askill
florianbuetow

florianbuetow

Publisher on askill

93 total stars
Skills31
Updated 2/15/2026
GitHub
race-conditions
race-conditions
florianbuetow2/15/2026

This skill should be used when the user asks to "check for race conditions", "find TOCTOU bugs", "analyze concurrency issues", "detect double-spend vulnerabilities", "check for check-then-act patterns...

3
AI 94
misconfig
misconfig
florianbuetow2/15/2026

This skill should be used when the user asks to "check for misconfigurations", "analyze security headers", "find misconfigured settings", "check CORS policy", "find debug mode", "audit server configur...

3
AI 94
explain
explain
florianbuetow2/15/2026

This skill should be used when the user asks to "explain security concept", "what is OWASP", "explain this finding", "what does this vulnerability mean", "explain stride", "explain injection", "what i...

3
AI 93
sans25
sans25
florianbuetow2/15/2026

This skill should be used when the user asks to "check CWE Top 25", "run SANS analysis", "check for common weaknesses", or mentions "CWE" or "SANS Top 25" in a security context. Checks code against th...

3
AI 92
learn
learn
florianbuetow2/15/2026

This skill should be used when the user asks to "learn about security", "teach me OWASP", "security tutorial", "learn threat modeling", or invokes /appsec:learn. Interactive guided walkthrough using y...

3
AI 92
start
start
florianbuetow2/15/2026

This skill should be used when the user asks to "start security analysis", "assess security", "which security tools should I use", "appsec start", "what should I scan", "security assessment", or invok...

3
AI 91
review-plan
review-plan
florianbuetow2/15/2026

This skill should be used when the user asks to "review plan for security", "check plan for security issues", "security review of implementation plan", "audit the plan for vulnerabilities", or "check...

3
AI 91
websocket
websocket
florianbuetow2/15/2026

This skill should be used when the user asks to "check WebSocket security", "analyze WebSocket authentication", "find WebSocket vulnerabilities", "audit WebSocket handlers", "check for CSWSH", or ment...

3
AI 90
pasta
pasta
florianbuetow2/15/2026

This skill should be used when the user asks to "run PASTA analysis", "PASTA threat model", "risk-centric threat analysis", or invokes /appsec:pasta. Dispatches 7 stages SEQUENTIALLY -- each stage's o...

3
AI 90
data-disclosure
data-disclosure
florianbuetow2/15/2026

This skill should be used when the user asks to "check for personal data disclosure", "analyze PII exposure", "find privacy issues related to data leakage", "check for unauthorized data sharing", or m...

3
AI 90
solid-principles
solid-principles
florianbuetow2/15/2026

This skill should be used when the user asks to "check SOLID violations", "audit class design", "review code quality", "find design smells", or "improve object-oriented architecture". Also triggers wh...

3
AI 90
pasta-risk
pasta-risk
florianbuetow2/15/2026

This skill should be used when the user asks to "calculate risk scores", "prioritize mitigations", "generate remediation roadmap", "analyze business impact", or is running PASTA stage 7. Also triggers...

3
AI 88
stride
stride
florianbuetow2/15/2026

This skill should be used when the user asks to "run STRIDE analysis", "check STRIDE", "threat model with STRIDE", or invokes /appsec:stride. Dispatches 6 category subagents (S-T-R-I-D-E) in parallel...

3
AI 88
fuzz
fuzz
florianbuetow2/15/2026

This skill should be used when the user asks to "generate fuzz inputs", "create fuzz tests", "fuzz test generation", "generate test payloads", "create security test cases", or "generate edge case inpu...

3
AI 88
regression
regression
florianbuetow2/15/2026

This skill should be used when the user asks to "check for regressions", "verify fixes still hold", "regression test security", "check for reintroduced vulnerabilities", "security regression check", o...

3
AI 88
pasta-scope
pasta-scope
florianbuetow2/15/2026

This skill should be used when the user asks to "define technical scope", "map attack surface", "identify entry points", "build a data flow diagram", or is running PASTA stage 2. Also triggers when th...

3
AI 88
verify
verify
florianbuetow2/15/2026

This skill should be used when the user asks to "verify fix", "confirm fix", "check if vulnerability is fixed", "validate remediation", "recheck finding", or "test if patch works". Also triggers when...

3
AI 87
mitre
mitre
florianbuetow2/15/2026

This skill should be used when the user asks to "map to ATT&CK", "show attack techniques", "MITRE mapping", or wants to understand how findings relate to real-world attacker behavior. Maps security fi...

3
AI 83

Showing 18 of 31