Discover Agent Skills for security & testing. Browse 105 skills for Claude, ChatGPT & Codex.
Maps and inventories every application entry point to identify potential security exposure and undocumented interfaces.
Provides expert guidance and code patterns for implementing comprehensive mocking strategies in Jest-based testing environments.
Defines business objectives and critical assets to anchor threat modeling in organizational impact.
Audits source code for cryptographic vulnerabilities, weak encryption algorithms, and insecure secret management based on OWASP standards.
Performs comprehensive security audits based on the OWASP Top 10 vulnerabilities using parallel subagent analysis.
Automates comprehensive privacy threat modeling using the LINDDUN framework to identify data protection risks and regulatory gaps.
Automates architecture-level threat modeling and STRIDE analysis to identify security gaps and visualize data flows.
Guides the implementation of Test-Driven Development for VS Code extensions using the t-wada methodology to ensure robust command, WebView, and terminal logic.
Analyzes source code to identify and mitigate sensitive data leakage, verbose error messages, and unauthorized information disclosure risks.
Systematically identifies, groups, and resolves failing tests to restore codebase stability and achieve a green test suite.
Implements secure handling, storage, and rotation of sensitive credentials across major CI/CD platforms and cloud providers.
Automates comprehensive security audits, vulnerability scanning, and secret detection for complex multi-service architectures.
Implements secure smart contract development patterns and identifies critical vulnerabilities in Solidity code to ensure robust blockchain applications.
Audits source code for authentication vulnerabilities and session management failures to align with OWASP security standards.
Configures and automates Static Application Security Testing (SAST) tools for comprehensive vulnerability detection in application code.
Implements comprehensive Python testing strategies using pytest, fixtures, mocking, and test-driven development best practices.
Implements comprehensive smart contract testing suites using Hardhat and Foundry to ensure blockchain security and gas efficiency.
Systematically traces bugs through call stacks to identify and fix the original source of errors rather than just their symptoms.
Analyzes GraphQL endpoints and schemas for critical security vulnerabilities like introspection leaks, depth abuse, and missing authorization.
Explains complex security frameworks, vulnerability categories, and specific findings using real-world examples from your own codebase.
Analyzes source code for repudiation threats by identifying missing audit logs, insufficient event tracking, and log tampering vulnerabilities.
Automates Ark Dashboard UI testing and screenshot generation for pull requests using Playwright and Kubernetes.
Generates comprehensive security reports from vulnerability findings, scanner results, and analysis data.
Generates and applies production-ready code fixes for security vulnerabilities and findings identified within your codebase.
Secures and organizes API keys and authentication credentials for external services within the Claude Code environment.
Enforces a strict Red-Green-Refactor workflow to ensure all production code is verified by failing tests first.
Conducts sequential, risk-centric threat modeling using the 7-stage PASTA framework to align security findings with business objectives.
Analyzes WebSocket implementations for security vulnerabilities like CSWSH, missing authentication, and inadequate message validation.
Master the Bash Automated Testing System (Bats) to create robust, production-grade unit tests for shell scripts and CI/CD pipelines.
Automates end-to-end testing and UI debugging for local web applications using Playwright and managed server lifecycles.
Scroll for more results...