florianbuetow

florianbuetow/claude-code

70 resources in this repository

GitHub
🎯64πŸ”Œ5πŸͺ1
4

🎯Skills64

🎯spec-writer🎯Skill

Skill

spec-writer
🎯spoofing🎯Skill

Skill

spoofing
🎯file-upload🎯Skill

Skill

file-upload
🎯mitre🎯Skill

Skill

mitre
🎯sans25🎯Skill

Skill

sans25
🎯api🎯Skill

Skill

api
🎯model🎯Skill

Skill

model
🎯start🎯Skill

Skill

start
🎯pasta-decompose🎯Skill

Skill

pasta-decompose
🎯learn🎯Skill

Skill

learn
🎯linking🎯Skill

Skill

linking
🎯crypto🎯Skill

Skill

crypto
🎯integrity🎯Skill

Skill

integrity
🎯explain-system-tradeoffs🎯Skill

Skill

explain-system-tradeoffs
🎯non-compliance🎯Skill

Skill

non-compliance
🎯detecting🎯Skill

Skill

detecting
🎯graphql🎯Skill

Skill

graphql
🎯linddun🎯Skill

Skill

linddun
🎯data-disclosure🎯Skill

Skill

data-disclosure
🎯privilege-escalation🎯Skill

Skill

privilege-escalation
🎯pasta-vulns🎯Skill

Skill

pasta-vulns
🎯outdated-deps🎯Skill

Skill

outdated-deps
🎯explain🎯Skill

Skill

explain
🎯stride🎯Skill

Skill

stride
🎯unawareness🎯Skill

Skill

unawareness
🎯info-disclosure🎯Skill

Skill

info-disclosure
🎯repudiation🎯Skill

Skill

repudiation
🎯auth🎯Skill

Skill

auth
🎯pasta-attack-sim🎯Skill

Skill

pasta-attack-sim
🎯fuzz🎯Skill

Skill

fuzz
🎯pasta-objectives🎯Skill

Skill

pasta-objectives
🎯attack-surface🎯Skill

Skill

attack-surface
🎯tampering🎯Skill

Skill

tampering
🎯insecure-design🎯Skill

Skill

insecure-design
🎯non-repudiation-privacy🎯Skill

Skill

non-repudiation-privacy
🎯access-control🎯Skill

Skill

access-control
🎯verify🎯Skill

Skill

verify
🎯config🎯Skill

Skill

config
🎯pasta-risk🎯Skill

Skill

pasta-risk
🎯identifying🎯Skill

Skill

identifying
🎯race-conditions🎯Skill

Skill

race-conditions
🎯beyond-solid-principles🎯Skill

Skill

beyond-solid-principles
🎯solid-principles🎯Skill

Skill

solid-principles
🎯logging🎯Skill

Skill

logging
🎯report🎯Skill

Skill

report
🎯fix🎯Skill

Skill

fix
🎯secrets🎯Skill

Skill

secrets
🎯business-logic🎯Skill

Skill

business-logic
🎯pasta🎯Skill

Skill

pasta
🎯dos🎯Skill

Skill

dos
🎯injection🎯Skill

Skill

injection
🎯glossary🎯Skill

Skill

glossary
🎯full-audit🎯Skill

Skill

full-audit
🎯review-plan🎯Skill

Skill

review-plan
🎯ssrf🎯Skill

Skill

ssrf
🎯status🎯Skill

Skill

status
🎯owasp🎯Skill

Skill

owasp
🎯pasta-scope🎯Skill

Skill

pasta-scope
🎯serverless🎯Skill

Skill

serverless
🎯misconfig🎯Skill

Skill

misconfig
🎯regression🎯Skill

Skill

regression
🎯pasta-threats🎯Skill

Skill

pasta-threats
🎯harden🎯Skill

Skill

harden
🎯data-flows🎯Skill

Skill

data-flows

πŸ”ŒPlugins5

πŸ”Œspec-writerπŸ”ŒPlugin

An expert-guided skill for creating layered software specification documents for greenfield projects. Produces Vision, Business Requirements, Software Requirements, Architecture & Design, and Behavioral Spec & Test Verification documents.

development
πŸ”ŒappsecπŸ”ŒPlugin

Comprehensive application security toolbox for Claude Code. 62 skills across 8 frameworks (OWASP Top 10, OWASP API Top 10, STRIDE, PASTA, LINDDUN, MITRE ATT&CK, SANS/CWE Top 25, DREAD), red team simulation with 6 attacker personas plus consolidator, and interactive security education.

security
πŸ”Œsolid-principlesπŸ”ŒPlugin

Analyze code for violations of the SOLID principles of object-oriented design (Single Responsibility, Open/Closed, Liskov Substitution, Interface Segregation, Dependency Inversion)

development
πŸ”Œbeyond-solid-principlesπŸ”ŒPlugin

Analyze code and architecture for violations of ten system-level software design principles: Separation of Concerns, Single Responsibility (system-level), DRY, Law of Demeter, Loose Coupling / High Cohesion, Evolvability, Resilience, KISS, Principle of Least Surprise, and YAGNI

development
πŸ”Œexplain-system-tradeoffsπŸ”ŒPlugin

Reverse-engineer distributed system tradeoffs from code, configuration, and architecture artifacts. Analyzes six axes: Consistency & Availability, Latency & Throughput, Data Distribution, Transaction Boundaries, Resilience & Failure Isolation, and Observability, Security & Cost.

development

πŸͺMarketplaces1