Find the perfect skill
Security Analyzer
Security
Comprehensive security vulnerability analysis for codebases and infrastructure. Scans dependencies, containers, cloud IaC, and secrets, generates phased remediation plans with TDD validation.
Export NIST OSCAL JSON from compliance
Security
Exports compliance evidence (NIST 800-171, CMMC L2) from ArangoDB to OSCAL JSON. Includes validation and dry-run mode.
Scan Specific Skill
Security
Scans a specific MCP skill by npm package name or GitHub URL, identifies risks, and provides a threat report.
Regulatory Compliance Check
Security
You are a compliance expert specializing in regulatory requirements for software systems including GDPR, HIPAA, SOC2, PCI-DSS. Perform comprehensive audits and provide implementation guidance.
DAO Governance Attack
Security
Analyze and exploit DAO governance vulnerabilities including flash-loan vote manipulation, delegation hijack, quorum dilution, and time-lock bypass.
Frontend Security Coder
Security
Expert in secure frontend coding, XSS prevention, output sanitization, and client-side security patterns. Use for secure frontend implementations and code reviews.
CIS OCP 1.9.0 Control 1.3.3: Service Account Private Key
Security
Verify that the --service-account-private-key-file argument is set on the OpenShift Controller Manager to ensure secure signing of service account tokens.
Homelab VLAN Segmentation
Security
Segment home networks into VLANs for IoT, guest, trusted, and server traffic using UniFi, pfSense/OPNsense, and MikroTik. Covers trunk config, firewall rules, and SSID mapping.
Password Strength Analyzer
Security
Automated assistance for analyzing and strengthening password security, covering authentication, validation, and secure coding best practices.
WordPress Security Patterns
Security
WordPress security hardening including nonce verification, input sanitization, output escaping, SQL injection prevention, and capability checks for Sage/Acorn projects.
Implementing Canary Tokens for Network Intrusion Detection
Security
Deploys DNS, HTTP, and AWS API key canary tokens to detect unauthorized access, with webhook alerts for real-time intrusion notifications.
Eric Zimmerman Tools for Windows Artifact Analysis
Security
Learn to analyze Windows artifacts using Eric Zimmerman's open-source tools (KAPE, MFTECmd, PECmd) to examine registry hives, prefetch files, and event logs.