Explorar skills

4567 skills encontradas

Alerta por categoría

Recibe nuevas skills de Segurança todos los lunes

security-audit

1

Detect common security vulnerabilities in code. Covers OWASP patterns, SQL injection, bare excepts, shell injection. Framework-agnostic.

Segurança#sqlpor bg-szy

security-audit

1

Security review or audit of code, architecture, or infrastructure - Threat modeling sessions - Reviewing PRs for security implications

Segurançapor bg-szy

security-audit

1

Review security of command execution, tool permissions, and API key handling. Use when user mentions "security review", "audit", "check security", "vulnerabilities", or before deploying to production.

Segurança#deploy#apipor bg-szy

audit

1

La característica o área a auditar (opcional)

Segurançapor bg-szy

security-gate

1

Verify security considerations were addressed before shipping. Issues result in WARNINGS that strongly recommend fixing.

Segurançapor bg-szy

security-checklist

1

Use this skill when implementing security measures or conducting security audits. Provides OWASP Top 10 mitigations, authentication patterns, input validation strategies, and compliance guidelines. Ensures applications are secure against common vulnerabilities.

Segurança#aipor bg-szy

security-audit

1

Comprehensive security auditing workflow covering web application testing, API security, penetration testing, vulnerability scanning, and security hardening.

Segurança#test#apipor bg-szy

security-audit

1

Security auditing and vulnerability assessment specialist. Use when conducting

Segurançapor bg-szy

sweep

1

Deep code sweep — dispatches 3 parallel focused auditors for security, stubs, and code quality. Works standalone or offered after gigo:execute completes. Use gigo:sweep.

Segurança#aipor croftspan

sast-semgrep

1

Static application security testing (SAST) using Semgrep for vulnerability detection, security code review, and secure coding guidance with OWASP and CWE framework mapping. Use when: (1) Scanning code for security vulnerabilities across multiple languages, (2) Performing security code reviews with pattern-based detection, (3) Integrating SAST checks into CI/CD pipelines, (4) Providing remediation

Segurança#testpor bg-szy

sca-blackduck

1

Software Composition Analysis (SCA) using Synopsys Black Duck for identifying open source vulnerabilities, license compliance risks, and supply chain security threats with CVE, CWE, and OWASP framework mapping. Use when: (1) Scanning dependencies for known vulnerabilities and security risks, (2) Analyzing open source license compliance and legal risks, (3) Identifying outdated or unmaintained depe

Segurança#aipor bg-szy

sbom-syft

1

Software Bill of Materials (SBOM) generation using Syft for container images, filesystems, and archives. Detects packages across 28+ ecosystems with multi-format output support (CycloneDX, SPDX, syft-json). Enables vulnerability assessment, license compliance, and supply chain security. Use when: (1) Generating SBOMs for container images or applications, (2) Analyzing software dependencies and pac

Segurança#aipor bg-szy