搜索结果
全部能力
找到 882 个相关结果 / 前端体验
安全与治理 / 审核评估
security
security
MUST be used whenever fixing security issues in a Flows app, or before shipping any feature that handles credentials, user input, or external data. This skill…
安全与治理 / 审核评估
slack-bot-builder
slack-bot-builder
Build Slack apps using the Bolt framework across Python, JavaScript, and Java. Covers Block Kit for rich UIs, interactive components, slash commands, event…
安全与治理 / 审核评估
cnki-advanced-search
cnki-advanced-search
Perform advanced search on CNKI with field filters like author, title, journal, date range, source category (SCI/EI/CSSCI/北大核心). Use when user needs precise…
安全与治理 / 审核评估
correctness-and-error-handling
correctness-and-error-handling
MUST be used whenever fixing correctness and error handling issues in a Flows app. This skill finds AND fixes bugs, missing error states, unhandled rejections,…
安全与治理 / 审核评估
manage-mcp
manage-mcp
Manage MCP servers in Nuxt - setup, create, customize with middleware, review, and troubleshoot
安全与治理 / 审核评估
处理 GitHub 评论地址
address-github-comments
当需要使用 gh CLI 处理 GitHub 开放 Pull Request 上的审查或 issue 评论时。
安全与治理 / 审核评估
linux-privilege-escalation
linux-privilege-escalation
Execute systematic privilege escalation assessments on Linux systems to identify and exploit misconfigurations, vulnerable services, and security weaknesses…
安全与治理 / 审核评估
smart-contract-security
smart-contract-security
Master smart contract security with auditing, vulnerability detection, and incident response
安全与治理 / 审核评估
security-nextjs
security-nextjs
Review Next.js security audit patterns for App Router and Server Actions. Use for auditing NEXT_PUBLIC_* exposure, Server Action auth, and middleware matchers. Use proactively when reviewing Next.js apps. Examples: - user: "Scan Next.js env vars" → find leaked secrets with NEXT_PUBLIC_ prefix - user: "Audit Server Actions" → check for missing auth and input validation - user: "Review Next.js middleware" → verify matcher coverage for protected routes - user: "Check Next.js API routes" → verify auth in app/api and pages/api - user: "Secure Next.js headers" → audit next.config.js for security headers
安全与治理 / 审核评估
owasp-llm-top10
owasp-llm-top10
Security audit for LLM and GenAI applications using OWASP Top 10 for LLM Apps 2025. Assess prompt injection, data leakage, supply chain, and 7 more critical…
安全与治理 / 审核评估
nocobase-data-analysis
nocobase-data-analysis
Query and analyze business data in NocoBase via MCP. Use when users want current counts, grouped breakdowns, owner/source distributions, or business summaries…
安全与治理 / 审核评估
azure-pipelines-validator
azure-pipelines-validator
Validate, lint, audit, or review azure-pipelines.yml — syntax, security, best practices.
安全与治理 / 审核评估
security-headers-configuration
security-headers-configuration
Configures HTTP security headers to protect against XSS, clickjacking, and MIME sniffing attacks. Use when hardening web applications, passing security audits,…
安全与治理 / 审核评估
security-audit
security-audit
Use when conducting security assessments — OWASP Top 10 / API / LLM, CWE Top 25, CVSS scoring — auditing PHP/TYPO3 (v14.3 LTS: #109585, HashService removal,…
安全与治理 / 审核评估
supabase-audit-auth-config
supabase-audit-auth-config
Analyze Supabase authentication configuration for security weaknesses and misconfigurations.
安全与治理 / 审核评估
netsuite-suitescript-records-reference
netsuite-suitescript-records-reference
SuiteScript records and fields reference. Look up field IDs, types, required status, and search capabilities for all 272 NetSuite record types. Use this when…
安全与治理 / 审核评估
bash-script-validator
bash-script-validator
Validate, lint, audit, or fix bash/shell/.sh scripts via ShellCheck.
安全与治理 / 审核评估
skill-development
skill-development
This skill should be used when the user wants to "create a skill", "add a skill to plugin", "write a new skill", "improve skill description", "organize skill…
安全与治理 / 审核评估
stride-analysis-patterns
stride-analysis-patterns
Apply STRIDE methodology to systematically identify threats. Use when analyzing system security, conducting threat modeling sessions, or creating security…
安全与治理 / 审核评估
release-review
release-review
Senior developer-level release review for macOS/iOS apps. Identifies security, privacy, UX, and distribution issues with actionable fixes. Use when preparing…