owasp-mobile-security-checker
Automated security auditing for Flutter applications based on OWASP Mobile Top 10 (2024). Perform vulnerability scans for hardcoded secrets, insecure storage, dependency risks, and network configuration issues.
Discover reusable agent skills, browse implementation details, and find the right skill for your workflow.
89 skills found
Automated security auditing for Flutter applications based on OWASP Mobile Top 10 (2024). Perform vulnerability scans for hardcoded secrets, insecure storage, dependency risks, and network configuration issues.
Map the attack surface of smart contract codebases by identifying and categorizing state-changing entry points.
Automated OSINT reconnaissance agent for mapping external attack surfaces, identifying assets, and uncovering security vulnerabilities.
Perform automated security audits, bug detection, and code quality assessments on local branch diffs using a structured, checklist-driven verification process.
Pre-execution security guardrails for AI agents. Validates shell commands and file reads against 400+ security patterns to block destructive operations, credential theft, and unauthorized system access.
Audit outbound network requests and detect data exfiltration patterns in OpenClaw skills to ensure secure outbound communication.
6-phase read-only Python analysis workflow that identifies design principle violations, code smells, and modernization opportunities based on specific project types (POC to Open Source).
Generate Software Bill of Materials (SBOM) for container images and filesystems using Syft. Supports 28+ ecosystems, multiple formats like CycloneDX and SPDX, and integration into CI/CD for supply chain security.
Automate SAST configuration and security scanning. Supports Semgrep, SonarQube, and CodeQL for DevSecOps, quality gate management, and vulnerability detection.
Build, optimize, and maintain production-ready backend systems using Node.js, Python, Go, and Rust. Includes API design, database management, security, and DevOps best practices.
Detects timing side-channel vulnerabilities in cryptographic code through static and dynamic analysis across multiple programming languages.
An expert-level CTF solver agent that automates reconnaissance, vulnerability analysis, and exploit generation for web, pwn, crypto, reverse, and forensic challenges.