安全性
2492 skills in 測試與安全 > 安全性
prereview
Review unpushed commits before pushing for code quality, bugs, security issues, and error handling. Use when preparing to push commits, want pre-push code review, or need to validate changes before pushing. Runs comprehensive analysis using specialized review agents.
secure-container-build
Build secure container images with Wolfi runtime, non-root users, and multi-stage builds. Templates for Python/uv, Bun, Node.js/pnpm, Golang (static/CGO), and Rust (glibc/musl) with allocator optimization
kubernetes-security-policies
Kubernetes security policies, RBAC, and Pod Security Standards for hardened cluster deployments. Use when implementing cluster security, defining network policies, or enforcing security compliance in Kubernetes environments.
slack-auth-security
OAuth flows, token management, and security best practices for Slack apps. Use when implementing app distribution, multi-workspace installations, token storage and rotation, managing scopes and permissions, or securing production Slack applications.
create-resource-service
Create a resource service for CRUD operations on domain entities. Use when creating services for entities like notes, users, courses that need data operations, authorization, and event emission. Triggers on "resource service", "entity service", "crud service", "note service", "create service for".
rust
Tauri v2 and Rust backend best practices, commands, state management, IPC and security patterns. Use when writing Rust backend code, creating commands or integrating with the frontend.
agentuity-cli-cloud-stream-get
Get detailed information about a specific stream. Requires authentication. Use for Agentuity cloud platform operations
code-review
Reviews code for best practices, bugs, security issues, and provides improvement suggestions
opsproxy-aware-fetcher
Detect proxy requirements and route fetches through secure proxies with auth handling and offline fallbacks. Use when data retrieval must honor enterprise proxy rules or when direct access is blocked.
security-operations-deployment
Operational security guidance for deployment, monitoring, and maintenance. Use this skill when you need to understand which middlewares to apply, configure environment variables, monitor security post-deployment, or follow the pre-deployment checklist. Triggers include "security operations", "deployment security", "security monitoring", "environment variables", "when to use middleware", "pre-deployment", "security checklist", "production security".
founder-os
Manages founder business portfolio, signals, vault, and snapshots. Tracks business health, stores credentials securely, and generates AI-powered business analytics and recommendations.
scaffolding-fastapi-dapr
Build production-grade FastAPI backends with SQLModel, Dapr integration, and JWT authentication. Use when building REST APIs with Neon PostgreSQL, implementing event-driven microservices with Dapr pub/sub, scheduling jobs, or creating CRUD endpoints with JWT/JWKS verification. NOT when building simple scripts or non-microservice architectures.
auth-provider
认证提供商统一接口,支持 Supabase Auth、Clerk、Firebase Auth 等主流认证服务。 提供用户注册、登录、OAuth、会话管理、权限验证等功能。
agentuity-cli-cloud-storage-delete
Delete a storage resource or file. Requires authentication. Use for Agentuity cloud platform operations
api-design-architect
RESTful API design principles, data modeling strategies, endpoint architecture, authentication patterns, and best practices for building scalable, maintainable backend APIs. Covers REST conventions, HTTP methods, status codes, and database schema design.
api-connector
Connect to 100+ popular APIs using natural language - automatic authentication, request building, and response parsing
configuring-better-auth
Implement OAuth 2.1 / OIDC authentication using Better Auth with MCP assistance. Use when setting up a centralized auth server (SSO provider), implementing SSO clients in Next.js apps, configuring PKCE flows, or managing tokens with JWKS verification. Uses Better Auth MCP for guided setup. NOT when using simple session-only auth without OAuth/OIDC requirements.
agentuity-cli-cloud-secret-set
Set a secret. Requires authentication. Use for Agentuity cloud platform operations
agentuity-cli-cloud-sandbox-exec
Execute a command in a running sandbox. Requires authentication. Use for Agentuity cloud platform operations
agentuity-cli-cloud-env-push
Push environment variables from local .env file to cloud. Requires authentication. Use for Agentuity cloud platform operations