Agent skills
Skills you can use with AI coding agents, indexed from public GitHub repositories.
-
checking-owasp-compliance
Check compliance with OWASP Top 10 security risks and best practices. Use when performing comprehensive security audits. Trigger with 'check OWASP compliance', 'audit web security', or 'validate OWASP'.
majiayu000/claude-skill-registry 163
-
expo-api-audit
Comprehensive audit of Expo/React Native app API integration layer. Use when asked to: (1) Review API interactions, auth handling, or token management, (2) Find hardcoded data or screens bypassing API, (3) Verify user interactions properly sync to backend, (4) Analyze offline behavior and caching, (5) Audit Orval/OpenAPI code generation, (6) Check for API security issues. Supports TanStack Query, Zustand, axios, Expo Router, expo-secure-store, and expo-constants patterns.
majiayu000/claude-skill-registry 163
-
dependency-auditor
Automated security auditing of project dependencies to identify known vulnerabilities.
majiayu000/claude-skill-registry 163
-
access-management
RBAC/ABAC implementation patterns, least privilege access, row-level security, column masking, and access review workflows.
majiayu000/claude-skill-registry 163
-
risk-assessor
Perform comprehensive risk assessments on OSCAL systems including threat modeling, vulnerability analysis, risk scoring, and POA&M generation. Use this skill to evaluate security posture and prioritize remediation efforts.
majiayu000/claude-skill-registry 163
-
security-prompts-threat-modeling
Security analysis and threat modeling prompt templates for STRIDE analysis, code review, OWASP compliance, and vulnerability assessment. Use for security planning, pre-deployment reviews, and ongoing threat assessment. Triggers include "STRIDE", "threat model", "security review", "code review", "OWASP", "payment security", "security analysis", "vulnerability assessment".
majiayu000/claude-skill-registry 163
-
package-audit
Scan for security vulnerabilities using pnpm audit, Snyk, and automated tools. Use when checking security, before deployments, or resolving CVEs.
majiayu000/claude-skill-registry 163
-
optimization-phase
Standard Operating Procedure for /optimize phase. Covers performance benchmarking, accessibility audit, security review, and code quality checks.
majiayu000/claude-skill-registry 163
-
rr-solidity
majiayu000/claude-skill-registry 163
-
power-confidence
Use when creating animations that convey strength, authority, or bold confidence in brand and product.
majiayu000/claude-skill-registry 163
-
detecting-logic-bypass
Detects logic bypass vulnerabilities including authentication bypass, authorization bypass, and business logic flaws. Use when analyzing authentication mechanisms, access controls, or investigating security control bypasses.
majiayu000/claude-skill-registry 163
-
iso27001-controls
Эксперт ISO 27001. Используй для ISMS, security controls и compliance implementation.
majiayu000/claude-skill-registry 163
-
security-reporter
Use when generating comprehensive security audit reports, analyzing security scan results, calculating security posture, or creating OWASP Top 10 compliance assessments. Invoked for security reporting, vulnerability aggregation, and remediation planning.
majiayu000/claude-skill-registry 163
-
security-observation
セキュリティ観測。認可漏れ、インジェクション、機密漏えい、暗号誤用、依存脆弱性を検出。Use when: 認証/認可実装、外部入力処理、依存更新、コミット前チェック、セキュリティレビューして、脅威分析が必要な時。
majiayu000/claude-skill-registry 163
-
taxpulse-repo-audit
Audit a repository for TaxPulse PH architecture, tax engine correctness, and Odoo CE/OCA parity. Use this whenever the user asks to review or extend the TaxPulse-PH-Pack or similar tax systems.
majiayu000/claude-skill-registry 163
-
supabase-auth-storage-realtime-core
Execute Supabase secondary workflow: Auth + Storage + Realtime.
Use when implementing secondary use case,
or complementing primary workflow.
Trigger with phrases like "supabase auth storage realtime",
"implement full stack features with supabase".
majiayu000/claude-skill-registry 163
-
authentication-authorization
ログイン、セッション、JWT、OAuth、アクセス制御を実装する際に使用。
majiayu000/claude-skill-registry 163
-
security-guidance
Comprehensive security best practices, vulnerability scanning, and security guidance for development workflows with automated security checks and compliance monitoring.
majiayu000/claude-skill-registry 163
-
security-fixer
Use when generating security patches, fixing vulnerabilities, or creating code remediation for security findings. Invoked for automated fix generation, patch creation, and vulnerability remediation.
majiayu000/claude-skill-registry 163
-
branch-cleaner
Identify and clean up stale git branches locally and on remotes with safe, reversible steps. Use when asked to prune, list, or delete merged/old branches or audit branch hygiene.
majiayu000/claude-skill-registry 163
-
docs-audit-sane-apps-saneprocess
majiayu000/claude-skill-registry 163
-
seo-optimizer
Audit and optimize WordPress SEO (Yoast/Rank Math) - checks focus keywords, meta descriptions, featured images. Uses Unsplash API for missing images. Run on all pages/posts to identify and fix SEO issues.
majiayu000/claude-skill-registry 163
-
compliance-auditor
Automated compliance auditing for SOC2, HIPAA, GDPR, and PCI-DSS. Activates for compliance checks, security audits, regulatory requirements, and compliance automation.
majiayu000/claude-skill-registry 163
-
spring-security
Secure Spring Boot applications - authentication, authorization, OAuth2, JWT, CORS/CSRF protection
majiayu000/claude-skill-registry 163