Discover Agent Skills for security & testing. Browse 105 skills for Claude, ChatGPT & Codex.
Validates test coverage against real-world production scenarios and identifies critical gaps between specifications and reality.
Validates sphinx-needs requirement sets for structural integrity, traceability gaps, and logical consistency.
Validates and sanitizes user input using Zod schemas to protect web applications against XSS, injection attacks, and data corruption.
Implements software features from task specifications using Test-Driven Development (TDD) and automated validation.
Configures robust HTTP security headers to protect web applications against clickjacking, cross-site scripting (XSS), and data exfiltration.
Simplifies the packaging and distribution of IDA Pro plugins for the Hex-Rays Plugin Manager ecosystem.
Audits and secures software dependencies to prevent supply chain attacks and mitigate known vulnerabilities in application packages.
Identifies and mitigates resource exhaustion and denial-of-service vulnerabilities in AI-generated code by implementing strict operational limits and resource-aware patterns.
Implement secure subscription billing and payment gating using Clerk Billing and Stripe while ensuring PCI-DSS compliance through outsourced card data handling.
Prevents the exposure of sensitive credentials and private data by identifying hardcoded secrets and insecure logging patterns in generated code.
Provides comprehensive operational security guidance for web application deployment, monitoring, and secret management.
Identifies and mitigates supply chain vulnerabilities in AI-generated code, including outdated packages, typosquatting, and dependency confusion attacks.
Identifies and remediates common injection vulnerabilities in AI-generated code, including SQL injection, command injection, and cross-site scripting (XSS).
Provides a comprehensive framework for understanding and mitigating the security risks associated with AI-generated code and the "vibe coding" development paradigm.
Implements an Eval-Driven Development (EDD) framework to ensure reliability and regression testing for AI-generated code.
Secures web applications by implementing Cross-Site Request Forgery (CSRF) protection using cryptographic token validation and secure cookie policies.
Manages and configures security permissions, sandboxing environments, and tool access protocols for Claude Code.
Guides the implementation of Spring Boot applications using Test-Driven Development patterns with JUnit 5, Mockito, and Testcontainers.
Automates the execution, diagnosis, and repair of project test suites while configuring best-in-class testing infrastructure for any programming language.
Executes precise, structural code searches and analysis using Abstract Syntax Tree (AST) patterns to identify complex language constructs.
Enforces rigorous development standards by requiring empirical evidence and formal certification before any task is marked as complete.
Orchestrates multiple sub-agents to concurrently investigate and resolve independent test failures and bugs.
Implements secure and idiomatic authentication and authorization systems in NestJS applications using JWT, guards, and role-based access control.
Analyzes email messages and mailbox archives to investigate phishing, business email compromise, and security threats.
Implements secure JSON Web Token authentication with refresh token logic and role-based access control for Node.js applications.
Implements comprehensive testing suites for Node.js applications using Jest, covering unit tests, mocking, and API integration.
Enhances development workflows with persistent memory, automated security guarding, and multi-agent coordination for complex repositories.
Ensures skill and Model Context Protocol (MCP) implementations align with their manifests by performing Codex-powered semantic comparisons of code against descriptions, preconditions, and effects.
Validates Pivot pipeline fingerprinting by identifying code changes that bypass cache invalidation logic.
Simplifies the setup, management, and automation of MailHog servers for local email testing and development workflows.
Scroll for more results...