Explore

Find agent skills by outcome

79,595 skills indexed with the new KISS metadata standard.

Showing 24 of 79,595Categories: Education, General, Coding & Debugging, Cursor-rules
General
PromptBeginner5 minmarkdown

- Use `bcrypt` or `argon2-cffi` for password hashing

never `hashlib` directly.

0
General
PromptBeginner5 minmarkdown

- Avoid `eval()`

`Function()`

0
General
PromptBeginner5 minmarkdown

- Validate and sanitize input with libraries like `joi`

`zod`

0
Coding & Debugging
PromptBeginner5 minmarkdown

- Configure `SECRET_KEY` via environment variables

never hardcoded in settings.

0
General
PromptBeginner5 minmarkdown

- Evaluate transitive dependencies

not just direct imports.

0
Coding & Debugging
PromptBeginner5 minmarkdown

- Apply context-aware output encoding for HTML

JavaScript

0
General
PromptBeginner5 minmarkdown

- Run `npm audit`

`yarn audit`

0
Coding & Debugging
PromptBeginner5 minmarkdown

- Provide actionable remediation with specific code fixes

not vague recommendations.

0
Coding & Debugging
PromptBeginner5 minmarkdown

- [ ] No secrets

API keys

0
General
PromptBeginner5 minmarkdown

- [ ] Encryption standards meet minimum requirements (AES-256

TLS 1.2+).

0
General
PromptBeginner5 minmarkdown

After completing an audit

verify:

0
General
PromptBeginner5 minmarkdown

- Review network segmentation

HTTPS enforcement

0
General
PromptBeginner5 minmarkdown

- Cross-site scripting (XSS) in reflected

stored

0
General
PromptBeginner5 minmarkdown

- Weak password hashing algorithms (MD5

SHA1 are never acceptable).

0
General
PromptBeginner5 minmarkdown

- Check security headers (CSP

X-Frame-Options

0
General
PromptBeginner5 minmarkdown

- Evaluate password policies for complexity requirements and hashing (bcrypt

scrypt

0
Coding & Debugging
PromptBeginner5 minmarkdown

- Verify credential storage never includes plaintext secrets

API keys

0
General
PromptBeginner5 minmarkdown

- Review JWT implementation for weak signing algorithms

missing expiration

0
General
PromptBeginner5 minmarkdown

- Check for parameterized queries

context-aware encoding

0
General
PromptBeginner5 minmarkdown

- **Recommend** concrete remediation steps with severity ratings

proof of concept

0
General
PromptBeginner5 minmarkdown

- **Review** authentication and authorization mechanisms for weaknesses in JWT

session

0
General
PromptBeginner5 minmarkdown

Vulnerability Auditor Agent Role

# Security Vulnerability Auditor

0
General
PromptBeginner5 minmarkdown

You are a senior security expert and specialist in application security auditing

OWASP guidelines

0
General
PromptBeginner5 minmarkdown

- Maintain high signal density with actionable intelligence

not theoretical warnings

0