Security compliance
nodejs-patterns
WHAT: Production-ready Node.js backend patterns - Express/Fastify setup, layered architecture, middleware, error handling, validation, datab...
oauth
Implement OAuth 2.0 and OpenID Connect flows securely.
office365-connector
Office 365 / Outlook connector for email (read/send), calendar (read/write), and contacts (read/write) using resilient OAuth authentication....
openclaw-macos-security
macOS security monitoring for OpenClaw
openclaw-sec
AI Agent Security Suite - Real-time protection against prompt injection, command injection, SSRF, path traversal, secrets exposure, and cont...
jugaad-clawguard
Security blacklist protecting AI agents from malicious skills, scams, and prompt injection. Use before executing external commands, visiting...
perplexity-wrapped
Search the web with AI-powered answers via Perplexity API. Supports three modes - Search API (ranked results), Sonar API (AI answers with ci...
pocketbase
Build backends with PocketBase collections, auth, and realtime.
production-readiness
Meta-skill that orchestrates logging, monitoring, error handling, performance, security, deployment, and testing skills to ensure a service ...
pwnclaw-security-scan
Test your AI agent for security vulnerabilities using PwnClaw. Runs 50+ attacks (prompt injection, jailbreaks, social engineering, MCP poiso...
receipts-guard
ERC-8004 identity, x402 payments, and arbitration protocol for autonomous agent commerce. The three rails for the machine economy.
roblox
Avoid common Roblox mistakes — server/client security, DataStore pitfalls, memory leaks, and replication gotchas.
s3
Work with S3-compatible object storage with proper security, lifecycle policies, and access patterns.
security-scanner
Automated security scanning and vulnerability detection for web applications, APIs, and infrastructure. Use when you need to scan targets fo...
skill-auditor
Security scanner that catches malicious skills before they steal your data. Detects credential theft, prompt injection, and hidden backdoors...
smart-accounts-kit
Web3 development using MetaMask Smart Accounts Kit. Use when the user wants to build dApps with ERC-4337 smart accounts, send user operation...
solidity
Avoid common Solidity mistakes — reentrancy, gas traps, storage collisions, and security pitfalls.
straker-verify-openclaw
Professional AI-powered translation with optional human verification. Supports 100+ languages. Quality boost for existing translations. Ente...
subagent-driven-development-2
Execute implementation plans by dispatching a fresh subagent per task with two-stage review (spec compliance then code quality). Use when yo...
sui-coverage
Analyze Sui Move test coverage, identify untested code, write missing tests, and perform security audits. Includes Python tools for parsing ...
systems-architect
Design infrastructure, networks, and cloud systems with integration, reliability, and security patterns.
task-sync
Synchronize TickTick (Dida) and Google Tasks bidirectionally, including list/project mapping, task content sync, completion sync, and smart-...
tech-security-audit
使用Nmap扫描本地网络,检测漏洞、识别服务版本及操作系统指纹。
unreal-engine
Avoid common Unreal mistakes — garbage collection, UPROPERTY macros, replication authority, and asset reference pitfalls.
windows
Windows-specific patterns, security practices, and operational traps that cause silent failures.