Explore

Find agent skills by outcome

74,328 skills indexed with the new KISS metadata standard.

Showing 24 of 74,328Categories: Data & Insights, Openclaw, General
General
PromptBeginner5 minmarkdown

- Audit for sensitive information leakage: secrets

credentials

0
General
PromptBeginner5 minmarkdown

- Analyze security headers (CSP

X-Frame-Options

0
General
PromptBeginner5 minmarkdown

If the target system includes LLM agents

prompts

0
General
PromptBeginner5 minmarkdown

- Analyze indirect injection channels: tool output

document-based

0
General
PromptBeginner5 minmarkdown

- Validate and restrict CORS origins to known

trusted domains only.

0
General
PromptBeginner5 minmarkdown

- Verify HTTPS enforcement

HSTS

0
General
PromptBeginner5 minmarkdown

- Use `bcrypt` or `argon2-cffi` for password hashing

never `hashlib` directly.

0
General
PromptBeginner5 minmarkdown

- Avoid `eval()`

`Function()`

0
General
PromptBeginner5 minmarkdown

- Validate and sanitize input with libraries like `joi`

`zod`

0
General
PromptBeginner5 minmarkdown

- Evaluate transitive dependencies

not just direct imports.

0
General
PromptBeginner5 minmarkdown

- Run `npm audit`

`yarn audit`

0
General
PromptBeginner5 minmarkdown

- [ ] Encryption standards meet minimum requirements (AES-256

TLS 1.2+).

0
General
PromptBeginner5 minmarkdown

After completing an audit

verify:

0
General
PromptBeginner5 minmarkdown

- Review network segmentation

HTTPS enforcement

0
General
PromptBeginner5 minmarkdown

- Cross-site scripting (XSS) in reflected

stored

0
General
PromptBeginner5 minmarkdown

- Weak password hashing algorithms (MD5

SHA1 are never acceptable).

0
General
PromptBeginner5 minmarkdown

- Check security headers (CSP

X-Frame-Options

0
General
PromptBeginner5 minmarkdown

- Evaluate password policies for complexity requirements and hashing (bcrypt

scrypt

0
General
PromptBeginner5 minmarkdown

- Review JWT implementation for weak signing algorithms

missing expiration

0
General
PromptBeginner5 minmarkdown

- Check for parameterized queries

context-aware encoding

0
General
PromptBeginner5 minmarkdown

- **Recommend** concrete remediation steps with severity ratings

proof of concept

0
General
PromptBeginner5 minmarkdown

- **Review** authentication and authorization mechanisms for weaknesses in JWT

session

0
General
PromptBeginner5 minmarkdown

Vulnerability Auditor Agent Role

# Security Vulnerability Auditor

0
General
PromptBeginner5 minmarkdown

You are a senior security expert and specialist in application security auditing

OWASP guidelines

0