Database
Browse 6,168 skills across 448 packs and 38 categories
Salesforce Lightning Web Components
293LYou are a Salesforce LWC developer who builds performant, accessible, composable Lightning Web Components. You understand the wire service, imperative Apex…
Salesforce Service Cloud
247LYou are a Service Cloud architect who designs world-class customer support operations. You configure Case management, Omni-Channel, Einstein Bots, Knowledge…
Salesforce Apex Testing
301LYou are a Salesforce testing expert who writes meaningful, bulkified test classes that verify business logic, not just hit coverage numbers. You understand…
api-auth-flows
138LOAuth2, API key, and HMAC authentication flow testing for security assessments
rate-limit-testing
145LRate limiting bypass testing, throttle evasion, and abuse prevention assessment
schema-validation
154LAPI schema validation testing, fuzzing, and type confusion attacks
third-party-connectors
137LThird-party API integration risk assessment and supply chain security testing
token-handling
125LJWT/OAuth token analysis, validation, and expiry testing for API security assessments
webhook-security
145LWebhook trust boundary testing, signature verification, and callback security
aws-posture
152LAWS security posture review including S3 exposure, IAM policies, and CloudTrail for authorized assessments
azure-posture
149LAzure security assessment including Entra ID, NSGs, and Key Vault for authorized security assessments
cloud-logging-monitoring
149LCloudTrail, Azure Monitor, and GCP logging coverage gap assessment for authorized security assessments
cloud-network-policy
151LVPC rules, security groups, and cloud network segmentation assessment for authorized security assessments
cloud-storage-exposure
166LPublic bucket and blob detection, storage ACL review for authorized security assessments
gcp-posture
157LGCP security review including service accounts, storage, and VPC for authorized security assessments
alert-quality
161LAlert quality review, noise reduction, and detection tuning methodology
detection-engineering
222LDetection rule writing, SIGMA/YARA rule development, and behavioral detection
forensic-readiness
139LForensic log retention assessment, evidence preservation, and attack traceability
incident-response
203LIR handoff quality assessment, playbook review, and communication evaluation
siem-coverage
143LSIEM coverage assessment, log source gaps, and detection blind spot analysis
threat-hunting
185LProactive threat hunting methodology with hypothesis-driven search techniques
container-security
156LContainer image hygiene, Kubernetes RBAC, and pod security assessment
edr-visibility
126LEDR and antivirus coverage gap analysis and blind spot detection
local-privilege
146LLocal privilege escalation testing including SUID, sudo abuse, and service misconfiguration
os-hardening
143LOS hardening assessment for Linux and Windows systems against CIS benchmarks
scheduled-task-abuse
160LCron job and scheduled task abuse risk assessment and service hijacking
software-inventory
142LSoftware inventory anomaly detection, shadow IT discovery, and EOL software identification
exploitability-confirmation
135LExploitability confirmation and false positive reduction methodology
impact-verification
143LImpact verification, blast radius estimation, and business consequence assessment
poc-execution
139LControlled proof-of-concept execution and safe vulnerability validation
post-exploitation-mapping
156LPost-exploitation risk mapping including pivot paths and persistence mechanisms
vulnerability-assessment
164LCVE matching, version risk analysis, and misconfiguration detection methodology
ad-security
156LActive Directory trust review, Kerberos assessment, and delegation risk analysis for authorized assessments
iam-policy-review
163LIAM policy analysis and least privilege assessment for authorized security assessments
mfa-coverage
154LMFA coverage assessment and bypass risk detection for authorized security assessments
privilege-escalation
167LPrivilege escalation path detection in cloud and enterprise environments for authorized assessments
role-trust-boundaries
156LRole trust boundaries, cross-account access, and federation security review for authorized assessments
secret-management
162LSecret sprawl detection, key rotation assessment, and vault configuration review for authorized assessments
attribution-support
47LAlias clustering, language patterns, infrastructure reuse, and confidence-rated attribution
decentralized-threat-research
45LP2P abuse monitoring, wallet-linked fraud, smart contract risk, and cross-platform correlation
domain-correlation
46LCorrelate domains, certificates, IPs, and ASNs across adversary campaigns
incident-enrichment
47LTransform raw security alerts into actor hypotheses, motives, next steps, and containment guidance
osint-fusion
48LMerge public web, breach data, passive DNS, social graph, and code repository intelligence
endpoint-visibility
129LEndpoint visibility gap analysis, rogue device detection, and EDR coverage assessment for internal networks
lateral-movement
117LLateral movement path analysis, credential relay, and pivot detection for authorized internal network assessments
legacy-protocol-risk
120LLegacy protocol risk assessment for SMBv1, LLMNR, NetBIOS, Telnet, and other deprecated services
segmentation-review
133LNetwork segmentation validation, VLAN hopping, firewall rule review, and micro-segmentation testing
trust-relationships
110LDomain trust enumeration, shared service abuse, and cross-boundary attack path analysis for authorized assessments
app-transport
154LApp transport security assessment, certificate pinning validation, HSTS enforcement, and TLS configuration review
local-storage
157LMobile local storage security review, keychain/keystore assessment, and sensitive data exposure detection
mobile-api-testing
184LMobile API interception, proxy configuration, request manipulation, and backend API security testing
reverse-engineering
164LAPK and IPA decompilation, binary analysis, obfuscation review, and tampering detection assessment
token-persistence
161LMobile token persistence analysis, session management review, and authentication state security
host-discovery
123LHost availability detection and network segmentation mapping for authorized security assessments
network-exposure
137LExposure validation and firewall rule assessment for authorized security assessments
port-scanning
123LPort discovery and service detection with nmap for authorized security assessments
protocol-identification
140LProtocol fingerprinting and unusual service detection for authorized security assessments
traffic-analysis
144LPacket capture interpretation, cleartext detection, and traffic analysis with tcpdump and Wireshark
tunneling-validation
139LSecure tunneling validation, proxy path review, and VPN configuration checks for authorized assessments
credential-attacks
44LCredential attack techniques for authorized assessments including password spraying, Kerberoasting, NTLM relay, and credential dumping