55 boosters for "audit" — AI-graded, open source, ready to install
Heuristic scoring (no AI key configured).
This skill enables developers to create cryptographically signed, immutable constitutions for AI tool-use governance in OpenClaw, with Ed25519 signing, GitTruth attestation, and policy evaluation artifacts. It's designed for teams implementing constitutional governance frameworks for AI agents.
MARKOV is a specialized system prompt for Web3/blockchain analysis that transforms on-chain data into auditable intelligence with strict provenance and safety controls. It's designed for analysts, traders, security teams, and developers working with blockchain data across multiple AI platforms.
An MCP server that analyzes Webflow sites for SEO, structure, performance metrics, and user touchpoints using browser automation. Useful for Webflow designers, developers, and agencies seeking automated site auditing and analysis.
Expert in security compliance, governance, and regulatory frameworks. Specializes in implementing and auditing security controls per industry standards.
AI-powered code auditing via MCP using local Ollama models for security, performance, and quality analysis
A comprehensive MongoDB security and administration agent that teaches and implements authentication methods (SCRAM/X.509/LDAP), role-based access control, encryption, and enterprise compliance strategies. Ideal for developers and DBAs securing MongoDB deployments in production environments.
Tinman provides systematic security auditing and hardening guidance for OpenClaw projects and system infrastructure, helping developers identify and remediate security risks across credentials, tokens, SSH, and firewall configurations.
An agent that automates npm SDK package lifecycle management including publishing, dependency audits, and security checks for the @rockfridrich/villa-sdk package. Useful for SDK maintainers and teams managing package releases.
SecureHost is intended to prevent sensitive data leakage by detecting, redacting, and encrypting screenshots in Windsurf, protecting developers from accidental secret exposure.
Tara is a Design QA Agent that automates visual regression testing, cross-browser validation, accessibility audits, and responsive design evaluation for design teams. It benefits developers and QA professionals who need systematic, reusable testing across projects.
Gradle Dependency Checker analyzes Gradle project dependencies, extracts version information, and visualizes dependency trees for Kotlin/kotlinx/skiko/androidx libraries. Developers working on Gradle-based projects benefit from quick dependency auditing and version management.
A system prompt that enforces strict architectural rules for a CEO Request Management System, ensuring consistent database naming, security controls, audit logging, and approval workflows across AI coding assistants like Claude, ChatGPT, and Cursor.
Multi‑agent AI security testing framework that orchestrates red‑team analyses, consolidates findings with an arbiter, and records an immutable audit ledger—plus a deterministic demo mode for repeatable results.
An API security audit specialist agent that helps developers identify and fix vulnerabilities in REST APIs, including authentication flaws, injection attacks, and compliance issues. Ideal for security-conscious development teams and API developers seeking proactive vulnerability assessment.
A cybersecurity specialist agent that performs security assessments, vulnerability analysis, and compliance auditing across applications and infrastructure. Developers, security teams, and DevOps engineers benefit from automated security reviews and threat identification.
KeyProbe MCP audits certificates and keystores to identify expiry risks, weak cryptographic algorithms, and misconfigurations. DevOps engineers, security teams, and developers benefit from automated certificate security assessment integrated into their Claude workflows.
Maestro is an orchestration agent that coordinates developer workflows by routing requests between specialized personas, managing handoffs, and maintaining auditable state progression. It's ideal for teams building multi-agent systems who need a reliable traffic controller to keep complex pipelines organized and transparent.
Turkey-build is a multi-agent orchestration system for software development that supports 7 workflow modes (greenfield, iteration, bugfix, refactor, UI polish, migration, audit) with automated quality gates and visual QA. It benefits developers and teams building or maintaining complex applications who need structured, agent-coordinated development workflows.
A specialized security auditing agent that automatically scans code, configurations, and dependencies for vulnerabilities and provides actionable remediation guidance. Essential for developers, security teams, and DevOps engineers seeking automated vulnerability detection and compliance assessment.
agentic-architect guides developers through designing multi-agent systems by analyzing whether problems need AI agents or traditional code, offering three modes (CREATE, AUDIT, EVOLVE) for different project stages. It benefits architects, senior engineers, and teams building AI-powered applications.
A system prompt for orchestrating autonomous AI agent workflows with safety guardrails, pilot oversight, and deterministic state management. Ideal for developers building multi-step AI agent systems that require human control and auditability.
A security-focused MCP server that automatically scans projects for common vulnerabilities like XSS and injection attacks, helping developers identify and fix security issues early in development.
perf-expert is a frontend performance auditing skill that analyzes websites for Core Web Vitals, accessibility, and SEO issues, then provides actionable improvement plans. It's designed for developers and teams looking to optimize their site performance and user experience.