Skill4Agent
Skill4Agent
All SkillsSearchTools
|
Explore
Skill4Agent
Skill4Agent

AI Agent Skills Directory with categorization, English/Chinese translation, and script security checks.

Sitemap

  • Home
  • All Skills
  • Search
  • Tools

About

  • About Us
  • Disclaimer
  • Copyright

Help

  • FAQ
  • Privacy
  • Terms
Contact Us:osulivan147@qq.com

© 2026 Skill4Agent. All rights reserved.

All Skills

Total 54,390 skills, Security & Compliance has 2131 skills

Categories

Showing 12 of 2131 skills

Per page
Downloads
Sort
Security & Complianceyaklang/hack-skills

xss-cross-site-scripting

XSS playbook. Use when user-controlled content reaches HTML, attributes, JavaScript, DOM sinks, uploads, or multi-context rendering paths.

🇺🇸|EnglishTranslated
16
Security & Complianceyaklang/hack-skills

path-traversal-lfi

Path traversal and LFI playbook. Use when file paths, download endpoints, include operations, archive extraction, or wrapper behavior may expose filesystem control.

🇺🇸|EnglishTranslated
16
Security & Complianceyaklang/hack-skills

cors-cross-origin-misconfiguration

CORS misconfiguration testing playbook. Use when analyzing cross-origin trust, credentialed browser reads, origin reflection, preflight policy bugs, and browser-based access to authenticated APIs.

🇺🇸|EnglishTranslated
16
Security & Complianceyaklang/hack-skills

unauthorized-access-common-services

Unauthorized access playbook for common exposed services. Use when Redis, Rsync, PHP-FPM, AJP/Ghostcat, Hadoop YARN, H2 Console, or similar management interfaces are exposed without authentication.

🇺🇸|EnglishTranslated
16
Security & Complianceyaklang/hack-skills

prototype-pollution-advanced

Advanced prototype pollution playbook — server-side RCE, client-side gadgets, filter bypasses, and detection techniques. Companion to ../prototype-pollution/ for basics. Use when you've confirmed pollution and need to escalate to code execution or find framework-specific gadgets.

🇺🇸|EnglishTranslated
16
Security & Complianceyaklang/hack-skills

anti-debugging-techniques

Anti-debugging detection and bypass playbook. Use when reversing protected binaries that detect debuggers via ptrace, PEB flags, timing checks, or signal/exception handlers on Linux and Windows.

🇺🇸|EnglishTranslated
16
Security & Complianceyaklang/hack-skills

linux-lateral-movement

Linux lateral movement playbook. Use after gaining initial access to pivot across Linux hosts via SSH hijacking, credential harvesting, internal pivoting, D-Bus exploitation, sudo token reuse, and shared filesystem abuse.

🇺🇸|EnglishTranslated
16
Security & Compliancevtexdocs/ai-skills

vtex-io-auth-and-policies

Apply when deciding or implementing permissions and authorization boundaries for VTEX IO apps. Covers manifest policies, outbound-access rules, least-privilege design, and how service routes or integrations map to explicit permissions. Use for deciding who is authorized to call or consume a capability, adding new integrations, exposing protected routes, or reviewing app permissions for overreach or missing access.

🇺🇸|EnglishTranslated
16
Security & Compliancep4nda0s/reverse-skills

rev-frida

Generate Frida hook scripts using modern Frida API. Activate when the user wants to write Frida scripts, hook functions at runtime, trace calls/arguments/return values, intercept native or ObjC/Java methods, or dump memory and exports.

🇺🇸|EnglishTranslated
16
Security & Compliancep4nda0s/reverse-skills

rev-symbol

Restore function symbols by analyzing code patterns, strings, constants, and cross-references

🇺🇸|EnglishTranslated
16
Security & Complianceagentic-reserve/blockint-...

crypto-investigation-compliance

Maps high-level crypto crime categories, safe and ethical OSINT plus on-chain investigation workflow, and victim reporting posture. Use when the user asks about scam types, pig butchering, rug pulls, tracing stolen funds ethically, compliance-adjacent investigation, or how to document cases for authorities.

🇺🇸|EnglishTranslated
16
Security & Complianceagentic-reserve/blockint-...

honeypot-detection-techniques

Educational techniques to assess honeypot-style token risk from verified source, bytecode clues, and observational on-chain history—EVM ERC-20 patterns (transfer gates, fees, blacklists), Solana SPL and Token-2022 hooks, and safe validation paths. Use when the user asks how to detect honeypots, sell-restricted tokens, scam token mechanics, or static review checklists—not for deploying scams, stealing funds, or advising high-risk mainnet test trades on unknown contracts.

🇺🇸|EnglishTranslated
16
1...7980818283...178
Page