搜索结果
全部能力
找到 661 个相关结果 / 提示词与 LLM
安全与治理 / 审核评估
csp-bypass-advanced
csp-bypass-advanced
Advanced Content Security Policy bypass techniques. Use when XSS or data exfiltration is blocked by CSP and you need to find policy weaknesses, trusted endpoint abuse, nonce leakage, or exfiltration channels that CSP cannot block.
安全与治理 / 审核评估
build-zoom-team-chat-app
build-zoom-team-chat-app
Reference skill for Zoom Team Chat. Use after routing to a chat workflow when building user-scoped messaging integrations, chatbot experiences, rich cards,…
安全与治理 / 审核评估
rsa-attack-techniques
rsa-attack-techniques
RSA attack playbook for CTF and real-world cryptanalysis. Use when given RSA parameters (n, e, c) and need to recover plaintext by exploiting weak keys, small exponents, shared factors, or padding oracles.
安全与治理 / 审核评估
smart-contract-vulnerabilities
smart-contract-vulnerabilities
Smart contract vulnerability playbook. Use when auditing Solidity/EVM contracts for reentrancy, integer overflow, access control, delegatecall, flash loan, signature replay, and MEV-related attack patterns.
安全与治理 / 审核评估
linux-lateral-movement
linux-lateral-movement
Linux lateral movement playbook. Use after gaining initial access to pivot across Linux hosts via SSH hijacking, credential harvesting, internal pivoting, D-Bus exploitation, sudo token reuse, and shared filesystem abuse.
安全与治理 / 审核评估
defi-attack-patterns
defi-attack-patterns
DeFi attack pattern playbook. Use when analyzing flash loan attacks, price oracle manipulation, MEV sandwich attacks, governance exploits, bridge vulnerabilities, and token standard edge cases in decentralized finance protocols.
安全与治理 / 审核评估
gcp-development
gcp-development
Google Cloud Platform (GCP) development best practices for Cloud Functions, Cloud Run, Firestore, BigQuery, and Infrastructure as Code.
安全与治理 / 审核评估
gdpr-dsgvo-expert
gdpr-dsgvo-expert
Senior GDPR/DSGVO expert and internal/external auditor for data protection compliance. Provides EU GDPR and German DSGVO expertise, privacy impact assessments,…
安全与治理 / 审核评估
clawdstrike
clawdstrike
Security audit and threat model for OpenClaw gateway hosts. Use to verify OpenClaw configuration, exposure, skills/plugins, filesystem hygiene, and to produce…
安全与治理 / 审核评估
plaid-fintech
plaid-fintech
Expert patterns for Plaid API integration including Link token
安全与治理 / 审核评估
docx
docx
Use this skill whenever the user wants to create, read, edit, or manipulate Word documents (.docx files). Triggers include: any mention of 'Word doc', 'word…
安全与治理 / 审核评估
fastapi-development
fastapi-development
Build high-performance FastAPI applications with async routes, validation, dependency injection, security, and automatic API documentation. Use when developing modern Python APIs with async support, automatic OpenAPI documentation, and high performance requirements.
安全与治理 / 审核评估
macos-security-bypass
macos-security-bypass
macOS security bypass playbook. Use when targeting macOS endpoints and need to bypass TCC, Gatekeeper, SIP, sandbox, code signing, or entitlement-based protections during authorized red team or pentest engagements.
安全与治理 / 审核评估
AI/ML 安全
ai-ml-security
AI/ML 安全手册。用于评估模型供应链攻击(pickle RCE、投毒权重)、对抗样本、模型投毒、模型窃取、数据隐私攻击(成员推断、模型逆向)以及自主智能体安全风险。
安全与治理 / 审核评估
skill-security-audit
skill-security-audit
Detect malicious patterns in AI Agent skills — 13 detectors for backdoors, credential theft, data exfiltration, and supply-chain attacks. Based on SlowMist's…
安全与治理 / 审核评估
arize-trace
arize-trace
下载、导出并检查现有的 Arize traces 和 spans,以了解 LLM 应用的运行状态或调试运行时问题。涵盖按 ID 导出 traces、…
安全与治理 / 审核评估
code-review-excellence
code-review-excellence
Provides comprehensive code review guidance for React 19, Vue 3, Angular 17+, Svelte 5, Rust, TypeScript, Java, Python, Django, Go, C#/.NET, Kotlin, NestJS, C/C++, and more. Helps catch bugs, improve code quality, and give constructive feedback. Use when: reviewing pull requests, conducting PR reviews, code review, reviewing code changes, establishing review standards, mentoring developers, architecture reviews, security audits, checking code quality, finding bugs, giving feedback on code.
安全与治理 / 审核评估
基于角色的访问控制 (RBAC)
access-control-rbac
实现基于角色的访问控制(RBAC)、权限管理和授权策略。用于构建具有细粒度权限的安全访问控制系统。
安全与治理 / 审核评估
buddy-sings
buddy-sings
Use when user wants their Claude Code pet (/buddy) to sing a song. Triggers on any request that combines the concept of their Claude Code buddy, pet, or companion with singing or music. Supports multilingual triggers — match equivalent phrases in any language.
安全与治理 / 审核评估
substance-3d-texturing
substance-3d-texturing
Comprehensive skill for Adobe Substance 3D Painter texturing and material creation workflow. Use this skill when creating PBR materials, exporting textures for…