Explore skills
4,475 skills found
Category alert
Get new Segurança skills every Monday
code-reviewer
Comprehensive code review skill for TypeScript, JavaScript, Python, Swift, Kotlin, Go. Includes automated code analysis, best practice checking, security scanning, and review checklist generation. Use when reviewing pull requests, providing code feedback, identifying issues, or ensuring code quality standards.
nsauditor-ai
Use this skill to perform network security scanning, auditing, vulnerability assessment, or host reconnaissance with NSAuditor AI.
anti-fraud
Multi-layered anti-fraud and bot detection system for registration flows. It's used for securing registration forms, detecting bots, analyzing user behavior, and implementing various fraud prevention techniques like risk scoring and disposable email detection.
security-and-hardening
Use when handling user input, authentication, data storage, or external integrations. Use when building any feature that accepts untrusted data, manages user sessions, or interacts with third-party services.
codebase-cleanup-deps-audit
You are a dependency security expert specializing in vulnerability scanning, license compliance, and supply chain security. Analyze project dependencies for known vulnerabilities, licensing issues, outdated packages, and provide actionable remediation strategies.
hydra
This multi-perspective code review council involves advisors analyzing, reviewers cross-examining, and a chairman synthesizing a verdict. It is ideal for complex tasks like architecture decisions, security audits, and deep pre-merge reviews, but not for simple code generation or syntax fixes.
crack-hashcat
Advanced password recovery and hash cracking tool supporting multiple algorithms and attack modes. Use when: (1) Performing authorized password auditing and security assessments, (2) Recovering passwords from captured hashes in forensic investigations, (3) Testing password policy strength and complexity, (4) Validating encryption implementations, (5) Conducting security research on cryptographic h
android-performance
Android performance preflight. Focuses on static build and source signals such as benchmark modules, baseline-profile setup, shrink config, and Compose recomposition hints. It does not claim runtime startup or ANR scores without external artifacts.
dast-nuclei
Fast, template-based vulnerability scanning using ProjectDiscovery's Nuclei with extensive community templates covering CVEs, OWASP Top 10, misconfigurations, and security issues across web applications, APIs, and infrastructure. Ideal for rapid vulnerability scanning with automated CVE detection and testing for known vulnerabilities.
dependency-auditor
Automated security auditing of project dependencies to identify known vulnerabilities.
android-playstore
Google Play preflight from source evidence. Evaluates target SDK posture, foreground service declarations, permission surface, and obvious policy red flags without claiming full Play Console compliance. Triggers on: "play store", "target SDK", "data safety", "foreground service", "play policy".
expo-api-audit
Comprehensive audit of Expo/React Native app API integration layer. Use when asked to: (1) Review API interactions, auth handling, or token management, (2) Find hardcoded data or screens bypassing API, (3) Verify user interactions properly sync to backend, (4) Analyze offline behavior and caching, (5) Audit Orval/OpenAPI code generation, (6) Check for API security issues. Supports TanStack Query,