Results for “cookies”

66 skills
More results
aaaaqwq
linkedin
LinkedIn automation via browser relay or cookies for messaging, profile viewing, and network actions.
1 · bundle
danstrem2
linkedin
LinkedIn automation via browser relay or cookies for messaging, profile viewing, and network actions.
2 · bundle
handsomestwei
zhihu-fetcher
抓取知乎收藏夹与文章正文为 Markdown,支持图片本地化、断点续传及写入 Obsidian 知识库。
28 · bundle
neuralblitz
bird
Read, search, post, and engage with X/Twitter from the command line using cookie-based authentication.
1
shulkwisec
cookie-attacks
Audit and attack session cookies via missing Secure/HttpOnly/SameSite attributes, overly broad Domain/Path scope, non-expiring persistent cookies, absent __Host- and __Secure- prefixes, browser cache leakage (Cache-Control: no-store missing), session token predictability via Burp Sequencer analysis, server-side session not invalidated on logout, and SSO single-logout bypass. Tools: Burp Suite Repeater/Sequencer, OWASP ZAP, EditThisCookie, Tamper Data, Cookiebro.
21
comeonoliver
bird
Interact with X/Twitter from the command line using GraphQL and cookie authentication, including reading tweets, searching, managing bookmarks, and posting.
61
demerzels-lab
weread
Fetches notes and highlights from WeChat Reading via a CLI, supporting login, book listing, highlight export, and shelf management.
10 · bundle
coreyone
developer-web-security
Trigger: web security, XSS mitigation, secure cookies, CSRF, CSP headers, CORS policies. Scope: Frontend and browser-level security boundaries. Boundary: Excludes operating system file storage permissions.
1 · bundle
johnalbertini14-glitch
gram
Interact with Instagram from the command line: view feeds, posts, profiles, search, and perform engagement actions using cookie-based authentication.
1 · bundle
coreyone
auth-and-identity-rules
Trigger: OAuth 2.1, JWT session, Secure cookies, Keychain storage, auth flow, user authentication. Scope: User authentication, session storage, authorization boundaries. Boundary: Excludes generic data caching.
1 · bundle
dvcrn
gram
Interact with Instagram from the command line: view feeds, posts, profiles, search, and perform engagement actions using cookie-based authentication.
32
luokai0
curl-http
Provides curl commands for making HTTP requests, testing APIs, and transferring files, including authentication, headers, cookies, and response handling.
10 · bundle
mukul975-2
cookie-audit
Comprehensive methodology for auditing website cookies and tracking technologies. Covers automated scanning, cookie categorization, lifecycle documentation, and compliance gap analysis referencing the Planet49 CJEU ruling (C-673/17).
228 · bundle
mukul975-2
cnil-cookie-banner
Designing and implementing CNIL-compliant cookie consent banners for French and EU audiences. References the EUR 100M Google LLC fine and EUR 150M Meta Platforms fine for non-compliant cookie practices. Covers equal prominence, reject-all buttons, cookie walls prohibition, and 6-month reconsent cycles.
228 · bundle
kbarbel640-del
gram
Interact with Instagram from the command line: view feeds, posts, profiles, and search, and perform engagement actions like liking, commenting, and following using cookie-based authentication.
1 · bundle
chimeranext
webview-integration
Integrates WebViews in Flutter apps using flutter_inappwebview, covering HTML content loading, JavaScript bridges for bidirectional communication, navigation handling, cookies, and storage.
4
shulkwisec
path-traversal
Exploit path traversal and local/remote file inclusion (LFI/RFI) via URL parameters, cookies, and hidden fields using ../ sequences, URL encoding (%2e%2e%2f), double encoding (%252e%252e%255c), Unicode bypasses (..%c0%af), and Windows UNC paths. PHP include/require with $_GET/$_POST/$_COOKIE pattern. Target /etc/passwd, boot.ini, web.config. Tools: DotDotPwn, WFuzz, Burp Suite, ZAP.
21
claude-dev-suite
bitcoin-core-rpc
Bitcoin Core JSON-RPC interface: authentication (cookie, rpcauth), wallet vs node RPCs, common verbs (getblockchaininfo, getrawtransaction, scantxoutset, importdescriptors, walletprocesspsbt, submitpackage, testmempoolaccept), error handling. USE WHEN: scripting bitcoind, integrating a service, debugging RPC errors.
28
autoclaw-cc
xhs-auth
Manages Xiaohongshu (Little Red Book) login authentication by checking login status, logging in via QR code or phone verification code, and logging out.
1.8k
solizardking
goplaces
Query Google Places API (New) via the goplaces CLI for text search, place details, resolve, and reviews. Use for human-friendly place lookup or JSON output for scripts.
0
owl-listener
ux-writing
Write clear, helpful UI copy including microcopy, error messages, empty states, and CTAs that guide users and reinforce product voice.
1.7k
mukul975
performing-security-headers-audit
Audits HTTP security headers including CSP, HSTS, X-Frame-Options, and cookie attributes to identify missing or misconfigured browser-level protections.
24.6k · bundle
shulkwisec
csrf
Detect and exploit Cross-Site Request Forgery vulnerabilities by testing for missing or predictable CSRF tokens, absent SameSite cookie attributes, and JSON endpoints accepting text/plain Content-Type, with payloads and bypass techniques for security testing.
21
jackychenlu
goplaces
Query Google Places API (New) via the goplaces CLI for text search, place details, resolve, and reviews. Use for human-friendly place lookup or JSON output for scripts.
0
antigravity
ux-copy
Generates concise product copy for buttons, empty states, errors, toasts, confirmations, and form guidance using a casual but polite tone.
42.4k
demerzels-lab
mcdonald
麦当劳助手 - 查询/领取优惠券、活动日历、餐品营养信息、门店查询
10 · bundle
johnalbertini14-glitch
mcdonald
麦当劳助手 - 查询/领取优惠券、活动日历、餐品营养信息、门店查询
1 · bundle
ahang1598
browser-task
浏览器自动化任务处理技能。仅在以下情况使用:1) 其他 skill/工具(搜索、API、数据接口等)都无法满足需求,需要通过真实浏览器 GUI 兜底执行;2) 任务必须在具体网站完成登录 / 授权 / 账号内动作(点赞 / 收藏 / 评论 / 发布 / 加购);3) 命中白名单网站(淘宝/天猫、微博、小红书)的站内检索 / 互动 / 发布需求。当用户仅需要信息检索、文本生成、代码或数据处理时,不要使用本 skill。
9 · bundle
majiayu000
ky
Provides a concise reference for using the Ky HTTP client, covering core usage, options, retries, hooks, error handling, and best practices.
567 · bundle
mukul975
implementing-canary-tokens-for-network-intrusion
Deploys DNS, HTTP, and AWS API key canary tokens across network infrastructure to detect unauthorized access and lateral movement, with webhook alerting to Slack, Teams, email, or generic HTTP endpoints.
24.6k · bundle