Agent skills
Skills you can use with AI coding agents, indexed from public GitHub repositories.
-
authorization-patterns
Authorization patterns including RBAC and ABAC. Use when implementing access control.
majiayu000/claude-skill-registry 163
-
generate-report-header
Create standardized report headers with metadata for all agent-generated reports. Use when generating bug reports, security audits, dependency reports, or any worker output requiring consistent formatting.
majiayu000/claude-skill-registry 163
-
jwt-auth-expert
Comprehensive JWT authentication expert for senior developers (10+ years experience). Intelligently detects project language/framework and implements production-ready JWT auth systems with refresh tokens, secure HTTP-only cookies, token rotation, blacklisting, RBAC, MFA, and complete security. Covers Express, FastAPI, Next.js, React, Django, Flask, NestJS, and more. Automatically audits JWT implementations, generates complete auth systems (registration, login, logout, refresh, password reset), implements middleware, prevents XSS/CSRF attacks, uses bcrypt/argon2 hashing, and follows OWASP best practices. Use for implementing JWT authentication, token refresh flows, secure cookie storage, protected routes, role-based access control, security audits, and complete auth system generation.
majiayu000/claude-skill-registry 163
-
Security Engineer
Implement security best practices across the application stack. Use when securing APIs, implementing authentication, preventing vulnerabilities, or conducting security reviews. Covers OWASP Top 10, auth patterns, input validation, encryption, and security monitoring.
majiayu000/claude-skill-registry 163
-
symfony:api-platform-security
Secure API Platform resources with security expressions, voters, and operation-level access control
majiayu000/claude-skill-registry 163
-
vulnerability-patterns
Index of vulnerability detection pattern skills. Routes to core patterns (universal) and language-specific patterns for security scanning.
majiayu000/claude-skill-registry 163
-
security-testing
Test for security vulnerabilities using OWASP principles. Use when conducting security audits, testing auth, or implementing security practices.
majiayu000/claude-skill-registry 163
-
security-lens
Apply security awareness during code review and implementation. Catches common vulnerabilities without requiring full security audit.
majiayu000/claude-skill-registry 163
-
handling-authentication
Handling authentication and authorization in StickerNest. Use when the user asks about login, signup, auth, session, protected routes, user context, JWT, tokens, logout, or permission checks. Covers Supabase Auth, AuthContext, protected routes, and widget auth.
majiayu000/claude-skill-registry 163
-
violetconnect-shopify
Shopify OAuth integration patterns for VioletConnect merchant onboarding
majiayu000/claude-skill-registry 163
-
auth-analyzer
Review and analyze authentication and authorization patterns for security vulnerabilities.
majiayu000/claude-skill-registry 163
-
workers-security
Cloudflare Workers security with authentication, CORS, rate limiting, input validation. Use for securing APIs, JWT/API keys, or encountering auth failures, CORS errors, XSS/injection vulnerabilities.
majiayu000/claude-skill-registry 163
-
agent-mail
MCP Agent Mail - mail-like coordination layer for coding agents with memorable identities, inbox/outbox, searchable threads, advisory file reservations, pre-commit guards, and human-auditable Git artifacts. The backbone of multi-agent workflows.
majiayu000/claude-skill-registry 163
-
julien-infra-hostinger-security
Security management for Hostinger VPS srv759970 - Fail2ban, WordPress security audits (25+ checks, 0-100% scoring), infrastructure audit. Use for security hardening, IP bans, or security assessments.
majiayu000/claude-skill-registry 163
-
detecting-logic-bypass
Detects logic bypass vulnerabilities including authentication bypass, authorization bypass, and business logic flaws. Use when analyzing authentication mechanisms, access controls, or investigating security control bypasses.
majiayu000/claude-skill-registry 163
-
wp-orchestrator
Master WordPress project orchestrator - coordinates all WordPress skills for complete site setup, audit, and optimization. Use for new project setup, site audits, or comprehensive reviews. Runs interview phases and manages todo lists.
majiayu000/claude-skill-registry 163
-
oauth-callback-handler
Oauth Callback Handler - Auto-activating skill for API Integration.
Triggers on: oauth callback handler, oauth callback handler
Part of the API Integration skill category.
majiayu000/claude-skill-registry 163
-
webapp-nikto
Web server vulnerability scanner for identifying security issues, misconfigurations, and outdated software versions. Use when: (1) Conducting authorized web server security assessments, (2) Identifying common web vulnerabilities and misconfigurations, (3) Detecting outdated server software and known vulnerabilities, (4) Performing compliance scans for web server hardening, (5) Enumerating web server information and enabled features, (6) Validating security controls and patch levels.
majiayu000/claude-skill-registry 163
-
encrypting-and-decrypting-data
Validate encryption implementations and cryptographic practices. Use when reviewing data security measures. Trigger with 'check encryption', 'validate crypto', or 'review security keys'.
majiayu000/claude-skill-registry 163
-
code-review
Review code changes following RT Stack conventions and best practices.
按照 RT Stack 规范和最佳实践审查代码变更。
Use when:
- Reviewing pull requests
- Checking code quality before commit
- User mentions "review", "check code", "审查代码", "代码检查"
majiayu000/claude-skill-registry 163
-
code-review-checklist
Review code changes for correctness, security, performance, and maintainability. Use for PR reviews,
code audits, pre-merge checks, or quality validation of Laravel + React code. EXCLUSIVE to reviewer agent.
majiayu000/claude-skill-registry 163
-
cloud-security-configuration
Implement comprehensive cloud security across AWS, Azure, and GCP with IAM, encryption, network security, compliance, and threat detection.
majiayu000/claude-skill-registry 163
-
sap-btp-master-data-integration
Configures and integrates SAP Master Data Integration (MDI) service on SAP Business Technology Platform. Use when setting up MDI tenants, connecting applications (S/4HANA, SuccessFactors, Ariba, Fieldglass, etc.), configuring distribution models, SOAP APIs for business partners, extensibility, or troubleshooting master data replication. Covers One Domain Model integration, Business Data Orchestration, client authentication (OAuth2, mTLS), and security configurations.
majiayu000/claude-skill-registry 163
-
typescript-security-checker
Next.js/TypeScriptプロジェクト向けセキュリティ診断スキル。OWASP準拠。
以下の場合に使用:
(1) PRレビュー時のセキュリティチェック
(2) API Routes のセキュリティ検証
(3) 認証・認可ロジックの確認
(4) 依存パッケージの脆弱性確認
(5) 環境変数・シークレット管理の確認
majiayu000/claude-skill-registry 163