Agent Skills by 0xShe
Showing 33 vetted skills indexed across 1 GitHub repositories.
php-csrf-audit
Analyze PHP source code to verify CSRF protections on state-changing endpoints.
php-exploit-chain-audit
Aggregate PHP vulnerability audit reports into end-to-end exploit chains narratives.
php-nosql-audit
Detect PHP NoSQL injection risks in MongoDB query construction.
php-logging-audit
Detect security logging gaps and sensitive data in PHP applications.
php-logic-audit
Identify and report business-logic flaws in PHP applications.
php-codeigniter-audit
Inspect CodeIgniter projects for CSRF, XSS, and SQL risks.
php-file-upload-audit
Audit PHP source code for file upload vulnerabilities with risk levels and fixes.
php-file-write-audit
Trace user input to file-write sinks in PHP applications.
php-session-cookie-audit
Analyze PHP source code for session and cookie security flaws.
php-thinkphp-audit
Map ThinkPHP security weaknesses to risk categories via static analysis.
php-open-redirect-audit
Audit PHP code for open redirect vulnerabilities from user-controlled destinations.
php-crlf-audit
Identifies CRLF injection vulnerabilities in PHP HTTP headers and cookies.
php-wordpress-audit
Map WordPress security controls to a unified vulnerability taxonomy.
php-vuln-scanner
Scan composer.json and composer.lock for known PHP dependency vulnerabilities.
php-yii-audit
Audit Yii2 applications for access control, RBAC, CSRF, and XSS weaknesses.
php-expr-audit
Detect user-controlled expressions reaching PHP expression engines and eval entry points.
php-symfony-audit
Map Symfony security configurations to standardized vulnerability taxonomies.
php-laravel-audit
Analyze Laravel PHP source for security misconfigurations and risks.
php-auth-audit
Analyze PHP web applications to map route authentication and authorization risks.
php-tpl-audit
Trace user input through PHP template rendering to identify SSTI risks.
php-sql-audit
Trace PHP SQL execution points from user input to assess injection risk.
php-crypto-audit
Detect weak hashes, insecure encryption, and hard-coded secrets in PHP code.
php-archive-extract-audit
Trace PHP archive extraction calls to detect Zip Slip path traversal risks.
php-route-mapper
Extract PHP web routes and parameter structures into Markdown files.