mantis-critic
Assesses production viability of validated findings by filtering out debug-only features and assertion traps. Focuses on release-build triggerability rather than writing reproduction scripts or patches.
Your agent can do more. Find the skill that makes it happen.
Find your next superpower If you are an agent, refer to our llms.txt for full access.Assesses production viability of validated findings by filtering out debug-only features and assertion traps. Focuses on release-build triggerability rather than writing reproduction scripts or patches.
Consolidates raw findings produced during security research to eliminate redundant reports before review. It does not perform initial code audits or generate patches.
Maps codebase boundaries and builds a defensive security review roadmap in workspace/plan.json using the active threat model and historical learnings. It supports campaign planning rather than code review execution or patching.
Produces a human-readable security review packet at the end of a review cycle. It compiles confirmed findings and exploit chains into stakeholder-facing documentation.
Creates and executes scripts or payloads to reproduce crashes associated with viable security findings. It verifies flaws without performing code audits or patching.
Performs static analysis and detailed security reviews of production source files according to workspace/plan.json. It requires an existing review strategy and excludes planning, deduplication, and patch writing.
Reviews consolidated security findings against the actual source code to validate them and filter out false positives. It does not reproduce crashes or patch code.
Generates mantis-summary.md files for repository directories to map the codebase before threat modeling and planning. These security-focused summaries support more efficient planning and research.
Synthesizes trust boundaries, attack surfaces, and attacker profiles using architecture and entity definitions from a knowledge base. It serves as Stage B of knowledge base generation rather than analyzing source code directly.
Manually unpacks a runtime-packed Windows binary by finding the original entry point (OEP) through tail-jump and entropy analysis, then guiding a memory dump at OEP. Activates for requests to manually unpack a sample, find the OEP, or unpack a custom/unknown packer that generic tools cannot handle.
Provides Android integration patterns for Mapbox Maps SDK. Covers installation, markers, user location, custom data, map styles, camera control, and featureset interactions.
Guides map styling and cartographic decisions in Mapbox. Covers color selection, typography, visual hierarchy, and principles for clear, effective maps.
Skills give your agent reusable instructions for a specific job. Pick one, read what it does, and bring it into your workflow.
A name only tells half the story. Search the full description and instructions to find the right fit.
Read the skill, visit its source, and see exactly what you’re adding to your agent.
Copy the install command from a skill page and run it in your project.
npx skillycli add owner/repo --skill name