Find the perfect skill
Compliance Engine (Chile)
Security
Skill to audit a SaaS repo and auto-generate compliance documentation under Chilean laws 21.719 and 21.595, self-service without a lawyer.
Ensure Regular System Patching
Security
Verify that RDS instances and their database engines are regularly updated and patched to address security vulnerabilities.
Backend Security Audit
Security
Security audit for backend services and API endpoints: checks for authentication gaps, injection risks, hardcoded secrets, and permission bypass vectors.
CIS OpenShift 1.2.27 Client CA File
Security
Ensure the API server's client-ca-file is set correctly to require client certificate authentication. Includes audit and remediation steps.
Contract Risk Analysis
Security
Performs deep clause-by-clause risk scoring across 10 categories with poison pill detection and financial exposure estimation.
DNS C2 Operator
Security
Automates the DNS C2 attack workflow for the AgentCore sandbox breakout demo. Generate malicious CSV, attach to sessions, and execute commands.
Implementing Canary Tokens for Network Intrusion Detection
Security
Deploys DNS, HTTP, and AWS API key canary tokens across network infrastructure to detect unauthorized access and lateral movement. Integrates with webhook alerting (Slack, Teams, email, generic HTTP) for real-time intrusion notifications.
Frontend Security Coder
Security
Expert in frontend security: XSS prevention, output sanitization, CSP, and client-side coding best practices.
OPPLAN Converter: CONOPS to Ralph Loop Format
Security
Convert engagement documents into machine-readable OPPLAN for the ralph loop — objective decomposition, acceptance criteria, MITRE mapping, priority ordering.
Containerized Security Auditing & Hacking
Security
Containerized security auditing and ethical hacking tools. All operations run in isolated Docker containers for safety and reproducibility.
Web Fuzzing with ffuf
Security
Skill for performing web fuzzing using the ffuf tool.
Database Audit Logging Implementation
Security
Implements database audit logging using triggers, application-level logging, change data capture (CDC), or native logs to track data modifications for compliance and security. Automatically captures detailed audit trails (user, timestamp, old/new values) for regulated environments like GDPR, HIPAA, SOX, and PCI-DSS. Helps ensure accountability and simplifies compliance reporting without requiring application code changes.