kissrosecicd-hub

41 mods across 1 repository, 31 stars between them.

project-bootstrap

25

kissrosecicd-hub/agents-evolution

Skill Claude CodeCodex

A setup workflow for preparing a new project with instruction files that coding tools can read. It checks existing project and user-level rules before creating or updating them.

31 4mo ago A 0 tokens original MIT

git-workflow

26

kissrosecicd-hub/agents-evolution

Skill Claude CodeCodex

Git workflow patterns - conventional commits, branch naming, PR templates, merge strategies. Use when: commit, PR, branch naming, git workflow, conventional commits, semantic versioning.

31 4mo ago A 40 tokens original MIT

security

27

kissrosecicd-hub/agents-evolution

Skill Claude CodeCodex

Application security patterns - authentication, secrets management, input validation, OWASP Top 10. Use when: auth, JWT, secrets, API keys, SQL injection, XSS, CSRF, RLS, security audit, pen testing basics.

31 4mo ago A 51 tokens original MIT

session-recall

28

kissrosecicd-hub/agents-evolution

Skill Claude CodeCodex

Recover and summarize prior Codex conversations from local Codex history and session logs. Use when the user asks what happened in a previous chat, asks to "remember" past work, wants the last or previous session, gives a specific date or approximate time, wants to search old dialogs by keyword/topic/project, or asks…

31 4mo ago A 78 tokens original MIT

spec-mode

30

kissrosecicd-hub/agents-evolution

Skill Claude CodeCodex

Use when the user asks to structure work as specifications, requirements, design docs, team task lists, or a .spec/ /TASK.md + Requirements.md + Design.md workflow in Russian. Use this skill to scaffold and maintain spec packs with traceability between subtasks and requirements.

31 4mo ago A 61 tokens original MIT

kissrosecicd-hub/agents-evolution

Skill Claude CodeCodex

A skill for creating custom subagents for several AI command-line tools, including Codex, Claude Code, Gemini CLI, and GitHub Copilot CLI. It routes the request to the selected tool's format and storage location.

31 4mo ago A 82 tokens original MIT

kissrosecicd-hub/agents-evolution

Skill Claude CodeCodex

Audits GitHub Actions workflows for security vulnerabilities in AI agent integrations including Claude Code Action, Gemini CLI, OpenAI Codex, and GitHub AI Inference. Detects attack vectors where attacker-controlled input reaches AI agents running in CI/CD pipelines, including env var intermediary patterns, direct…

31 4mo ago A 105 tokens copy · 88% MIT

differential-review

33

kissrosecicd-hub/agents-evolution

Skill Claude CodeCodex

Performs security-focused differential review of code changes (PRs, commits, diffs). Adapts analysis depth to codebase size, uses git history for context, calculates blast radius, checks test coverage, and generates comprehensive markdown reports. Automatically detects and prevents security regressions.

31 4mo ago A 61 tokens copy · 94% MIT

fp-check

34

kissrosecicd-hub/agents-evolution

Skill Claude CodeCodex

Systematically verifies suspected security bugs to eliminate false positives. Produces TRUE POSITIVE or FALSE POSITIVE verdicts with documented evidence for each bug.

31 4mo ago A 32 tokens copy · 86% MIT

insecure-defaults

35

kissrosecicd-hub/agents-evolution

Skill Claude CodeCodex

Detects fail-open insecure defaults (hardcoded secrets, weak auth, permissive security) that allow apps to run insecurely in production. Use when auditing security, reviewing config management, or analyzing environment variable handling.

31 4mo ago A 48 tokens copy · 89% MIT

kissrosecicd-hub/agents-evolution

Skill Claude CodeCodex

Creates custom Semgrep rules for detecting security vulnerabilities, bug patterns, and code patterns. Use when writing Semgrep rules or building custom static analysis detections.

31 4mo ago A 37 tokens copy · 86% MIT

sharp-edges

37

kissrosecicd-hub/agents-evolution

Skill Claude CodeCodex

Identifies error-prone APIs, dangerous configurations, and footgun designs that enable security mistakes. Use when reviewing API designs, configuration schemas, cryptographic library ergonomics, or evaluating whether code follows 'secure by default' and 'pit of success' principles. Triggers: footgun, misuse-resistant…

31 4mo ago A 74 tokens copy · 88% MIT

semgrep

38

kissrosecicd-hub/agents-evolution

Skill Claude CodeCodex

Run Semgrep static analysis scan on a codebase using parallel subagents. Supports two scan modes — "run all" (full ruleset coverage) and "important only" (high-confidence security vulnerabilities). Automatically detects and uses Semgrep Pro for cross-file taint analysis when available. Use when asked to scan code for…

31 4mo ago A 95 tokens copy · 100% MIT

kissrosecicd-hub/agents-evolution

Skill Claude CodeCodex

Identifies dependencies at heightened risk of exploitation or takeover. Use when assessing supply chain attack surface, evaluating dependency health, or scoping security engagements.

31 4mo ago A 37 tokens copy · 89% MIT

caveman

41

kissrosecicd-hub/agents-evolution

Instructions file CodexOpenCode

Ultra-compressed communication mode. Slash token usage 75% by speaking like caveman while keeping full technical accuracy. Use when user says "caveman mode", "talk like caveman", "use caveman", "less tokens", "be brief", or invokes /caveman. Also auto-triggers when token efficiency is requested.

31 4mo ago C 5,881 tokens original MIT