Prompt Library
Prompts tuned for our stack
Free 30 days · No credit cardProduction-grade prompts engineered against the models we ship. Each one shows its winrate and the sample size behind it — what you see is the accepted-diff rate across thousands of real regression runs. Click a prompt to copy the full body.
OWASP Top 10 security audit with remediation plan
Full security scan with ranked findings and fix suggestions
Secrets scanner — detect API keys, tokens, passwords
Scan entire repo for hardcoded credentials and PII
Dependency CVE audit with safe upgrade paths
Check npm/pip/go deps against CVE databases
SQL injection test case generator
Generate comprehensive SQLi test cases from schema
XSS payload generator for WAF bypass testing
Fuzz test XSS filters with encoding variations
Container security scan via Trivy
Analyze Dockerfile for CVEs and misconfigs
JWT token security audit
Check JWT implementation for common vulnerabilities
CORS policy evaluator
Audit CORS headers and suggest secure configurations
Chainable workflows
Prompts work together
Read our Prompt Engineering Guide.
Six authoring principles, a canonical template, the regression harness that keeps every prompt honest, and the workflow that gets your prompt into this library. Written by the team, for the team and the people who join next.