owasp-top-10 skills

33 tagged owasp-top-10, measured the same way as everything else here.

Browse within: agent-security 16agentskills 16openclaw 16openclaw-skills 16owasp 11fastapi 10flask 10

scholarly360/owasp-top10-web-skills

Skill Claude CodeCodex

Use this skill whenever you need to audit, test, or fix Authentication Failures (OWASP A07:2025) in Python web applications — especially FastAPI and Flask. Triggers include: any mention of JWT security, session management, brute force protection, credential stuffing, password policy, MFA enforcement, login rate…

not rated 21 4mo ago A 166 tokens original MIT

agent-security

02

olanokhin/agent-security-skill

Skill Claude CodeCodex

Use when reviewing or writing LLM, RAG, MCP, tool, or agent code for OWASP-aligned security issues; triggered by "owasp my code", "owasp this PR", AI security review, PR review, or changes to AI system code.

not rated 5 2mo ago A 57 tokens original MIT

swap-integration

03

semiotic-ai/agentsec

Skill Claude CodeCodex

Integrate PancakeSwap swaps into applications. Use when user says "integrate swaps", "pancakeswap", "smart router", "add swap functionality", "build a swap frontend", "create a swap script", "smart contract swap integration", "use Universal Router", or mentions swapping tokens via PancakeSwap.

not rated 5 2mo ago A 69 tokens original MIT

harden

04

Calvin-LLC/agentic-hardening-skill

Skill Claude CodeCodex

Evidence-driven codebase hardening. Audits security (OWASP Top 10:2025), supply chain (inventory vs SBOM vs SLSA v1.2), reliability (OTel + operational limits), tests (sandboxed tiers), and accessibility (WCAG 2.2 AA). Every finding is quoted, matrix-scored, and cited. Does not fix. Reports with file:line and a…

not rated 3 7d ago A 117 tokens original MIT

aegis

05

Erkan3034/aegis

Skill Claude CodeCodex

Production-grade red-team security audit skill for AI coding assistants. Audits codebases for OWASP Top 10 vulnerabilities, auth flaws, IDOR, XSS, SSRF, JWT misuse, Supabase policies, and provides drop-in secure code replacements with zero exfiltration risk.

not rated 1 1mo ago A 61 tokens original MIT

At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: