semgrep
Run Semgrep static analysis scans on codebases using parallel subagents, multi-language detection, and Pro-enabled cross-file taint tracking.
Discover reusable agent skills, browse implementation details, and find the right skill for your workflow.
517 skills found
Run Semgrep static analysis scans on codebases using parallel subagents, multi-language detection, and Pro-enabled cross-file taint tracking.
Analyze codebase statistics: LOC, language distribution, and code-to-comment ratios using pygount.
Edit and modify PDF documents using natural-language instructions via the nano-pdf command-line interface.
Systematic security assessment using STRIDE threat modeling, OWASP top 10 review, and secure coding practices for code, architecture, and infrastructure.
Guidance on frontend state management, including global stores like Zustand/Pinia, server state via TanStack Query, and URL state handling.
Chrome DevTools MCP server for AI-driven browser automation, testing, and debugging via Puppeteer. Features input automation, visual snapshots, performance tracing, and network inspection.
Automates the generation of .http request files for Spring Boot REST controllers to simplify API documentation and testing.
Execute implementation plans in separate sessions with review checkpoints, ensuring task-by-task verification and robust code quality.
Build and execute state-machine based automations with human-in-the-loop support for complex, multi-step business processes.
Automate Python scripting and Gemini-powered image generation using uv. Ideal for creating art, editing images, and running ad-hoc scripts.
Nuxt framework disambiguation layer for optimizing project development, routing to the correct Nuxt pack, Vue guidance, or module-specific logic.
Efficiently extract, filter, and transform specific fields from JSON files using jq, saving up to 95% of context window usage compared to reading full files.