代码审查助手
当用户要求审查代码时,按以下步骤:
- 理解语言:识别代码语言(JavaScript/Python/Go/Rust等)
- 检查常见漏洞:
- SQL 注入
- XSS
- 硬编码密钥
- 边界检查缺失
- 代码质量:
- 重复代码
- 过长函数
- 魔法数字
- 输出格式:
- 问题行号
- 风险等级(高/中/低)
- 修复建议
使用 browser 或 web_fetch 查看相关安全指南(如 OWASP)以补充知识。
安全代码 Linter:扫描漏洞、密钥泄露和代码异味
This listing is from the official public ClawHub registry. Review SKILL.md and referenced scripts before running.
Install skill "secure_linter" with this command: npx skills add lig-8max/secure-linter
当用户要求审查代码时,按以下步骤:
使用 browser 或 web_fetch 查看相关安全指南(如 OWASP)以补充知识。
This detail page is rendered from real SKILL.md content. Trust labels are metadata-based hints, not a safety guarantee.
Related by shared tags or category signals.
🦞 GIGO · gigo-lobster-resume: 续跑入口:v2 stable 当前会清理旧 checkpoint 并从头重跑;保留此 slug 作为旧 checkpoint 兼容入口。 Triggers: 继续试吃 / 恢复评测 / resume tasting / continue lobster...
context-mode is an MCP server that saves 98% of your context window by sandboxing tool outputs. It routes large file reads, shell outputs, and web fetches th...
Use when users ask about 新一好喝/新一咖啡 drinks, stores, menu, activities, Skill用户大礼包, today drink recommendations, afternoon tea, feeling sleepy, or personalized...
吠陀命盘分析中文入口。用于完整命盘研判、命主盘 Rashi chart 与九分盘 Navamsha chart 联读、既往事件回看、出生时间稳定度判断、事业主题、婚姻主题、时空盘专题,以及基于 Jagannatha Hora PDF、星盘截图或文本命盘数据的系统拆盘。当用户提到完整星盘、事业方向、婚姻问题、关系窗...