Explorar skills
4567 skills encontradas
Alerta por categoría
Recibe nuevas skills de Segurança todos los lunes
security-pen-testing
Utilícelo para auditorías de seguridad, pruebas de penetración, escaneo de vulnerabilidades, verificaciones OWASP Top 10 y evaluaciones de seguridad ofensiva. Cubre análisis estático, escaneo de dependencias, detección de secretos, pruebas de seguridad de API y generación de informes de pruebas de penetración.
senior-secops
Habilidad de ingeniero SecOps sénior para seguridad de aplicaciones, gestión de vulnerabilidades, verificación de cumplimiento y prácticas de desarrollo seguro. Realiza escaneos SAST/DAST, genera planes de remediación de CVE, verifica vulnerabilidades de dependencias, crea políticas de seguridad y automatiza verificaciones de cumplimiento contra SOC2, PCI-DSS, HIPAA y GDPR.
senior-security
Kit de herramientas de ingeniería de seguridad para modelado de amenazas, análisis de vulnerabilidades, arquitectura segura y pruebas de penetración. Incluye análisis STRIDE, guía OWASP, patrones de criptografía y herramientas de escaneo de seguridad.
helm-chart-builder
Habilidad y plugin de agente para el desarrollo de Helm charts para Claude Code, Codex, Gemini CLI, Cursor, OpenClaw, que cubre andamiaje, diseño de valores, patrones de plantillas, gestión de dependencias, refuerzo de seguridad y pruebas. Úselo para crear, mejorar o auditar Helm charts, diseñar archivos values.yaml e implementar helpers de plantillas.
secure-code-guardian
Use when implementing authentication/authorization, securing user input, or preventing OWASP Top 10 vulnerabilities — including custom security implementations such as hashing passwords with bcrypt/argon2, sanitizing SQL queries with parameterized statements, configuring CORS/CSP headers, validating input with Zod, and setting up JWT tokens. Invoke for authentication, authorization, input validati
wordpress-pro
Develops custom WordPress themes and plugins, creates and registers Gutenberg blocks and block patterns, configures WooCommerce stores, implements WordPress REST API endpoints, applies security hardening (nonces, sanitization, escaping, capability checks), and optimizes performance through caching and query tuning. Use when building WordPress themes, writing plugins, customizing Gutenberg blocks,
Pentest Checklist
This skill should be used when the user asks to "plan a penetration test", "create a security assessment checklist", "prepare for penetration testing", "define pentest scope", "follow security testing best practices", or needs a structured methodology for penetration testing engagements.
Burp Suite Web Application Testing
This skill should be used when the user asks to "intercept HTTP traffic", "modify web requests", "use Burp Suite for testing", "perform web vulnerability scanning", "test with Burp Repeater", "analyze HTTP history", or "configure proxy for web testing". It provides comprehensive guidance for using Burp Suite's core features for web application security testing.
SSH Penetration Testing
This skill should be used when the user asks to "pentest SSH services", "enumerate SSH configurations", "brute force SSH credentials", "exploit SSH vulnerabilities", "perform SSH tunneling", or "audit SSH security". It provides comprehensive SSH penetration testing methodologies and techniques.
Security Scanning Tools
This skill should be used when the user asks to "perform vulnerability scanning", "scan networks for open ports", "assess web application security", "scan wireless networks", "detect malware", "check cloud security", or "evaluate system compliance". It provides comprehensive guidance on security scanning tools and methodologies.
WordPress Penetration Testing
This skill should be used when the user asks to "pentest WordPress sites", "scan WordPress for vulnerabilities", "enumerate WordPress users, themes, or plugins", "exploit WordPress vulnerabilities", or "use WPScan". It provides comprehensive WordPress security assessment methodologies.
Top 100 Web Vulnerabilities Reference
This skill should be used when the user asks to "identify web application vulnerabilities", "explain common security flaws", "understand vulnerability categories", "learn about injection attacks", "review access control weaknesses", "analyze API security issues", "assess security misconfigurations", "understand client-side vulnerabilities", "examine mobile and IoT security flaws", or "reference th