← all publishers

leo4135

@leo4135 source repo

9 published skills

  1. Owasp Javascript · leo4135
    Maps JavaScript/TypeScript vulnerabilities to OWASP Top 10 (2021) with detection patterns, code examples, and remediation. Use during security audits, when the user mentions OWASP, or when categorizing security findings.
    0 installs
  2. Release Management · leo4135
    Manages versioning and releases for cursor-javascript-security-skills and projects using these security skills. Use when creating a GitHub release, updating CHANGELOG, tagging versions, or when the user asks about release process for security skills.
    0 installs
  3. Supply Chain Security · leo4135
    Reviews JavaScript project supply chain security including npm provenance, install scripts, CI/CD integrity, typosquatting, and dependency pinning. Use for supply chain audits, SBOM requests, or when the user asks about npm security, package integrity, or software supply chain risks.
    0 installs
  4. Security Bug Reporting · leo4135
    Formats security vulnerability findings and guides responsible disclosure workflows. Use when writing security bug reports, CVE submissions, creating SECURITY.md, or when the user asks how to report a security vulnerability.
    0 installs
  5. Framework Security Checks · leo4135 bundle
    Framework-specific security checks for React, Next.js, Express, Fastify, Vue, Nuxt, Svelte, and Hono. Use when auditing a project built with a specific JavaScript framework or when the user asks for framework security review.
    0 installs
  6. Javascript Security Audit · leo4135
    Orchestrates end-to-end security audits of JavaScript/TypeScript web applications. Use when the user asks for a security audit, vulnerability assessment, security review, penetration test preparation, or wants to find security bugs in a JS/TS project.
    0 installs
  7. Threat Modeling · leo4135
    Creates STRIDE-based threat models for JavaScript/TypeScript web applications. Use when the user asks for threat modeling, attack surface analysis, trust boundary mapping, or security architecture review.
    0 installs
  8. Audit Checklists · leo4135
    Security audit checklists for JavaScript/TypeScript web applications covering authentication, API, frontend, infrastructure, and data protection. Use during security audits, code reviews, or when the user asks for a security checklist.
    0 installs
  9. Dependency Audit · leo4135
    Audits npm/yarn/pnpm dependencies for known vulnerabilities, outdated packages, license risks, and suspicious packages. Use when the user asks for dependency audit, npm audit, CVE check, or supply chain review of packages.
    0 installs