搜索结果
全部能力
找到 230 个相关结果 / GitHub 工作流
安全与治理 / 审核评估
stride-analysis-patterns
stride-analysis-patterns
Apply STRIDE methodology to systematically identify threats. Use when analyzing system security, conducting threat modeling sessions, or creating security…
安全与治理 / 审核评估
对抗性审查者
adversarial-reviewer
对抗性代码审查,打破自审单一文化。适用于在合并 PR 前对近期变更进行真正批判性审查,或当…
安全与治理 / 审核评估
project-structure
project-structure
Use when deciding where code should live, organising files, or auditing project structure. Checks colocation, grouping, and directory anti-patterns.
安全与治理 / 审核评估
metasploit-framework
metasploit-framework
⚠️ AUTHORIZED USE ONLY > This skill is for educational purposes or authorized security assessments only. > You must have explicit, written permission from the…
安全与治理 / 审核评估
supabase-audit-realtime
supabase-audit-realtime
Test Supabase Realtime WebSocket channels for unauthorized subscriptions and data exposure.
安全与治理 / 审核评估
syncfusion-react-pivot-table
syncfusion-react-pivot-table
Use this skill when users ask how to build or customize Syncfusion PivotView pivot tables in React. Trigger for React pivot grid/OLAP, aggregation, data…
安全与治理 / 审核评估
skill-installer
skill-installer
Install Codex skills into $CODEX_HOME/skills from a curated list or a GitHub repo path. Use when a user asks to list installable skills, install a curated…
安全与治理 / 审核评估
solidity-auditor
solidity-auditor
Security audit of Solidity code while you develop. Trigger on "audit", "check this contract", "review for security". Modes - default (full repo) or a specific…
安全与治理 / 审核评估
任务
task
通用任务调度器。在开发工作流(步骤 0-9)中启动、路由和执行任何任务。对每个任务调用 — /task <description>、/task…
安全与治理 / 审核评估
red-team-tools
red-team-tools
Implement proven methodologies and tool workflows from top security researchers for effective reconnaissance, vulnerability discovery, and bug bounty hunting.…
安全与治理 / 审核评估
html-injection-testing
html-injection-testing
Identify and exploit HTML injection vulnerabilities that allow attackers to inject malicious HTML content into web applications. This vulnerability enables…
安全与治理 / 审核评估
supabase-audit-auth-signup
supabase-audit-auth-signup
Test if user signup is open and identify potential abuse vectors in the registration process.
安全与治理 / 审核评估
supabase-audit-auth-users
supabase-audit-auth-users
Test for user enumeration vulnerabilities through various authentication endpoints.
安全与治理 / 审核评估
tailwind
tailwind
Use when writing Tailwind classes, fixing spacing issues, reviewing CSS, or auditing Tailwind patterns. Enforces v4 best practices for grid and responsive.
安全与治理 / 审核评估
accelint-security-best-practices
accelint-security-best-practices
Comprehensive security audit and vulnerability detection for JavaScript/TypeScript applications following OWASP Top 10. Use when (1) Users say 'audit…
安全与治理 / 审核评估
task-status
task-status
Send short status descriptions in chat for long-running tasks. Use when you need to provide periodic updates during multi-step operations, confirm task…
安全与治理 / 审核评估
skill-development
skill-development
Tools for creating, auditing, and maintaining Claude Code skills. Includes /create-skill for scaffolding, /review-skill for quality checks, and /audit commands for bulk verification. Use when: building new skills, maintaining skill quality, or forking claude-skills repo.
安全与治理 / 审核评估
refactor
refactor
Use when refactoring, cleaning up code, reducing complexity, fixing code smells, or improving code quality. Audits TS/JS for dead code, nesting, and patterns.
安全与治理 / 审核评估
security
security
Use when auditing security, checking for vulnerabilities, scanning for secrets, or reviewing dependencies. OWASP Top 10 audit with GitLeaks and dependency…
安全与治理 / 审核评估
cognitive-walkthrough
cognitive-walkthrough
Deep-dive usability evaluation of specific user tasks. Simulates novice user cognition step-by-step to identify learnability issues, unclear actions, and…