web-security-testing
About
This Claude Skill provides a structured workflow for testing web applications against OWASP Top 10 vulnerabilities like injection and XSS. Use it during security assessments, penetration tests, or bug bounty hunting to systematically map, scan, and validate application security controls.
Quick Install
Claude Code
Recommendednpx skills add boisenoise/skills-collections -a claude-code/plugin add https://github.com/boisenoise/skills-collectionsgit clone https://github.com/boisenoise/skills-collections.git ~/.claude/skills/web-security-testingCopy and paste this command in Claude Code to install this skill
GitHub Repository
Related Skills
api-security-testing
OtherThis Claude Skill provides a specialized workflow for testing REST and GraphQL API security, covering authentication, authorization, and input validation. It's designed for bug bounty testing, API assessments, and validating security best practices like rate limiting. Use it to systematically discover endpoints, test for vulnerabilities, and map API data flows.
rag-implementation
OtherThis skill provides a structured workflow for implementing RAG systems, covering embedding selection, vector database setup, and chunking strategies. Use it when building document Q&A systems, semantic search, or any application requiring knowledge-grounded AI. It guides developers through requirements analysis, optimization, and evaluation of retrieval quality.
linux-troubleshooting
OtherThis Linux troubleshooting skill provides a structured workflow for diagnosing and resolving system issues like performance problems, service failures, and network errors. It guides developers through assessment phases using commands and tools to identify root causes. Use it when debugging application errors, investigating resource constraints, or troubleshooting service outages on Linux systems.
api-security-testing
OtherThis skill provides a comprehensive security testing workflow for both REST and GraphQL APIs. It covers authentication, authorization, rate limiting, and input validation testing across multiple phases. Developers should use it for API security assessments, bug bounty testing, or validating API implementations against security best practices.
