Summary
- PHP 白盒源码安全审计总方法论。当需要对 PHP 项目进行完整的源码安全审计、
- 或需要系统化的白盒漏洞挖掘流程时触发。
- 覆盖 5 阶段审计流水线: 路由映射→权限建模→数据流追踪→分类漏洞审计→利用链组装。
- 核心机制: 证据合约系统(EVID_*)防止 AI 幻觉误报,所有漏洞结论必须有数据流证据支撑。
wgpsec/aboutsecurity
npx skills add https://github.com/wgpsec/aboutsecurity
Related neighbors and high-traction skills in the same topics — useful to compare before installing.
Audits Python + BigQuery pipelines for cost safety, idempotency, and production readiness. Retu…
8.8K installsCreates a complete EC2 Image Builder pipeline that builds a custom AMI with pre-installed softw…
4K installsUse when validating Azure DevOps pipeline changes for the VS Code build. Covers queueing builds…
2.8K installsTrack and manage recruiting pipeline stages. Trigger with "recruiting update", "candidate pipel…
2.6K installsAnalyze pipeline health — prioritize deals, flag risks, get a weekly action plan. Use when runn…
2.5K installsRun the canonical NVIDIA AOI three-phase training pipeline — Phase 1 AutoML baseline (HPO), Pha…
1.5K installsOther skills from wgpsec/aboutsecurity · top by installs.
npx skills add https://github.com/wgpsec/aboutsecurity
Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.
master