Browse
Showing 17 of 57 components
Provides guidance for property-based testing across multiple languages and smart contracts. Use when writing tests, revi...
Creates language variants of existing Semgrep rules. Use when porting a Semgrep rule to specified target languages. Take...
Enables ultra-granular, line-by-line code analysis to build deep architectural context before vulnerability or bug findi...
Identifies dependencies at heightened risk of exploitation or takeover. Use when assessing supply chain attack surface,...
Evaluates dependency threat landscapes for software supply chain security.
Systematically verifies suspected security bugs to eliminate false positives. Produces TRUE POSITIVE or FALSE POSITIVE v...
Detects fail-open insecure defaults (hardcoded secrets, weak auth, permissive security) that allow apps to run insecurel...
Scans Android APKs for Firebase security misconfigurations including open databases, storage buckets, authentication iss...
Provides expertise for analyzing DWARF debug files and understanding the DWARF debug format/standard (v3-v5). Triggers w...
Creates custom Semgrep rules for detecting security vulnerabilities, bug patterns, and code patterns. Use when writing S...
Safely analyzes and cleans up local git branches and worktrees by categorizing them as merged, squash-merged, superseded...
Creates devcontainers with Claude Code, language-specific tooling (Python/Node/Rust/Go), and persistent volumes. Use whe...
Configures Python projects with modern tooling (uv, ruff, ty). Use when creating projects, writing standalone scripts, o...
Runs external LLM code reviews (OpenAI Codex or Google Gemini CLI) on uncommitted changes, branch diffs, or specific com...
Iteratively reviews and fixes Claude Code skill quality issues until they meet standards. Runs automated fix-review cycl...
STRIDE-based threat modeling for identifying and mitigating security risks in architectures.
Prompt optimization and engineering patterns for LLM-powered applications.