搜索结果
全部能力
找到 97 个相关结果 / 测试与 QA
安全与治理 / 审核评估
supabase-audit-realtime
supabase-audit-realtime
Test Supabase Realtime WebSocket channels for unauthorized subscriptions and data exposure.
安全与治理 / 审核评估
任务
task
通用任务调度器。在开发工作流(步骤 0-9)中启动、路由和执行任何任务。对每个任务调用 — /task <description>、/task…
安全与治理 / 审核评估
html-injection-testing
html-injection-testing
Identify and exploit HTML injection vulnerabilities that allow attackers to inject malicious HTML content into web applications. This vulnerability enables…
安全与治理 / 审核评估
supabase-audit-auth-signup
supabase-audit-auth-signup
Test if user signup is open and identify potential abuse vectors in the registration process.
安全与治理 / 审核评估
supabase-audit-auth-users
supabase-audit-auth-users
Test for user enumeration vulnerabilities through various authentication endpoints.
安全与治理 / 审核评估
alicloud-security-content-moderation-green-test
alicloud-security-content-moderation-green-test
Smoke test for alicloud-security-content-moderation-green. Validate minimal authentication, API reachability, and one read-only query path.
安全与治理 / 审核评估
alicloud-security-id-verification-cloudauth-test
alicloud-security-id-verification-cloudauth-test
Smoke test for alicloud-security-id-verification-cloudauth. Validate minimal authentication, API reachability, and one read-only query path.
安全与治理 / 审核评估
cognitive-walkthrough
cognitive-walkthrough
Deep-dive usability evaluation of specific user tasks. Simulates novice user cognition step-by-step to identify learnability issues, unclear actions, and…
安全与治理 / 审核评估
security-expert
security-expert
Expert-level application security, OWASP Top 10, penetration testing, and security best practices
安全与治理 / 审核评估
supabase-audit-authenticated
supabase-audit-authenticated
Create a test user (with explicit permission) to audit what authenticated users can access vs anonymous users. Detects IDOR, cross-user access, and privilege…
安全与治理 / 审核评估
don-norman-principles-audit
don-norman-principles-audit
Evaluate UX/UI using Don Norman's 7 fundamental design principles from The Design of Everyday Things. Audit discoverability, affordances, signifiers, feedback,…
安全与治理 / 审核评估
pp-ahrefs
pp-ahrefs
Printing Press CLI for Ahrefs. SEO and competitive intelligence API for backlinks, keywords, rank tracking, site audit, and SERP data.
安全与治理 / 审核评估
iso-42001-ai-governance
iso-42001-ai-governance
AI governance audit using ISO 42001 standard. Ensures AI systems are developed and deployed responsibly with risk management, ethics, security, transparency,…
安全与治理 / 审核评估
payment-security-clerk-billing-stripe
payment-security-clerk-billing-stripe
Implement secure payments using Clerk Billing and Stripe without ever touching card data. Use this skill when you need to set up subscription payments, handle…
安全与治理 / 审核评估
security-pen-testing
security-pen-testing
Use when the user asks to perform security audits, penetration testing, vulnerability scanning, OWASP Top 10 checks, or offensive security assessments. Covers…
安全与治理 / 审核评估
fastapi-patterns
fastapi-patterns
FastAPI patterns for async APIs, dependency injection, Pydantic request and response models, OpenAPI docs, tests, security, and production readiness.
安全与治理 / 审核评估
audit-expert
audit-expert
Expert-level security auditing, compliance, code review, and vulnerability assessment
安全与治理 / 审核评估
axiom-app-store-submission
axiom-app-store-submission
Use when preparing ANY app for App Store submission, responding to App Review rejections, or running a pre-submission audit. Covers privacy manifests, metadata…
安全与治理 / 审核评估
security-auditor
security-auditor
Security vulnerability scanner and OWASP compliance auditor for codebases. Dependency scanning (npm audit, pip-audit), secret detection (high-entropy strings,…
安全与治理 / 审核评估
accessibility-wcag
accessibility-wcag
Use this skill when implementing web accessibility, adding ARIA attributes, ensuring keyboard navigation, or auditing WCAG compliance. Triggers on accessibility, a11y, ARIA roles, screen readers, keyboard navigation, focus management, color contrast, alt text, semantic HTML, and any task requiring WCAG 2.2 compliance or inclusive design.