7 skills
Test your app against common injection attacks
Passed all 3 security checksRuns a curated set of SQL injection, command injection, and special-character payloads against your endpoints to surface input-validation gaps before they become incidents.
·0↓10
Scan text for exposed secrets and PII
Passed all 3 security checksFinds API keys, credit cards, SSNs, emails, phone numbers, IPs, and other sensitive data in logs, dumps, or code snippets. Flags what shouldn't be visible.
·0↓10
Test your app against real breach data
Passed all 3 security checksProvides curated password lists from real breaches and common patterns—under 10MB—so you can run credential-stuffing tests without spinning up a massive dataset.
·0↓10
Run username enumeration on your own systems
Passed all 3 security checksProvides curated lists of common usernames and default credentials for authorized security testing and penetration tests on your infrastructure.
·0↓10
Test your security detection against real web shells
Passed all 3 security checksProvides sanitized samples of PHP, ASP, JSP, and Python web shells for testing intrusion detection systems, SIEM rules, and security monitoring without live risk.
·0↓10
Test your defenses against known exploits
Passed all 3 security checksGenerates safe test payloads — file names, content patterns, and formats — that trigger security tools without causing actual harm. Use to validate your filters work.
·0↓10
Test your LLM for hidden risks before shipping
Passed all 3 security checksRuns a suite of adversarial prompts against Claude to surface bias, data leakage, misalignment, and jailbreak vectors. Produces a report of what breaks and severity.
·0↓10