.fyi
SkillsMCPPluginsSubagents

Browse by category

DevOps & CI/CD SkillsProductivity & Workflow SkillsOther SkillsProduct & Project Management SkillsDocumentation & Knowledge SkillsCode Review & Refactor SkillsBackend & APIs SkillsAgent Meta & Communication SkillsResearch SkillsSecurity SkillsUX UI & Design SkillsTesting & QA SkillsSee all →

Every Claude Code skill, MCP server, plugin and subagent in one directory. Searchable, comparable, and one command from installed. Live stats from GitHub, npm and PyPI.

We're on Product HuntYour agent's app storeCheck it out →
Agent SkillsMCP ServersPluginsSubagentsCoding Agents
CollectionsOfficial publishersGlossaryFAQBlogSearchSavedFeedback
PrivacyTermsllms.txtSitemap

made with ♥ · © 2026 aaaa.fyi

Independent project · real data from public registries

…/jd-opensource/joysafeter
home/skills/jd-opensource/joysafeter
jd-opensource avatar

jd-opensource/joysafeter

33 skills · 1,529 total installs

View on GitHub
$npx skills add jd-opensource/joysafeter
SkillInstalls
pentest-osint-reconOpen Source Intelligence gathering and attack surface management for external reconnaissance.147pentest-api-deepDeep OWASP API Security Top 10 testing for REST, GraphQL, gRPC, and WebSocket APIs — BFLA, mass assignment, rate limiting, and unsafe consumption.76pentest-mobile-appOWASP Mobile Top 10 security testing for Android and iOS — local storage, certificate pinning bypass, IPC abuse, and binary protections.76pentest-exploit-validationProof-driven exploitation with 4-level evidence system, bypass exhaustion protocol, mandatory evidence checklists, and strict…71pentest-ai-llm-securityAI/LLM application security testing — prompt injection, jailbreaking, data exfiltration, and insecure output handling per OWASP LLM Top 10.70pentest-ctf-binaryBinary exploitation (Pwn) and reverse engineering tools for CTF challenges and software analysis.68pentest-secrets-exposureDiscover hardcoded credentials, leaked API keys, exposed configuration files, sensitive data in artifacts, and information disclosure via error handling.64pentest-network-internalInternal network penetration testing, Active Directory enumeration, and lateral movement simulation.62pentest-config-hardeningSecurity header auditing, TLS configuration testing, HTTP method analysis, CSP bypass assessment, and deployment hardening verification.60pentest-race-conditionsConcurrency exploitation — race conditions, TOCTOU vulnerabilities, and parallel request abuse in web applications.60pentest-whitebox-code-reviewSource code security audit using backward taint analysis, slot type classification, render context verification, and 3-phase parallel review producing an…60pentest-recon-attack-surfaceWhite-box attack surface mapping — correlate external scans, browser exploration, and source code into structured endpoint inventory, role architecture, and…57pentest-business-logicBusiness logic vulnerability testing — workflow bypass, payment manipulation, state machine abuse, and function limit circumvention per WSTG-BUSL.52pentest-cloud-infrastructureCloud security posture management and container security assessment for AWS, Azure, GCP, and Kubernetes.52pentest-ctf-cryptoCryptography tools for solving CTF challenges involving ciphers, hashing, and weak encryption.51pentest-ctf-forensicsDigital forensics, steganography, and packet analysis for CTF challenges and investigation.51pentest-supply-chainSoftware supply chain security — dependency confusion, CI/CD pipeline attacks, lockfile integrity, and build artifact verification.46pentest-client-advancedAdvanced client-side attacks — CORS misconfiguration, WebSocket security, clickjacking, postMessage abuse, CSS injection, and browser storage vulnerabilities.44pentest-http-smugglingHTTP request smuggling, desync attacks, cache poisoning, and protocol-level vulnerability testing.43planning-with-filesImplements Manus-style file-based planning for complex tasks. Creates task_plan.md, findings.md, and progress.md.37brainstormingYou MUST use this before any creative work - creating features, building components, adding functionality, or modifying behavior.36pptx35skill-creatorGuide for creating effective skills. This skill should be used when users want to create a new skill (or update an existing skill) that extends an agent's…35executing-plansUse when you have a written implementation plan to execute in a separate session with review checkpoints34pdf34writing-plansUse when you have a spec or requirements for a multi-step task, before touching code34xlsx34openclaw-security-checkerOpenClaw 安全检测工具,基于安全实践指南验证配置安全、权限隔离、网络策略、日志审计和运行时完整性14openclaw-threat-detectOpenClaw 攻击模式检测工具,识别数据外传、反弹Shell、文件泄露、Prompt注入、供应链投毒等高危行为,支持 MITRE ATT&CK 映射13skill-security-auditorOpenClaw Skills 全方位安全审计工具,检测供应链投毒、Prompt注入、恶意代码模式、权限越权和依赖风险13appSKILL(技能)模块是平台的核心功能之一,用于管理和组织可复用的技能资源。每个技能可以包含描述、内容、标签、文件等丰富的信息,支持公开分享和私有管理。—pentest-enterprise-webProfessional web application and API security testing workflows using OWASP Top 10 methodologies.—pentest-vuln-verify通过原始 HTTP 请求操作和严格验证自动验证 Web 漏洞(开放重定向、XSS)。—