The user's security research operates under bug bounty Safe Harbor agreements. Major bounty platforms (HackerOne, Bugcrowd, Intigriti, YesWeHack) and individual programs from major tech companies — including AI labs (OpenAI, Anthropic, Google DeepMind), cloud providers (AWS, GCP, Azure, Cloudflare), social platforms…
This skill covers authentication, authorization, and access control using Better Auth in Next.js 15+ legal applications. It includes a discovery framework for understanding user requirements before implementation, communication guidelines for non-technical users, and implementation patterns for common legal tech…
Executa protocolos completos de auditoria e hardening de segurança para qualquer ambiente de TI. Use esta skill SEMPRE que o usuário mencionar: auditoria de segurança, hardening, pentest, vulnerabilidades, CVE, firewall, SSL/TLS, OWASP, segurança de servidor, VPS, domínio, API, Docker, banco de dados, CI/CD, segurança…
SafeClaw validates every tool call, message, and agent action against OWL ontologies and SHACL constraints before execution. It acts as a governance gate between your AI agent and the tools it uses.
Security scanner for Claude skills. Runs seven checks against a skill to detect known threat patterns including exfiltration, behavioral manipulation, obfuscation, remote code execution, filesystem overreach, credential harvesting, and dependency risk. Use whenever the user wants to check, audit, verify, review, or…
Reference implementation showing how to add agent sign-in/sign-up to any software tool. Demonstrates dual authentication (human + agent), SKILL.md creation, and ClawHub publishing.
Configure CORS correctly and safely — allowlist real origins, handle preflight, scope credentials and headers narrowly, and never reflect arbitrary origins.
Audit professionnel complet d'un projet logiciel couvrant architecture, code mort, dette technique, dépendances, API, authentification, autorisation, sécurité applicative, CI/CD, performance, production et validation finale.
Secure coding practices and vulnerability prevention. Audits dependencies for vulnerabilities, enforces secure coding patterns, protects API routes, and prevents OWASP Top 10 vulnerabilities. Use when building applications, reviewing code for security issues, adding API protection, or ensuring production-ready…
A converter for CNNVD XML files, where CNNVD is China’s national database of information-security vulnerabilities. It changes newer XML files into the older format by renaming tags and normalising their structure.
Use when designing, implementing, reviewing, refactoring, or maintaining software in any programming language where security is a requirement. Apply secure-by-design principles, identify vulnerabilities, and recommend industry best practices throughout the software development lifecycle.
★not rated 2
changed todayA48 tokens
At most 3 mods per repository are shown here, and a mod shipped inside a plugin is left to that plugin's page — the rest are on their repository pages: