API安全测试的专业技能和方法论
安全意识培训的专业技能和方法论
安全事件响应的专业技能和方法论
文件上传漏洞测试的专业技能和方法论
安全代码审查的专业技能和方法论
Flag possible documentation duplication, misplacement, or verbosity. Use when drafting or reviewing docs, backlog items, ADRs, or explanatory text to steer toward a single source of truth.
XSS跨站脚本攻击测试的专业技能
Execute a single, well-formed work item with minimal, verified changes. Use when a backlog item is ready for implementation and work must proceed safely without scope creep.
XXE XML外部实体注入测试的专业技能和方法论
网络渗透测试的专业技能和方法论
反序列化漏洞测试的专业技能和方法论
Enforces disciplined task tracking across context boundaries. Use when starting any coding task, receiving a new user request mid-work, planning multi-step work, discovering sub-tasks or issues,...
云安全审计的专业技能和方法论
SQL注入测试的专业技能和方法论
命令注入漏洞测试的专业技能和方法论
业务逻辑漏洞测试的专业技能和方法论
SSRF服务器端请求伪造测试的专业技能和方法论
Docker containerization expert with deep knowledge of multi-stage builds, image optimization, container security, Docker Compose orchestration, and production deployment patterns. Use PROACTIVELY...
Use when creating new skills, editing existing skills, or verifying skills work before deployment
Guide for creating effective skills. This skill should be used when users want to create a new skill (or update an existing skill) that extends Claude's capabilities with specialized knowledge,...