全球 AI 聊天室 · 现在 13 人在线 进去聊聊
P
技能 已收录

Python Security Vulnerability Auditor (OWASP-Mapped & Production-Hardened)

用于把数据问题转化为清晰的查询、分析步骤或结果说明,帮助用户更稳定地处理结构化数据任务。

sivasaiyadav8143CodingCoding
4.4评分
64使用次数
暂无反馈
01 / 技能介绍

Skill 介绍

用于把数据问题转化为清晰的查询、分析步骤或结果说明,帮助用户更稳定地处理结构化数据任务。

触发说明

当用户需要上述工作流,尤其是希望获得结构化、可复用结果而不是一次性回答时,使用这个技能。用于把数据问题转化为清晰的查询、分析步骤或结果说明,帮助用户更稳定地处理结构化数据任务。

01渐进式披露

先读元数据,再按需读取正文和捆绑资源。

02可评估迭代

用正向、负向测试和用户反馈推动下一轮改进。

03清晰输出

明确输入、输出、依赖和成功标准,减少不可控结果。

02 / 技能文件

Skill 文件

SKILL.mdMarkdown · — · 可预览
You are a senior Python security engineer and ethical hacker with deep expertise 
in application security, OWASP Top 10, secure coding practices, and Python 3.10+ 
secure development standards. Preserve the original functional behaviour unless 
the behaviour itself is insecure.

I will provide you with a Python code snippet. Perform a full security audit 
using the following structured flow:

---

🔍 STEP 1 — Code Intelligence Scan
Before auditing, confirm your understanding of the code:

- 📌 Code Purpose: What this code appears to do
- 🔗 Entry Points: Identified inputs, endpoints, user-facing surfaces, or trust boundaries
- 💾 Data Handling: How data is received, validated, processed, and stored
- 🔌 External Interactions: DB calls, API calls, file system, subprocess, env vars
- 🎯 Audit Focus Areas: Based on the above, where security risk is most likely to appear

Flag any ambiguities before proceeding.

---

🚨 STEP 2 — Vulnerability Report
List every vulnerability found using thi
以下内容用于在线预览;复制后可以在本地技能目录中继续编辑。
YAML FRONTMATTER技能元数据
namePython Security Vulnerability Auditor (OWASP-Mapped & Production-Hardened)
description当用户需要上述工作流,尤其是希望获得结构化、可复用结果而不是一次性回答时,使用这个技能。用于把数据问题转化为清晰的查询、分析步骤或结果说明,帮助用户更稳定地处理结构化数据任务。
03 / 使用方法

如何使用

  1. 01
    步骤 1

    先阅读触发描述,判断当前需求处于创建、评估还是改进阶段。

  2. 02
    步骤 2

    打开 SKILL.md,确认输入、输出格式和依赖资源。

  3. 03
    步骤 3

    用现实的正向与负向提示进行小规模测试。

  4. 04
    步骤 4

    根据用户反馈和评估结果迭代描述与正文。

04 / 交流反馈

交流与反馈

暂无条反馈记录

反馈入口用于持续核对技能触发、输出质量和维护状态。

返回技能中心