发现security & testing类别的 Claude 技能。浏览 105 个技能,找到适合您 AI 工作流程的完美功能。
Analyzes project dependencies across multiple ecosystems to detect, report, and automatically fix known security vulnerabilities and CVEs.
Validates and registers version-controlled hook manifests to automate governance and enforcement within the Betty infrastructure.
Tests and validates Betty Framework hook manifests to ensure correct trigger logic and command execution before deployment.
Generates comprehensive STRIDE-based threat models with automated risk scoring and actionable mitigation strategies.
Secures LLM applications by implementing prompt injection detection, PII redaction, and output content filtering.
Enforces a strict Red-Green-Refactor workflow to ensure all code is verified by failing tests before implementation.
Automatically redacts sensitive personal data from logs and outputs to ensure regulatory compliance and data privacy.
Enforces a rigorous verification-first workflow by requiring fresh command evidence before any completion or success claims are made.
Automates end-to-end testing of web applications using AI-powered test generation and execution via the Bugster CLI.
Systematically traces software bugs backward through the execution stack to identify and resolve original triggers.
Provides expert guidance and automated command patterns for escalating privileges on Windows systems during security audits.
Identifies and exploits Linux privilege escalation vectors including SUID binaries, sudo misconfigurations, and kernel vulnerabilities.
Facilitates advanced file transfers and data exfiltration across Linux and Windows using diverse protocols and living-off-the-land techniques.
Automates the discovery, execution, and verification of software tests across unit, integration, web, and desktop environments.
Guides the strategic creation of tests by focusing on core user flows and behavioral outcomes while maintaining development velocity.
Conducts professional Active Directory penetration testing and security assessments using industry-standard tools and methodologies.
Implements secure authentication and authorization systems including JWT, OAuth2, OIDC, and role-based access control.
Guides developers through the 2025 Rust ecosystem with expert patterns for testing, security auditing, and performance profiling.
Conducts authorized social engineering assessments, phishing simulations, and credential harvesting to test organizational security awareness.
Analyzes Rust code to implement idiomatic error handling using Result types, context propagation, and custom error enums.
Generates robust property-based tests using proptest to automatically discover edge cases in Rust algorithms and data structures.
Provides a centralized index for routing Claude to universal and language-specific security vulnerability detection patterns.
Automates and guides wireless network security assessments, including WPA/WPA2 cracking, WPS exploitation, and Evil Twin attacks.
Employs an evidence-based methodology to investigate codebases, diagnose root causes, and map system architectures with calibrated confidence levels.
Generates comprehensive Pest test suites for Laravel projects, ensuring high coverage across controllers, services, and Livewire components with standardized organizational patterns.
Ensures the quality and schema compliance of generated components through automated validation, scoring, and auto-fixing.
Analyzes codebases to identify technical debt, architectural complexity, and refactoring opportunities across multiple programming languages.
Validates test code quality by detecting fake success patterns, improper mocking, and ensuring robust integration testing standards.
Automates HashiCorp Vault administration, secret management, and secure identity-based access control.
Generates standardized, professional security audit reports with automated severity classification and ASVS mapping.
Scroll for more results...