Browse Skills
11972 skills across 8 categories
🛡️
2026/08/16
API Fuzzing for Bug Bounty
API Fuzzing for Bug Bounty provides techniques for testing REST, SOAP, and GraphQL APIs during bug bounty hunting and penetration testing. Use it to discover vulnerabilities like IDOR, authentication bypass, SQL injection, SSRF, and GraphQL-specific issues.
Quality
4.6K459
🧩
2026/08/16
API Shape Explorer
API Shape Explorer generates multiple radically different interface designs for a module using parallel sub-agents, then compares them to help you choose the best API shape. Use it when designing APIs, exploring interface options, or comparing module shapes.
AI Engineering
4.6K459
🔍
2026/08/16
Audit Flow
Audit Flow traces system flows interactively across code, API, auth, data, and network layers with SQLite persistence and Mermaid export. Use it for security audits, compliance documentation, flow tracing, debugging, architecture reviews, or incident post-mortems.
Quality
4.6K459
🔐
2026/08/16
Authentication Patterns
Authentication Patterns compares session-based, JWT, and OAuth 2.0 authentication approaches and helps select providers like NextAuth, Clerk, Supabase Auth, and Lucia. Use it when implementing, reviewing, or migrating authentication flows to follow security best practices.
Quality
4.6K459
🛡️
2026/08/16
AWS Penetration Testing
AWS Penetration Testing guides security assessment of Amazon Web Services environments, including IAM enumeration, privilege escalation, SSRF to metadata, S3 bucket exploitation, and Lambda attacks. Use it when asked to pentest AWS or test cloud infrastructure security.
Quality
4.6K459
🔓
2026/08/16
Broken Authentication Testing
Broken Authentication Testing identifies and exploits authentication and session management vulnerabilities in web applications. Use it when asked to test for broken authentication, session fixation, credential stuffing, weak password policies, or authentication bypass flaws.
Quality
4.6K459
🕵️
2026/08/16
Burp Suite Testing
Burp Suite Testing guides web application security testing with Burp Suite, including HTTP traffic interception, request modification with Repeater, and automated vulnerability scanning. Use it when you need to intercept HTTP traffic, modify web requests, analyze HTTP history, or test for web vulnerabilities.
Quality
4.6K459
🗄️
2026/08/16
Caching
Caching provides guidelines for implementing and reviewing cache layers, including invalidation, TTL selection, cache key design, and when not to cache. Use it when debugging stale data, cache stampedes, or configuring client-side caching.
DevOps
4.6K459
📊
2026/08/16
Chart Image
Chart Image generates PNG chart images from data, supporting line, bar, area, candlestick, pie, and heatmap charts. Use it when you need to visualize data, plot time series, or create charts for reports, alerts, or dashboards without a browser.
Data
4.6K459
🔐
2026/08/16
Cloud Penetration Testing
Cloud Penetration Testing provides techniques for authorized security assessments of AWS, Azure, and GCP, covering reconnaissance, enumeration, privilege escalation, data extraction, and persistence. Use it for authorized cloud security engagements.
Quality
4.6K459
📝
2026/08/16
Code Documenter
Code Documenter creates docstrings, API specifications, and documentation sites for software projects. Use it when adding inline documentation, generating OpenAPI/Swagger specs, or building developer guides and tutorials.
Writing
4.6K459
📐
2026/08/16
Code to Diagram
Code to Diagram analyzes codebases via static analysis to generate architecture diagrams, flowcharts, and org charts in Mermaid or SVG format. Use it when you need to visualize module dependencies or understand code structure.
Quality
4.6K459