | 135 | — | ~5.1k | Automated safety check: Notes | Apache-2.0 | 4 days ago |
| 198 | Parses Kubernetes API server audit logs (JSON lines) to detect exec-into-pod, secret access, RBAC modifications, privileged pod creation, and anonymous API access, and builds SIEM detection rules… | mukul975/ | 34k | — | ~654 | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 199 | Finds over-permissive RBAC roles and service-account token abuse paths in a Kubernetes cluster using kubectl auth can-i, rbac-police, kubectl-who-can, and rakkess, tracing which subjects can… | mukul975/ | 34k | — | ~3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 200 | Detect API enumeration attacks (BOLA/IDOR, OWASP API1:2023) by writing SIEM detection rules that flag sequential or UUID identifier iteration, parameter tampering, and mixed 200/401/403 response… | mukul975/ | 34k | — | ~3.7k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 201 | Detect and test for OWASP API3:2023 Broken Object Property Level Authorization (BOPLA), covering excessive data exposure in API responses and mass assignment via injected request-body properties. | mukul975/ | 34k | — | ~4k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 202 | Implement RPKI-based BGP route origin validation by creating Route Origin Authorizations (ROAs) at RIRs (ARIN, RIPE, APNIC, AFRINIC, LACNIC), deploying validator software (Routinator, FORT… | mukul975/ | 34k | — | ~2.9k | Automated safety check: Notes | Apache-2.0 | 1 mo ago |
| 203 | Implements Delinea Secret Server for privileged access management, covering secret vault configuration, role-based access policies, automated password rotation, session recording, and Active… | mukul975/ | 34k | — | ~4.3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 204 | Deploys and configures Tofino industrial firewalls (Belden/Hirschmann) to protect SCADA systems and PLCs, using deep packet inspection of OT protocols (Modbus, EtherNet/IP, OPC, S7comm) to enforce… | mukul975/ | 34k | — | ~3.1k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 205 | Implements 802.1X port-based network access control using RADIUS authentication, PacketFence NAC, and switch configuration to enforce identity-based access policies, posture assessment, and… | mukul975/ | 34k | — | ~3.8k | Automated safety check: Notes | Apache-2.0 | 1 mo ago |
| 206 | Deploys Cisco Identity Services Engine (ISE) as a RADIUS policy server for 802.1X wired and wireless authentication, MAC Authentication Bypass, posture assessment, dynamic VLAN assignment… | mukul975/ | 34k | — | ~2.9k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 207 | Simulates ARP spoofing/cache-poisoning attacks in authorized lab or pentest environments using arpspoof, Ettercap, and Scapy to demonstrate man-in-the-middle risk and validate Dynamic ARP… | mukul975/ | 34k | — | ~2.8k | Automated safety check: Notes | Apache-2.0 | 1 mo ago |
| 208 | Audits and hardens process historian servers (OSIsoft PI, Honeywell PHD, GE Proficy, AVEVA Historian) in OT environments: Purdue-level network placement, interface access control, secure DMZ… | mukul975/ | 34k | — | ~3.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 209 | Hardens managed Kubernetes clusters on EKS, AKS, and GKE by implementing Pod Security Standards, network policies, workload identity (IRSA for EKS, Workload Identity for GKE, Managed Identities for… | mukul975/ | 34k | — | ~3.3k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 210 | Designs and configures secure remote access to OT/ICS environments for operators, engineers, and vendors: jump server architecture, multi-factor authentication, session recording, privileged access… | mukul975/ | 34k | — | ~3.6k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 211 | A skill your agent uses when deciding who may do what — ownership checks, policy modules, scoped queries, role-based access in LiveViews and controllers. | j-morgan6/ | 166 | — | ~2.1k | Automated safety check: Pass | MIT | 3 mo ago |
| 212 | Audits, configures, and hardens workload-level security controls for Google Kubernetes Engine (GKE) applications and namespaces. | google/ | 21k | — | ~1.9k | Automated safety check: Pass | Apache-2.0 | today |
| 213 | 213.Ops Operate servers and services with read-only-first diagnosis, explicit authorization, auditable inventory, operation records, rollback, and verification. | holon-run/ | 153 | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | today |
| 214 | 214.Clerk Orgs Clerk Organizations for B2B SaaS - create multi-tenant apps with org switching, role-based access, verified domains, and enterprise SSO. | geekskai/ | 103 | — | ~4.8k | Automated safety check: Pass | MIT | yesterday |
| 215 | Provision, verify, and connect a self-hosted Temps platform instance on an explicitly authorized machine. | gotempsh/ | 826 | — | ~4.7k | Automated safety check: Notes | Apache-2.0 | today |
| 216 | 216.Sast Missingauth Detect missing authentication and broken function-level authorization vulnerabilities in a codebase using a three-phase approach: recon (map endpoints and the role/permission system), batched verify… | utkusen/ | 1.3k | — | ~6k | Automated safety check: Pass | MIT | 6 mo ago |
| 217 | 217.Core Bluetooth Build direct Bluetooth Low Energy workflows with Core Bluetooth. | dpearson2699/ | 1.2k | — | ~3.8k | Automated safety check: Pass | Unknown | 2 mo ago |
| 218 | 218.Financekit Access eligible Wallet financial data using FinanceKit and FinanceKitUI. | dpearson2699/ | 1.2k | — | ~4.7k | Automated safety check: Pass | Unknown | 2 mo ago |
| 219 | 219.Passkit Integrate Apple Pay payments and Wallet passes using PassKit. | dpearson2699/ | 1.2k | — | ~3.6k | Automated safety check: Pass | Unknown | 2 mo ago |
| 220 | 220.Sensorkit Access research-grade sensor data using SensorKit for approved studies. | dpearson2699/ | 1.2k | — | ~3.3k | Automated safety check: Pass | Unknown | 2 mo ago |
| 221 | Comprehensive REST API design review with automated linting, breaking-change detection, and design scorecards. | alirezarezvani/ | 28k | — | ~3.2k | Automated safety check: Pass | MIT | 1 mo ago |
| 222 | 222.Hunt Spa API Discover a single-page-app's hidden backend API from its public JS bundle, then test that API for broken access control / missing authentication. | elementalsouls/ | 4.8k | — | ~2.2k | Automated safety check: Notes | MIT | today |
| 223 | Operating production Kubernetes clusters effectively with resource management, advanced scheduling, networking, storage, security hardening, and autoscaling. | ancoleman/ | 526 | — | ~3.6k | Automated safety check: Pass | MIT | 10 mo ago |
| 224 | Authentication, authorization, and API security implementation. | ancoleman/ | 526 | — | ~3.4k | Automated safety check: Pass | MIT | 10 mo ago |
| 225 | Universal SQL code review assistant that performs comprehensive security, maintainability, and code quality analysis across all SQL databases (MySQL, PostgreSQL, SQL Server, Oracle). | github/ | 40k | 1 repo | ~2.2k | Automated safety check: Pass | MIT | today |
| 226 | 226.Slm Governance Enterprise compliance and governed workspace behavior for SuperLocalMemory. | qualixar/ | 227 | — | ~2.1k | Automated safety check: Notes | AGPL-3.0 | today |
| 227 | Detects logic vulnerabilities in smart contracts by analyzing guard-state consistency patterns. | quillai-network/ | 129 | — | ~2.2k | Automated safety check: Warn | MIT | 6 mo ago |
| 228 | Guides PostHog engineers through dashboard widget platform work — ship a new widgettype (WIDGETREGISTRY, catalog, runwidgets, WidgetCard) or update a shipped type (config, query, layout, RBAC, tile… | PostHog/ | 40k | — | ~2.3k | Automated safety check: Pass | Unknown | today |
| 229 | 229.Agents A skill your agent uses when designing, deploying, or debugging a Butterbase Agent (declarative LLM/tool graph), registering an MCP server for tool use, or wiring access controls and rate limits. | butterbase-ai/ | 534 | 1 repo | ~1.8k | Automated safety check: Pass | MIT | 2 days ago |
| 230 | Comprehensive Solidity contract security scanner detecting 104 vulnerability patterns across reentrancy, access control, arithmetic, DeFi, proxy, and token categories. | alt-research2/ | 104 | — | ~1.6k | Automated safety check: Notes | Unknown | 3 mo ago |
| 231 | Create managed Iceberg tables using Amazon S3 Tables (s3tables API namespace) with automatic compaction and snapshot management. | aws/ | 2.8k | 1 repo | ~2.1k | Automated safety check: Pass | Apache-2.0 | today |
| 232 | Create and secure S3 buckets following AWS best practices for access control, encryption, monitoring, and remediation of misconfigurations. | aws/ | 2.8k | 1 repo | ~2k | Automated safety check: Pass | Apache-2.0 | today |
| 233 | Automate payer review of prior authorization (PA) requests. An agent skill from FreedomIntelligence/OpenClaw-Medical-Skills. | FreedomIntelligence/ | 3.1k | 1 repo | ~3.3k | Automated safety check: Pass | No licence | 2 mo ago |
| 234 | 234.Audit Recon A skill your agent uses when performing initial audit reconnaissance. | ccashwell/ | 131 | — | ~1.5k | Automated safety check: Pass | MIT | 8 days ago |
| 235 | Implement or review authentication and authorization with explicit token, session and resource-access boundaries. | sickn33/ | 47k | 1 repo | ~649 | Automated safety check: Pass | MIT | today |
| 236 | 236.Hunt Spa API Discover a single-page-app's hidden backend API from its public JS bundle, then test that API for broken access control / missing authentication. | sickn33/ | 47k | 1 repo | ~2.6k | Automated safety check: Pass | MIT | today |
| 237 | 237.Hunt Core Shared discipline for every hunt- skill: scope and authorization gating, the two-account rule, the confirmation gate that separates a real finding from a false positive, enumeration limits, stop… | Encod3d-Sec/ | 329 | — | ~3.5k | Automated safety check: Notes | MIT | 1 mo ago |
| 238 | Configures secure OAuth 2.0 authorization flows, including Authorization Code with PKCE, Client Credentials, and Device Authorization Grant, covering flow selection, PKCE implementation, token… | mukul975/ | 34k | — | ~1.7k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 239 | Drive a federal system through the NIST Risk Management Framework (SP 800-37 Rev 2) to an Authorization to Operate (ATO): Prepare, Categorize (FIPS 199), Select a control baseline (FIPS 200 / SP… | mukul975/ | 34k | — | ~2.2k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
| 240 | Deploy CyberArk Privileged Access Management to discover, vault, rotate, and monitor privileged credentials across enterprise infrastructure, covering vault architecture, session isolation… | mukul975/ | 34k | — | ~1.8k | Automated safety check: Pass | Apache-2.0 | 1 mo ago |
Explore related skills
Category
More topics in Backend & APIs
- Backend development927
- REST APIs801
- Webhooks689
- Authentication649
- OAuth and OpenID Connect493
- OpenAPI specifications450
- Third-party API integration409
- Smart contracts390
- GraphQL389
- Rate limiting379
- Caching349
- Event-driven systems312
- Microservices303
- File uploads and storage292
- API design283
- Realtime and WebSockets281
- Serverless257
- Transactional email160
- Background jobs158
- gRPC and Protobuf144
- Search implementation140
- Multi-tenancy120
- Payments and billing56