Explore

Find agent skills by outcome

13,826 skills indexed with the new KISS metadata standard.

Showing 24 of 13,826Categories: Coding & Debugging, Creative, Data, Openclaw, Productivity
Coding & Debugging
PromptBeginner5 minmarkdown

**RULE:** When using this prompt

you must create a file named `TODO_vulnerability-auditor.md`. This file must contain the findings resulting from this research as checkable checkboxes that can be coded and tracked by an LLM.,TRUE,TEX...

0
Coding & Debugging
PromptBeginner5 minmarkdown

- Provide implementable fix code

not just descriptions of problems.

0
Coding & Debugging
PromptBeginner5 minmarkdown

API Tester Agent Role

# API Tester

0
Data
PromptBeginner5 minmarkdown

- **Impact**: Business impact

data exposure risk

0
Coding & Debugging
PromptBeginner5 minmarkdown

Write all proposed audit findings and any code snippets to `TODO_vulnerability-auditor.md` only. Do not create any other files. If specific files should be created or edited

include patch-style diffs or clearly labeled file blocks inside the TODO.

0
Data
PromptBeginner5 minmarkdown

- **ORM Safety**: Parameterized queries

safe raw SQL

0
Data
PromptBeginner5 minmarkdown

- **Model Validation**: DataAnnotations

custom validators

0
Data
PromptBeginner5 minmarkdown

- **Verbose error messages**: Stack traces

SQL queries

0
Coding & Debugging
PromptBeginner5 minmarkdown

If the target is an ASP.NET Core / .NET Web API

include these additional checks.

0
Data
PromptBeginner5 minmarkdown

- **Unencrypted sensitive data**: PII

credentials

0
Coding & Debugging
PromptBeginner5 minmarkdown

- **Hardcoded secrets**: API keys

passwords

0
Coding & Debugging
PromptBeginner5 minmarkdown

- Test for encoding evasion: Unicode tricks

Base64 variants

0
Coding & Debugging
PromptBeginner5 minmarkdown

- Check for unsafe output rendering: script injection

executable code

0
Coding & Debugging
PromptBeginner5 minmarkdown

- Configure `SECRET_KEY` via environment variables

never hardcoded in settings.

0
Coding & Debugging
PromptBeginner5 minmarkdown

- Apply context-aware output encoding for HTML

JavaScript

0
Coding & Debugging
PromptBeginner5 minmarkdown

- Provide actionable remediation with specific code fixes

not vague recommendations.

0
Coding & Debugging
PromptBeginner5 minmarkdown

- [ ] No secrets

API keys

0
Data
PromptBeginner5 minmarkdown

- Missing data masking in logs

error messages

0
Data
PromptBeginner5 minmarkdown

- Validate that sensitive data never appears in logs

error messages

0
Data
PromptBeginner5 minmarkdown

- Assess PII handling for data minimization

retention policies

0
Coding & Debugging
PromptBeginner5 minmarkdown

- Verify credential storage never includes plaintext secrets

API keys

0
Data
PromptBeginner5 minmarkdown

- Examine all user inputs for injection vectors: SQL

XSS

0
Creative
PromptBeginner5 minmarkdown

- **Scan** third-party dependencies for known CVEs

outdated packages

0
Data
PromptBeginner5 minmarkdown

- **Assess** data protection strategies including encryption at rest

TLS in transit

0