sast-idor
Automated detection of IDOR vulnerabilities using a three-phase subagent workflow to verify authorization and ownership checks on sensitive endpoints.
Discover reusable agent skills, browse implementation details, and find the right skill for your workflow.
108 skills found
Automated detection of IDOR vulnerabilities using a three-phase subagent workflow to verify authorization and ownership checks on sensitive endpoints.
ClawHub is the official registry and CLI tool for managing OpenClaw AI agent skills. Search, install, version-control, and publish custom skills to your local OpenClaw workspace.
Expert code reviewer for Rust projects. Performs comprehensive quality, security, performance, and architectural analysis using Bazel and project-specific conventions.
Manage AWS EC2 virtual machines, AMIs, and networking. Use for instance lifecycle management, security group configuration, key pair handling, and troubleshooting connectivity.
Search codebases efficiently using ripgrep for lightning-fast text patterns and ast-grep for precise, syntax-aware structural code analysis.
Coverage-guided fuzzer for Ruby code and C extensions, powered by libFuzzer and address sanitizers to detect memory corruption and undefined behavior.
Optimize search engine visibility using technical SEO, meta tag configuration, structured data, and sitemap management. Improves crawlability and search ranking signals.
Synthesize research on system internals and adversary tradecraft into a concrete, testable hunt hypothesis.
Convert PRDs, API docs, and requirements into structured acceptance, testing, integration, and launch checklists.
Analyze business contracts for risks, gaps, and unfavorable terms. Generate structured risk reports for NDAs, MSAs, SaaS agreements, and SOWs with actionable redline recommendations.
Epistemic safety analysis for JSON data in prompts to prevent LLM hallucinations and reasoning errors when handling incomplete or large-scale datasets.
Automated global intelligence aggregator for market, geopolitical, and AI news. Features RSS feed integration, real-time alert systems for critical events, and structured report generation with intelligence inference.