安全

安全审查、认证、权限和风险检查

599 个 Skills 可用

Skills 列表

returns-reverse-logistics

returns-reverse-logistics

231Ksecurity

汇总并代码化的专业经验,涵盖退货授权、收货与质检分级、处置决策(Restock/清仓/报废等)、退款处理、退货欺诈识别及质保理赔管理。由拥有 15 年以上实战经验的退货运营专家整理提炼。包含商品定级标准、处置经济学模型、欺诈模式识别和供应商追偿(RTV)流程。适用于处理商品退货、逆向物流、退款决策、退货欺诈风控或质保理赔等场景。

affaan-m avataraffaan-m
获取
x-api

x-api

231Ksecurity

X/Twitter API 集成,用于发布推文、帖子、阅读时间线、搜索和分析。涵盖 OAuth 认证模式、速率限制和平台原生内容发布。当用户希望以编程方式与 X 交互时使用。

affaan-m avataraffaan-m
获取
enterprise-agent-ops

enterprise-agent-ops

231Ksecurity

通过可观测性、安全边界和生命周期管理来运行长期存在的智能体工作负载。

affaan-m avataraffaan-m
获取
laravel-security

laravel-security

230Ksecurity

Laravel 安全最佳实践 — 包含身份验证、权限授权、Eloquent 操作安全、CSRF 与 XSS 防御、API 安全以及生产环境安全部署配置。

affaan-m avataraffaan-m
获取
django-security

django-security

230Ksecurity

Django 安全最佳实践,涵盖身份验证、授权、CSRF 保护、SQL 注入防护、XSS 防护以及安全部署配置。

affaan-m avataraffaan-m
获取
springboot-security

springboot-security

230Ksecurity

Spring Security 在 Java Spring Boot 服务中用于身份验证/授权、验证、CSRF、密钥、标头、速率限制和依赖安全的最佳实践。

affaan-m avataraffaan-m
获取
security-review

security-review

228Ksecurity

在添加身份验证、处理用户输入、使用密钥、创建API端点或实现支付/敏感功能时使用此技能。提供全面的安全检查清单和模式。

affaan-m avataraffaan-m
获取
caveman-setup

caveman-setup

98Ksecurity

Wire the current repository through the Caveman Cloud gateway so every LLM request is measured — cost, tokens, latency — with zero behavior change. Use when the user pastes the Caveman setup prompt, says "set up caveman", or wants LLM spend observability added to an app. Requires the gateway URL and a Cave API key (the setup prompt carries both).

juliusbrussee avatarjuliusbrussee
获取
security-and-hardening

security-and-hardening

77Ksecurity

强化代码以抵御漏洞。适用于处理用户输入、身份验证、数据存储或外部集成时。适用于构建任何接受不可信数据、管理用户会话或与第三方服务交互的功能。

addyosmani avataraddyosmani
获取
code-review-and-quality

code-review-and-quality

76Ksecurity

执行多维度代码审查。在合并任何变更之前使用。在审查自己、其他智能体或人类编写的代码时使用。当需要在代码进入主分支之前从多个维度评估代码质量时使用。

addyosmani avataraddyosmani
获取
paperclip

paperclip

75Ksecurity

调用 Paperclip 控制面 API 进行任务协调与治理。适用于查看任务分派、更新 issue 状态、发表评论、委派工作、管理 Routine,或调用 Paperclip API 端点。

paperclipai avatarpaperclipai
获取
agent-security-manager

agent-security-manager

72Ksecurity

Agent skill for security-manager - invoke with $agent-security-manager

ruvnet avatarruvnet
获取
agent-v3-security-architect

agent-v3-security-architect

72Ksecurity

Agent skill for v3-security-architect - invoke with $agent-v3-security-architect

ruvnet avatarruvnet
获取
agent-production-validator

agent-production-validator

72Ksecurity

Agent skill for production-validator - invoke with $agent-production-validator

ruvnet avatarruvnet
获取
claims

claims

72Ksecurity

Claims-based authorization for agents and operations. Grant, revoke, and verify permissions for secure multi-agent coordination. Use when: permission management, access control, secure operations, authorization checks. Skip when: open access, no security requirements, single-agent local work.

ruvnet avatarruvnet
获取
agent-multi-repo-swarm

agent-multi-repo-swarm

72Ksecurity

Agent skill for multi-repo-swarm - invoke with $agent-multi-repo-swarm

ruvnet avatarruvnet
获取
flow-nexus-platform

flow-nexus-platform

71Ksecurity

Comprehensive Flow Nexus platform management - authentication, sandboxes, app deployment, payments, and challenges

ruvnet avatarruvnet
获取
agent-specification

agent-specification

71Ksecurity

Agent skill for specification - invoke with $agent-specification

ruvnet avatarruvnet
获取
agent-code-review-swarm

agent-code-review-swarm

71Ksecurity

Agent skill for code-review-swarm - invoke with $agent-code-review-swarm

ruvnet avatarruvnet
获取
agent-architecture

agent-architecture

70Ksecurity

Agent skill for architecture - invoke with $agent-architecture

ruvnet avatarruvnet
获取
github-multi-repo

github-multi-repo

70Ksecurity

Multi-repository coordination, synchronization, and architecture management with AI swarm orchestration

ruvnet avatarruvnet
获取
security-audit

security-audit

70Ksecurity

Comprehensive security scanning and vulnerability detection. Includes input validation, path traversal prevention, CVE detection, and secure coding pattern enforcement. Use when: authentication implementation, authorization logic, payment processing, user data handling, API endpoint creation, file upload handling, database queries, external API integration. Skip when: read-only operations on public data, internal development tooling, static documentation, styling changes.

ruvnet avatarruvnet
获取
release-openspec

release-openspec

68Ksecurity

Use this skill when releasing OpenSpec: audit merged work and changeset coverage, decide whether a catch-up changeset PR is needed, prepare or resume the Changesets Version Packages PR, cut a beta or stable release, verify publishing, and polish GitHub release notes. Also use when asked whether an open release PR is complete, what the next release step is, or to continue a release paused for human approval.

fission-ai avatarfission-ai
获取
openspec-new-change

openspec-new-change

67Ksecurity

Start a new OpenSpec change using the experimental artifact workflow. Use when the user wants to create a new feature, fix, or modification with a structured step-by-step approach.

fission-ai avatarfission-ai
获取