tag

sast

7 indexed skills · max 10 per page

skills (7)

implementing-semgrep-for-custom-sast-rules

mukul975/Anthropic-Cybersecurity-Skills · implementing-semgrep-for-custom-sast-rules

0

Write custom Semgrep SAST rules in YAML to detect application-specific vulnerabilities, enforce coding standards, and integrate into CI/CD pipelines.

building-devsecops-pipeline-with-gitlab-ci

mukul975/Anthropic-Cybersecurity-Skills · building-devsecops-pipeline-with-gitlab-ci

0

Design and implement a comprehensive DevSecOps pipeline in GitLab CI/CD integrating SAST, DAST, container scanning, dependency scanning, and secret detection.

integrating-sast-into-github-actions-pipeline

mukul975/Anthropic-Cybersecurity-Skills · integrating-sast-into-github-actions-pipeline

0

This skill covers integrating Static Application Security Testing (SAST) tools—CodeQL and Semgrep—into GitHub Actions CI/CD pipelines. It addresses configuring automated code scanning on pull requests and pushes, tuning rules to reduce false positives, uploading SARIF results to GitHub Advanced Security, and establishing quality gates that block merges when high-severity vulnerabilities are detected.

implementing-github-advanced-security-for-code-scanning

mukul975/Anthropic-Cybersecurity-Skills · implementing-github-advanced-security-for-code-scanning

0

Configure GitHub Advanced Security with CodeQL to perform automated static analysis and vulnerability detection across repositories at enterprise scale.

performing-web-application-vulnerability-triage

mukul975/Anthropic-Cybersecurity-Skills · performing-web-application-vulnerability-triage

0

Triage web application vulnerability findings from DAST/SAST scanners using OWASP risk rating methodology to separate true positives from false positives and prioritize remediation.

security-scanning-security-sast

sickn33/antigravity-awesome-skills · Productivity

0

Static Application Security Testing (SAST) for comprehensive code vulnerability detection across multiple languages, frameworks, and security patterns.

sast-configuration

wshobson/agents · Productivity

0

Configure SAST tools for automated vulnerability detection across multiple languages and CI/CD pipelines. \n \n Covers three major SAST platforms: Semgrep (custom pattern-based rules), SonarQube (quality gates and code coverage), and CodeQL (GitHub Advanced Security integration) \n Includes CI/CD integration patterns for GitHub Actions, GitLab CI, and Jenkins, plus pre-commit hook setup for early detection \n Provides production-ready configuration templates, custom rule examples, and performanc