Explore skills
4,475 skills found
Category alert
Get new Segurança skills every Monday
gemini-cli-agent
Gemini CLI sub-agent system for persona-based analysis. Use when piping large contexts to Google Gemini models for security audits, architecture reviews, QA analysis, or any specialized analysis requiring a fresh model context.
rlm-audit
Audit RLM cache coverage - compare manifest against filesystem
rlm-curator
Knowledge Curator agent skill for the RLM Factory. Auto-invoked when tasks involve distilling code summaries, querying the semantic ledger, auditing cache coverage, or maintaining RLM hygiene. Supports both Ollama-based batch distillation and agent-powered direct summarization. V2 enforces Concurrency Safety constraints.
vector-db-audit
Audit Vector DB coverage -- compares the live filesystem manifest against the ChromaDB index to identify coverage gaps.
vulniq
Autonomous security vulnerability scanner for codebases. Detects secrets, XSS, missing security headers, auth issues, OWASP Top 10 patterns, dependency vulnerabilities, PII exposure, CORS misconfiguration, and more. Aligned to OWASP APTS (Autonomous Penetration Testing Standard) Foundation tier. Outputs SARIF JSON, Markdown report, and APTS Conformance Claim. Use when the user wants a security aud
schema-evolve
This skill should be used when the user asks about 'schema drift', 'schema evolution', 'evolve schema', 'schema sync', 'sync schemas', 'update schema fields', 'schema field frequency', 'missing schema fields', 'unused schema fields', 'schema proposal', 'schema cardinality', 'check schema', 'schema audit', 'schema changes'. Detects drift between Basic Memory schema definitions and actual note usage
magi-security
三機(Claude/Gemini/Codex)平行安全審查,掃描OWASP漏洞、威脅建模後投票(CASPER有VETO權)
security-and-compliance
Use when user mentions "security review", "compliance", "SOC 2", "GDPR", "PII", "threat model", when the system handles sensitive data, when preparing for an audit or certification, when assessing risk before launch, or when a STRIDE threat model is needed for a new component.
pr-review
This skill provides automated PR review and code quality analysis. It activates for tasks like reviewing pull requests, auditing code, or scanning for issues, fanning out parallel sub-agents for various review lenses to synthesize a structured report.
founder-audit
Diagnose your position on the founder mode vs. manager mode spectrum, based on Brian Chesky's operating system and Paul Graham's framework. Use this to assess if you are leading like a founder or drifting into manager mode.
break-risk-intel
A black/grey-market intelligence analysis assistant based on JDArmy/BREAK for risk-control, anti-abuse, anti-fraud, trust & safety, and business security teams. It supports analysis of various fraud and abuse cases, from credential stuffing to content manipulation.
claude-code-skill-security-check
Security audit skill for Claude Code community skills. Scans for prompt injection, data exfiltration, permission bypass, dangerous commands, and supply chain risks.