搜索结果
全部能力
找到 1056 个相关结果 / 安全审计
软件工程 / 诊断修复
backend-security-coder
backend-security-coder
Expert in secure backend coding practices specializing in input validation, authentication, and API security. Use PROACTIVELY for backend security…
软件工程 / 诊断修复
eslint-prettier-config
eslint-prettier-config
Configures ESLint and Prettier for consistent code quality with TypeScript, React, and modern best practices. Use when users request "ESLint setup", "Prettier…
软件工程 / 诊断修复
prompt-library
prompt-library
A comprehensive collection of battle-tested prompts inspired by [awesome-chatgpt-prompts](https://github.com/f/awesome-chatgpt-prompts) and community best…
软件工程 / 诊断修复
clean-code-principles
clean-code-principles
SOLID principles, design patterns, DRY, KISS, and clean code fundamentals. Use when reviewing architecture, checking code quality, refactoring, or discussing…
软件工程 / 诊断修复
electron-best-practices
electron-best-practices
Guide AI agents through Electron app development with React including security patterns, type-safe IPC, React integration, packaging with code signing, and…
软件工程 / 诊断修复
file-uploads
file-uploads
Expert at handling file uploads and cloud storage. Covers S3,
软件工程 / 诊断修复
分析 .NET 性能
analyzing-dotnet-performance
扫描 .NET 代码中约 50 种性能反模式,涵盖 async、内存、字符串、集合、LINQ、正则表达式、序列化和 I/O,并采用分层严重级别分类。适用于分析 .NET 代码优化机会、审查热点路径或审计高分配模式。
软件工程 / 诊断修复
biome
biome
Biome - Fast all-in-one toolchain for web projects (linter + formatter in Rust, 100x faster than ESLint)
软件工程 / 诊断修复
parallel-agents
parallel-agents
Multi-agent orchestration patterns. Use when multiple independent tasks can run with different domain expertise or when comprehensive analysis requires…
软件工程 / 诊断修复
Web领域
domain-web
用于构建 Web 服务。关键词:web server、HTTP、REST API、GraphQL、WebSocket、axum、actix、warp、rocket、tower、hyper、reqwest、middleware、router 等。
软件工程 / 部署发布
aws-cdk
aws-cdk
Provides AWS CDK TypeScript patterns for defining, validating, and deploying AWS infrastructure as code. Use when creating CDK apps, stacks, and reusable…
软件工程 / 诊断修复
security-generate-security-sample-data
security-generate-security-sample-data
Generate sample security events, attack scenarios, and synthetic alerts for Elastic Security. Use when demoing, populating dashboards, testing detection rules, or setting up a POC.
软件工程 / 部署发布
cicd-expert
cicd-expert
Elite CI/CD pipeline engineer specializing in GitHub Actions, GitLab CI, Jenkins automation, secure deployment strategies, and supply chain security. Expert in…
软件工程 / 诊断修复
recon-for-sec
recon-for-sec
Entry P1 category router for reconnaissance and methodology. Use when mapping scope, discovering assets, fingerprinting technology, building endpoint inventory, and choosing the first high-value security testing path.
软件工程 / 诊断修复
App Store 审核
app-store-review
根据 Apple 的 App Store 审核指南评估代码。在审核 iOS、macOS、tvOS、watchOS 或 visionOS 应用代码(Swift、Objective-C 等)时使用此技能。
软件工程 / 诊断修复
API安全
api-sec
API 安全的 P1 分类入口路由。用于在任何更深层的 API 主题技能之前,在 API 侦察、授权、令牌滥用和隐藏参数工作流之间进行选择。
软件工程 / 诊断修复
分析追踪
analytics-tracking
设计、审计并改进分析追踪系统,以产出可靠、可用于决策的数据。
软件工程 / 诊断修复
cors-cross-origin-misconfiguration
cors-cross-origin-misconfiguration
CORS misconfiguration testing playbook. Use when analyzing cross-origin trust, credentialed browser reads, origin reflection, preflight policy bugs, and browser-based access to authenticated APIs.
软件工程 / 诊断修复
frontend-security-coder
frontend-security-coder
Expert in secure frontend coding practices specializing in XSS prevention, output sanitization, and client-side security patterns.
软件工程 / 诊断修复
security-audit
security-audit
Comprehensive security auditing workflow covering web application testing, API security, penetration testing, vulnerability scanning, and security hardening.