Topic · Security

Best web application vulnerabilities skills, page 6

Skills #241–288 of 468, ranked by score.

Web application vulnerabilities skills, ranked

Ranked by score. Sort bymost stars,trending,newest,recently updated

Web application vulnerabilities skills, ranked
#SkillRepositoryStarsUsed inTokensAuto-checkLicenceUpdated
241
241.Sapui5

This skill should be used when developing SAP UI5 applications, including creating freestyle apps, Fiori Elements apps, custom controls, testing, data binding, OData integration, routing, and…

secondsky/sap-skills462—~4.1kAutomated safety check: PassGPL-3.03 days ago
242

You are a frontend security specialist focusing on Cross-Site Scripting (XSS) vulnerability detection and prevention.

aiskillstore/marketplace4307 repos~2.4kAutomated safety check: PassNo licencetoday
243

Expert in secure frontend coding practices specializing in XSS prevention, output sanitization, and client-side security patterns.

aiskillstore/marketplace4307 repos~3kAutomated safety check: PassNo licencetoday
244

Static Application Security Testing (SAST) for code vulnerability analysis across multiple languages and frameworks

aiskillstore/marketplace4307 repos~3.7kAutomated safety check: PassNo licencetoday
245

Application security defense knowledge for builders. An agent skill from telagod/code-abyss.

telagod/code-abyss243—~777Automated safety check: PassMIT2 mo ago
246

Parse Apache and Nginx access logs to detect SQL injection attempts, local file inclusion, directory traversal, web scanner fingerprints, and brute-force patterns.

mukul975/Anthropic-Cybersecurity-Skills34k—~644Automated safety check: PassApache-2.01 mo ago
247

Conducts penetration testing of iOS and Android mobile applications following the OWASP Mobile Application Security Testing Guide (MASTG) to identify vulnerabilities in data storage, network…

mukul975/Anthropic-Cybersecurity-Skills34k—~3.2kAutomated safety check: PassApache-2.01 mo ago
248

Analyze WAF (ModSecurity/AWS WAF/Cloudflare) logs to detect SQL injection attack campaigns.

mukul975/Anthropic-Cybersecurity-Skills34k—~564Automated safety check: PassApache-2.01 mo ago
249

Identifies and exploits SQL injection vulnerabilities in web applications during authorized penetration tests using manual techniques and automated tools like sqlmap.

mukul975/Anthropic-Cybersecurity-Skills34k—~3.2kAutomated safety check: PassApache-2.01 mo ago
250

Detecting and exploiting SQL injection vulnerabilities using sqlmap to extract database contents during authorized penetration tests.

mukul975/Anthropic-Cybersecurity-Skills34k—~2.3kAutomated safety check: PassApache-2.01 mo ago
251

Performs API inventory and discovery to identify all API endpoints in an organization's environment including documented, undocumented, shadow, zombie, and deprecated APIs.

mukul975/Anthropic-Cybersecurity-Skills34k—~4.3kAutomated safety check: PassApache-2.01 mo ago
252

A skill your agent uses when reviewing authentication implementation, setting up a new auth system, or evaluating whether the current token storage approach exposes the application to XSS-based…

thedaviddias/Front-End-Checklist74k—~604Automated safety check: PassMIT2 days ago
253

Flags API endpoints whose data or actions look like they should need a login but currently don't, as part of authorized security testing.

uphiago/recon-skills1.3k—~2kAutomated safety check: PassMIT1 mo ago
254

Automatically discover security skills when working with authentication, authorization, input validation, security headers, vulnerability assessment, or secrets management.

rand/cc-polymath181—~1.9kAutomated safety check: PassMIT7 mo ago
255

PreToolUse security-anti-pattern hook for Claude Code. An agent skill from alirezarezvani/claude-skills.

alirezarezvani/claude-skills28k—~1.9kAutomated safety check: PassMIT1 mo ago
256

Hunt LLM/AI feature bugs — prompt injection, indirect injection, exfiltration via tool-use/markdown, ASCII smuggling, agentic AI security (OWASP Agentic Apps 2026, ASI01-ASI10).

elementalsouls/Claude-BugHunter4.8k—~4kAutomated safety check: WarnMITtoday
257

Enhance SEO (meta tags, semantic HTML) and security (vulnerability checks, hardening).

ww-w-ai/bkit-claude-code601—~2.3kAutomated safety check: PassApache-2.011 days ago
258

Check code for the most common, high-risk security vulnerabilities (broken access control, tenant isolation, injection, secrets, SSRF, auth/session, unsafe file handling, mass assignment) before it…

trycompai/comp2k—~853Automated safety check: PassAGPL-3.0yesterday
259

Server-Side Request Forgery detection→internal-access→proof for web apps.

s0ld13rr/pentestcode828—~660Automated safety check: WarnMIT6 days ago
260

This skill should be used when the user asks to "intercept HTTP traffic", "modify web requests", "use Burp Suite for testing", "perform web vulnerability scanning", "test with Burp ...

aiskillstore/marketplace4304 repos~2.7kAutomated safety check: PassNo licencetoday
261

Expert security auditor specializing in DevSecOps, comprehensive cybersecurity, and compliance frameworks.

aiskillstore/marketplace4306 repos~2.6kAutomated safety check: PassNo licencetoday
262

PHP Web 源码 CSRF 审计工具。识别状态变更接口是否受 CSRF 保护,追踪 token 生成、校验与绕过条件,输出可利用性分级、PoC 与修复建议(禁止省略)。

0xShe/PHP-Code-Audit-Skill4021 repo~398Automated safety check: PassNo licence6 mo ago
263

PHP Web 源码 XSS 审计工具。识别用户输入进入输出上下文(HTML/属性/JS/URL/模板),分析转义与防护策略,输出可利用性分级、PoC 与修复建议(禁止省略)。

0xShe/PHP-Code-Audit-Skill4021 repo~370Automated safety check: PassNo licence6 mo ago
264

XSLT injection testing: processor fingerprinting, XXE and document() SSRF, EXSLT write primitives, PHP/Java/.NET extension RCE surfaces.

langbyyi/CyberStrikeAI-SRC1351 repo~3kAutomated safety check: PassApache-2.0yesterday
265

RLS validation, security audits, OWASP compliance, and vulnerability scanning.

bybren-llc/safe-agentic-workflow423—~1.4kAutomated safety check: NotesMIT2 mo ago
266

A skill your agent uses when scanning code or configuration for security vulnerabilities.

WrongStack/WrongStack370—~2.1kAutomated safety check: PassMITtoday
267

Default code-quality route for broad code review, PR review, maintainability, correctness, and regression-risk checks.

foryourhealth111-pixel/Vibe-Skills3.6k—~1.4kAutomated safety check: NotesApache-2.01 mo ago
268

Zimbra SOAP user enum, CVE-2022-37042, SSRF when webmail. An agent skill from uphiago/recon-skills.

uphiago/recon-skills1.3k—~2.2kAutomated safety check: PassMIT1 mo ago
269

Audit application source code against the OWASP Top 10 (2021) vulnerability categories — broken access control, cryptographic failures, injection, insecure design, security misconfiguration…

briiirussell/cybersecurity-skills413—~8.6kAutomated safety check: NotesMIT4 mo ago
270

Review the implementation source code of MCP (Model Context Protocol) servers, clients, and tool handlers against a security baseline — authentication, sessions, rate limiting, input-schema…

github/awesome-copilot40k—~5.2kAutomated safety check: PassMITtoday
271

A skill your agent uses when the user says 'OWASP audit', 'OWASP top 10', 'security audit', 'vulnerability assessment', 'full security check', or needs a comprehensive web application security…

cwinvestments/memstack423—~5kAutomated safety check: PassProprietary12 days ago
272

Security patterns and OWASP guidelines. An agent skill from aiskillstore/marketplace.

aiskillstore/marketplace4301 repo~1.2kAutomated safety check: NotesNo licencetoday
273

Security auditor for Laravel applications. An agent skill from aiskillstore/marketplace.

aiskillstore/marketplace4304 repos~1.1kAutomated safety check: NotesNo licencetoday
274

AI/LLM defensive security reference: prompt-injection defense, OWASP LLM Top 10 defensive mapping, MCP and agentic tool-call hardening, training-data poisoning detection, model-output validation and…

modu-ai/moai-adk1.2k—~4.5kAutomated safety check: PassApache-2.0today
275

OWASP Top 10 security checklist, authentication patterns, input validation, and HTTP security headers reference.

modu-ai/moai-adk1.2k—~2.3kAutomated safety check: PassApache-2.0today
276

DevSecOps, container, and API operational defensive security reference: CI/CD pipeline hardening, secret scanning, IaC misconfiguration detection, SAST/DAST integration, container image scanning…

modu-ai/moai-adk1.2k—~2.6kAutomated safety check: PassApache-2.0today
277

Search-visibility and crawlability reference for web output: canonical URL discipline, per-page title and meta description uniqueness, robots.txt and sitemap.xml as host-derived artifacts, JSON-LD…

modu-ai/moai-adk1.2k—~3.3kAutomated safety check: PassApache-2.0today
278

SQL injection screening for host code (MoonBit / TS / Rust) plus secretlint setup notes.

mizchi/skills359—~1.4kAutomated safety check: PassNo licence7 days ago
279

Analyzes changed security boundaries against applicable OWASP risks and project contracts.

pavel-molyanov/molyanov-ai-dev297—~566Automated safety check: PassMIT1 mo ago
280

Check compliance with OWASP Top 10 security risks and best practices.

jeremylongshore/tons-of-skills-marketplace2.8k—~1.1kAutomated safety check: PassMITtoday
281

Detect and analyze SQL injection vulnerabilities in application code and database queries.

jeremylongshore/tons-of-skills-marketplace2.8k—~1.6kAutomated safety check: PassMITtoday
282

Execute this skill enables AI assistant to automatically scan for xss (cross-site scripting) vulnerabilities in code.

jeremylongshore/tons-of-skills-marketplace2.8k—~1.1kAutomated safety check: PassMITtoday
283

Scan for input validation vulnerabilities and injection risks.

jeremylongshore/tons-of-skills-marketplace2.8k—~1.1kAutomated safety check: PassMITtoday
284

Validate CSRF protection implementations for security gaps. An agent skill from jeremylongshore/tons-of-skills-marketplace.

jeremylongshore/tons-of-skills-marketplace2.8k—~1.8kAutomated safety check: PassMITtoday
285

当目标为微信/支付宝/抖音/百度等小程序(含微信云开发/云函数)、需要小程序包获取与反编译、appid/appsecret/接口提取、微信登录链/支付/越权/WebView/rich-text 渲染/云开发漏洞挖掘时调用。负责小程序全生命周期深度挖掘:包还原 → 代码审计 → 接口与密钥提取 → 登录/支付/越权/渲染/云开发专项 → 验证要点。命中场景:openid 替换越权、code…

zhaji2333/CkSKILLS114—~1.5kAutomated safety check: PassMIT24 days ago
286

WordPress plugin development with hooks, security, REST API, custom post types.

secondsky/claude-skills227—~4.6kAutomated safety check: PassMIT10 days ago
287

Security-focused review of native Android and iOS mobile app source code against OWASP MASVS v2.1.0.

OWASP/secure-agent-playbook187—~622Automated safety check: PassCC-BY-4.013 days ago
288

Harden code against vulnerabilities. An agent skill from BlackBeltTechnology/pi-agent-dashboard.

BlackBeltTechnology/pi-agent-dashboard315—~4.7kAutomated safety check: NotesMITtoday