
from antigravity-awesome-skills35,069
A step-by-step workflow for testing REST and GraphQL APIs, covering authentication, authorization, input validation, rate limiting, GraphQL checks, and error-ha
This skill provides a structured API security testing workflow for REST and GraphQL services. It breaks testing into clear phases — discovery, authentication, authorization, input validation, rate limiting, GraphQL-specific checks, and error handling — and includes actionable prompts and checklists to guide automated or human-led testing. The workflow is designed for security engineers, bug bounty hunters, and automated agent pipelines that need repeatable, comprehensive API assessments.
Use this skill when you need to validate the security posture of an API (public or internal), run bug-bounty style discovery, audit authentication and authorization logic, verify rate-limiting and brute-force protections, or evaluate GraphQL-specific attack surfaces. It is appropriate for pre-release security checks, incident investigations, and integration into agentic test runners.
Intended for agentic platforms that can orchestrate workflow calls (Claude Code, Cursor, Codex CLI, Gemini CLI, and similar agent runtimes). It is language-agnostic and designed to be invoked as a procedural testing bundle.
This skill has not been reviewed by our automated audit pipeline yet.
Reverse Engineer
Provides step-by-step guidance and best practices for binary reverse engineering: static analysis, dynamic tracing, disassembly, and documentation workflows for
Reverse Engineer
Guidance and best-practice checklists for binary reverse engineering: static and dynamic analysis, tooling, and documentation workflows.
Bash Pro
Defensive, production-grade Bash scripting patterns: safe parsing, strict error handling, testing, and CI/CD integration.
Angular Migration
Guides developers through migrating AngularJS (1.x) apps to modern Angular (2+), with hybrid ngUpgrade approaches, component/service conversions, DI strategies,
DOCX Official
Workflows and tools to create, edit, analyze, and convert .docx files safely and reproducibly, including tracked-change redlining and raw OOXML access.
Makepad Basics
Guides agents to create, structure, and bootstrap Rust Makepad applications using makepad-widgets (dev branch) with code patterns, macros, and event handling.
STRIDE Analysis Patterns
Apply the STRIDE threat-modeling methodology to systematically identify and document security threats during design, reviews, or audits.
Makepad Event & Action Handling
Guides handling of input, lifecycle, and widget actions in Makepad apps — events, hit testing, timers, and parent-child action flow.
Claimable Postgres (pg.new)
Provision instant temporary Postgres databases (pg.new) for development, demos, and prototyping — no signup required; databases expire after 72 hours unless cla
Makepad Basics
Guides agents to generate and explain Rust Makepad apps: setup, live_design!, app_main!, widget wiring and common patterns for cross-platform GUI development.