Discover Agent Skills for security & testing. Browse 105 skills for Claude, ChatGPT & Codex.
Hardens your application's Clerk authentication implementation using industry security best practices and verified implementation patterns.
Implements industry-standard security best practices for Vercel environment variables, secrets, and project access controls.
Diagnoses and fixes Playwright E2E test failures by analyzing CI reports, screenshots, and GraphQL network traces.
Validates cryptographic implementations against known attack vectors and edge cases using Project Wycheproof test vectors.
Performs professional web application security auditing and HTTP traffic manipulation using Burp Suite's core testing tools.
Patches System Under Test (SUT) code to bypass checksums, non-determinism, and validation barriers during fuzzing.
Facilitates ultra-granular, line-by-line code analysis to build comprehensive architectural context for security audits.
Detects timing side-channel vulnerabilities in cryptographic code to prevent sensitive data leakage through execution timing.
Facilitates automated fuzz testing and vulnerability detection for Rust projects using the libFuzzer backend and Cargo.
Builds and configures custom, modular fuzzers for advanced security research and vulnerability detection.
Identifies similar vulnerabilities and bugs across codebases using systematic pattern-based analysis and advanced security tool integration.
Performs deep static analysis and vulnerability detection by querying codebases as searchable databases.
Identifies and categorizes state-changing entry points in smart contract codebases to streamline security audits and map attack surfaces.
Generates specialized Claude Code skills for security testing tools and techniques by analyzing the Trail of Bits Testing Handbook.
Measures and analyzes code coverage during fuzzing campaigns to identify execution blockers and optimize harness effectiveness.
Detects memory errors like buffer overflows and use-after-free bugs during C/C++ fuzzing and security audits.
Detects and analyzes timing side-channel vulnerabilities in cryptographic code to prevent secret data leakage.
Integrates OSS-Fuzz continuous fuzzing infrastructure into open-source projects for automated vulnerability detection and security auditing.
Detects vulnerabilities in Ruby applications and C extensions using coverage-guided fuzzing and advanced sanitizer integration.
Implements coverage-guided fuzzing for C/C++ projects using the LLVM-integrated libFuzzer toolchain.
Performs high-speed static analysis to identify security vulnerabilities and enforce coding standards across your codebase.
Performs deep static analysis and interprocedural taint tracking to detect complex security vulnerabilities across multi-function code paths.
Evaluates codebase security and architectural maturity using the Trail of Bits 9-category framework to generate evidence-based scorecards and improvement roadmaps.
Provides deep technical expertise for analyzing, parsing, and verifying DWARF debug information in compiled binaries.
Guides fuzzing engines toward deep code paths by providing domain-specific tokens and protocol-specific keywords.
Searches and extracts security data from Burp Suite project files using regex patterns and command-line tools.
Automates high-performance multi-core fuzzing for C/C++ projects to detect security vulnerabilities and memory corruption issues.
Provides expert guidance and implementation patterns for creating effective fuzzing harnesses across multiple programming languages.
Perform coverage-guided fuzz testing for pure Python code and C extensions to detect security vulnerabilities and memory corruption.
Implements advanced property-based testing patterns to identify edge cases and security vulnerabilities in code and smart contracts.
Scroll for more results...