Browse
Showing 11 of 11 components
Pre-mortem plan analysis. Imagine the plan failed 12 months from now and work backwards to find the weaknesses. Surfaces...
Runs CodeQL and Semgrep for automated security vulnerability detection in codebases.
Detects timing side-channel vulnerabilities in cryptographic code. Use when implementing or reviewing crypto code, encou...
Scans a codebase for security vulnerabilities using CodeQL's interprocedural data flow and taint tracking analysis. Trig...
Run Semgrep static analysis scan on a codebase using parallel subagents. Supports two scan modes — "run all" (full rules...
Find similar vulnerabilities and bugs across codebases using pattern-based analysis. Use when hunting bug variants, buil...
Annotates codebases with dimensional analysis comments documenting units, dimensions, and decimal scaling. Use when some...
Measure fuzzing or test coverage, identify untested parser and protocol paths, and translate coverage gaps into better h...
Test cryptographic implementations for timing leaks with dudect-style workflows, leakage hypotheses, and reproducible me...
Router/index for the 4 business & growth skills bundled in this plugin: customer-success-manager (health scoring, churn...
Use when running an annual SaaS audit, doing category-level spend review, or rationalizing the supplier base — when the...