Descubre Habilidades de Claude para security & testing. Explora 105 habilidades y encuentra las capacidades perfectas para tus flujos de trabajo de IA.
Provides a comprehensive library of web shell samples across multiple languages for security research and detection validation.
Provides a curated library of web shell samples for security research, detection system testing, and authorized penetration testing.
Optimizes Solidity smart contracts by implementing gas-efficient patterns and storage techniques to reduce transaction costs.
Manages secure credential access and secret injection using the 1Password CLI within terminal environments.
Provides expert guidance and best practices for writing clean, maintainable, and effective unit and integration tests using industry-standard patterns.
Executes PAL MCP tools through a scriptable CLI interface to streamline code reviews, security audits, and developer workflows.
Designs and implements comprehensive, behavior-driven software tests across multiple platforms and testing scopes.
Designs and implements comprehensive software test suites using advanced heuristics and industry-standard patterns.
Implements robust testing strategies for XState v5 state machines using Vitest and Jest.
Evaluates code changes against custom quality rules and best practices automatically after every edit.
Remediates security vulnerabilities identified by DryRunSecurity by applying context-aware fixes grounded in authoritative documentation.
Implements GDPR-compliant data processing, consent management systems, and privacy-by-design controls for applications handling EU personal data.
Enables automated end-to-end testing and UI interaction for local web applications using Playwright and integrated server management.
Analyzes privilege escalation paths and maps vulnerability chains across infrastructure to identify and mitigate security risks.
Enforces a mandatory evidence-first workflow by requiring successful command execution before any work is marked as complete.
Enforces a rigorous four-phase debugging methodology to identify root causes and implement permanent fixes for complex software issues.
Implements secure subdomain isolation, strict cookie scoping, and token-bound communication patterns for WebSpec environments.
Enforces a strict Red-Green-Refactor workflow to ensure high-quality, verified production code through test-first implementation.
Generates standardized AI evaluation metrics for the Fair-Forge library including schemas, implementations, and comprehensive test suites.
Manages secure OAuth 2.0 flows, JWT token structures, and biometric device binding for the WebSpec ecosystem.
Implements comprehensive Python testing strategies using pytest, mocking, and test-driven development best practices.
Streamlines testing of Temporal workflows and activities in Python using time-skipping, mocking, and determinism validation.
Performs rapid security scanning and custom pattern matching to identify vulnerabilities and enforce coding standards across diverse codebases.
Ports existing Semgrep security and quality rules to new target languages using a rigorous, test-driven validation workflow.
Identifies error-prone API designs, dangerous configurations, and security footguns to ensure code follows secure-by-default principles.
Implements the industry-standard Trail of Bits 5-step secure development workflow to audit smart contracts and identify vulnerabilities.
Conducts deep security investigations into Django and DRF authorization logic to identify and prevent Insecure Direct Object Reference (IDOR) vulnerabilities.
Evaluates codebase security and maturity using the Trail of Bits framework to provide evidence-based ratings and prioritized improvement roadmaps.
Identifies and hunts for recurring security vulnerabilities and bug patterns across entire codebases using systematic pattern-based analysis.
Builds modular, high-performance custom fuzzers using the LibAFL framework for advanced security testing and research.
Scroll for more results...