Browse
Showing 20 of 204 components
Official Microsoft MCP server for Playwright browser automation, enabling AI agents to navigate pages, fill forms, take...
Four-phase root cause analysis — tracing, defense-in-depth, verification.
Runs CodeQL and Semgrep for automated security vulnerability detection in codebases.
Find similar vulnerabilities and bugs across codebases using pattern-based analysis. Use when hunting bug variants, buil...
Detects timing side-channel vulnerabilities in cryptographic code. Use when implementing or reviewing crypto code, encou...
Run Semgrep static analysis scan on a codebase using parallel subagents. Supports two scan modes — "run all" (full rules...
Scans a codebase for security vulnerabilities using CodeQL's interprocedural data flow and taint tracking analysis. Trig...
Author, test, and refine YARA rules for malware, exploit, and artifact detection while minimizing false positives.
Audits GitHub Actions workflows for security vulnerabilities in AI agent integrations including Claude Code Action, Gemi...
Performs comprehensive C/C++ security review for memory corruption, integer overflows, race conditions, and platform-spe...
Security audit skill collection from Trail of Bits covering vulnerability detection, binary analysis, SAST, and secure c...
Annotates codebases with dimensional analysis comments documenting units, dimensions, and decimal scaling. Use when some...
Structured task planning skill that uses markdown files for persistent plan tracking, progress updates, and subtask deco...
Python framework for building MCP servers and clients with a high-level API, testing utilities, auth helpers, and deploy...
Official MCP developer inspector for testing MCP servers through a browser UI, CLI launch flow, environment injection, a...
Parses and processes SARIF files from static analysis tools like CodeQL, Semgrep, or other scanners. Triggers on "parse...
MCP server for GitHub API integration - repos, issues, PRs, and more.
Gives AI coding agents direct access to Figma design data, enabling accurate one-shot UI implementation by reading layou...
Verifies code implements exactly what documentation specifies for blockchain audits. Use when comparing code against whi...
Searches and explores Burp Suite project files (.burp) from the command line. Use when searching response headers or bod...