Gitleaks Auto Scan — Secret Detection & Zero Finding Achievement Workflow
by Shogun Labs
Automate secret scanning with gitleaks — detect API keys, passwords, tokens before incidents.
New: Skill bounties are live. Post a request, fund the bounty, and creators compete for 7 days to build it -> See open bounties
THE AGENSI STORE
585 skills found
by Shogun Labs
Automate secret scanning with gitleaks — detect API keys, passwords, tokens before incidents.
A senior-level code reviewer that uses Socratic questioning to identify architectural flaws and teach better patterns.
Generate runnable accessibility regression tests, not just a findings report. Detects a11y issues, missing alt text, unlabeled controls, keyboard and focus gaps, in your routes, components, or HTML, then emits Playwright + axe-core spec files with targeted assertions and remediation tickets for each. Previews the tests first and writes them only on your confirmation.
Audit a Helm chart for insecure defaults before you deploy to Kubernetes. Flags privileged containers, allowPrivilegeEscalation, missing CPU/memory limits and requests, hostPath volumes, hostNetwork/hostPID/hostIPC sharing, readOnlyRootFilesystem not set, runAsNonRoot not enforced (or runAsUser 0), plaintext secrets in values.yaml, missing NetworkPolicy, and NodePort/LoadBalancer services exposed without restriction.
by Joker
Data analysis engine with 4D decision matrix, 15-min quick analysis template, statistics reference, A/B testing playbook, user behavior analysis, SQL templates.
An adversarial reviewer for landing pages and conversion copy. It flags an unclear value proposition, a weak or buried call to action, missing social proof, funnel friction, and unsupported claims, then returns a PUBLISH / REVISE / HOLD verdict — before the page goes live.
by Matthew King
Most 'TDD' skips the failing test. This mentor enforces Red before Green, even on legacy code.
Surface de-prioritized pharmaceutical assets and "communication cliffs" for investment and licensing opportunities.
Check a desired handle against every platform's username rules and find the form that works everywhere. Flags handles that break a platform's length limits, use a disallowed character (like a period on YouTube or TikTok), or start with a disallowed character, and recommends the safe consistent form (4 to 15 lowercase alphanumeric). Covers X, Instagram, TikTok, YouTube, Twitch, GitHub, and Bluesky. It checks the rules, not availability.
by Nex AI
Generate a production-ready 3D virtual office for AI agents using Next.js and React Three Fiber.
Lint the function-calling tool definitions your agent exposes. Flags tools with no description, parameters missing a description or a type, overlapping or near-duplicate tools, too many tools for reliable selection, an unsafe tool exposed without a guard, required parameters missing from the schema, and free-form parameters that should be bounded with an enum. Cleaner tool schemas mean an agent that picks the right tool.
by Nex AI
A Belgian-compliant, JSON-backed invoicing system with VAT-regime toggles and sequential numbering logic.
Generate an llms.txt for your site and validate an existing one against the spec. The generator turns your sitemap.xml or docs folder into a clean, sectioned llms.txt with one-line descriptions. The validator flags a missing H1 title, a missing summary blockquote, malformed link entries, links with no description, relative URLs that should be absolute, and a referenced llms-full.txt that is not present.
by Nex AI
Canonical Next.js bridge for secure, real-time communication between browser UIs and local agent gateways.
by Timoranjes
Professional-grade Kubernetes YAML auditor for security, API deprecations, and deployment best practices.
by Danejw
Turn raw product ideas into a structured business strategy and MVP roadmap before starting development.
by LocoLoboZ
Build safety-first, framework-aligned incident response playbooks for ICS, SCADA, and OT environments.
Lint an OpenAPI spec and diff two versions to catch breaking API changes before they reach consumers. Within a spec it flags missing operationId, success responses with no schema, untyped parameters, operations with no security requirement, and unbounded arrays/strings. Across two versions it flags removed paths and operations, removed response codes, a parameter becoming required, narrowed parameter types, removed enum values, and removed response fields. Analyzes JSON specs (convert YAML to JSON first).
by Tony Javid
Professional AI-powered redesign and beautification for PowerPoint and PDF slide decks.
by Nex AI
Legally compliant document generator for Belgian VME syndici, covering AV minutes, agendas, and financial accounting.
by Nex AI
Automated Belgian tax prepayment (VA) memos with scenario modeling and penalty calculations for accountants.
by Joker
6 MV visual styles, music-driven workflow, beat-sync, audio-visual sync, Seedance 2.0.
by Joker
Enterprise security with NIST/ISO27001/zero-trust frameworks. Threat modeling, GDPR compliance, DevSecOps guidance.
by Samoxis
Your headless Ollama box crashes at 3am and you find out hours later. OllamaWatch pings your Telegram the instant a model dies, the GPU runs out of memory, or the API hangs — with a fix hint in every alert. One Python file, no SaaS, no dashboards.