sast-idor
Automated detection of IDOR vulnerabilities using a three-phase subagent workflow to verify authorization and ownership checks on sensitive endpoints.
Discover reusable agent skills, browse implementation details, and find the right skill for your workflow.
138 skills found
Automated detection of IDOR vulnerabilities using a three-phase subagent workflow to verify authorization and ownership checks on sensitive endpoints.
A powerful CLI tool to automate and manage Google Workspace services, including Gmail, Calendar, Drive, Sheets, and Docs.
Security-first vetting protocol for AI agent skills. Detects red flags like credential theft, obfuscated code, and unauthorized data exfiltration before installation.
Comprehensive management for the Flow Nexus platform, covering user authentication, sandbox execution, app deployment, credit management, and gamified challenges.
Generates minimal macOS Seatbelt sandbox configurations for application isolation and security profiling.
A comprehensive Next.js 15 development and project management skill for Claude Code, featuring Supabase integration, RBAC, and automated quality validation.
Securely manage CI/CD secrets with Vault, AWS Secrets Manager, and environment-specific patterns. Prevent credential leakage, implement rotation, and enforce least-privilege access for pipelines.
Reference for all MCP tools exposed by the CCOS server, enabling capability discovery, session management, and governed RTFS execution for autonomous agent workflows.
Read, write, and manage Feishu (Lark) cloud documents. Supports markdown, block manipulation, tables, and media attachments.
Spring Security best practices for Spring Boot: Auth, validation, CSRF protection, secret management, rate limiting, and dependency security.
Scaffold and implement authentication in TypeScript/JavaScript apps using Better Auth. Detects frameworks, configures database adapters, sets up route handlers, adds OAuth providers, and scaffolds UI pages.
Manage your Whop digital store via API: create products, plans, track payments, and memberships. Perfect for automating digital product business workflows.