# Raffa-jarrl

> Open-source publisher. Listings imported from github.com/Raffa-jarrl — credited to the original author with their license.

- **Listings:** 4
- **Total installs:** 0
- **Profile:** https://agentstack.voostack.com/s/raffa-jarrl
- **Website:** https://github.com/Raffa-jarrl

## Published listings

- [Lictor Explain](https://agentstack.voostack.com/l/skill-raffa-jarrl-lictor-ai-lictor-explain) — Skill · Free · security-reviewed — `agentstack add skill-raffa-jarrl-lictor-ai-lictor-explain`
  Takes any security finding, error message, or jargon-heavy security advice and explains it in plain English. Use this when someone is confused by what /lictor-security-check found, or when they got a security warning from another tool and don't understand it.
- [Lictor Rotate](https://agentstack.voostack.com/l/skill-raffa-jarrl-lictor-ai-lictor-rotate) — Skill · Free · security-reviewed — `agentstack add skill-raffa-jarrl-lictor-ai-lictor-rotate`
  Walks the user through rotating a leaked API key — step by step, provider-specific. Knows the exact URL to visit, the exact button to click, and how to verify the rotation worked. Supports Stripe, OpenAI, Anthropic, Google Cloud / AI Studio, GitHub, AWS, Slack, Supabase, Firebase, Postmark, and generic OAuth providers.
- [Lictor Security Check](https://agentstack.voostack.com/l/skill-raffa-jarrl-lictor-ai-lictor-security-check) — Skill · Free — `agentstack add skill-raffa-jarrl-lictor-ai-lictor-security-check`
  Pre-release security audit for ANY project — AI-built or hand-written, web or mobile. Scans the codebase for the full range of real-world risks that get apps breached: leaked API & AI-provider keys, exposed configs/secrets, broken auth & access control (IDOR), injection (SQL/XSS/command), SSRF, open databases & cloud storage, exposed admin/debug surfaces, missing security headers, unverified webh…
- [Lictor Fix It](https://agentstack.voostack.com/l/skill-raffa-jarrl-lictor-ai-lictor-fix-it) — Skill · Free · security-reviewed — `agentstack add skill-raffa-jarrl-lictor-ai-lictor-fix-it`
  Applies the fixes recommended by /lictor-security-check, with the user's explicit permission for each change. Walks through findings one at a time, shows the proposed change, gets approval, applies, runs tests if available, and moves on. Some fixes (rotating leaked credentials) require the user to act outside Claude — surface those clearly.

---
Seller on AgentStack — the marketplace for AI agent skills and MCP servers. Every listing is security-reviewed. Install any with `agentstack add <slug>`.
