Anaya - 應用程式安全工程師 AI Skill
Complete skill package instant downloadanaya-application-security-engineer.skill
Choose how to get it
Start All-Access, from $8.25/mo$99 a year, or $19 a month. 14-day refund on the first charge.
// all-access
You do not download skills. Your AI fetches them.
The KissMySkills connector is a small server your AI chat talks to. Add it once to Claude, ChatGPT, Claude Code or Cursor. From then on, any of our 1,000+ skills is one sentence away.
- 01Add the connector. Settings, Connectors, paste one link. A minute.
- 02Sign in once. The email from your subscription. Nothing installs.
- 03Ask for a skill. "Load Anaya." It arrives in the conversation and your AI answers as that specialist.
Every skill, prompt pack and agent, new releases included. Single files can still be bought and kept. Cancel any time from your account. Compare plans
Secure checkout by Shopify
Add it once. Your AI works like a specialist.
將其加入 Claude、ChatGPT 或 Gemini - 您的 AI 會在此領域中擔任專家。
立即下載 · 30 天退款保證。 一次付費,永久使用 - 無需訂閱。由我們撰寫並測試,絕非從 GitHub 抓取。 退款政策
Ask Anaya something hard.
Trademarks of their respective owners. KissMySkills is not affiliated with or endorsed by them.
你不需要閱讀。由你的 AI 代勞。
只需將技能檔案新增至 Claude、ChatGPT 或 Gemini 一次。從那之後,它就會以這個領域的專家身分運作,並從下一則訊息開始以 Anaya 的身分回答。
購買一次,檔案便永久歸您所有。或者訂閱 All-Access,讓 KissMySkills 連接器在您提出要求時,將該檔案及其他所有技能載入您的聊天中。
// what's inside
這項技能包含什麼
- OWASP Top 10 and how to prevent each
- Threat modeling (STRIDE) and secure code review
- SAST/DAST/SCA and secure SDLC
- Vulnerable-vs-fixed code, remediation and regression tests
AppSec engineers and developers who want real fixes and tests, not a scanner dump.
An application security engineer bills $120+/hr, the complete skill is yours forever.
What you're actually buying
將 Anaya 加入 Claude,即可獲得一位資深應用程式安全工程師,能為功能進行威脅建模、找出 OWASP 問題,並提供修復方案與測試。
Anaya 為軟體提供安全防護:OWASP Top 10 以及如何防範每項風險、威脅建模(STRIDE)、安全程式碼審查、SAST/DAST/SCA、以安全性為設計核心與安全 SDLC、輸入驗證與輸出編碼、驗證機制常見陷阱、密碼學與機密資訊的誤用,以及供應鏈風險。她會展示易受攻擊與修正後的程式碼,以推動修復。僅限防禦用途,不提供武器化漏洞利用或攻擊工具。
您將獲得的內容
- →OWASP Top 10 以及如何防範每項風險
- →威脅建模(STRIDE)與安全程式碼審查
- →SAST/DAST/SCA 與安全 SDLC
- →易受攻擊與修正後的程式碼、修復措施及回歸測試
如何安裝
下載 .skill 套件 → 開啟 Claude → 將 SKILL.md 貼到您的專案指示或系統 prompt → 描述您的需求 → Anaya 建立答案。包含完整的實作範例,讓您清楚了解實際成果。
# Anaya - Application Security Engineer You are Anaya, a senior AppSec engineer. You threat-model a feature, find the OWASP issues, and give the fix and the test. Defensive only. ## How you work 1. Threat-model the feature (STRIDE) 2. Review the code for OWASP/CWE issues 3. Give vulnerable-vs-fixed code and remediation 4. Add regression tests and CI gates Defensive only: minimal non-weaponized examples strictly to drive the fix; never working exploits or attack tooling.
您將下載的實際檔案範例。
四個步驟。任何 AI 聊天。
- 01下載檔案
結帳後,下載連結會寄到您的收件匣。將檔案儲存至裝置上的任意位置。
- 02開啟你的 AI 聊天功能
Claude、ChatGPT、Gemini、Grok 或 Copilot - 無論你目前使用哪一個。
- 03貼上檔案內容
將其放入系統 prompt、專案指示或自訂指示欄位中。
- 04開始工作
您的 AI 現已設定為專業助手。您可以詢問它任何與其專業領域相關的問題。
不需要技術知識。不需訂閱。一次付費,永久使用。
支援所有主要的 AI 聊天服務。
將檔案放入您的 AI system prompt、專案指示或自訂指示中。無需設定。無需程式碼。不受供應商綁定。
關於此產品的問題
What does the Anaya skill do?+
Secure software: threat modeling, OWASP Top 10, secure code review, and vulnerable-vs-fixed remediation. Load it once into Claude Projects and you get a configured Application Security Engineer without re-explaining context at the start of every session. Defensive security only. Always operate within authorized scope and your organization's rules of engagement, validate detections and controls in a lab or non-production environment first, and follow change control before touching production systems.
How do I install this skill file?+
Download the .skill package (it contains SKILL.md), paste the contents into Claude Projects Instructions or your AI's system prompt, add your own context and start your first session. Works with Claude, ChatGPT, or any AI chat that accepts system prompts.
Which AI tools does this skill work with?+
Works with Claude (recommended), ChatGPT, Gemini, Perplexity and Copilot, and any AI chat that accepts system prompts. Claude Projects gives the best results.
What is included in this download?+
One .skill package delivered instantly after purchase: the full SKILL.md role configuration plus a worked-example file with a real scenario so you see the quality before you rely on it. No subscription, yours permanently.
How is this different from using Claude without the Anaya skill?+
Without a skill file your AI starts every session as a general assistant. With Anaya loaded it applies Application Security Engineer methodology from the first message, with consistent quality every time. Defensive security only. Always operate within authorized scope and your organization's rules of engagement, validate detections and controls in a lab or non-production environment first, and follow change control before touching production systems.
Do I have to read it myself?+
No. The file is written for your AI to read, not for you. Upload it or paste it in once and the AI takes on the role. After that you just ask it questions the way you normally would. You're welcome to open it and read it, but nothing here depends on you doing that.
Is this a physical book?+
No, it's digital. You download it the moment the order goes through and it's yours permanently. The cover is styled like a book because each edition is written and edited as one self-contained piece of work. The reading part is your AI's job, not yours.
準備好讓您的 AI 專精了嗎?
一個即插即用的檔案。一次付費,永久保留 - 適用於 Claude 和 ChatGPT。