Pa55w0rdPa55w0rdCommunityยท1 Agent Skills Included

secknowledge-skill

Web and AI security testing knowledge and payloads

Guides penetration testing and security audits of web applications and AI systems with 88,636 real vulnerability cases and 173 documented AI risks. Covers SQL injection, XSS, file upload, prompt injection, jailbreaks, MCP poisoning, and sandbox escape with ready-to-use payloads. Eliminates guesswork by routing each target to the right reference file with verified test cases and bypass techniques.
npx skills add Pa55w0rd/secknowledge-skill --all -g -y

All Skills in This Repository (1)

Pure Emerald Level Indicators

Frequently Asked Questions

FAQPage Schema
How to install secknowledge-skill?โ–ผ

Run `npx skills add Pa55w0rd/secknowledge-skill --all -g -y` in your terminal to install it globally for your AI coding assistant.

What does secknowledge-skill do?โ–ผ

It gives your AI assistant a structured security testing knowledge base covering web vulnerabilities like SQL injection and XSS, plus AI risks like prompt injection, jailbreaks, and sandbox escape.

Can it help test LLM and AI agent security?โ–ผ

Yes. It covers 173 GAARM AI risks across five domains, including prompt injection, MCP poisoning, RAG poisoning, agent misuse, and container escape, mapped to OWASP LLM and Agentic AI Top 10.

Does it include real attack payloads?โ–ผ

Yes. Each reference file contains battle-tested payloads and WAF bypass techniques drawn from 88,636 real WooYun vulnerability cases, with strict rules against inventing unverified payloads.

Do I need security experience to use it?โ–ผ

No. Describe your target in plain language and the skill routes the request to the right testing methodology, though it only outputs exploitation steps for authorized tests or CTF scenarios.

Related Repositories in Software Engineering

View All in Software Engineeringโ†’