Armory
Source

Leaderboard

Scored on public signals; components with none are listed as Unranked · Formula

RankScoreComponentDescriptionEvidenceLast commitInstall
1Unrankedbroken-authentication-testingskill · authThis skill should be used when the user asks to "test for broken authentication vulnerabilities", "assess session management security", "perform…No signals yetNo commit datelisted armory install broken-authentication-testing --cli claude
2Unrankedclerk-authskill · authExpert patterns for Clerk auth implementation, middleware, organizations, webhooks, and user sync Use when: adding authentication, clerk auth, user…No signals yetNo commit datelisted armory install clerk-auth --cli claude
3Unrankedidor-vulnerability-testingskill · authThis skill should be used when the user asks to "test for insecure direct object references," "find IDOR vulnerabilities," "exploit broken access…No signals yetNo commit datelisted armory install idor-vulnerability-testing --cli claude
4Unrankedlaravel-securityskill · authLaravel security best practices for authn/authz, validation, CSRF, mass assignment, file uploads, secrets, rate limiting, and secure deployment.No signals yetNo commit datelisted armory install laravel-security --cli claude
5Unrankednestjs-expertskill · authNest.js framework expert specializing in module architecture, dependency injection, middleware, guards, interceptors, testing with Jest/Supertest…No signals yetNo commit datelisted armory install nestjs-expert --cli claude
6Unrankedplaywright-e2e-builderskill · authPlan and build comprehensive Playwright E2E test suites with Page Object Model, authentication state persistence, custom fixtures, visual regression…No signals yetNo commit datelisted armory install playwright-e2e-builder --cli claude
7Unrankedquarkus-securityskill · authQuarkus Security best practices for authentication, authorization, JWT/OIDC, RBAC, input validation, CSRF, secrets management, and dependency…No signals yetNo commit datelisted armory install quarkus-security --cli claude
8Unrankedreturns-reverse-logisticsskill · authCodified expertise for returns authorization, receipt and inspection, disposition decisions, refund processing, fraud detection, and warranty claims…No signals yetNo commit datelisted armory install returns-reverse-logistics --cli claude
9Unrankedspringboot-securityskill · authSpring Security best practices for authn/authz, validation, CSRF, secrets, headers, rate limiting, and dependency security in Java Spring Boot…No signals yetNo commit datelisted armory install springboot-security --cli claude
10Unrankedssh-penetration-testingskill · authThis skill should be used when the user asks to "pentest SSH services", "enumerate SSH configurations", "brute force SSH credentials", "exploit SSH…No signals yetNo commit datelisted armory install ssh-penetration-testing --cli claude
11Unrankedweb-security-testingskill · authWeb application security testing workflow for OWASP Top 10 vulnerabilities including injection, XSS, authentication flaws, and access control issues.No signals yetNo commit datelisted armory install web-security-testing --cli claude

Score colour shows how many signals stand behind it, never how good it is: amber, three or more; dimmer amber, two; grey, one. The Evidence column names them.

Stars, forks and last commit are as GitHub reported them when Armory last read each repository: for most, or later. A repository may have changed since.

Leaderboard · Armory