LLM and AI application security testing skill for prompt injection, jailbreaking, and AI system vulnerabilities....

Comprehensive iOS mobile application penetration testing skill with Frida/Objection integration for jailbroken and...

Infrastructure as Code security scanning skill for Terraform, CloudFormation, Kubernetes manifests, Helm charts, and...

Automated Dynamic Application Security Testing (DAST) using Playwright MCP for browser-based security scanning....

Multi-cloud security assessment skill for AWS, Azure, and GCP. This skill should be used when performing cloud...

Comprehensive API security testing skill for REST, GraphQL, gRPC, and WebSocket APIs. This skill should be used when...

Comprehensive Android mobile application penetration testing skill with full ADB shell access to rooted devices....

Creates effective SKILL.md files with proper YAML frontmatter, trigger keywords, and best practices. Use when...

Domain reconnaissance coordinator that orchestrates subdomain discovery and port scanning to build comprehensive...

CVE vulnerability testing coordinator that identifies technology stacks, researches known vulnerabilities, and tests...

Authentication testing skill for authorized penetration testing - automates signup, login, 2FA bypass, CAPTCHA...

Offensive AI security testing and exploitation framework. Systematically tests LLM applications for OWASP Top 10...

When writing complex features or significant refactors or user ask explicitly, use an ExecPlan from design to implementation.

Use when starting feature work that needs isolation from current workspace or before executing implementation plans...

Use when you've developed a broadly useful skill and want to contribute it upstream via pull request - guides...