灵感菇

AI 技能的自然生态,你的一句话,蔓延出无限连接。

搜索结果

ing

找到 841 个相关结果 / 安全与治理

安全与治理 / 审核评估

smart-contract-vulnerabilities

smart-contract-vulnerabilities

465

Smart contract vulnerability playbook. Use when auditing Solidity/EVM contracts for reentrancy, integer overflow, access control, delegatecall, flash loan, signature replay, and MEV-related attack patterns.

Stars 637
auditragsmartcontract

安全与治理 / 审核评估

linux-lateral-movement

linux-lateral-movement

465

Linux lateral movement playbook. Use after gaining initial access to pivot across Linux hosts via SSH hijacking, credential harvesting, internal pivoting, D-Bus exploitation, sudo token reuse, and shared filesystem abuse.

Stars 635
uxtestingkubernetessecurity

安全与治理 / 审核评估

mapkit-location

mapkit-location

462

Implement, review, or improve maps and location features in iOS/macOS apps using MapKit and CoreLocation. Use when working with Map views, annotations,…

Stars 587
uiauthapimapkit

安全与治理 / 审核评估

defi-attack-patterns

defi-attack-patterns

462

DeFi attack pattern playbook. Use when analyzing flash loan attacks, price oracle manipulation, MEV sandwich attacks, governance exploits, bridge vulnerabilities, and token standard edge cases in decentralized finance protocols.

Stars 634
uidefiattackpatterns

安全与治理 / 审核评估

gcp-development

gcp-development

461

Google Cloud Platform (GCP) development best practices for Cloud Functions, Cloud Run, Firestore, BigQuery, and Infrastructure as Code.

Stars 111
uisecuritymonitoringgcp

安全与治理 / 审核评估

plaid-fintech

plaid-fintech

459

Expert patterns for Plaid API integration including Link token

Stars 37,697
authapiplaidfintech

安全与治理 / 审核评估

macos-security-bypass

macos-security-bypass

455

macOS security bypass playbook. Use when targeting macOS endpoints and need to bypass TCC, Gatekeeper, SIP, sandbox, code signing, or entitlement-based protections during authorized red team or pentest engagements.

Stars 635
uiuxsecurityauth

安全与治理 / 审核评估

fastapi-development

fastapi-development

455

Build high-performance FastAPI applications with async routes, validation, dependency injection, security, and automatic API documentation. Use when developing modern Python APIs with async support, automatic OpenAPI documentation, and high performance requirements.

Stars 219
uiperformancesecurityauth

安全与治理 / 审核评估

Active Directory ACL 滥用

active-directory-acl-abuse

452

Active Directory ACL 滥用手册。用于利用配置错误的 AD 权限,包括 GenericAll、WriteDACL、DCSync 权限、shadow credentials、LAPS 读取、GPO 滥用以及 BloodHound 引导的攻击路径。

Stars 0
uiactivedirectoryacl

安全与治理 / 审核评估

AI/ML 安全

ai-ml-security

451

AI/ML 安全手册。用于评估模型供应链攻击(pickle RCE、投毒权重)、对抗样本、模型投毒、模型窃取、数据隐私攻击(成员推断、模型逆向)以及自主智能体安全风险。

Stars 0
securityragllmprompt

安全与治理 / 审核评估

Active Directory Kerberos 攻击

active-directory-kerberos-attacks

448

针对 Active Directory 的 Kerberos 攻击手册。用于通过 AS-REP roasting、Kerberoasting、黄金/白银/钻石票据、委派滥用或 pass-the-ticket 攻击定位 AD 认证的场景。

Stars 0
uiauthactivedirectory

安全与治理 / 审核评估

meegle

meegle

445

飞书项目(Meego/Meegle)操作工具。支持查询和管理工作项、节点流转、视图查询、个人待办、排期统计等功能。 Use when user needs to work with Feishu/Lark Meego project management — including querying work items, creating/updating work items, completing workflow nodes, checking views, listing todos, analyzing schedules/workloads, or searching with MQL. 关键词:飞书项目、meego、meegle、工作项、需求、任务、缺陷、排期、视图、待办、节点。

Stars 86
uiauthapiworkflow

安全与治理 / 审核评估

google-sheets

google-sheets

444

Google Sheets API for spreadsheets. Use when user mentions "Google Sheets",

Stars 60
authapigooglesheets

安全与治理 / 审核评估

arize-trace

arize-trace

444

下载、导出并检查现有的 Arize traces 和 spans,以了解 LLM 应用的运行状态或调试运行时问题。涵盖按 ID 导出 traces、…

Stars 19
uisecurityauthllm

安全与治理 / 审核评估

code-review-excellence

code-review-excellence

443

Provides comprehensive code review guidance for React 19, Vue 3, Angular 17+, Svelte 5, Rust, TypeScript, Java, Python, Django, Go, C#/.NET, Kotlin, NestJS, C/C++, and more. Helps catch bugs, improve code quality, and give constructive feedback. Use when: reviewing pull requests, conducting PR reviews, code review, reviewing code changes, establishing review standards, mentoring developers, architecture reviews, security audits, checking code quality, finding bugs, giving feedback on code.

Stars 495
reactvueuisecurity

安全与治理 / 审核评估

openapi-specification-v2

openapi-specification-v2

443

OpenAPI (Swagger) 2.0 specification for describing REST APIs. Use when writing, validating, or interpreting Swagger 2.0 specs, generating clients/docs, or…

Stars 19
uisecurityauthapi

安全与治理 / 审核评估

electron-chromium-upgrade

electron-chromium-upgrade

442

Guide for performing Chromium version upgrades in the Electron project. Use when working on the roller/chromium/main branch to fix patch conflicts during `e…

Stars 121,294
uiauthelectronchromium

安全与治理 / 审核评估

基于角色的访问控制 (RBAC)

access-control-rbac

442

实现基于角色的访问控制(RBAC)、权限管理和授权策略。用于构建具有细粒度权限的安全访问控制系统。

Stars 0
uiauthapiprompt

安全与治理 / 审核评估

buddy-sings

buddy-sings

440

Use when user wants their Claude Code pet (/buddy) to sing a song. Triggers on any request that combines the concept of their Claude Code buddy, pet, or companion with singing or music. Supports multilingual triggers — match equivalent phrases in any language.

Stars 11,856
uiauthapibuddy

安全与治理 / 审核评估

swift-security

swift-security

438

Use when working with iOS/macOS Keychain Services (SecItem queries, kSecClass, OSStatus errors), biometric authentication (LAContext, Face ID, Touch ID),…

Stars 589
backenduideploymentsecurity

18 / 43