搜索结果
全部能力
找到 1231 个相关结果 / 安全与治理
安全与治理 / 审核评估
cloud-access-management
cloud-access-management
Manage Elastic Cloud organization access: invite users, assign roles to Serverless projects, and create or revoke Cloud API keys. Use when granting, modifying, or auditing user access.
安全与治理 / 审核评估
safe-action-advanced
safe-action-advanced
Use when working with bind arguments, metadata schemas, framework errors (redirect/notFound/forbidden/unauthorized), type inference utilities…
安全与治理 / 审核评估
linkedin-personal-branding
linkedin-personal-branding
Comprehensive LinkedIn personal branding analysis, profile optimization, and visibility improvement skill using Claude for Chrome browser tools. Use when users…
安全与治理 / 审核评估
daily-news
daily-news
Daily news and hot topics via the 6551 API. Supports news categories, hot news articles, and trending tweets by category.
安全与治理 / 审核评估
ads-linkedin
ads-linkedin
LinkedIn Ads 深度分析,用于 B2B 广告投放。评估 27 项检查,涵盖技术设置、受众定向、创意质量、销售线索表单和出价策略…
安全与治理 / 审核评估
build-zoom-rest-api-app
build-zoom-rest-api-app
Reference skill for Zoom REST API. Use after choosing an API-based workflow when you need endpoint selection, resource-management patterns, OAuth requirements,…
安全与治理 / 审核评估
llm-prompt-injection
llm-prompt-injection
LLM prompt injection playbook. Use when testing AI/LLM applications for direct injection, indirect injection via RAG/browsing, tool abuse, data exfiltration, MCP security risks, and defense bypass techniques.
安全与治理 / 审核评估
401-403 绕过技术
401-403-bypass-techniques
401/403 绕过手册。在管理后台、API 端点或受限路径遇到访问拒绝响应时使用。涵盖路径操作、HTTP 方法篡改、请求头注入、协议降级以及自动化绕过工具。
安全与治理 / 审核评估
seo-audit
seo-audit
When the user wants to audit, review, or diagnose SEO issues on their site. Also use when the user mentions "SEO audit," "technical SEO," "why am I not…
安全与治理 / 审核评估
setup-zoom-webhooks
setup-zoom-webhooks
Reference skill for Zoom webhooks. Use after routing to an event-driven workflow when implementing subscriptions, signature verification, delivery handling,…
安全与治理 / 审核评估
security-compliance-audit
security-compliance-audit
Conduct comprehensive security compliance audits for SOC 2, GDPR, HIPAA, PCI-DSS, and ISO 27001. Use when preparing for certification, annual audits, or compliance validation.
安全与治理 / 审核评估
scribe
scribe
Reference skill for Zoom AI Services Scribe. Use after routing to a transcription workflow when handling uploaded or stored media, Build-platform JWT auth,…
安全与治理 / 审核评估
hormuz-strait
hormuz-strait
Check the current status of the Strait of Hormuz — shipping transit data, oil price impact, stranded vessels, insurance risk levels, diplomatic developments, and global trade impact. Use this skill whenever the user asks about the Strait of Hormuz, Hormuz chokepoint, Persian Gulf shipping risk, oil transit disruption, war risk premium in the Gulf, Middle East shipping routes, tanker traffic through Hormuz, oil supply chain risk, or geopolitical risk affecting energy markets. Triggers include: "Hormuz status", "Strait of Hormuz", "is Hormuz open", "shipping through the Gulf", "oil chokepoint", "Persian Gulf tanker traffic", "war risk premium", "Hormuz crisis", "energy supply chain risk", "oil transit disruption", "Middle East shipping", any mention of Hormuz or Persian Gulf in context of oil, shipping, or geopolitical risk.
安全与治理 / 审核评估
safe-action-middleware
safe-action-middleware
在为 next-safe-action 实现中间件时使用——身份验证、授权、日志记录、限流、错误拦截、上下文扩展,或……
安全与治理 / 审核评估
rivet-sdk
rivet-sdk
Reference skill for Zoom Rivet SDK. Use after routing to a Rivet-based server workflow when implementing auth handling, webhook consumers, API wrappers,…
安全与治理 / 审核评估
senior-security
senior-security
Security engineering toolkit for threat modeling, vulnerability analysis, secure architecture, and penetration testing. Includes STRIDE analysis, OWASP…
安全与治理 / 审核评估
subdomain-takeover
subdomain-takeover
Subdomain takeover detection and exploitation playbook. Use when targets have dangling CNAME/NS/MX records pointing to deprovisioned cloud resources, expired third-party services, or unclaimed SaaS tenants that an attacker can register to serve content under the victim's domain.
安全与治理 / 审核评估
nosql-injection
nosql-injection
NoSQL injection playbook. Use when MongoDB-style operators, JSON query objects, flexible search filters, or backend query DSLs may allow data or logic abuse.
安全与治理 / 审核评估
plan-zoom-integration
plan-zoom-integration
Turn a Zoom integration idea into an implementation plan with architecture, auth, and delivery milestones. Use when you need a practical build plan, phased…
安全与治理 / 审核评估
csp-bypass-advanced
csp-bypass-advanced
Advanced Content Security Policy bypass techniques. Use when XSS or data exfiltration is blocked by CSP and you need to find policy weaknesses, trusted endpoint abuse, nonce leakage, or exfiltration channels that CSP cannot block.